
- Kod: Zaznacz wszystko
DDS (Ver_09-07-30.01) - NTFSx86
Run by Uzytkownik at 11:45:05,54 on 2009-08-14
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_13
Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3070.2446 [GMT 2:00]
AV: System antywirusowy NOD32 2.70 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Creative\Shared Files\CTDevSrv.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\TBPanel.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Eset\nod32kui.exe
C:\PROGRA~1\NEOSTR~1\TaskBarIcon.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Winamp Remote\bin\OrbTray.exe
C:\Program Files\GIGABYTE\GEST\GSvr.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Update\1.2.183.7\GoogleCrashHandler.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\neostrada tp\neostradatp.exe
C:\Program Files\neostrada tp\ComComp.exe
C:\PROGRA~1\NEOSTR~1\Toaster.exe
C:\PROGRA~1\NEOSTR~1\Inactivity.exe
C:\PROGRA~1\NEOSTR~1\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\neostrada tp\Watch.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Uzytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Uzytkownik\Moje dokumenty\Downloads\dds.com
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.neostrada.pl
uURLSearchHooks: Winamp Search Class: {57bca5fa-5dbb-45a2-b558-1755c3f6253b} - c:\program files\winamp toolbar\winamptb.dll
uURLSearchHooks: Search Class: {08c06d61-f1f3-4799-86f8-be1a89362c85} - c:\progra~1\neostr~1\SEARCH~1.DLL
uURLSearchHooks: Free Lunch Design Toolbar: {57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} - c:\program files\free_lunch_design\tbFre1.dll
mURLSearchHooks: Winamp Search Class: {57bca5fa-5dbb-45a2-b558-1755c3f6253b} - c:\program files\winamp toolbar\winamptb.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AskBar BHO: {201f27d4-3704-41d6-89c1-aa35e39143ed} - c:\program files\askbardis\bar\bin\askBar.dll
BHO: Winamp Toolbar Loader: {25cee8ec-5730-41bc-8b58-22ddc8ab8c20} - c:\program files\winamp toolbar\winamptb.dll
BHO: Free Lunch Design Toolbar: {57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} - c:\program files\free_lunch_design\tbFre1.dll
BHO: UrlHelper Class: {74322bf9-df26-493f-b0da-6d2fc5e6429e} - c:\program files\bearshare applications\bearshare mediabar\BearShareIEHelper.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll
BHO: Little Fighter 2 Toolbar Helper: {ae90c38c-97cf-4696-b290-c7973dc9675e} - c:\program files\little fighter 2 toolbar\v3.3.0.1\Little_Fighter_2_Toolbar.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.1.1309.15642\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: IEPluginBHO Class: {f5cc7f02-6f4e-4462-b5b1-394a57fd3e0d} - c:\documents and settings\dzacek\dane aplikacji\nowe gadu-gadu\_userdata\ggbho.1.dll
TB: Winamp Toolbar: {ebf2ba02-9094-4c5a-858b-bb198f3d8de2} - c:\program files\winamp toolbar\winamptb.dll
TB: Ask Toolbar: {3041d03e-fd4b-44e0-b742-2d9b88305f98} - c:\program files\askbardis\bar\bin\askBar.dll
TB: Little Fighter 2 Toolbar: {c3cd744d-2fae-4640-8297-16b5da423104} - c:\program files\little fighter 2 toolbar\v3.3.0.1\Little_Fighter_2_Toolbar.dll
TB: BearShare MediaBar: {d3dee18f-db64-4beb-9ff1-e1f0a5033e4a} - c:\program files\bearshare applications\bearshare mediabar\BearShareMediaBar.dll
TB: Free Lunch Design Toolbar: {57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} - c:\program files\free_lunch_design\tbFre1.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll
uRun: [Gadu-Gadu] "c:\program files\gadu-gadu\gg.exe" /tray
uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [Orb] "c:\program files\winamp remote\bin\OrbTray.exe" /background
uRun: [Skype] "c:\documents and settings\uzytkownik\pulpit\programy\Skype.exe" /nosplash /minimized
uRun: [ares] "c:\program files\ares\Ares.exe" -h
uRun: [Google Update] "c:\documents and settings\uzytkownik\ustawienia lokalne\dane aplikacji\google\update\GoogleUpdate.exe" /c
uRun: [EA Core] "c:\program files\electronic arts\eadm\Core.exe" -silent
uRun: [ALLUpdate] "c:\program files\allplayer\ALLUpdate.exe" "sleep"
mRun: [GEST] c:\program files\gigabyte\gest\RUN.exe
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [JMB36X IDE Setup] c:\windows\raidtool\xInsIDE.exe
mRun: [36X Raid Configurer] c:\windows\system32\xRaidSetup.exe boot
mRun: [Gainward] c:\windows\TBPanel.exe /A
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [NeroFilterCheck] c:\program files\common files\ahead\lib\NeroCheck.exe
mRun: [nod32kui] "c:\program files\eset\nod32kui.exe" /WAITSERVICE
mRun: [WOOWATCH] c:\progra~1\neostr~1\Watch.exe
mRun: [WOOTASKBARICON] c:\progra~1\neostr~1\GestMaj.exe TaskBarIcon.exe
mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb09.exe
mRun: [HPHUPD05] c:\program files\hewlett-packard\{45b6180b-dcab-4093-8ee8-6164457517f0}\hphupd05.exe
mRun: [HP Component Manager] "c:\program files\hp\hpcoretech\hpcmpmgr.exe"
mRun: [HP Software Update] "c:\program files\hewlett-packard\hp software update\HPWuSchd.exe"
mRun: [HPHmon05] c:\windows\system32\hphmon05.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [DAEMON Tools] "c:\program files\daemon tools\daemon.exe" -lang 1033
mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\quickcam\Quickcam.exe" /hide
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [WinampAgent] "c:\program files\winamp\winampa.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\uzytko~1\menust~1\programy\autost~1\pictur~1.lnk - c:\program files\sony\sony picture utility\pmbcore\SPUVolumeWatcher.exe
StartupFolder: c:\docume~1\uzytko~1\menust~1\programy\autost~1\secuni~1.lnk - c:\program files\secunia\psi (rc3)\psi.exe
StartupFolder: c:\docume~1\uzytko~1\menust~1\programy\autost~1\xfire.lnk - c:\program files\xfire\Xfire.exe
IE: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZRfox000
IE: &Winamp Search - c:\documents and settings\all users\dane aplikacji\winamp toolbar\ietoolbar\resources\en-us\local\search.html
IE: E&ksportuj do programu Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: { - c:\program files\messenger\msmsgs.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
LSP: imon.dll
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} - hxxps://www.battlefieldheroes.com/static/updater/BFHUpdater_4.0.21.0.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-1_4_0_03-win.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
TCP: {A86C9111-B39B-4AAC-9EE7-AA8F6E0EB329} = 194.204.159.1 217.98.63.164
Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - c:\program files\hp\hpcoretech\comp\hpuiprot.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\uzytko~1\daneap~1\mozilla\firefox\profiles\y224xwty.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1708250&SearchSource=3&q=
FF - prefs.js: browser.search.selectedEngine - Free_Lunch_Design Customized Web Search
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1708250&q=
FF - component: c:\documents and settings\uzytkownik\dane aplikacji\mozilla\firefox\profiles\y224xwty.default\extensions\{57cc715d-37ca-44e4-9ec2-8c2cbddb25ec}\components\FFExternalAlert.dll
FF - plugin: c:\documents and settings\uzytkownik\dane aplikacji\mozilla\firefox\profiles\y224xwty.default\extensions\battlefieldheroespatcher@ea.com\platform\winnt_x86-msvc\plugins\npBFHUpdater.dll
FF - plugin: c:\progra~1\sonyon~1\npsoe.dll
---- FIREFOX POLICIES ----
FF - user.js: general.useragent.extra.zencast - Creative ZENcast v2.00.13);user_pref(general.useragent.extra.zencast, c:\program files\mozilla firefox\greprefs\all.js - pref("media.enforce_same_site_origin", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.cache_size", 51200);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.ogg.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.wave.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.autoplay.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.urlbar.autocomplete.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.mailnews.*.wholeText", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.storage.default_quota", 5120);
c:\program files\mozilla firefox\greprefs\all.js - pref("content.sink.event_probe_rate", 3);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.http.prompt-temp-redirect", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.dpi", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.devPixelsPerPx", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("gestures.enable_single_finger_input", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.max_chrome_script_run_time", 0);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.tcp.sendbuffer", 131072);
c:\program files\mozilla firefox\greprefs\all.js - pref("geo.enabled", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.remember_cert_checkbox_default_setting", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-cjkt", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.blocklist.level", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.restrict.typed", "~");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.default.behavior", 0);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.sanitize.migrateFx3Prefs", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.ssl_override_behavior", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("security.alternate_certificate_error_page", "certerror");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.autostart", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.dont_prompt_on_enter", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("geo.wifi.uri", "https://www.google.com/loc/json");
============= SERVICES / DRIVERS ===============
R1 nod32drv;nod32drv;c:\windows\system32\drivers\nod32drv.sys [2008-6-23 15424]
R2 NOD32krn;NOD32 Kernel Service;c:\program files\eset\nod32krn.exe [2008-6-23 552064]
R3 e4usbaw;USB ADSL2 WAN Adapter;c:\windows\system32\drivers\e4usbaw.sys [2008-6-25 116992]
R3 GEST Service;GEST Service for program management.;c:\program files\gigabyte\gest\gsvr.exe [2008-6-20 55816]
S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys);c:\windows\system32\drivers\e4ldr.sys [2008-6-25 64000]
S3 CrystalSysInfo;CrystalSysInfo;\??\c:\documents and settings\dzacek\pulpit\media coder\mediacoder\sysinfo.sys --> c:\documents and settings\dzacek\pulpit\media coder\mediacoder\SysInfo.sys [?]
S3 gel90xne;gel90xne;\??\c:\docume~1\dzacek\ustawi~1\temp\gel90xne.sys --> c:\docume~1\dzacek\ustawi~1\temp\gel90xne.sys [?]
S3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2008-6-16 7808]
=============== Created Last 30 ================
2009-08-14 11:31 <DIR> -cd----- c:\windows\system32\dllcache\cache
2009-08-14 11:18 <DIR> a-dshr-- C:\cmdcons
2009-08-14 11:16 216,064 a------- c:\windows\PEV.exe
2009-08-14 11:16 161,792 a------- c:\windows\SWREG.exe
2009-08-14 11:16 98,816 a------- c:\windows\sed.exe
2009-08-13 23:04 <DIR> --d----- c:\windows\system32\NtmsData
2009-08-13 18:26 136,192 -c------ c:\windows\system32\dllcache\msv1_0.dll
2009-08-13 18:26 92,928 -c------ c:\windows\system32\dllcache\ksecdd.sys
2009-08-13 18:26 54,272 -c------ c:\windows\system32\dllcache\wdigest.dll
2009-08-13 18:26 301,568 -c------ c:\windows\system32\dllcache\kerberos.dll
2009-08-12 12:09 128,512 -c------ c:\windows\system32\dllcache\dhtmled.ocx
2009-08-12 12:09 1,315,328 -c------ c:\windows\system32\dllcache\msoe.dll
2009-07-30 20:40 <DIR> --d----- c:\docume~1\alluse~1\daneap~1\231F4
2009-07-22 18:04 <DIR> --d----- c:\windows\system32\drivers\NSS
2009-07-22 18:04 <DIR> --d----- c:\docume~1\alluse~1\daneap~1\Norton
2009-07-22 18:03 <DIR> --d----- c:\docume~1\alluse~1\daneap~1\Symantec
2009-07-22 18:03 <DIR> --d----- c:\program files\NortonInstaller
2009-07-22 18:03 <DIR> --d----- c:\docume~1\alluse~1\daneap~1\NortonInstaller
2009-07-17 21:04 58,880 -c------ c:\windows\system32\dllcache\atl.dll
2009-07-16 15:15 189,488 a------- c:\windows\system32\PnkBstrB.xtr
==================== Find3M ====================
2009-08-14 11:45 16,608 a------- c:\windows\gdrv.sys
2009-08-13 23:02 458,022 a------- c:\windows\system32\perfh015.dat
2009-08-13 23:02 79,408 a------- c:\windows\system32\perfc015.dat
2009-08-05 11:01 205,312 a------- c:\windows\system32\mswebdvd.dll
2009-08-03 14:08 189,488 a------- c:\windows\system32\PnkBstrB.exe
2009-08-03 12:58 139,016 a------- c:\windows\system32\drivers\PnkBstrK.sys
2009-07-17 21:04 58,880 a------- c:\windows\system32\atl.dll
2009-07-16 15:11 75,064 a------- c:\windows\system32\PnkBstrA.exe
2009-07-16 15:02 139,152 a------- c:\docume~1\uzytko~1\daneap~1\PnkBstrK.sys
2009-07-16 15:02 794,408 a------- c:\windows\system32\pbsvc.exe
2009-07-13 23:43 286,208 a------- c:\windows\system32\wmpdxm.dll
2009-06-29 17:59 827,392 a------- c:\windows\system32\wininet.dll
2009-06-29 17:59 78,336 a------- c:\windows\system32\ieencode.dll
2009-06-29 17:59 17,408 a------- c:\windows\system32\corpol.dll
2009-06-25 10:27 732,160 a------- c:\windows\system32\lsasrv.dll
2009-06-25 10:27 301,568 a------- c:\windows\system32\kerberos.dll
2009-06-25 10:27 147,456 a------- c:\windows\system32\schannel.dll
2009-06-25 10:27 136,192 a------- c:\windows\system32\msv1_0.dll
2009-06-25 10:27 56,832 a------- c:\windows\system32\secur32.dll
2009-06-25 10:27 54,272 a------- c:\windows\system32\wdigest.dll
2009-06-24 13:18 92,928 a------- c:\windows\system32\drivers\ksecdd.sys
2009-06-16 16:40 119,808 a------- c:\windows\system32\t2embed.dll
2009-06-16 16:40 81,920 a------- c:\windows\system32\fontsub.dll
2009-06-15 12:45 78,336 a------- c:\windows\system32\telnet.exe
2009-06-10 16:15 84,992 a------- c:\windows\system32\avifil32.dll
2009-06-10 09:22 2,066,432 a------- c:\windows\system32\mstscax.dll
2009-06-10 08:16 132,096 a------- c:\windows\system32\wkssvc.dll
2009-06-03 21:11 1,294,848 a------- c:\windows\system32\quartz.dll
2009-05-19 19:26 421,888 a------- c:\windows\NEXON_EU_DownloaderUpdater.exe
2009-05-19 18:43 86,016 a------- c:\windows\system32\OpenAL32.dll
2009-05-17 12:06 410,984 a------- c:\windows\system32\deploytk.dll
2003-02-03 14:50 877,568 a------- c:\program files\ICEGUI.DLL
2003-02-02 15:24 4,010 a------- c:\program files\ICEINFO.TXT
2003-01-23 23:48 17,982 a------- c:\program files\ICEEX.INF
2003-01-23 23:48 16,498 a------- c:\program files\ICE.INF
2003-01-03 14:37 35,840 a------- c:\program files\IWIN32FR.SFX
2003-01-03 14:36 31,744 a------- c:\program files\AWIN32US.SFX
2003-01-03 14:35 32,256 a------- c:\program files\AWIN32FR.SFX
2003-01-03 14:34 35,840 a------- c:\program files\IWIN32US.SFX
2003-01-02 15:53 75,264 a------- c:\program files\ICER409.DLL
2002-07-05 18:16 79,480 a------- c:\program files\ICE409.HLP
2002-07-05 18:16 3,389 a------- c:\program files\ICE409.CNT
2002-06-05 23:31 62,678 a------- c:\program files\ICECONF.EXE
2002-06-05 23:31 26,112 a------- c:\program files\WCEX86FR.SFX
2002-06-05 23:31 21,120 a------- c:\program files\WCEX86US.SFX
2002-05-18 20:24 7,979 a------- c:\program files\UNARJFEX.INF
2002-05-18 20:24 6,388 a------- c:\program files\UNARJF.INF
2001-07-28 13:09 37 a------- c:\program files\ICEOWS.ICE
2000-08-20 18:11 22 a------- c:\program files\ICEOWS.ZIP
1998-12-19 16:33 25,088 a------- c:\program files\WCESHUS.SFX
1998-12-19 16:33 28,160 a------- c:\program files\WCEMPSUS.SFX
1998-12-19 16:30 25,088 a------- c:\program files\WCESHFR.SFX
1998-12-19 16:30 28,160 a------- c:\program files\WCEMPSFR.SFX
============= FINISH: 11:45:10,50 ===============