
No i niby wszystko ok komunikat znika a za każdym uruchomieniem przeglądarki mozzilli się pojawia. Natomiast w IE w opcjach ustawienia strony startowej - jest zaciemnieni i nie da się tam rzadnej strony wpisać - gdzie sie to ustawia jeśli mogę zapytać? I jeszcze jedna rzecz na rzadnej przeglądarce nie mogę wejść np na stronę gdzie można ściągnąć flash desinfactor? Na innych kompach nie ma problemu. Jak by co, to przesyłam loga ot tak gdyby zaszła taka potrzeba

- Kod: Zaznacz wszystko
OTListIt logfile created on: 2009-06-05 20:12:17 - Run 1
OTListIt2 by OldTimer - Version 2.0.15.8 Folder = C:\Documents and Settings\admin\Pulpit
Windows XP Home Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
447,48 Mb Total Physical Memory | 134,78 Mb Available Physical Memory | 30,12% Memory free
1,03 Gb Paging File | 0,79 Gb Available in Paging File | 76,73% Paging File free
Paging file location(s): C:\pagefile.sys 672 1344 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 29,29 Gb Total Space | 16,13 Gb Free Space | 55,08% Space Free | Partition Type: NTFS
Drive D: | 45,21 Gb Total Space | 45,09 Gb Free Space | 99,73% Space Free | Partition Type: FAT32
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: XPN22
Current User Name: admin
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Output = Standard
File Age = 30 Days
Company Name Whitelist: On
[color=orange]========== Processes (SafeList) ==========[/color]
PRC - [2006-03-02 14:00:00 | 01,033,728 | ---- | M] (Microsoft Corporation) -- C:\windows\Explorer.EXE
PRC - [2007-01-30 12:54:36 | 16,116,224 | R--- | M] (Realtek Semiconductor Corp.) -- C:\windows\RTHDCPL.EXE
PRC - [2008-11-04 14:35:02 | 00,086,016 | ---- | M] (alch) -- C:\Program Files\ClamWin\bin\ClamTray.exe
PRC - [2009-03-09 05:19:17 | 00,148,888 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe
PRC - [2009-04-10 19:29:08 | 00,037,888 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe
PRC - [2009-03-26 21:08:48 | 00,133,104 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\GoogleUpdate.exe
PRC - [2009-03-09 05:19:15 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2006-10-31 08:35:00 | 00,155,715 | ---- | M] (NVIDIA Corporation) -- C:\windows\system32\nvsvc32.exe
PRC - [2009-02-28 06:54:41 | 00,636,072 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe
PRC - [2009-06-05 20:12:04 | 00,501,248 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\admin\Pulpit\OTListIt2.exe
[color=orange]========== Win32 Services (SafeList) ==========[/color]
SRV - [2009-02-25 21:25:37 | 00,072,704 | ---- | M] (Adobe Systems) -- C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe -- (Adobe LM Service [On_Demand | Stopped])
SRV - [2009-03-26 21:08:48 | 00,133,104 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\GoogleUpdate.exe -- (gupdate1c9ae464efb67d4 [Auto | Stopped])
SRV - [2006-03-02 14:00:00 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\windows\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running])
SRV - [2009-03-09 05:19:15 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService [Auto | Running])
SRV - [2009-05-27 18:21:38 | 01,005,904 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service [On_Demand | Stopped])
SRV - [2006-10-31 08:35:00 | 00,155,715 | ---- | M] (NVIDIA Corporation) -- C:\windows\system32\nvsvc32.exe -- (NVSvc [Auto | Running])
SRV - [2006-12-01 11:46:28 | 00,918,016 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\WMPNetwk.exe -- (WMPNetworkSvc [On_Demand | Stopped])
[color=orange]========== Driver Services (SafeList) ==========[/color]
DRV - [2006-06-18 23:51:32 | 00,043,520 | ---- | M] (Advanced Micro Devices) -- C:\windows\system32\DRIVERS\AmdK8.sys -- (AmdK8 [System | Running])
DRV - [2008-09-19 18:13:31 | 00,014,656 | ---- | M] (Windows (R) Codename Longhorn DDK provider) -- C:\WINDOWS\gdrv.sys -- (gdrv [On_Demand | Stopped])
DRV - [2005-01-07 17:07:18 | 00,138,752 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\windows\system32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running])
DRV - [2007-01-30 12:57:50 | 04,474,368 | R--- | M] (Realtek Semiconductor Corp.) -- C:\windows\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService [On_Demand | Running])
DRV - [2009-03-11 19:21:11 | 00,064,160 | ---- | M] (Lavasoft AB) -- C:\windows\system32\DRIVERS\Lbd.sys -- (Lbd [Boot | Running])
DRV - [2007-11-29 10:39:42 | 00,016,896 | ---- | M] (Nokia) -- C:\windows\system32\drivers\ccdcmb.sys -- (nmwcd [On_Demand | Stopped])
DRV - [2007-11-29 10:39:40 | 00,019,328 | ---- | M] (Nokia) -- C:\windows\system32\drivers\ccdcmbo.sys -- (nmwcdc [On_Demand | Stopped])
DRV - [2006-10-31 08:35:00 | 03,964,256 | ---- | M] (NVIDIA Corporation) -- C:\windows\system32\DRIVERS\nv4_mini.sys -- (nv [On_Demand | Running])
DRV - [2006-10-18 16:31:38 | 00,105,472 | ---- | M] (NVIDIA Corporation) -- C:\windows\system32\DRIVERS\nvata.sys -- (nvata [Boot | Running])
DRV - [2006-11-27 16:33:50 | 00,058,368 | ---- | M] (NVIDIA Corporation) -- C:\windows\system32\DRIVERS\NVENETFD.sys -- (NVENETFD [On_Demand | Running])
DRV - [2006-11-27 16:33:54 | 00,019,968 | ---- | M] (NVIDIA Corporation) -- C:\windows\system32\DRIVERS\nvnetbus.sys -- (nvnetbus [On_Demand | Running])
DRV - [2006-03-02 14:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\windows\system32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running])
DRV - [2008-08-20 19:58:58 | 00,044,944 | ---- | M] (Sonic Solutions) -- C:\windows\System32\Drivers\PxHelp20.sys -- (PxHelp20 [Boot | Running])
DRV - [2006-03-02 14:00:00 | 00,027,440 | ---- | M] () -- C:\windows\system32\DRIVERS\secdrv.sys -- (Secdrv [On_Demand | Stopped])
DRV - [2007-11-29 10:39:42 | 00,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) -- C:\windows\system32\DRIVERS\usbser_lowerflt.sys -- (upperdev [On_Demand | Stopped])
DRV - [2004-08-04 00:08:44 | 00,025,600 | ---- | M] (Microsoft Corporation) -- C:\windows\system32\DRIVERS\usbser.sys -- (usbser [On_Demand | Stopped])
DRV - [2007-11-29 10:39:52 | 00,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) -- C:\windows\system32\DRIVERS\usbser_lowerfltj.sys -- (UsbserFilt [On_Demand | Stopped])
[color=orange]========== Standard Registry (SafeList) ==========[/color]
[color=orange]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=orange]========== FireFox ==========[/color]
FF - prefs.js..browser.search.defaultenginename: "Winamp Search"
FF - prefs.js..browser.search.defaulturl: "http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&invocationType=tb50ffwinampie7&query="
FF - prefs.js..browser.search.order.1: "Ask"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.pl/"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}:6.0.05
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {eaf8a4ef-d221-45ca-9deb-d0934b45fa34}:1.3.0.3
FF - prefs.js..extensions.enabledItems: {B13721C7-F507-4982-B2E5-502A71474FED}:2.2.0.102
FF - prefs.js..extensions.enabledItems: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.6.10.1
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.10
FF - prefs.js..keyword.URL: "http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&invocationType=tb50ffwinampab&query="
FF - HKLM\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2009-01-31 12:25:35 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.10\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS [2009-05-07 17:55:26 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.10\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS [2009-04-28 14:28:37 | 00,000,000 | ---D | M]
[2008-10-14 18:17:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\mozilla\Extensions
[2008-10-14 18:17:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009-06-02 15:55:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\mozilla\Firefox\Profiles\jfbnkebp.default\extensions
[2009-04-28 17:08:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\mozilla\Firefox\Profiles\jfbnkebp.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}
[2009-05-14 12:23:00 | 00,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\mozilla\Firefox\Profiles\jfbnkebp.default\extensions\{eaf8a4ef-d221-45ca-9deb-d0934b45fa34}
[2008-10-28 17:23:20 | 00,000,681 | ---- | M] () -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\FireFox\Profiles\jfbnkebp.default\searchplugins\ask.xml
[2009-03-27 16:00:58 | 00,009,895 | ---- | M] () -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\FireFox\Profiles\jfbnkebp.default\searchplugins\mywebsearch.xml
[2009-04-28 17:09:42 | 00,001,196 | ---- | M] () -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\FireFox\Profiles\jfbnkebp.default\searchplugins\winamp-search.xml
[2009-06-05 19:46:23 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009-04-28 14:28:37 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009-01-30 18:54:58 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}
[2008-11-14 12:54:55 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
[2009-01-31 12:25:46 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
[2009-04-16 11:10:09 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2009-04-28 14:28:32 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009-04-28 14:28:32 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2006-06-03 18:43:22 | 00,000,896 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2008-04-03 19:19:08 | 00,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2008-04-16 06:08:20 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2007-03-31 19:11:54 | 00,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2009-01-08 12:22:08 | 00,004,212 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\orbitsearch.xml
[2006-06-03 18:43:22 | 00,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2008-03-28 23:36:04 | 00,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2007-01-05 13:40:56 | 00,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml
O1 HOSTS File: (4126 bytes) - C:\windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 www.Merijn.org
O1 - Hosts: 127.0.0.1 www.spywareinfo.com
O1 - Hosts: 127.0.0.1 www.spybot.info
O1 - Hosts: 127.0.0.1 www.hijackthis.de
O1 - Hosts: 127.0.0.1 www.majorgeeks.com
O1 - Hosts: 127.0.0.1 www.avg-antivirus.net
O1 - Hosts: 127.0.0.1 www.bleepingcomputer.com
O1 - Hosts: 127.0.0.1 www.free.grisoft.com
O1 - Hosts: 127.0.0.1 www.analysis.seclab.tuwien.ac.at
O1 - Hosts: 127.0.0.1 www.free.avg.com
O1 - Hosts: 127.0.0.1 guru0.grisoft.cz
O1 - Hosts: 127.0.0.1 guru1.grisoft.cz
O1 - Hosts: 127.0.0.1 guru2.grisoft.cz
O1 - Hosts: 127.0.0.1 guru3.grisoft.cz
O1 - Hosts: 127.0.0.1 guru4.grisoft.cz
O1 - Hosts: 127.0.0.1 guru5.grisoft.cz
O1 - Hosts: 127.0.0.1 www.virusspy.com
O1 - Hosts: 127.0.0.1 www.download.f-secure.com
O1 - Hosts: 127.0.0.1 www.housecall.trendmicro.com
O1 - Hosts: 127.0.0.1 www.avast.com
O1 - Hosts: 127.0.0.1 www.free.avg.com
O1 - Hosts: 127.0.0.1 www.onlinescan.avast.com
O1 - Hosts: 127.0.0.1 www.futurenow.bitdefender.com
O1 - Hosts: 127.0.0.1 www.bitdefender.com
O1 - Hosts: 127.0.0.1 www.f-prot.com
O1 - Hosts: 79 more lines...
O2 - BHO: (WinInet Class) - {39fc2065-c9c7-49cd-8942-44cc2dedc844} - C:\windows\ieocx.dll File not found
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Reg Error: Key error. File not found
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - Reg Error: Key error. File not found
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
O4 - HKLM..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft)
O4 - HKLM..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause File not found
O4 - HKLM..\Run: [ClamWin] "C:\Program Files\ClamWin\bin\ClamTray.exe" --logon (alch)
O4 - HKLM..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit (NVIDIA Corporation)
O4 - HKLM..\Run: [Onet.pl AutoUpdate] C:\Program Files\Common Files\Onet.pl\AutoUpdate.exe /tsr File not found
O4 - HKLM..\Run: [RTHDCPL] RTHDCPL.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SkyTel] SkyTel.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe" ()
O4 - HKCU..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray (Gadu-Gadu S.A.)
O4 - HKCU..\Run: [Odkurzacz-MCD] C:\Program Files\Odkurzacz\odk_mcd.exe (Franmo Software)
O4 - HKCU..\Run: [Systems] C:\Windows\Systems.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - AppInit_DLLs: (C:\WINDOWS\SYSTEM32\comglt32a.dll) - C:\WINDOWS\SYSTEM32\comglt32a.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\Explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 () - http://republika.pl/blog_pc_3546063/4220907/tr/anka_i_kuba_sesja.jpg
O24 - Desktop Components:1 () - http://tbn1.google.com/images?q=tbn:tMNZl3uYd2LgrM:http://franio2000.wrzuta.pl/img/middle/oIPnismboJ/super_tapety_na_pulpit
O24 - Desktop Components:2 (Moja bieżąca strona główna) - About:Home
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{057efde4-1df6-11de-be53-001a4d80ed77}\Shell\AutoRun\command - "" = E:\0bcobed.exe -- File not found
O33 - MountPoints2\{057efde4-1df6-11de-be53-001a4d80ed77}\Shell\open\Command - "" = E:\0bcobed.exe -- File not found
O33 - MountPoints2\{0ce1c2ef-396f-11de-bef3-001a4d80ed77}\Shell\AutoPlay\coMMAnd - "" = E:\alpta.exe -- File not found
O33 - MountPoints2\{0ce1c2ef-396f-11de-bef3-001a4d80ed77}\Shell\AutoRun\command - "" = E:\alpta.exe -- File not found
O33 - MountPoints2\{0ce1c2ef-396f-11de-bef3-001a4d80ed77}\Shell\explore\CoMmand - "" = E:\alpta.exe -- File not found
O33 - MountPoints2\{0ce1c2ef-396f-11de-bef3-001a4d80ed77}\Shell\OpEN\CommanD - "" = E:\alpta.exe -- File not found
O33 - MountPoints2\{0ea16fe8-e7d1-11dd-bd53-001a4d80ed77}\Shell\AutoRun\command - "" = E:\abk.bat -- File not found
O33 - MountPoints2\{0ea16fe8-e7d1-11dd-bd53-001a4d80ed77}\Shell\explore\Command - "" = E:\abk.bat -- File not found
O33 - MountPoints2\{0ea16fe8-e7d1-11dd-bd53-001a4d80ed77}\Shell\open\Command - "" = E:\abk.bat -- File not found
O33 - MountPoints2\{0f56fd32-29de-11de-be97-001a4d80ed77}\Shell\AutoRun\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{0f56fd32-29de-11de-be97-001a4d80ed77}\Shell\open\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{11cfa828-1b94-11de-be48-001a4d80ed77}\Shell - "" = AutoRun
O33 - MountPoints2\{11cfa828-1b94-11de-be48-001a4d80ed77}\Shell\AutoRun\command - "" = E:\LaunchU3.exe -- File not found
O33 - MountPoints2\{1919d57e-43ae-11de-bf2f-001a4d80ed77}\Shell\AutoRun\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{1919d57e-43ae-11de-bf2f-001a4d80ed77}\Shell\open\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{1919d57f-43ae-11de-bf2f-001a4d80ed77}\Shell\AutoRun\command - "" = F:\0bcobed.exe -- File not found
O33 - MountPoints2\{1919d57f-43ae-11de-bf2f-001a4d80ed77}\Shell\open\Command - "" = F:\0bcobed.exe -- File not found
O33 - MountPoints2\{19919dcc-de32-11dd-bd2e-001a4d80ed77}\Shell\AutoRun\command - "" = iqe68o.bat
O33 - MountPoints2\{19919dcc-de32-11dd-bd2e-001a4d80ed77}\Shell\explore\Command - "" = iqe68o.bat
O33 - MountPoints2\{19919dcc-de32-11dd-bd2e-001a4d80ed77}\Shell\open\Command - "" = iqe68o.bat
O33 - MountPoints2\{2cde3d4a-b885-11dd-bc79-001a4d80ed77}\Shell\AutoRun\command - "" = E:\a2h2.com -- File not found
O33 - MountPoints2\{2cde3d4a-b885-11dd-bc79-001a4d80ed77}\Shell\open\Command - "" = E:\a2h2.com -- File not found
O33 - MountPoints2\{3b88cde2-c5dc-11dd-bcbc-001a4d80ed77}\Shell\AutoRun\command - "" = E:\3rl3lqbq.bat -- File not found
O33 - MountPoints2\{3b88cde2-c5dc-11dd-bcbc-001a4d80ed77}\Shell\explore\Command - "" = E:\3rl3lqbq.bat -- File not found
O33 - MountPoints2\{3b88cde2-c5dc-11dd-bcbc-001a4d80ed77}\Shell\open\Command - "" = E:\3rl3lqbq.bat -- File not found
O33 - MountPoints2\{41e09913-4ebc-11de-bf73-001a4d80ed77}\Shell\AutoRun\command - "" = E:\3.cmd -- File not found
O33 - MountPoints2\{41e09913-4ebc-11de-bf73-001a4d80ed77}\Shell\open\Command - "" = E:\3.cmd -- File not found
O33 - MountPoints2\{450b4df2-09bd-11de-bdf6-001a4d80ed77}\Shell\AutoRun\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{450b4df2-09bd-11de-bdf6-001a4d80ed77}\Shell\open\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{45c01a64-040b-11de-bdd8-001a4d80ed77}\Shell\AutoRun\command - "" = 8.bat
O33 - MountPoints2\{45c01a64-040b-11de-bdd8-001a4d80ed77}\Shell\open\Command - "" = 8.bat
O33 - MountPoints2\{48f31c62-b6f0-11dd-bc73-001a4d80ed77}\Shell\AutoRun\command - "" = E:\2w.cmd -- File not found
O33 - MountPoints2\{48f31c62-b6f0-11dd-bc73-001a4d80ed77}\Shell\explore\Command - "" = E:\2w.cmd -- File not found
O33 - MountPoints2\{48f31c62-b6f0-11dd-bc73-001a4d80ed77}\Shell\open\Command - "" = E:\2w.cmd -- File not found
O33 - MountPoints2\{49dc6fb4-bae9-11dd-bc82-001a4d80ed77}\Shell\AutoRun\command - "" = E:\uvsqfgwd.cmd -- File not found
O33 - MountPoints2\{49dc6fb4-bae9-11dd-bc82-001a4d80ed77}\Shell\open\Command - "" = E:\uvsqfgwd.cmd -- File not found
O33 - MountPoints2\{4c4f001a-1931-11de-be38-001a4d80ed77}\Shell\AutoRun\command - "" = E:\gy.exe -- File not found
O33 - MountPoints2\{4c4f001a-1931-11de-be38-001a4d80ed77}\Shell\open\Command - "" = E:\gy.exe -- File not found
O33 - MountPoints2\{4c4f001c-1931-11de-be38-001a4d80ed77}\Shell\AutoRun\command - "" = E:\RESTORE\S-1-5-21-1482476501-1644491937-682003330-1013\Drive13.exe -- File not found
O33 - MountPoints2\{4c4f001c-1931-11de-be38-001a4d80ed77}\Shell\open\command - "" = E:\RESTORE\S-1-5-21-1482476501-1644491937-682003330-1013\Drive13.exe -- File not found
O33 - MountPoints2\{4dfe9b44-950f-11dd-bbf8-001a4d80ed77}\Shell\AutoRun\command - "" = tgejbcx.exe
O33 - MountPoints2\{4dfe9b44-950f-11dd-bbf8-001a4d80ed77}\Shell\explore\Command - "" = tgejbcx.exe
O33 - MountPoints2\{4dfe9b44-950f-11dd-bbf8-001a4d80ed77}\Shell\open\Command - "" = tgejbcx.exe
O33 - MountPoints2\{5a064128-ccee-11dd-bced-001a4d80ed77}\Shell\AutoRun\command - "" = E:\p1y2.cmd -- File not found
O33 - MountPoints2\{5a064128-ccee-11dd-bced-001a4d80ed77}\Shell\explore\Command - "" = E:\p1y2.cmd -- File not found
O33 - MountPoints2\{5a064128-ccee-11dd-bced-001a4d80ed77}\Shell\open\Command - "" = E:\p1y2.cmd -- File not found
O33 - MountPoints2\{5a2ac72e-c52c-11dd-bcb8-001a4d80ed77}\Shell\AutoRun\command - "" = E:\m9ma.exe -- File not found
O33 - MountPoints2\{5a2ac72e-c52c-11dd-bcb8-001a4d80ed77}\Shell\explore\Command - "" = E:\m9ma.exe -- File not found
O33 - MountPoints2\{5a2ac72e-c52c-11dd-bcb8-001a4d80ed77}\Shell\open\Command - "" = E:\m9ma.exe -- File not found
O33 - MountPoints2\{5c337c01-cacc-11dd-bce3-001a4d80ed77}\Shell\AutoRun\command - "" = E:\h3.bat -- File not found
O33 - MountPoints2\{5c337c01-cacc-11dd-bce3-001a4d80ed77}\Shell\explore\Command - "" = E:\h3.bat -- File not found
O33 - MountPoints2\{5c337c01-cacc-11dd-bce3-001a4d80ed77}\Shell\open\Command - "" = E:\h3.bat -- File not found
O33 - MountPoints2\{68c29f4b-e0b4-11dd-bd35-001a4d80ed77}\Shell\AutoRun\command - "" = E:\m2nl.bat -- File not found
O33 - MountPoints2\{68c29f4b-e0b4-11dd-bd35-001a4d80ed77}\Shell\explore\Command - "" = E:\m2nl.bat -- File not found
O33 - MountPoints2\{68c29f4b-e0b4-11dd-bd35-001a4d80ed77}\Shell\open\Command - "" = E:\m2nl.bat -- File not found
O33 - MountPoints2\{73905400-490b-11de-bf4c-001a4d80ed77}\Shell - "" = AutoRun
O33 - MountPoints2\{7d417ba8-f2af-11dd-bd84-001a4d80ed77}\Shell\AutoRun\command - "" = E:\rdsfk.com -- File not found
O33 - MountPoints2\{7d417ba8-f2af-11dd-bd84-001a4d80ed77}\Shell\explore\Command - "" = E:\rdsfk.com -- File not found
O33 - MountPoints2\{7d417ba8-f2af-11dd-bd84-001a4d80ed77}\Shell\open\Command - "" = E:\rdsfk.com -- File not found
O33 - MountPoints2\{7f8fa172-e7e8-11dd-bd54-001a4d80ed77}\Shell\AutoRun\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{7f8fa172-e7e8-11dd-bd54-001a4d80ed77}\Shell\open\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{81134c68-50ef-11de-bf88-001a4d80ed77}\Shell\AutoRun\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ine32.exe -- File not found
O33 - MountPoints2\{81134c68-50ef-11de-bf88-001a4d80ed77}\Shell\open\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ine32.exe -- File not found
O33 - MountPoints2\{8398e371-0cc1-11de-bdfe-001a4d80ed77}\Shell\AutoRun\command - "" = E:\i.com -- File not found
O33 - MountPoints2\{8398e371-0cc1-11de-bdfe-001a4d80ed77}\Shell\open\Command - "" = E:\i.com -- File not found
O33 - MountPoints2\{8480ea58-3c93-11de-bf0b-001a4d80ed77}\Shell\AutoRun\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{8480ea58-3c93-11de-bf0b-001a4d80ed77}\Shell\open\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{855f9b34-f2dd-11dd-bd85-001a4d80ed77}\Shell\AutoRun\command - "" = m0vnonh.bat
O33 - MountPoints2\{855f9b34-f2dd-11dd-bd85-001a4d80ed77}\Shell\open\Command - "" = m0vnonh.bat
O33 - MountPoints2\{8f5ba6c6-e6fa-11dd-bd51-001a4d80ed77}\Shell\AutoRun\command - "" = E:\gy.exe -- File not found
O33 - MountPoints2\{8f5ba6c6-e6fa-11dd-bd51-001a4d80ed77}\Shell\open\Command - "" = E:\gy.exe -- File not found
O33 - MountPoints2\{91bab437-bf9a-11dd-bc96-001a4d80ed77}\Shell\AutoRun\command - "" = E:\e.cmd -- File not found
O33 - MountPoints2\{91bab437-bf9a-11dd-bc96-001a4d80ed77}\Shell\explore\Command - "" = E:\e.cmd -- File not found
O33 - MountPoints2\{91bab437-bf9a-11dd-bc96-001a4d80ed77}\Shell\open\Command - "" = E:\e.cmd -- File not found
O33 - MountPoints2\{9831e2b0-4924-11de-bf4f-001a4d80ed77}\Shell\AutoRun\command - "" = C:\windows\EXPLORER.EXE -- [2006-03-02 14:00:00 | 01,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{9831e2b0-4924-11de-bf4f-001a4d80ed77}\Shell\explore\Command - "" = C:\windows\EXPLORER.EXE -- [2006-03-02 14:00:00 | 01,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{9831e2b0-4924-11de-bf4f-001a4d80ed77}\Shell\open\Command - "" = C:\windows\EXPLORER.EXE -- [2006-03-02 14:00:00 | 01,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{9831e2b2-4924-11de-bf4f-001a4d80ed77}\Shell - "" = AutoRun
O33 - MountPoints2\{9831e2b3-4924-11de-bf4f-001a4d80ed77}\Shell - "" = AutoRun
O33 - MountPoints2\{98f0ad8c-2e74-11de-beb7-001a4d80ed77}\Shell\AutoRun\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{98f0ad8c-2e74-11de-beb7-001a4d80ed77}\Shell\open\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{9cd4a904-a4ff-11dd-bc2e-001a4d80ed77}\Shell\AutoRun\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{9cd4a904-a4ff-11dd-bc2e-001a4d80ed77}\Shell\open\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{9f9615fe-9cf8-11dd-bc15-001a4d80ed77}\Shell\AutoRun\command - "" = E:\83l3v.cmd -- File not found
O33 - MountPoints2\{9f9615fe-9cf8-11dd-bc15-001a4d80ed77}\Shell\explore\Command - "" = E:\83l3v.cmd -- File not found
O33 - MountPoints2\{9f9615fe-9cf8-11dd-bc15-001a4d80ed77}\Shell\open\Command - "" = E:\83l3v.cmd -- File not found
O33 - MountPoints2\{a3cdd928-9eaf-11dd-bc18-001a4d80ed77}\Shell\AutoRun\command - "" = E:\vfjc8mxm.exe -- File not found
O33 - MountPoints2\{a3cdd928-9eaf-11dd-bc18-001a4d80ed77}\Shell\explore\Command - "" = E:\vfjc8mxm.exe -- File not found
O33 - MountPoints2\{a3cdd928-9eaf-11dd-bc18-001a4d80ed77}\Shell\open\Command - "" = E:\vfjc8mxm.exe -- File not found
O33 - MountPoints2\{af1173db-8a50-11dd-bbe1-001a4d80ed77}\Shell\AutoRun\command - "" = E:\abk.bat -- File not found
O33 - MountPoints2\{af1173db-8a50-11dd-bbe1-001a4d80ed77}\Shell\explore\Command - "" = E:\abk.bat -- File not found
O33 - MountPoints2\{af1173db-8a50-11dd-bbe1-001a4d80ed77}\Shell\open\Command - "" = E:\abk.bat -- File not found
O33 - MountPoints2\{b427abd6-19df-11de-be3c-001a4d80ed77}\Shell\AutoRun\command - "" = E:\e.cmd -- File not found
O33 - MountPoints2\{b427abd6-19df-11de-be3c-001a4d80ed77}\Shell\explore\Command - "" = E:\e.cmd -- File not found
O33 - MountPoints2\{b427abd6-19df-11de-be3c-001a4d80ed77}\Shell\open\Command - "" = E:\e.cmd -- File not found
O33 - MountPoints2\{b427abd9-19df-11de-be3c-001a4d80ed77}\Shell\AutoRun\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{b427abd9-19df-11de-be3c-001a4d80ed77}\Shell\open\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{b4299bd8-3412-11de-beda-001a4d80ed77}\Shell\AutoRun\command - "" = C:\windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Recycled\ctfmon.exe -- File not found
O33 - MountPoints2\{b4299bd8-3412-11de-beda-001a4d80ed77}\Shell\Open(&0)\command - "" = E:\Recycled\ctfmon.exe -- File not found
O33 - MountPoints2\{b582b560-e231-11dd-bd3b-001a4d80ed77}\Shell\AutoRun\command - "" = E:\rdsfk.com -- File not found
O33 - MountPoints2\{b582b560-e231-11dd-bd3b-001a4d80ed77}\Shell\explore\Command - "" = E:\rdsfk.com -- File not found
O33 - MountPoints2\{b582b560-e231-11dd-bd3b-001a4d80ed77}\Shell\open\Command - "" = E:\rdsfk.com -- File not found
O33 - MountPoints2\{b582b562-e231-11dd-bd3b-001a4d80ed77}\Shell\AutoRun\command - "" = E:\nq0cq.cmd -- File not found
O33 - MountPoints2\{b582b562-e231-11dd-bd3b-001a4d80ed77}\Shell\explore\Command - "" = E:\nq0cq.cmd -- File not found
O33 - MountPoints2\{b582b562-e231-11dd-bd3b-001a4d80ed77}\Shell\open\Command - "" = E:\nq0cq.cmd -- File not found
O33 - MountPoints2\{b9233c4e-4217-11de-bf2d-001a4d80ed77}\Shell\AutoRun\command - "" = E:\ysep1.exe -- File not found
O33 - MountPoints2\{b9233c4e-4217-11de-bf2d-001a4d80ed77}\Shell\open\Command - "" = E:\ysep1.exe -- File not found
O33 - MountPoints2\{bad322d8-357a-11de-bee2-001a4d80ed77}\Shell\AutoRun\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe -- File not found
O33 - MountPoints2\{bad322d8-357a-11de-bee2-001a4d80ed77}\Shell\open\command - "" = E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe -- File not found
O33 - MountPoints2\{bbfe2306-f3a9-11dd-bd8a-001a4d80ed77}\Shell\AutoRun\command - "" = E:\a2h2.com -- File not found
O33 - MountPoints2\{bbfe2306-f3a9-11dd-bd8a-001a4d80ed77}\Shell\open\Command - "" = E:\a2h2.com -- File not found
O33 - MountPoints2\{be943ae4-c16a-11dd-bca5-001a4d80ed77}\Shell\AutoRun\command - "" = E:\eb.bat -- File not found
O33 - MountPoints2\{be943ae4-c16a-11dd-bca5-001a4d80ed77}\Shell\explore\Command - "" = E:\eb.bat -- File not found
O33 - MountPoints2\{be943ae4-c16a-11dd-bca5-001a4d80ed77}\Shell\open\Command - "" = E:\eb.bat -- File not found
O33 - MountPoints2\{c642b468-1edb-11de-be5a-001a4d80ed77}\Shell\AutoRun\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{c642b468-1edb-11de-be5a-001a4d80ed77}\Shell\open\command - "" = E:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe -- File not found
O33 - MountPoints2\{cad0494c-abdf-11dd-bc4c-001a4d80ed77}\Shell\AutoRun\command - "" = E:\nq0cq.cmd -- File not found
O33 - MountPoints2\{cad0494c-abdf-11dd-bc4c-001a4d80ed77}\Shell\explore\Command - "" = E:\nq0cq.cmd -- File not found
O33 - MountPoints2\{cad0494c-abdf-11dd-bc4c-001a4d80ed77}\Shell\open\Command - "" = E:\nq0cq.cmd -- File not found
O33 - MountPoints2\{ce229b5e-c697-11dd-bcc2-001a4d80ed77}\Shell\AutoRun\command - "" = E:\2.exe -- File not found
O33 - MountPoints2\{ce229b5e-c697-11dd-bcc2-001a4d80ed77}\Shell\open\Command - "" = E:\2.exe -- File not found
O33 - MountPoints2\{d7b31cd8-ac0d-11dd-bc4f-001a4d80ed77}\Shell\AutoRun\command - "" = E:\vxl.exe -- File not found
O33 - MountPoints2\{d7b31cd8-ac0d-11dd-bc4f-001a4d80ed77}\Shell\explore\Command - "" = E:\vxl.exe -- File not found
O33 - MountPoints2\{d7b31cd8-ac0d-11dd-bc4f-001a4d80ed77}\Shell\open\Command - "" = E:\vxl.exe -- File not found
O33 - MountPoints2\{db61f3b6-2b44-11de-bea2-001a4d80ed77}\Shell\AutoRun\command - "" = E:\ReCyClER\sEtUp.exe -- File not found
O33 - MountPoints2\{db61f3b6-2b44-11de-bea2-001a4d80ed77}\Shell\OpEN\cOMMaND - "" = E:\ReCyClER\sEtUp.exe -- File not found
O33 - MountPoints2\{dcaf3ff7-8a3d-11dd-bbe0-001a4d80ed77}\Shell\AutoRun\command - "" = E:\isetup.exe -- File not found
O33 - MountPoints2\{dcaf3ff7-8a3d-11dd-bbe0-001a4d80ed77}\Shell\explore\Command - "" = E:\isetup.exe -- File not found
O33 - MountPoints2\{dcaf3ff7-8a3d-11dd-bbe0-001a4d80ed77}\Shell\open\Command - "" = E:\isetup.exe -- File not found
O33 - MountPoints2\{ddc8b166-dc9e-11dd-bd27-001a4d80ed77}\Shell\AutoRun\command - "" = iqe68o.bat
O33 - MountPoints2\{ddc8b166-dc9e-11dd-bd27-001a4d80ed77}\Shell\explore\Command - "" = iqe68o.bat
O33 - MountPoints2\{ddc8b166-dc9e-11dd-bd27-001a4d80ed77}\Shell\open\Command - "" = iqe68o.bat
O33 - MountPoints2\{e9318d6a-c5e8-11dd-bcbd-001a4d80ed77}\Shell\AutoRun\command - "" = E:\3rl3lqbq.bat -- File not found
O33 - MountPoints2\{e9318d6a-c5e8-11dd-bcbd-001a4d80ed77}\Shell\explore\Command - "" = E:\3rl3lqbq.bat -- File not found
O33 - MountPoints2\{e9318d6a-c5e8-11dd-bcbd-001a4d80ed77}\Shell\open\Command - "" = E:\3rl3lqbq.bat -- File not found
O33 - MountPoints2\{f31936e4-17bc-11de-be31-001a4d80ed77}\Shell\AutoRun\command - "" = E:\RavMon.exe -- File not found
O33 - MountPoints2\{f31936e4-17bc-11de-be31-001a4d80ed77}\Shell\explore\Command - "" = E:\RavMon.exe -- File not found
O33 - MountPoints2\{f31936e4-17bc-11de-be31-001a4d80ed77}\Shell\open\Command - "" = E:\RavMon.exe -- File not found
O33 - MountPoints2\{f37ab178-c6c1-11dd-bcc6-001a4d80ed77}\Shell\AutoRun\command - "" = E:\xk2n.bat -- File not found
O33 - MountPoints2\{f37ab178-c6c1-11dd-bcc6-001a4d80ed77}\Shell\explore\Command - "" = E:\xk2n.bat -- File not found
O33 - MountPoints2\{f37ab178-c6c1-11dd-bcc6-001a4d80ed77}\Shell\open\Command - "" = E:\xk2n.bat -- File not found
O33 - MountPoints2\{f3d64626-494f-11de-bf50-001a4d80ed77}\Shell\AutoRun\command - "" = E:\lc.exe -- File not found
O33 - MountPoints2\{f3d64626-494f-11de-bf50-001a4d80ed77}\Shell\open\Command - "" = E:\lc.exe -- File not found
O33 - MountPoints2\{f44a265f-9f78-11dd-bc1b-001a4d80ed77}\Shell - "" = AutoRun
O33 - MountPoints2\{f44a265f-9f78-11dd-bc1b-001a4d80ed77}\Shell\AutoRun\command - "" = E:\LaunchU3.exe -- File not found
O33 - MountPoints2\{f44a2660-9f78-11dd-bc1b-001a4d80ed77}\Shell\AutoRun\command - "" = F:\xih9.cmd -- File not found
O33 - MountPoints2\{f44a2660-9f78-11dd-bc1b-001a4d80ed77}\Shell\explore\Command - "" = F:\xih9.cmd -- File not found
O33 - MountPoints2\{f44a2660-9f78-11dd-bc1b-001a4d80ed77}\Shell\open\Command - "" = F:\xih9.cmd -- File not found
O33 - MountPoints2\{f4888ece-cab2-11dd-bce2-001a4d80ed77}\Shell\AutoRun\command - "" = E:\h3.bat -- File not found
O33 - MountPoints2\{f4888ece-cab2-11dd-bce2-001a4d80ed77}\Shell\explore\Command - "" = E:\h3.bat -- File not found
O33 - MountPoints2\{f4888ece-cab2-11dd-bce2-001a4d80ed77}\Shell\open\Command - "" = E:\h3.bat -- File not found
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\windows\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - * [2009-06-05 20:12:04 | 00,000,000 | ---D | M]
O34 - HKLM BootExecute: (lsdelete) - C:\windows\System32\lsdelete.exe ()
[color=orange]========== Files/Folders - Created Within 30 Days ==========[/color]
[2009-06-05 20:12:01 | 00,501,248 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\admin\Pulpit\OTListIt2.exe
[2009-06-05 18:34:36 | 00,003,120 | ---- | C] () -- C:\windows\System32\2JPNHCQE.ocx
[2009-06-05 18:34:36 | 00,003,120 | ---- | C] () -- C:\windows\6GNVR6C2.ocx
[2009-06-05 18:33:59 | 00,000,000 | ---D | C] -- C:\Program Files\DiskTrix
[2009-06-04 11:59:08 | 00,000,000 | ---D | C] -- C:\Documents and Settings\admin\Moje dokumenty\Odebrane pliki
[2009-05-29 14:00:47 | 16,881,076 | ---- | C] (CipSoft GmbH ) -- C:\Documents and Settings\admin\Pulpit\tibiasoft_com_tibia810.exe
[2009-05-29 13:03:28 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM
[2009-05-29 13:03:14 | 00,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\OpenFM
[2009-05-29 11:35:02 | 00,001,838 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Tibia MULTI-IP Changer.lnk
[2009-05-29 11:33:20 | 20,379,666 | ---- | C] (CipSoft GmbH ) -- C:\Documents and Settings\admin\Pulpit\tibiasoft_com_tibia840.exe
[2009-05-28 17:05:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\VitySoft
[2009-05-26 21:27:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\WinRAR
[2009-05-25 17:01:57 | 00,000,717 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\OpenFM.lnk
[2009-05-25 17:01:57 | 00,000,688 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Nowe Gadu-Gadu.lnk
[2009-05-25 17:01:22 | 00,000,000 | ---D | C] -- C:\Program Files\Nowe Gadu-Gadu
[2009-05-25 16:58:07 | 20,837,080 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\nowegg.exe
[2009-05-22 11:55:14 | 00,001,836 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google Earth.lnk
[2009-05-20 11:54:27 | 00,000,000 | -H-D | C] -- C:\windows\$MSI31Uninstall_KB893803v2$
[2009-05-18 19:26:53 | 00,008,064 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\windows\System32\drivers\usbser_lowerfltj.sys
[2009-05-18 19:26:53 | 00,008,064 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\windows\System32\drivers\usbser_lowerflt.sys
[2009-05-18 19:26:51 | 00,019,328 | ---- | C] (Nokia) -- C:\windows\System32\drivers\ccdcmbo.sys
[2009-05-18 19:26:48 | 01,419,232 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wdfcoinstaller01005.dll
[2009-05-18 19:26:48 | 00,095,744 | ---- | C] (Nokia) -- C:\windows\System32\nmwcdcocls.dll
[2009-05-18 19:26:48 | 00,016,896 | ---- | C] (Nokia) -- C:\windows\System32\drivers\ccdcmb.sys
[2009-05-18 19:26:40 | 00,000,000 | ---D | C] -- C:\Program Files\Nokia
[2009-05-15 10:19:08 | 20,398,051 | ---- | C] (CipSoft GmbH ) -- C:\Documents and Settings\admin\Pulpit\tibia842.exe
[2009-05-11 15:37:41 | 00,082,944 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\1efd607.dll
[2009-05-11 15:37:41 | 00,082,944 | -H-- | C] (Microsoft Corporation) -- C:\windows\System32\1281960.dll
[2009-05-09 14:35:39 | 09,688,765 | ---- | C] () -- C:\Documents and Settings\admin\Moje dokumenty\YouTube - ICE BOX.avi_
[2009-05-09 14:35:07 | 00,077,824 | ---- | C] () -- C:\windows\System32\xvid.ax
[2009-05-09 14:35:07 | 00,000,000 | ---D | C] -- C:\Program Files\Xvid
[2009-05-09 14:35:04 | 00,000,000 | ---D | C] -- C:\Program Files\FDRLab
[2009-05-09 14:18:34 | 00,000,000 | ---D | C] -- C:\Program Files\2HDD v3
[2009-02-11 12:34:32 | 00,000,118 | ---- | C] () -- C:\windows\System32\MRT.INI
[2009-02-03 18:22:18 | 00,061,504 | ---- | C] () -- C:\windows\System32\comglt32a.dll
[2009-02-03 18:01:32 | 00,179,712 | -H-- | C] () -- C:\windows\System32\smtp.dll
[2008-09-24 21:19:09 | 00,164,352 | ---- | C] () -- C:\windows\System32\unrar.dll
[2008-09-24 21:19:08 | 00,000,038 | ---- | C] () -- C:\windows\avisplitter.ini
[2008-09-24 21:19:04 | 00,815,104 | ---- | C] () -- C:\windows\System32\xvidcore.dll
[2008-09-24 21:19:03 | 00,180,224 | ---- | C] () -- C:\windows\System32\xvidvfw.dll
[2008-09-24 21:19:02 | 03,596,288 | ---- | C] () -- C:\windows\System32\qt-dx331.dll
[2008-09-24 21:18:58 | 00,007,680 | ---- | C] () -- C:\windows\System32\ff_vfw.dll
[2008-09-24 21:18:58 | 00,000,547 | ---- | C] () -- C:\windows\System32\ff_vfw.dll.manifest
[2008-09-24 19:33:45 | 00,069,632 | ---- | C] ( ) -- C:\windows\System32\nporbit.dll
[2006-10-31 08:35:00 | 01,662,976 | ---- | C] () -- C:\windows\System32\nvwdmcpl.dll
[2006-10-31 08:35:00 | 01,470,464 | ---- | C] () -- C:\windows\System32\nview.dll
[2006-10-31 08:35:00 | 01,019,904 | ---- | C] () -- C:\windows\System32\nvwimg.dll
[2006-10-31 08:35:00 | 00,581,632 | ---- | C] () -- C:\windows\System32\nvhwvid.dll
[2006-10-31 08:35:00 | 00,466,944 | ---- | C] () -- C:\windows\System32\nvshell.dll
[2006-10-31 08:35:00 | 00,286,720 | ---- | C] () -- C:\windows\System32\nvnt4cpl.dll
[2006-10-31 08:35:00 | 00,196,608 | ---- | C] () -- C:\windows\System32\nvapi.dll
[2006-03-02 14:00:00 | 00,027,440 | ---- | C] () -- C:\windows\System32\drivers\secdrv.sys
[2006-03-02 14:00:00 | 00,000,528 | ---- | C] () -- C:\windows\win.ini
[2006-03-02 14:00:00 | 00,000,227 | ---- | C] () -- C:\windows\system.ini
[color=orange]========== Files - Modified Within 30 Days ==========[/color]
[1 C:\windows\System32\*.tmp files]
[2009-06-05 20:12:04 | 00,501,248 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\admin\Pulpit\OTListIt2.exe
[2009-06-05 20:00:00 | 00,000,486 | ---- | M] () -- C:\windows\tasks\1-Click Maintenance.job
[2009-06-05 19:43:53 | 00,081,496 | ---- | M] () -- C:\windows\System32\nvapps.xml
[2009-06-05 19:43:50 | 00,001,032 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachine.job
[2009-06-05 19:43:47 | 00,000,006 | -H-- | M] () -- C:\windows\tasks\SA.DAT
[2009-06-05 19:43:46 | 00,000,062 | -HS- | M] () -- C:\Documents and Settings\admin\Ustawienia lokalne\desktop.ini
[2009-06-05 19:43:43 | 00,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2009-06-05 18:34:36 | 00,003,120 | ---- | M] () -- C:\windows\System32\2JPNHCQE.ocx
[2009-06-05 18:34:36 | 00,003,120 | ---- | M] () -- C:\windows\6GNVR6C2.ocx
[2009-06-02 10:35:19 | 00,002,259 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2009-06-01 18:24:04 | 00,000,472 | ---- | M] () -- C:\windows\tasks\Ad-Aware Update (Weekly).job
[2009-06-01 11:33:50 | 00,013,646 | ---- | M] () -- C:\windows\System32\wpa.dbl
[2009-05-29 15:31:19 | 00,000,638 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Tibia.lnk
[2009-05-29 14:01:37 | 16,881,076 | ---- | M] (CipSoft GmbH ) -- C:\Documents and Settings\admin\Pulpit\tibiasoft_com_tibia810.exe
[2009-05-29 11:35:02 | 00,001,838 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Tibia MULTI-IP Changer.lnk
[2009-05-29 11:34:15 | 20,379,666 | ---- | M] (CipSoft GmbH ) -- C:\Documents and Settings\admin\Pulpit\tibiasoft_com_tibia840.exe
[2009-05-27 18:22:42 | 00,015,688 | ---- | M] () -- C:\windows\System32\lsdelete.exe
[2009-05-25 17:01:57 | 00,000,717 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\OpenFM.lnk
[2009-05-25 17:01:57 | 00,000,688 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Nowe Gadu-Gadu.lnk
[2009-05-25 17:00:34 | 20,837,080 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\nowegg.exe
[2009-05-22 11:55:14 | 00,001,836 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google Earth.lnk
[2009-05-15 10:21:42 | 20,398,051 | ---- | M] (CipSoft GmbH ) -- C:\Documents and Settings\admin\Pulpit\tibia842.exe
[2009-05-11 13:04:29 | 00,002,560 | ---- | M] () -- C:\windows\_MSRSTRT.EXE
[2009-05-09 14:37:36 | 09,688,765 | ---- | M] () -- C:\Documents and Settings\admin\Moje dokumenty\YouTube - ICE BOX.avi_
[2009-05-07 09:16:30 | 24,699,336 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\MRT.exe
< End of report >