
log z GMERa:
- Kod: Zaznacz wszystko
GMER 1.0.15.15477 - http://www.gmer.net
Rootkit scan 2010-10-24 22:24:37
Windows 5.1.2600 Dodatek Service Pack 3
Running: n4slt2uo.exe; Driver: C:\DOCUME~1\User\USTAWI~1\Temp\fwwiqaow.sys
---- Kernel code sections - GMER 1.0.15 ----
.text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xB7765360, 0x37226D, 0xE8000020]
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Fastfat \Fat fltMgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
---- EOF - GMER 1.0.15 ----
logi z OTL:
- Kod: Zaznacz wszystko
OTL logfile created on: 2010-10-24 22:27:45 - Run 1
OTL by OldTimer - Version 3.2.17.0 Folder = C:\Documents and Settings\User\Moje dokumenty\Pobieranie
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 78,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 116,44 Gb Total Space | 0,19 Gb Free Space | 0,17% Space Free | Partition Type: NTFS
Drive D: | 106,68 Gb Total Space | 0,51 Gb Free Space | 0,48% Space Free | Partition Type: NTFS
Computer Name: USER-E7047EDB85 | User Name: User | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2010-10-24 01:19:38 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\User\Moje dokumenty\Pobieranie\OTL.exe
PRC - [2009-11-11 10:57:36 | 001,451,520 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
PRC - [2009-10-27 09:26:36 | 000,657,408 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2009-10-27 09:15:44 | 000,132,608 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2009-10-27 09:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2008-08-04 01:02:20 | 000,036,352 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe
PRC - [2008-04-15 00:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-01-10 12:49:18 | 000,782,336 | ---- | M] (Era) -- C:\Program Files\ERA\GlobeTrotter Connect\GlobeTrotter Connect.exe
PRC - [2007-11-05 14:28:10 | 000,204,915 | ---- | M] (Option) -- C:\Program Files\ERA\GlobeTrotter Connect\GtDetectSc.exe
PRC - [2007-09-11 09:40:32 | 000,214,056 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
PRC - [2007-08-31 12:25:18 | 000,249,896 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
PRC - [2007-08-28 13:16:22 | 000,063,016 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
PRC - [2006-03-21 15:54:22 | 000,544,768 | ---- | M] (Motorola Inc.) -- C:\WINDOWS\sm56hlpr.exe
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - [2010-10-24 01:19:38 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\User\Moje dokumenty\Pobieranie\OTL.exe
MOD - [2010-08-23 18:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\hidserv.dll -- (HidServ)
SRV - [2009-10-27 09:26:36 | 000,657,408 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2007-11-05 14:28:10 | 000,204,915 | ---- | M] (Option) [Auto | Running] -- C:\Program Files\ERA\GlobeTrotter Connect\GtDetectSc.exe -- (GtDetectSc)
SRV - [2007-09-11 09:40:32 | 000,214,056 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe -- (AntiVirService)
SRV - [2007-08-28 13:16:22 | 000,063,016 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe -- (AntiVirScheduler)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2009-10-07 19:20:09 | 006,551,008 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2009-09-10 14:55:52 | 000,102,528 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2009-07-24 18:33:24 | 000,100,736 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ewusbdev.sys -- (hwusbdev)
DRV - [2009-05-29 07:23:22 | 004,203,392 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) Intel(R)
DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008-05-02 11:58:14 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2008-04-29 00:27:00 | 004,733,440 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2008-04-14 00:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2007-11-01 08:56:00 | 000,036,864 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l151x86.sys -- (AtcL001)
DRV - [2007-09-17 11:25:03 | 000,048,448 | ---- | M] (Avira GmbH) [File_System | On_Demand | Running] -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys -- (avgntflt)
DRV - [2007-09-07 12:05:19 | 000,062,016 | ---- | M] (AVIRA GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2007-07-09 14:17:36 | 000,095,744 | ---- | M] (Option NV) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Gt51Ip.sys -- (GT72NDISIPXP)
DRV - [2007-06-26 13:38:46 | 000,051,968 | ---- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gt72ubus.sys -- (GT72UBUS)
DRV - [2007-03-30 13:38:14 | 000,008,064 | ---- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gtptser.sys -- (GTPTSER)
DRV - [2007-03-21 22:02:04 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007-03-01 10:34:36 | 000,028,352 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2007-02-27 15:25:10 | 000,011,840 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys -- (avgio)
DRV - [2007-02-24 14:42:22 | 000,039,936 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2007-01-23 16:40:20 | 000,042,496 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2006-12-14 15:11:58 | 000,007,680 | ---- | M] (ATK0100) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ATKACPI.sys -- (MTsensor)
DRV - [2006-03-21 16:04:24 | 000,889,472 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\smserial.sys -- (smserial)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..network.proxy.type: 2
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-04-08 13:40:09 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-04-08 13:40:08 | 000,000,000 | ---D | M]
[2010-02-12 11:37:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Mozilla\Extensions
[2010-02-12 11:37:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Mozilla\Firefox\Profiles\c1sb7icu.default\extensions
[2010-02-12 11:37:43 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010-01-16 03:08:36 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-01-16 03:08:36 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-01-16 03:08:36 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-01-16 03:08:36 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-01-16 03:08:36 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-01-16 03:08:36 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml
O1 HOSTS File: ([2010-04-09 09:45:59 | 000,000,022 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [SMSERIAL] C:\WINDOWS\sm56hlpr.exe (Motorola Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe ()
O4 - HKCU..\Run: [AdobeUpdater] C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe File not found
O4 - HKCU..\Run: [api32] C:\Documents and Settings\User\Ustawienia lokalne\temp\apiqq.exe ()
O4 - HKCU..\Run: [dso32] C:\Documents and Settings\User\Ustawienia lokalne\temp\dsoqq.exe ()
O4 - HKCU..\Run: [nod32] C:\Documents and Settings\User\Ustawienia lokalne\temp\nodqq.exe ()
O4 - HKCU..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\GlobeTrotter Connect.lnk = C:\Program Files\ERA\GlobeTrotter Connect\GlobeTrotter Connect.exe (Era)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/common/asusTek_sys_ctrl.cab (asusTek_sysctrl Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-09-23 10:55:51 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010-10-22 12:20:47 | 000,000,057 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{0867dada-a83e-11de-b001-001f3c5edb12}\Shell\AutoRun\command - "" = F:\vk0w.exe -- File not found
O33 - MountPoints2\{0867dada-a83e-11de-b001-001f3c5edb12}\Shell\open\Command - "" = F:\vk0w.exe -- File not found
O33 - MountPoints2\{2b232898-5376-11df-b14b-001f3c5edb12}\Shell - "" = AutoRun
O33 - MountPoints2\{2b232898-5376-11df-b14b-001f3c5edb12}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- File not found
O33 - MountPoints2\{2b23289f-5376-11df-b14b-001f3c5edb12}\Shell - "" = AutoRun
O33 - MountPoints2\{2b23289f-5376-11df-b14b-001f3c5edb12}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- File not found
O33 - MountPoints2\{2b2328a6-5376-11df-b14b-001f3c5edb12}\Shell - "" = AutoRun
O33 - MountPoints2\{2b2328a6-5376-11df-b14b-001f3c5edb12}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- File not found
O33 - MountPoints2\{4e30c048-b51f-11de-b03b-002215b358e0}\Shell - "" = AutoRun
O33 - MountPoints2\{4e30c048-b51f-11de-b03b-002215b358e0}\Shell\AutoRun\command - "" = F:\setup.exe -- File not found
O33 - MountPoints2\{986e0cd0-f253-11de-b0a6-001f3c5edb12}\Shell\AutoRun\command - "" = H:\9d6resf.exe -- File not found
O33 - MountPoints2\{986e0cd0-f253-11de-b0a6-001f3c5edb12}\Shell\open\Command - "" = H:\9d6resf.exe -- File not found
O33 - MountPoints2\{c9fa8187-5615-11df-b153-001f3c5edb12}\Shell - "" = AutoRun
O33 - MountPoints2\{c9fa8187-5615-11df-b153-001f3c5edb12}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- File not found
O33 - MountPoints2\{f4bcb0f4-cb75-11de-b04c-002215b358e0}\Shell\AutoRun\command - "" = F:\r3fhr.exe -- File not found
O33 - MountPoints2\{f4bcb0f4-cb75-11de-b04c-002215b358e0}\Shell\open\Command - "" = F:\r3fhr.exe -- File not found
O33 - MountPoints2\{fed394c1-a82c-11de-8758-806d6172696f}\Shell\AutoRun\command - "" = r3fhr.exe
O33 - MountPoints2\{fed394c1-a82c-11de-8758-806d6172696f}\Shell\open\Command - "" = r3fhr.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2010-10-24 00:59:52 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010-10-13 11:31:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Pulpit\Za każdą cenę
[2010-10-04 12:26:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Pulpit\za wszelka cene
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2010-10-24 19:01:00 | 000,000,232 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2010-10-24 18:11:09 | 000,239,104 | ---- | M] () -- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-10-24 18:11:09 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-10-24 18:03:50 | 000,000,592 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Opera.lnk
[2010-10-24 16:55:52 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2010-10-24 16:49:02 | 000,176,225 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010-10-24 16:48:55 | 000,000,260 | ---- | M] () -- C:\WINDOWS\tasks\WGASetup.job
[2010-10-24 16:48:42 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-10-24 02:03:32 | 000,000,277 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\programosy.pl
[2010-10-24 01:10:19 | 000,002,441 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\HiJackThis.lnk
[2010-10-22 12:20:47 | 000,000,057 | RHS- | M] () -- C:\autorun.inf
[2010-10-20 09:35:39 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-10-20 09:35:31 | 000,190,592 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-10-14 23:21:19 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010-10-14 22:19:38 | 000,000,123 | ---- | M] () -- C:\Documents and Settings\User\default.pls
[2010-10-14 22:13:14 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for
[2010-10-13 00:21:37 | 000,058,368 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\Schyłek lata - scenariusz.doc
[2010-10-06 23:55:32 | 000,042,496 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\od 2.doc
[2010-10-06 12:29:13 | 000,025,600 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\odpowiedź Oddiemu.doc
[2010-10-06 12:17:41 | 000,019,968 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\kapitał.doc
[2010-10-05 23:20:24 | 000,024,576 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\oddie.doc
[2010-10-03 19:07:20 | 000,021,504 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\słowa piosenki.doc
[2010-10-03 12:29:18 | 000,045,568 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\Trema - treatment.doc
[2010-10-03 11:56:13 | 000,044,544 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\Klejton - Walizka.doc
[2010-09-30 15:41:43 | 000,030,208 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\Clayton.doc
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2010-10-24 18:03:50 | 000,000,592 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Opera.lnk
[2010-10-24 02:03:32 | 000,000,277 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\programosy.pl
[2010-10-24 00:59:52 | 000,002,441 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\HiJackThis.lnk
[2010-10-10 14:35:39 | 008,602,744 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\Backstreet Boys - I Want It That Way.mp3
[2010-10-06 23:55:32 | 000,042,496 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\od 2.doc
[2010-10-06 12:17:41 | 000,019,968 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\kapitał.doc
[2010-10-06 11:28:22 | 000,025,600 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\odpowiedź Oddiemu.doc
[2010-10-05 23:20:23 | 000,024,576 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\oddie.doc
[2010-10-03 18:20:29 | 000,021,504 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\słowa piosenki.doc
[2010-10-03 10:59:16 | 000,045,568 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\Trema - treatment.doc
[2010-09-28 13:01:18 | 000,044,544 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\Klejton - Walizka.doc
[2010-09-27 14:47:14 | 000,030,208 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\Clayton.doc
[2010-04-10 14:16:25 | 000,001,364 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache
[2010-04-08 12:48:05 | 000,000,036 | -H-- | C] () -- C:\Documents and Settings\User\Dane aplikacji\swk.ini
[2009-12-18 00:11:36 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2009-12-17 14:39:23 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\libfaac.dll
[2009-12-17 14:39:22 | 000,421,888 | ---- | C] () -- C:\WINDOWS\System32\OpenQuicktimeLib.dll
[2009-12-17 14:39:22 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\cpuinf32.dll
[2009-12-17 14:28:07 | 000,550,418 | ---- | C] () -- C:\WINDOWS\System32\x264vfw.dll
[2009-12-04 00:45:10 | 001,559,040 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009-10-11 14:34:32 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009-10-10 23:38:49 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009-09-23 14:34:03 | 000,239,104 | ---- | C] () -- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-09-23 13:01:25 | 000,016,480 | ---- | C] () -- C:\WINDOWS\System32\rixdicon.dll
[2009-09-23 12:44:33 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
[2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
[2008-03-29 14:34:00 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2008-03-29 14:34:00 | 001,482,752 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2008-03-29 14:34:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2008-03-29 14:34:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2005-09-02 15:44:08 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\TosBtAcc.dll
[2005-07-22 22:30:20 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\TosCommAPI.dll
[2004-07-20 18:04:02 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\TosBtHcrpAPI.dll
[2004-01-15 15:43:28 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\TBTMonUI.dll
[2002-10-06 19:42:58 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2002-10-05 00:04:26 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2002-10-05 00:04:26 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2002-10-05 00:04:18 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2002-07-05 16:12:06 | 000,027,136 | ---- | C] () -- C:\WINDOWS\System32\authdvd.dll
[color=#E56717]========== LOP Check ==========[/color]
[2010-04-18 19:58:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software
[2009-12-03 14:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Aquadelic GT
[2010-05-19 01:41:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2010-05-19 11:40:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2009-10-10 23:32:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\avidemux
[2010-05-19 11:40:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Nokia
[2009-10-27 15:49:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Opera
[2010-05-19 11:40:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\PC Suite
[2010-05-21 20:38:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Unity
[2010-10-24 18:02:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\uTorrent
[2010-10-24 19:01:00 | 000,000,232 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
[2010-10-24 16:48:55 | 000,000,260 | ---- | M] () -- C:\WINDOWS\Tasks\WGASetup.job
[color=#E56717]========== Purity Check ==========[/color]
< End of report >
i drugi:
- Kod: Zaznacz wszystko
OTL Extras logfile created on: 2010-10-24 22:27:45 - Run 1
OTL by OldTimer - Version 3.2.17.0 Folder = C:\Documents and Settings\User\Moje dokumenty\Pobieranie
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 78,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 116,44 Gb Total Space | 0,19 Gb Free Space | 0,17% Space Free | Partition Type: NTFS
Drive D: | 106,68 Gb Total Space | 0,51 Gb Free Space | 0,48% Space Free | Partition Type: NTFS
Computer Name: USER-E7047EDB85 | User Name: User | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
[color=#E56717]========== File Associations ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)
[color=#E56717]========== Shell Spawning ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
http [open] -- "C:\Program Files\Opera\opera.exe" (Opera Software)
https [open] -- "C:\Program Files\Opera\opera.exe" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[color=#E56717]========== Security Center Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[color=#E56717]========== System Restore Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
[color=#E56717]========== Firewall Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"16235:TCP" = 16235:TCP:*:Enabled:BitComet 16235 TCP
"16235:UDP" = 16235:UDP:*:Enabled:BitComet 16235 UDP
[color=#E56717]========== Authorized Applications List ==========[/color]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\BitComet\BitComet.exe" = C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client -- (www.BitComet.com)
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Program Files\SopCast\SopCast.exe" = C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application -- (www.sopcast.com)
"C:\Program Files\SopCast\adv\SopAdver.exe" = C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver -- (www.sopcast.com)
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{14AA72DA-DB40-4A34-93A6-401A81D7AF9E}_is1" = Unreal Antologia
"{179624B1-2683-45ED-965A-B72189EB5820}" = Opera 9.51
"{19DC9559-9C20-4A46-A67D-7ECBA52A2788}" = Nokia PC Suite
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6E0352EE-6F0D-4FBC-B1B8-4FF032C78BE0}" = PC Connectivity Solution
"{6E19F210-3813-4002-B561-94D66AA182B6}" = Atheros Communications Inc.(R) L1 Gigabit Ethernet Driver
"{74EC78BC-B379-4E29-9006-8F161DCAABA6}" = Apple Software Update
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC}" = QuickTime
"{A64936C6-7A8E-4C76-87AD-A61AFBCF7921}" = GlobeTrotter Connect
"{AC76BA86-7AD7-1045-7B44-A81200000003}" = Adobe Reader 8 - Polish
"{B83FC356-B7C0-441F-8A4D-D71E088E7974}" = NVIDIA PhysX
"{C50EF365-2898-489A-B6C7-30DAA466E9A2}" = Nokia Connectivity Cable Driver
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{CF097717-F174-4144-954A-FBC4BF301045}" = Nero 7 Ultra Edition
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2B02345-93D0-42EC-922A-33481CE9A6E1}" = Warhammer 40,000 Antologia
"05B59228C7E1C21DFBE89260F879BD95880548D8" = Pakiet sterowników systemu Windows - Nokia Modem (10/05/2009 4.2)
"504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"8CDCFB95BB84DD9C0F88F22266A0CA86035E55BA" = Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 7.01.0.4)
"AC3Filter" = AC3Filter (remove only)
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Advanced File Organizer_is1" = Advanced File Organizer
"AntiVir PersonalEdition Classic" = Avira AntiVir PersonalEdition Classic
"BitComet" = BitComet 0.70
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2008-09-21 16:18
"DeusEx_is1" = Deus Ex
"DIVXAudioCompressor4.02" = DivX ;-) Audio Compressor 4.02
"DivxCataloger" = DivxCataloger
"DIVXCodec" = DivX Codec 3.1alpha release
"ffdshow_is1" = ffdshow [rev 1579] [2007-10-26]
"HijackThis" = HijackThis 2.0.2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 1.33
"LameACM" = Lame ACM MP3 Codec
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mozilla Firefox (3.6)" = Mozilla Firefox (3.6)
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Nokia PC Suite" = Nokia PC Suite
"NVIDIA Drivers" = NVIDIA Drivers
"OpenAL" = OpenAL
"PLAY ONLINE" = PLAY ONLINE
"SMSERIAL" = Motorola SM56 Speakerphone Modem
"SopCast" = SopCast 3.2.8
"ST5UNST #1" = Visual Basic 5.0
"SubEdit-Player_is1" = SubEdit-Player
"uTorrent" = µTorrent
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Winamp" = Winamp
"WinRAR archiver" = Archiwizator WinRAR
"x264 Revision 489 x264.nl" = x264 Revision 489 x264.nl (remove only)
[color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"UnityWebPlayer" = Unity Web Player
[color=#E56717]========== Last 10 Event Log Errors ==========[/color]
[ Application Events ]
Error - 2010-10-23 19:13:30 | Computer Name = USER-E7047EDB85 | Source = Userenv | ID = 1090
Description = System Windows nie może zarejestrować stanu sesji RSoP (Resultant
Set of Policies - wynikowego zestawu zasad). Próba połączenia z WMI nie powiodła
się. Dlatego żadne następne rejestrowanie zasad RSoP dla tej aplikacji nie zostanie
wykonane.
Error - 2010-10-23 19:25:30 | Computer Name = USER-E7047EDB85 | Source = Userenv | ID = 1090
Description = System Windows nie może zarejestrować stanu sesji RSoP (Resultant
Set of Policies - wynikowego zestawu zasad). Próba połączenia z WMI nie powiodła
się. Dlatego żadne następne rejestrowanie zasad RSoP dla tej aplikacji nie zostanie
wykonane.
Error - 2010-10-23 19:49:29 | Computer Name = USER-E7047EDB85 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca OTL.exe, wersja 3.2.17.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.
Error - 2010-10-24 10:49:24 | Computer Name = USER-E7047EDB85 | Source = Userenv | ID = 1090
Description = System Windows nie może zarejestrować stanu sesji RSoP (Resultant
Set of Policies - wynikowego zestawu zasad). Próba połączenia z WMI nie powiodła
się. Dlatego żadne następne rejestrowanie zasad RSoP dla tej aplikacji nie zostanie
wykonane.
Error - 2010-10-24 10:49:24 | Computer Name = USER-E7047EDB85 | Source = Userenv | ID = 1090
Description = System Windows nie może zarejestrować stanu sesji RSoP (Resultant
Set of Policies - wynikowego zestawu zasad). Próba połączenia z WMI nie powiodła
się. Dlatego żadne następne rejestrowanie zasad RSoP dla tej aplikacji nie zostanie
wykonane.
Error - 2010-10-24 12:11:10 | Computer Name = USER-E7047EDB85 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd explorer.exe, wersja 6.0.2900.5512, moduł
powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x08ba18e1.
Error - 2010-10-24 12:20:24 | Computer Name = USER-E7047EDB85 | Source = Userenv | ID = 1090
Description = System Windows nie może zarejestrować stanu sesji RSoP (Resultant
Set of Policies - wynikowego zestawu zasad). Próba połączenia z WMI nie powiodła
się. Dlatego żadne następne rejestrowanie zasad RSoP dla tej aplikacji nie zostanie
wykonane.
Error - 2010-10-24 12:34:24 | Computer Name = USER-E7047EDB85 | Source = Userenv | ID = 1090
Description = System Windows nie może zarejestrować stanu sesji RSoP (Resultant
Set of Policies - wynikowego zestawu zasad). Próba połączenia z WMI nie powiodła
się. Dlatego żadne następne rejestrowanie zasad RSoP dla tej aplikacji nie zostanie
wykonane.
Error - 2010-10-24 16:24:15 | Computer Name = USER-E7047EDB85 | Source = Userenv | ID = 1090
Description = System Windows nie może zarejestrować stanu sesji RSoP (Resultant
Set of Policies - wynikowego zestawu zasad). Próba połączenia z WMI nie powiodła
się. Dlatego żadne następne rejestrowanie zasad RSoP dla tej aplikacji nie zostanie
wykonane.
Error - 2010-10-24 16:24:15 | Computer Name = USER-E7047EDB85 | Source = Userenv | ID = 1090
Description = System Windows nie może zarejestrować stanu sesji RSoP (Resultant
Set of Policies - wynikowego zestawu zasad). Próba połączenia z WMI nie powiodła
się. Dlatego żadne następne rejestrowanie zasad RSoP dla tej aplikacji nie zostanie
wykonane.
< End of report >