
- Kod: Zaznacz wszystko
[code][code][/code]GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2011-07-26 15:06:14
Windows 5.1.2600 Dodatek Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-4 WDC_WD200EB-00CPF0 rev.06.04G06
Running: sg64y4l4 GMER.exe; Driver: C:\DOCUME~1\Kamila\USTAWI~1\Temp\kftdypob.sys
---- System - GMER 1.0.15 ----
OTL logfile created on: 2011-07-26 15:11:11 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Kamila\Pulpit
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
383,48 Mb Total Physical Memory | 114,51 Mb Available Physical Memory | 29,86% Memory free
1,46 Gb Paging File | 1,15 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): C:\pagefile.sys 576 1152H:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 8,26 Gb Total Space | 2,21 Gb Free Space | 26,82% Space Free | Partition Type: NTFS
Drive D: | 1,51 Gb Total Space | 1,05 Gb Free Space | 69,44% Space Free | Partition Type: NTFS
Drive E: | 8,88 Gb Total Space | 2,55 Gb Free Space | 28,75% Space Free | Partition Type: NTFS
Drive H: | 4,01 Gb Total Space | 0,60 Gb Free Space | 14,89% Space Free | Partition Type: FAT32
Drive I: | 1,85 Gb Total Space | 0,05 Gb Free Space | 2,80% Space Free | Partition Type: FAT
Computer Name: SERWER | User Name: Kamila | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
PRC - [2011-04-30 11:35:10 | 001,034,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2011-01-15 10:20:14 | 000,382,976 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe
PRC - [2011-01-15 10:20:08 | 000,478,720 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe
PRC - [2010-06-22 14:22:52 | 000,138,752 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2009-10-27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2007-03-23 13:20:52 | 000,227,328 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
PRC - [2006-08-21 01:24:46 | 002,068,527 | ---- | M] () -- C:\Program Files\Free Download Manager\fdm.exe
PRC - [2005-11-23 20:19:22 | 000,229,376 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe
PRC - [2005-11-23 19:34:50 | 000,315,392 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\vsserv.exe
PRC - [2005-10-11 12:28:08 | 000,360,448 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\bdmcon.exe
PRC - [2005-08-24 14:43:36 | 000,061,440 | ---- | M] () -- C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe
PRC - [2005-06-02 17:16:48 | 000,069,632 | ---- | M] (Softwin) -- C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe
PRC - [2005-04-06 14:09:42 | 000,033,280 | ---- | M] () -- C:\Program Files\Softwin\BitDefender9\bdswitch.exe
PRC - [2005-03-11 18:53:30 | 000,090,112 | ---- | M] (SOFTWIN SRL) -- C:\Program Files\Softwin\BitDefender9\bdoesrv.exe
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - [2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
MOD - [2006-08-25 17:51:13 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
MOD - [2005-11-16 19:18:14 | 000,118,784 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\bdoe.dll
MOD - [2005-06-02 17:16:50 | 000,061,440 | ---- | M] (Softwin) -- C:\WINDOWS\system32\xcomm.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- -- (gusvc)
SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2005-11-23 20:19:22 | 000,229,376 | ---- | M] (SOFTWIN S.R.L.) [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe -- (LIVESRV)
SRV - [2005-11-23 19:34:50 | 000,315,392 | ---- | M] (SOFTWIN S.R.L.) [Auto | Running] -- C:\Program Files\Softwin\BitDefender9\vsserv.exe -- (VSSERV)
SRV - [2005-08-24 14:43:36 | 000,061,440 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe -- (bdss)
SRV - [2005-06-02 17:16:48 | 000,069,632 | ---- | M] (Softwin) [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe -- (XCOMM)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2005-10-22 10:06:26 | 000,019,034 | R--- | M] (Kingsun Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\KS-959.sys -- (KS-959)
DRV - [2005-07-28 16:42:52 | 000,014,081 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\Softwin\BitDefender9\filespy.sys -- (FILESpy)
DRV - [2005-06-28 19:46:00 | 000,024,859 | ---- | M] (Windigo) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CSRBC01.sys -- (CSRBC01)
DRV - [2005-03-22 04:03:04 | 000,032,910 | R--- | M] (USB Com port.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ser120.sys -- (SER120)
DRV - [2004-09-28 16:18:00 | 000,057,512 | ---- | M] (Windigo Systems) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Btcomm.sys -- (BTCOMM)
DRV - [2004-08-04 08:08:21 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004-08-04 08:03:35 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004-06-07 18:40:32 | 000,029,440 | ---- | M] (Siemens AG) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\actser.sys -- (actser)
DRV - [2004-05-13 14:31:54 | 000,010,479 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\Softwin\BitDefender9\regspy.sys -- (REGSpy)
DRV - [2004-03-02 10:26:58 | 000,050,007 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\adildr.sys -- (ADILOADER) General Purpose USB Driver (adildr.sys)
DRV - [2004-03-02 10:24:16 | 000,127,065 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\adiusbaw.sys -- (adiusbaw)
DRV - [2003-03-18 11:31:00 | 000,015,876 | ---- | M] (Windigo Systems) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BtKrnBdg.sys -- (BTKRNBDG)
DRV - [2002-09-29 00:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2002-09-29 00:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2001-08-17 23:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001-08-17 22:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir)
DRV - [2001-08-17 21:11:06 | 000,066,591 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\el90xbc5.sys -- (EL90XBC)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
[2010-01-08 14:59:36 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kamila\Dane aplikacji\Mozilla\Extensions
[2007-03-11 20:55:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kamila\Dane aplikacji\Mozilla\Firefox\Profiles\l4c0jcmf.default\extensions
O1 HOSTS File: ([2002-09-29 00:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - File not found
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {158A76DA-5B5C-40DB-BCE5-FCDA2FBDF26C} - C:\WINDOWS\system32\hsfcisp.dll ()
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll ()
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - File not found
O3 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..\Toolbar\ShellBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - File not found
O4 - HKLM..\Run: [BDMCon] C:\Program Files\Softwin\BitDefender9\bdmcon.exe (SOFTWIN S.R.L.)
O4 - HKLM..\Run: [BDOESRV] C:\Program Files\Softwin\BitDefender9\bdoesrv.exe (SOFTWIN SRL)
O4 - HKLM..\Run: [BDSwitchAgent] C:\Program Files\Softwin\BitDefender9\bdswitch.exe ()
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe (Nokia)
O4 - HKLM..\Run: [Regedit32] File not found
O4 - HKU\.DEFAULT..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-18..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [ChomikBox] File not found
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [FCfUcyewLU.exe] C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe ()
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [sIBFBKLnsevbHgX] C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe ()
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [wuaucldt] File not found
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\DSLMON.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Pobierz w Free Download Manager - C:\Program Files\Free Download Manager\dllink.htm ()
O8 - Extra context menu item: Pobierz wszystkie pliki w Free Download Manager - C:\Program Files\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Pobierz zaznaczone w Free Download Manager - C:\Program Files\Free Download Manager\dlselected.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O15 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..Trusted Domains: ([]msn in Mój komputer)
O16 - DPF: {0000000A-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/d/4/4/d446e8a9-3a86-4b59-bb19-f5bd11b40367/wmavax.CAB (Reg Error: Key error.)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.29 85.255.112.105
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\IrfanView_Wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\IrfanView_Wallpaper.bmp
O30 - LSA: Authentication Packages - (nwprovau) - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006-09-13 21:36:17 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2005-12-30 16:22:08 | 000,000,133 | ---- | M] () - H:\AUTOEXEC.BAT -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O35 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2011-07-26 14:22:50 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
[2011-07-26 13:51:10 | 000,607,288 | ---- | C] (Duplex Secure Ltd.) -- C:\Documents and Settings\Kamila\Pulpit\SPTDinst-v178-x86.exe
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
[2011-07-26 14:15:31 | 000,000,240 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgX
[2011-07-26 14:15:16 | 000,427,520 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
[2011-07-26 14:14:56 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-07-26 14:14:49 | 402,182,144 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-26 14:08:32 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\Kamila\Pulpit\sg64y4l4 GMER.exe
[2011-07-26 13:42:10 | 000,607,288 | ---- | M] (Duplex Secure Ltd.) -- C:\Documents and Settings\Kamila\Pulpit\SPTDinst-v178-x86.exe
[2011-07-26 12:32:56 | 000,196,160 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-07-25 19:20:59 | 000,000,488 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX
[2011-07-22 20:04:35 | 000,061,088 | ---- | M] () -- C:\Documents and Settings\Kamila\Pulpit\swinka-pepa_1.gif
[2011-07-20 14:07:04 | 000,016,026 | -HS- | M] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\g6lyf2is3777x0
[2011-07-20 14:07:04 | 000,016,026 | -HS- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\g6lyf2is3777x0
[2011-07-20 14:05:56 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-07-12 11:49:12 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2011-07-26 14:08:31 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\Kamila\Pulpit\sg64y4l4 GMER.exe
[2011-07-22 20:05:06 | 000,061,088 | ---- | C] () -- C:\Documents and Settings\Kamila\Pulpit\swinka-pepa_1.gif
[2011-07-12 10:54:49 | 000,016,026 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\g6lyf2is3777x0
[2011-07-12 10:54:48 | 000,016,026 | -HS- | C] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\g6lyf2is3777x0
[2011-05-23 18:40:29 | 000,001,104 | ---- | C] () -- C:\WINDOWS\bestplayer.ini
[2011-04-01 11:41:44 | 000,121,344 | ---- | C] () -- C:\WINDOWS\System32\hsfcisp.dll
[2011-01-15 10:44:40 | 000,000,152 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgXr
[2011-01-15 10:44:39 | 000,000,240 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgX
[2011-01-15 10:44:13 | 000,000,488 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX
[2011-01-15 10:20:14 | 000,382,976 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe
[2011-01-15 10:20:09 | 000,478,720 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe
[2011-01-15 10:20:09 | 000,427,520 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
[2010-12-10 12:51:25 | 000,035,842 | ---- | C] () -- C:\WINDOWS\Sysvxd.exe
[2010-04-02 19:09:59 | 000,021,504 | ---- | C] () -- C:\WINDOWS\jestertb.dll
[2010-02-18 11:00:51 | 000,000,013 | ---- | C] () -- C:\WINDOWS\compedia.ini
[2009-07-01 15:48:48 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\drivers\a5e2fab6.sys
[2008-09-19 17:08:19 | 000,574,475 | ---- | C] () -- C:\Documents and Settings\Kamila\Dane aplikacji\NMM-MetaData.db
[2007-11-11 13:41:39 | 000,000,274 | ---- | C] () -- C:\WINDOWS\CO3_0.INI
[2007-06-24 17:56:14 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache
[2007-06-08 19:11:02 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\ESICOMMN.DLL
[2007-06-08 19:11:01 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\BTSetBootKey.exe
[2007-05-23 23:10:08 | 000,000,034 | ---- | C] () -- C:\WINDOWS\winhelp.ini
[2007-05-17 17:12:44 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2007-05-16 20:26:19 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat
[2007-05-16 19:46:16 | 000,000,540 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2007-03-04 16:33:40 | 000,000,154 | ---- | C] () -- C:\WINDOWS\adidsl.ini
[2007-03-04 16:33:40 | 000,000,021 | ---- | C] () -- C:\WINDOWS\Fast800.ini
[2007-03-04 16:33:29 | 001,531,904 | ---- | C] () -- C:\WINDOWS\adiras.exe
[2007-03-04 16:33:27 | 000,127,456 | ---- | C] () -- C:\WINDOWS\System32\ipdetect.exe
[2007-03-04 16:33:23 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\coclassfast.dll
[2007-03-04 16:33:22 | 000,046,892 | ---- | C] () -- C:\WINDOWS\System32\adadix16.dll
[2007-03-04 16:33:20 | 000,022,395 | ---- | C] () -- C:\WINDOWS\System32\drivers\fpga.bin
[2007-03-04 16:33:19 | 000,143,360 | ---- | C] () -- C:\WINDOWS\autoclk.exe
[2007-02-25 18:57:03 | 000,000,047 | ---- | C] () -- C:\WINDOWS\System32\imon1.dat
[2007-02-07 10:13:39 | 000,000,334 | -HS- | C] () -- C:\WINDOWS\System32\mfcee.exe
[2007-02-07 10:12:38 | 000,000,370 | -HS- | C] () -- C:\WINDOWS\System32\mdmd.exe
[2007-02-04 19:29:42 | 000,076,589 | -HS- | C] () -- C:\WINDOWS\System32\srrvc.exe
[2007-02-04 10:03:32 | 000,071,518 | -HS- | C] () -- C:\WINDOWS\System32\mfee.exe
[2007-01-21 23:41:52 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2006-10-12 23:12:43 | 000,000,049 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2006-10-09 13:39:26 | 000,081,984 | ---- | C] () -- C:\WINDOWS\System32\bdod.bin
[2006-10-09 00:22:06 | 000,000,028 | ---- | C] () -- C:\WINDOWS\System32\getfile.dat
[2006-10-08 21:14:58 | 000,000,998 | ---- | C] () -- C:\WINDOWS\adiras.ini
[2006-10-08 21:12:22 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\adinst32.dll
[2006-10-08 12:44:36 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\cpuinf32.dll
[2006-10-08 12:40:00 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2006-10-07 18:50:04 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini
[2006-10-07 18:50:03 | 000,000,462 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2006-10-07 18:50:03 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2006-10-07 18:44:29 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\bridf05a.dat
[2006-10-07 18:42:15 | 000,027,019 | ---- | C] () -- C:\WINDOWS\maxlink.ini
[2006-09-23 09:03:50 | 000,018,944 | ---- | C] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2006-09-17 15:11:53 | 000,000,155 | ---- | C] () -- C:\WINDOWS\winamp.ini
[2006-09-14 12:57:35 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006-09-13 22:15:57 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2006-09-13 22:14:30 | 000,196,160 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2006-09-13 21:41:23 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2006-09-13 21:30:52 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2005-12-07 12:31:00 | 000,202,752 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll
[2005-09-02 14:48:40 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\sockspy.dll
[2002-12-06 17:37:06 | 000,503,808 | ---- | C] () -- C:\WINDOWS\System32\xreglib.dll
[2002-09-29 00:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2002-09-29 00:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2002-09-29 00:00:00 | 000,355,830 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat
[2002-09-29 00:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat
[2002-09-29 00:00:00 | 000,311,740 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2002-09-29 00:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2002-09-29 00:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2002-09-29 00:00:00 | 000,049,712 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat
[2002-09-29 00:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2002-09-29 00:00:00 | 000,040,128 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2002-09-29 00:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat
[2002-09-29 00:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2002-09-29 00:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2002-09-29 00:00:00 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2002-09-29 00:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2002-03-04 10:16:34 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Jpeg32.dll
[color=#E56717]========== LOP Check ==========[/color]
[2007-03-06 22:51:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Downloaded Installations
[2010-10-06 13:28:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2006-10-08 08:51:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MSScanAppDataDir
[2010-10-06 13:35:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nokia
[2006-10-08 22:54:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2006-10-07 18:41:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2007-03-06 20:44:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\DataLayer
[2011-07-26 15:16:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Free Download Manager
[2006-10-08 23:09:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Gadu-Gadu
[2007-01-29 13:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Kazaa Lite
[2007-03-07 10:49:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Leadertech
[2008-09-19 18:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Nokia
[2010-10-18 20:53:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Nokia Multimedia Player
[2007-09-09 23:23:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Opera
[2010-10-18 20:56:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\PC Suite
[2007-01-03 23:54:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\ScanSoft
[2010-01-30 19:54:03 | 000,000,614 | ---- | M] () -- C:\WINDOWS\Tasks\Install_NSS.job
[2009-11-26 17:08:46 | 000,000,382 | ---- | M] () -- C:\WINDOWS\Tasks\NSSstub.job
[color=#E56717]========== Purity Check ==========[/color]
< End of report >
SSDT [code][/code] \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwClose [0xF458C966]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwCreateKey [0xF458C918]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwDeleteKey [0xF458C9D2]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwDeleteValueKey [0xF458CA00]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwEnumerateKey [0xF458CD78]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwEnumerateValueKey [0xF458CDEE]OTL logfile created on: 2011-07-26 15:11:11 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Kamila\Pulpit
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
383,48 Mb Total Physical Memory | 114,51 Mb Available Physical Memory | 29,86% Memory free
1,46 Gb Paging File | 1,15 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): C:\pagefile.sys 576 1152H:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 8,26 Gb Total Space | 2,21 Gb Free Space | 26,82% Space Free | Partition Type: NTFS
Drive D: | 1,51 Gb Total Space | 1,05 Gb Free Space | 69,44% Space Free | Partition Type: NTFS
Drive E: | 8,88 Gb Total Space | 2,55 Gb Free Space | 28,75% Space Free | Partition Type: NTFS
Drive H: | 4,01 Gb Total Space | 0,60 Gb Free Space | 14,89% Space Free | Partition Type: FAT32
Drive I: | 1,85 Gb Total Space | 0,05 Gb Free Space | 2,80% Space Free | Partition Type: FAT
Computer Name: SERWER | User Name: Kamila | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
PRC - [2011-04-30 11:35:10 | 001,034,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2011-01-15 10:20:14 | 000,382,976 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe
PRC - [2011-01-15 10:20:08 | 000,478,720 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe
PRC - [2010-06-22 14:22:52 | 000,138,752 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2009-10-27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2007-03-23 13:20:52 | 000,227,328 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
PRC - [2006-08-21 01:24:46 | 002,068,527 | ---- | M] () -- C:\Program Files\Free Download Manager\fdm.exe
PRC - [2005-11-23 20:19:22 | 000,229,376 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe
PRC - [2005-11-23 19:34:50 | 000,315,392 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\vsserv.exe
PRC - [2005-10-11 12:28:08 | 000,360,448 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\bdmcon.exe
PRC - [2005-08-24 14:43:36 | 000,061,440 | ---- | M] () -- C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe
PRC - [2005-06-02 17:16:48 | 000,069,632 | ---- | M] (Softwin) -- C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe
PRC - [2005-04-06 14:09:42 | 000,033,280 | ---- | M] () -- C:\Program Files\Softwin\BitDefender9\bdswitch.exe
PRC - [2005-03-11 18:53:30 | 000,090,112 | ---- | M] (SOFTWIN SRL) -- C:\Program Files\Softwin\BitDefender9\bdoesrv.exe
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - [2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
MOD - [2006-08-25 17:51:13 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
MOD - [2005-11-16 19:18:14 | 000,118,784 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\bdoe.dll
MOD - [2005-06-02 17:16:50 | 000,061,440 | ---- | M] (Softwin) -- C:\WINDOWS\system32\xcomm.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- -- (gusvc)
SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2005-11-23 20:19:22 | 000,229,376 | ---- | M] (SOFTWIN S.R.L.) [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe -- (LIVESRV)
SRV - [2005-11-23 19:34:50 | 000,315,392 | ---- | M] (SOFTWIN S.R.L.) [Auto | Running] -- C:\Program Files\Softwin\BitDefender9\vsserv.exe -- (VSSERV)
SRV - [2005-08-24 14:43:36 | 000,061,440 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe -- (bdss)
SRV - [2005-06-02 17:16:48 | 000,069,632 | ---- | M] (Softwin) [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe -- (XCOMM)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2005-10-22 10:06:26 | 000,019,034 | R--- | M] (Kingsun Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\KS-959.sys -- (KS-959)
DRV - [2005-07-28 16:42:52 | 000,014,081 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\Softwin\BitDefender9\filespy.sys -- (FILESpy)
DRV - [2005-06-28 19:46:00 | 000,024,859 | ---- | M] (Windigo) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CSRBC01.sys -- (CSRBC01)
DRV - [2005-03-22 04:03:04 | 000,032,910 | R--- | M] (USB Com port.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ser120.sys -- (SER120)
DRV - [2004-09-28 16:18:00 | 000,057,512 | ---- | M] (Windigo Systems) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Btcomm.sys -- (BTCOMM)
DRV - [2004-08-04 08:08:21 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004-08-04 08:03:35 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004-06-07 18:40:32 | 000,029,440 | ---- | M] (Siemens AG) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\actser.sys -- (actser)
DRV - [2004-05-13 14:31:54 | 000,010,479 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\Softwin\BitDefender9\regspy.sys -- (REGSpy)
DRV - [2004-03-02 10:26:58 | 000,050,007 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\adildr.sys -- (ADILOADER) General Purpose USB Driver (adildr.sys)
DRV - [2004-03-02 10:24:16 | 000,127,065 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\adiusbaw.sys -- (adiusbaw)
DRV - [2003-03-18 11:31:00 | 000,015,876 | ---- | M] (Windigo Systems) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BtKrnBdg.sys -- (BTKRNBDG)
DRV - [2002-09-29 00:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2002-09-29 00:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2001-08-17 23:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001-08-17 22:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir)
DRV - [2001-08-17 21:11:06 | 000,066,591 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\el90xbc5.sys -- (EL90XBC)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
[2010-01-08 14:59:36 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kamila\Dane aplikacji\Mozilla\Extensions
[2007-03-11 20:55:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kamila\Dane aplikacji\Mozilla\Firefox\Profiles\l4c0jcmf.default\extensions
O1 HOSTS File: ([2002-09-29 00:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - File not found
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {158A76DA-5B5C-40DB-BCE5-FCDA2FBDF26C} - C:\WINDOWS\system32\hsfcisp.dll ()
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll ()
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - File not found
O3 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..\Toolbar\ShellBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - File not found
O4 - HKLM..\Run: [BDMCon] C:\Program Files\Softwin\BitDefender9\bdmcon.exe (SOFTWIN S.R.L.)
O4 - HKLM..\Run: [BDOESRV] C:\Program Files\Softwin\BitDefender9\bdoesrv.exe (SOFTWIN SRL)
O4 - HKLM..\Run: [BDSwitchAgent] C:\Program Files\Softwin\BitDefender9\bdswitch.exe ()
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe (Nokia)
O4 - HKLM..\Run: [Regedit32] File not found
O4 - HKU\.DEFAULT..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-18..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [ChomikBox] File not found
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [FCfUcyewLU.exe] C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe ()
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [sIBFBKLnsevbHgX] C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe ()
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [wuaucldt] File not found
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\DSLMON.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Pobierz w Free Download Manager - C:\Program Files\Free Download Manager\dllink.htm ()
O8 - Extra context menu item: Pobierz wszystkie pliki w Free Download Manager - C:\Program Files\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Pobierz zaznaczone w Free Download Manager - C:\Program Files\Free Download Manager\dlselected.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O15 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..Trusted Domains: ([]msn in Mój komputer)
O16 - DPF: {0000000A-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/d/4/4/d446e8a9-3a86-4b59-bb19-f5bd11b40367/wmavax.CAB (Reg Error: Key error.)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.29 85.255.112.105
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\IrfanView_Wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\IrfanView_Wallpaper.bmp
O30 - LSA: Authentication Packages - (nwprovau) - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006-09-13 21:36:17 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2005-12-30 16:22:08 | 000,000,133 | ---- | M] () - H:\AUTOEXEC.BAT -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O35 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2011-07-26 14:22:50 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
[2011-07-26 13:51:10 | 000,607,288 | ---- | C] (Duplex Secure Ltd.) -- C:\Documents and Settings\Kamila\Pulpit\SPTDinst-v178-x86.exe
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
[2011-07-26 14:15:31 | 000,000,240 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgX
[2011-07-26 14:15:16 | 000,427,520 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
[2011-07-26 14:14:56 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-07-26 14:14:49 | 402,182,144 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-26 14:08:32 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\Kamila\Pulpit\sg64y4l4 GMER.exe
[2011-07-26 13:42:10 | 000,607,288 | ---- | M] (Duplex Secure Ltd.) -- C:\Documents and Settings\Kamila\Pulpit\SPTDinst-v178-x86.exe
[2011-07-26 12:32:56 | 000,196,160 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-07-25 19:20:59 | 000,000,488 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX
[2011-07-22 20:04:35 | 000,061,088 | ---- | M] () -- C:\Documents and Settings\Kamila\Pulpit\swinka-pepa_1.gif
[2011-07-20 14:07:04 | 000,016,026 | -HS- | M] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\g6lyf2is3777x0
[2011-07-20 14:07:04 | 000,016,026 | -HS- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\g6lyf2is3777x0
[2011-07-20 14:05:56 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-07-12 11:49:12 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2011-07-26 14:08:31 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\Kamila\Pulpit\sg64y4l4 GMER.exe
[2011-07-22 20:05:06 | 000,061,088 | ---- | C] () -- C:\Documents and Settings\Kamila\Pulpit\swinka-pepa_1.gif
[2011-07-12 10:54:49 | 000,016,026 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\g6lyf2is3777x0
[2011-07-12 10:54:48 | 000,016,026 | -HS- | C] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\g6lyf2is3777x0
[2011-05-23 18:40:29 | 000,001,104 | ---- | C] () -- C:\WINDOWS\bestplayer.ini
[2011-04-01 11:41:44 | 000,121,344 | ---- | C] () -- C:\WINDOWS\System32\hsfcisp.dll
[2011-01-15 10:44:40 | 000,000,152 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgXr
[2011-01-15 10:44:39 | 000,000,240 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgX
[2011-01-15 10:44:13 | 000,000,488 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX
[2011-01-15 10:20:14 | 000,382,976 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe
[2011-01-15 10:20:09 | 000,478,720 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe
[2011-01-15 10:20:09 | 000,427,520 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
[2010-12-10 12:51:25 | 000,035,842 | ---- | C] () -- C:\WINDOWS\Sysvxd.exe
[2010-04-02 19:09:59 | 000,021,504 | ---- | C] () -- C:\WINDOWS\jestertb.dll
[2010-02-18 11:00:51 | 000,000,013 | ---- | C] () -- C:\WINDOWS\compedia.ini
[2009-07-01 15:48:48 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\drivers\a5e2fab6.sys
[2008-09-19 17:08:19 | 000,574,475 | ---- | C] () -- C:\Documents and Settings\Kamila\Dane aplikacji\NMM-MetaData.db
[2007-11-11 13:41:39 | 000,000,274 | ---- | C] () -- C:\WINDOWS\CO3_0.INI
[2007-06-24 17:56:14 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache
[2007-06-08 19:11:02 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\ESICOMMN.DLL
[2007-06-08 19:11:01 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\BTSetBootKey.exe
[2007-05-23 23:10:08 | 000,000,034 | ---- | C] () -- C:\WINDOWS\winhelp.ini
[2007-05-17 17:12:44 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2007-05-16 20:26:19 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat
[2007-05-16 19:46:16 | 000,000,540 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2007-03-04 16:33:40 | 000,000,154 | ---- | C] () -- C:\WINDOWS\adidsl.ini
[2007-03-04 16:33:40 | 000,000,021 | ---- | C] () -- C:\WINDOWS\Fast800.ini
[2007-03-04 16:33:29 | 001,531,904 | ---- | C] () -- C:\WINDOWS\adiras.exe
[2007-03-04 16:33:27 | 000,127,456 | ---- | C] () -- C:\WINDOWS\System32\ipdetect.exe
[2007-03-04 16:33:23 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\coclassfast.dll
[2007-03-04 16:33:22 | 000,046,892 | ---- | C] () -- C:\WINDOWS\System32\adadix16.dll
[2007-03-04 16:33:20 | 000,022,395 | ---- | C] () -- C:\WINDOWS\System32\drivers\fpga.bin
[2007-03-04 16:33:19 | 000,143,360 | ---- | C] () -- C:\WINDOWS\autoclk.exe
[2007-02-25 18:57:03 | 000,000,047 | ---- | C] () -- C:\WINDOWS\System32\imon1.dat
[2007-02-07 10:13:39 | 000,000,334 | -HS- | C] () -- C:\WINDOWS\System32\mfcee.exe
[2007-02-07 10:12:38 | 000,000,370 | -HS- | C] () -- C:\WINDOWS\System32\mdmd.exe
[2007-02-04 19:29:42 | 000,076,589 | -HS- | C] () -- C:\WINDOWS\System32\srrvc.exe
[2007-02-04 10:03:32 | 000,071,518 | -HS- | C] () -- C:\WINDOWS\System32\mfee.exe
[2007-01-21 23:41:52 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2006-10-12 23:12:43 | 000,000,049 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2006-10-09 13:39:26 | 000,081,984 | ---- | C] () -- C:\WINDOWS\System32\bdod.bin
[2006-10-09 00:22:06 | 000,000,028 | ---- | C] () -- C:\WINDOWS\System32\getfile.dat
[2006-10-08 21:14:58 | 000,000,998 | ---- | C] () -- C:\WINDOWS\adiras.ini
[2006-10-08 21:12:22 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\adinst32.dll
[2006-10-08 12:44:36 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\cpuinf32.dll
[2006-10-08 12:40:00 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2006-10-07 18:50:04 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini
[2006-10-07 18:50:03 | 000,000,462 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2006-10-07 18:50:03 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2006-10-07 18:44:29 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\bridf05a.dat
[2006-10-07 18:42:15 | 000,027,019 | ---- | C] () -- C:\WINDOWS\maxlink.ini
[2006-09-23 09:03:50 | 000,018,944 | ---- | C] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2006-09-17 15:11:53 | 000,000,155 | ---- | C] () -- C:\WINDOWS\winamp.ini
[2006-09-14 12:57:35 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006-09-13 22:15:57 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2006-09-13 22:14:30 | 000,196,160 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2006-09-13 21:41:23 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2006-09-13 21:30:52 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2005-12-07 12:31:00 | 000,202,752 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll
[2005-09-02 14:48:40 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\sockspy.dll
[2002-12-06 17:37:06 | 000,503,808 | ---- | C] () -- C:\WINDOWS\System32\xreglib.dll
[2002-09-29 00:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2002-09-29 00:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2002-09-29 00:00:00 | 000,355,830 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat
[2002-09-29 00:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat
[2002-09-29 00:00:00 | 000,311,740 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2002-09-29 00:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2002-09-29 00:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2002-09-29 00:00:00 | 000,049,712 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat
[2002-09-29 00:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2002-09-29 00:00:00 | 000,040,128 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2002-09-29 00:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat
[2002-09-29 00:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2002-09-29 00:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2002-09-29 00:00:00 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2002-09-29 00:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2002-03-04 10:16:34 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Jpeg32.dll
[color=#E56717]========== LOP Check ==========[/color]
[2007-03-06 22:51:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Downloaded Installations
[2010-10-06 13:28:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2006-10-08 08:51:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MSScanAppDataDir
[2010-10-06 13:35:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nokia
[2006-10-08 22:54:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2006-10-07 18:41:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2007-03-06 20:44:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\DataLayer
[2011-07-26 15:16:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Free Download Manager
[2006-10-08 23:09:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Gadu-Gadu
[2007-01-29 13:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Kazaa Lite
[2007-03-07 10:49:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Leadertech
[2008-09-19 18:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Nokia
[2010-10-18 20:53:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Nokia Multimedia Player
[2007-09-09 23:23:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Opera
[2010-10-18 20:56:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\PC Suite
[2007-01-03 23:54:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\ScanSoft
[2010-01-30 19:54:03 | 000,000,614 | ---- | M] () -- C:\WINDOWS\Tasks\Install_NSS.job
[2009-11-26 17:08:46 | 000,000,382 | ---- | M] () -- C:\WINDOWS\Tasks\NSSstub.job
[color=#E56717]========== Purity Check ==========[/color]OTL logfile created on: 2011-07-26 15:11:11 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Kamila\Pulpit
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
383,48 Mb Total Physical Memory | 114,51 Mb Available Physical Memory | 29,86% Memory free
1,46 Gb Paging File | 1,15 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): C:\pagefile.sys 576 1152H:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 8,26 Gb Total Space | 2,21 Gb Free Space | 26,82% Space Free | Partition Type: NTFS
Drive D: | 1,51 Gb Total Space | 1,05 Gb Free Space | 69,44% Space Free | Partition Type: NTFS
Drive E: | 8,88 Gb Total Space | 2,55 Gb Free Space | 28,75% Space Free | Partition Type: NTFS
Drive H: | 4,01 Gb Total Space | 0,60 Gb Free Space | 14,89% Space Free | Partition Type: FAT32
Drive I: | 1,85 Gb Total Space | 0,05 Gb Free Space | 2,80% Space Free | Partition Type: FAT
Computer Name: SERWER | User Name: Kamila | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
PRC - [2011-04-30 11:35:10 | 001,034,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2011-01-15 10:20:14 | 000,382,976 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe
PRC - [2011-01-15 10:20:08 | 000,478,720 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe
PRC - [2010-06-22 14:22:52 | 000,138,752 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2009-10-27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2007-03-23 13:20:52 | 000,227,328 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
PRC - [2006-08-21 01:24:46 | 002,068,527 | ---- | M] () -- C:\Program Files\Free Download Manager\fdm.exe
PRC - [2005-11-23 20:19:22 | 000,229,376 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe
PRC - [2005-11-23 19:34:50 | 000,315,392 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\vsserv.exe
PRC - [2005-10-11 12:28:08 | 000,360,448 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\bdmcon.exe
PRC - [2005-08-24 14:43:36 | 000,061,440 | ---- | M] () -- C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe
PRC - [2005-06-02 17:16:48 | 000,069,632 | ---- | M] (Softwin) -- C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe
PRC - [2005-04-06 14:09:42 | 000,033,280 | ---- | M] () -- C:\Program Files\Softwin\BitDefender9\bdswitch.exe
PRC - [2005-03-11 18:53:30 | 000,090,112 | ---- | M] (SOFTWIN SRL) -- C:\Program Files\Softwin\BitDefender9\bdoesrv.exe
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - [2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
MOD - [2006-08-25 17:51:13 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
MOD - [2005-11-16 19:18:14 | 000,118,784 | ---- | M] (SOFTWIN S.R.L.) -- C:\Program Files\Softwin\BitDefender9\bdoe.dll
MOD - [2005-06-02 17:16:50 | 000,061,440 | ---- | M] (Softwin) -- C:\WINDOWS\system32\xcomm.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- -- (gusvc)
SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2005-11-23 20:19:22 | 000,229,376 | ---- | M] (SOFTWIN S.R.L.) [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe -- (LIVESRV)
SRV - [2005-11-23 19:34:50 | 000,315,392 | ---- | M] (SOFTWIN S.R.L.) [Auto | Running] -- C:\Program Files\Softwin\BitDefender9\vsserv.exe -- (VSSERV)
SRV - [2005-08-24 14:43:36 | 000,061,440 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe -- (bdss)
SRV - [2005-06-02 17:16:48 | 000,069,632 | ---- | M] (Softwin) [Auto | Running] -- C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe -- (XCOMM)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2005-10-22 10:06:26 | 000,019,034 | R--- | M] (Kingsun Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\KS-959.sys -- (KS-959)
DRV - [2005-07-28 16:42:52 | 000,014,081 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\Softwin\BitDefender9\filespy.sys -- (FILESpy)
DRV - [2005-06-28 19:46:00 | 000,024,859 | ---- | M] (Windigo) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CSRBC01.sys -- (CSRBC01)
DRV - [2005-03-22 04:03:04 | 000,032,910 | R--- | M] (USB Com port.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ser120.sys -- (SER120)
DRV - [2004-09-28 16:18:00 | 000,057,512 | ---- | M] (Windigo Systems) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Btcomm.sys -- (BTCOMM)
DRV - [2004-08-04 08:08:21 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004-08-04 08:03:35 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004-06-07 18:40:32 | 000,029,440 | ---- | M] (Siemens AG) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\actser.sys -- (actser)
DRV - [2004-05-13 14:31:54 | 000,010,479 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\Softwin\BitDefender9\regspy.sys -- (REGSpy)
DRV - [2004-03-02 10:26:58 | 000,050,007 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\adildr.sys -- (ADILOADER) General Purpose USB Driver (adildr.sys)
DRV - [2004-03-02 10:24:16 | 000,127,065 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\adiusbaw.sys -- (adiusbaw)
DRV - [2003-03-18 11:31:00 | 000,015,876 | ---- | M] (Windigo Systems) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BtKrnBdg.sys -- (BTKRNBDG)
DRV - [2002-09-29 00:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2002-09-29 00:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2001-08-17 23:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001-08-17 22:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir)
DRV - [2001-08-17 21:11:06 | 000,066,591 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\el90xbc5.sys -- (EL90XBC)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-839522115-113007714-1957994488-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
[2010-01-08 14:59:36 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kamila\Dane aplikacji\Mozilla\Extensions
[2007-03-11 20:55:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kamila\Dane aplikacji\Mozilla\Firefox\Profiles\l4c0jcmf.default\extensions
O1 HOSTS File: ([2002-09-29 00:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - File not found
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {158A76DA-5B5C-40DB-BCE5-FCDA2FBDF26C} - C:\WINDOWS\system32\hsfcisp.dll ()
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll ()
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - File not found
O3 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..\Toolbar\ShellBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - File not found
O4 - HKLM..\Run: [BDMCon] C:\Program Files\Softwin\BitDefender9\bdmcon.exe (SOFTWIN S.R.L.)
O4 - HKLM..\Run: [BDOESRV] C:\Program Files\Softwin\BitDefender9\bdoesrv.exe (SOFTWIN SRL)
O4 - HKLM..\Run: [BDSwitchAgent] C:\Program Files\Softwin\BitDefender9\bdswitch.exe ()
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe (Nokia)
O4 - HKLM..\Run: [Regedit32] File not found
O4 - HKU\.DEFAULT..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-18..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [ChomikBox] File not found
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [FCfUcyewLU.exe] C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe ()
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [sIBFBKLnsevbHgX] C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe ()
O4 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..\Run: [wuaucldt] File not found
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\DSLMON.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Pobierz w Free Download Manager - C:\Program Files\Free Download Manager\dllink.htm ()
O8 - Extra context menu item: Pobierz wszystkie pliki w Free Download Manager - C:\Program Files\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Pobierz zaznaczone w Free Download Manager - C:\Program Files\Free Download Manager\dlselected.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O15 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\..Trusted Domains: ([]msn in Mój komputer)
O16 - DPF: {0000000A-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/d/4/4/d446e8a9-3a86-4b59-bb19-f5bd11b40367/wmavax.CAB (Reg Error: Key error.)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.29 85.255.112.105
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\IrfanView_Wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\IrfanView_Wallpaper.bmp
O30 - LSA: Authentication Packages - (nwprovau) - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006-09-13 21:36:17 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2005-12-30 16:22:08 | 000,000,133 | ---- | M] () - H:\AUTOEXEC.BAT -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O35 - HKU\S-1-5-21-839522115-113007714-1957994488-1003..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKU\S-1-5-21-839522115-113007714-1957994488-1003\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2011-07-26 14:22:50 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
[2011-07-26 13:51:10 | 000,607,288 | ---- | C] (Duplex Secure Ltd.) -- C:\Documents and Settings\Kamila\Pulpit\SPTDinst-v178-x86.exe
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2011-07-26 14:22:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kamila\Pulpit\OTL.exe
[2011-07-26 14:15:31 | 000,000,240 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgX
[2011-07-26 14:15:16 | 000,427,520 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
[2011-07-26 14:14:56 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-07-26 14:14:49 | 402,182,144 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-26 14:08:32 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\Kamila\Pulpit\sg64y4l4 GMER.exe
[2011-07-26 13:42:10 | 000,607,288 | ---- | M] (Duplex Secure Ltd.) -- C:\Documents and Settings\Kamila\Pulpit\SPTDinst-v178-x86.exe
[2011-07-26 12:32:56 | 000,196,160 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-07-25 19:20:59 | 000,000,488 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX
[2011-07-22 20:04:35 | 000,061,088 | ---- | M] () -- C:\Documents and Settings\Kamila\Pulpit\swinka-pepa_1.gif
[2011-07-20 14:07:04 | 000,016,026 | -HS- | M] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\g6lyf2is3777x0
[2011-07-20 14:07:04 | 000,016,026 | -HS- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\g6lyf2is3777x0
[2011-07-20 14:05:56 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-07-12 11:49:12 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2011-07-26 14:08:31 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\Kamila\Pulpit\sg64y4l4 GMER.exe
[2011-07-22 20:05:06 | 000,061,088 | ---- | C] () -- C:\Documents and Settings\Kamila\Pulpit\swinka-pepa_1.gif
[2011-07-12 10:54:49 | 000,016,026 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\g6lyf2is3777x0
[2011-07-12 10:54:48 | 000,016,026 | -HS- | C] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\g6lyf2is3777x0
[2011-05-23 18:40:29 | 000,001,104 | ---- | C] () -- C:\WINDOWS\bestplayer.ini
[2011-04-01 11:41:44 | 000,121,344 | ---- | C] () -- C:\WINDOWS\System32\hsfcisp.dll
[2011-01-15 10:44:40 | 000,000,152 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgXr
[2011-01-15 10:44:39 | 000,000,240 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\~sIBFBKLnsevbHgX
[2011-01-15 10:44:13 | 000,000,488 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX
[2011-01-15 10:20:14 | 000,382,976 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\sIBFBKLnsevbHgX.exe
[2011-01-15 10:20:09 | 000,478,720 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\FCfUcyewLU.exe
[2011-01-15 10:20:09 | 000,427,520 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
[2010-12-10 12:51:25 | 000,035,842 | ---- | C] () -- C:\WINDOWS\Sysvxd.exe
[2010-04-02 19:09:59 | 000,021,504 | ---- | C] () -- C:\WINDOWS\jestertb.dll
[2010-02-18 11:00:51 | 000,000,013 | ---- | C] () -- C:\WINDOWS\compedia.ini
[2009-07-01 15:48:48 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\drivers\a5e2fab6.sys
[2008-09-19 17:08:19 | 000,574,475 | ---- | C] () -- C:\Documents and Settings\Kamila\Dane aplikacji\NMM-MetaData.db
[2007-11-11 13:41:39 | 000,000,274 | ---- | C] () -- C:\WINDOWS\CO3_0.INI
[2007-06-24 17:56:14 | 000,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache
[2007-06-08 19:11:02 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\ESICOMMN.DLL
[2007-06-08 19:11:01 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\BTSetBootKey.exe
[2007-05-23 23:10:08 | 000,000,034 | ---- | C] () -- C:\WINDOWS\winhelp.ini
[2007-05-17 17:12:44 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2007-05-16 20:26:19 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat
[2007-05-16 19:46:16 | 000,000,540 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2007-03-04 16:33:40 | 000,000,154 | ---- | C] () -- C:\WINDOWS\adidsl.ini
[2007-03-04 16:33:40 | 000,000,021 | ---- | C] () -- C:\WINDOWS\Fast800.ini
[2007-03-04 16:33:29 | 001,531,904 | ---- | C] () -- C:\WINDOWS\adiras.exe
[2007-03-04 16:33:27 | 000,127,456 | ---- | C] () -- C:\WINDOWS\System32\ipdetect.exe
[2007-03-04 16:33:23 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\coclassfast.dll
[2007-03-04 16:33:22 | 000,046,892 | ---- | C] () -- C:\WINDOWS\System32\adadix16.dll
[2007-03-04 16:33:20 | 000,022,395 | ---- | C] () -- C:\WINDOWS\System32\drivers\fpga.bin
[2007-03-04 16:33:19 | 000,143,360 | ---- | C] () -- C:\WINDOWS\autoclk.exe
[2007-02-25 18:57:03 | 000,000,047 | ---- | C] () -- C:\WINDOWS\System32\imon1.dat
[2007-02-07 10:13:39 | 000,000,334 | -HS- | C] () -- C:\WINDOWS\System32\mfcee.exe
[2007-02-07 10:12:38 | 000,000,370 | -HS- | C] () -- C:\WINDOWS\System32\mdmd.exe
[2007-02-04 19:29:42 | 000,076,589 | -HS- | C] () -- C:\WINDOWS\System32\srrvc.exe
[2007-02-04 10:03:32 | 000,071,518 | -HS- | C] () -- C:\WINDOWS\System32\mfee.exe
[2007-01-21 23:41:52 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2006-10-12 23:12:43 | 000,000,049 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2006-10-09 13:39:26 | 000,081,984 | ---- | C] () -- C:\WINDOWS\System32\bdod.bin
[2006-10-09 00:22:06 | 000,000,028 | ---- | C] () -- C:\WINDOWS\System32\getfile.dat
[2006-10-08 21:14:58 | 000,000,998 | ---- | C] () -- C:\WINDOWS\adiras.ini
[2006-10-08 21:12:22 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\adinst32.dll
[2006-10-08 12:44:36 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\cpuinf32.dll
[2006-10-08 12:40:00 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2006-10-07 18:50:04 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini
[2006-10-07 18:50:03 | 000,000,462 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI
[2006-10-07 18:50:03 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI
[2006-10-07 18:44:29 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\bridf05a.dat
[2006-10-07 18:42:15 | 000,027,019 | ---- | C] () -- C:\WINDOWS\maxlink.ini
[2006-09-23 09:03:50 | 000,018,944 | ---- | C] () -- C:\Documents and Settings\Kamila\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2006-09-17 15:11:53 | 000,000,155 | ---- | C] () -- C:\WINDOWS\winamp.ini
[2006-09-14 12:57:35 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006-09-13 22:15:57 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2006-09-13 22:14:30 | 000,196,160 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2006-09-13 21:41:23 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2006-09-13 21:30:52 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2005-12-07 12:31:00 | 000,202,752 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll
[2005-09-02 14:48:40 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\sockspy.dll
[2002-12-06 17:37:06 | 000,503,808 | ---- | C] () -- C:\WINDOWS\System32\xreglib.dll
[2002-09-29 00:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2002-09-29 00:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2002-09-29 00:00:00 | 000,355,830 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat
[2002-09-29 00:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat
[2002-09-29 00:00:00 | 000,311,740 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2002-09-29 00:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2002-09-29 00:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2002-09-29 00:00:00 | 000,049,712 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat
[2002-09-29 00:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2002-09-29 00:00:00 | 000,040,128 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2002-09-29 00:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat
[2002-09-29 00:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2002-09-29 00:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2002-09-29 00:00:00 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2002-09-29 00:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2002-03-04 10:16:34 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Jpeg32.dll
[color=#E56717]========== LOP Check ==========[/color]
[2007-03-06 22:51:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Downloaded Installations
[2010-10-06 13:28:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2006-10-08 08:51:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MSScanAppDataDir
[2010-10-06 13:35:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nokia
[2006-10-08 22:54:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2006-10-07 18:41:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2007-03-06 20:44:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\DataLayer
[2011-07-26 15:16:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Free Download Manager
[2006-10-08 23:09:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Gadu-Gadu
[2007-01-29 13:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Kazaa Lite
[2007-03-07 10:49:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Leadertech
[2008-09-19 18:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Nokia
[2010-10-18 20:53:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Nokia Multimedia Player
[2007-09-09 23:23:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\Opera
[2010-10-18 20:56:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\PC Suite
[2007-01-03 23:54:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kamila\Dane aplikacji\ScanSoft
[2010-01-30 19:54:03 | 000,000,614 | ---- | M] () -- C:\WINDOWS\Tasks\Install_NSS.job
[2009-11-26 17:08:46 | 000,000,382 | ---- | M] () -- C:\WINDOWS\Tasks\NSSstub.job
[color=#E56717]========== Purity Check ==========[/color]
< End of report >
< End of report >
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwFlushKey [0xF458C9A4]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwLoadKey [0xF458CE66]
SSDT \??\C:\Program Files\Softwin\BitDefender9\filespy.sys ZwOpenFile [0xF435EEFD]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwOpenKey [0xF458C8D6]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwQueryKey [0xF458CDB4]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwQueryValueKey [0xF458CE2A]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwSetValueKey [0xF458CAAF]
SSDT \??\C:\Program Files\Softwin\BitDefender9\regspy.sys ZwUnloadKey [0xF458CE96]
---- User code sections - GMER 1.0.15 ----
.text C:\WINDOWS\Explorer.EXE[1400] ntdll.dll!NtCreateFile 7C90D0AE 5 Bytes JMP 01C92150 C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
.text C:\WINDOWS\Explorer.EXE[1400] ntdll.dll!NtOpenFile 7C90D59E 5 Bytes JMP 01C923A0 C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
.text C:\WINDOWS\Explorer.EXE[1400] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 01C926E0 C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
.text C:\WINDOWS\Explorer.EXE[1400] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 01C92C90 C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
.text C:\WINDOWS\Explorer.EXE[1400] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 01C92A80 C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
.text C:\WINDOWS\Explorer.EXE[1400] kernel32.dll!LoadLibraryW 7C80AE5B 5 Bytes JMP 01C92790 C:\Documents and Settings\All Users\Dane aplikacji\CiOCLFAGVr.dll
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Ntfs \Ntfs filespy.sys
AttachedDevice \FileSystem\Fastfat \Fat filespy.sys
---- Files - GMER 1.0.15 ----
File C:\Documents and Settings\Kamila\Ustawienia lokalne\Temporary Internet Files\Content.IE5\01234567\26114[1].jpg 0 bytes
---- EOF - GMER 1.0.15 ----[/code]
- Kod: Zaznacz wszystko