
Mam pendrive na który zostały zgrane zdjęcia.
Jak otwieram go pojawia się skrót zamiast normalnego folderu.
Nie znam się za bardzo za komputerach. Czytała fora i zrobiłam kilka operacji dzięki temu mam takie dane jak poniżej:
- Kod: Zaznacz wszystko
- OTL Extras logfile created on: 2014-11-24 23:24:00 - Run 1
 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Kamil\Downloads
 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
 Internet Explorer (Version = 9.11.9600.17420)
 Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
 3,78 Gb Total Physical Memory | 1,73 Gb Available Physical Memory | 45,61% Memory free
 7,57 Gb Paging File | 5,09 Gb Available in Paging File | 67,26% Paging File free
 Paging file location(s): ?:\pagefile.sys [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
 Drive C: | 274,41 Gb Total Space | 185,41 Gb Free Space | 67,57% Space Free | Partition Type: NTFS
 Drive E: | 14,53 Gb Total Space | 0,11 Gb Free Space | 0,79% Space Free | Partition Type: FAT32
 
 Computer Name: KAMIL-KOMPUTER | User Name: Kamil | Logged in as Administrator.
 Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
 Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
 [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
 
 
 [color=#E56717]========== File Associations ==========[/color]
 
 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
 .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
 .url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
 .cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
 .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
 
 [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
 .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
 [color=#E56717]========== Shell Spawning ==========[/color]
 
 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
 batfile [open] -- "%1" %*
 cmdfile [open] -- "%1" %*
 comfile [open] -- "%1" %*
 exefile [open] -- "%1" %*
 helpfile [open] -- Reg Error: Key error.
 htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
 InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
 InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
 piffile [open] -- "%1" %*
 regfile [merge] -- Reg Error: Key error.
 scrfile [config] -- "%1"
 scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
 scrfile [open] -- "%1" /S
 txtfile [edit] -- Reg Error: Key error.
 Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Folder [explore] -- Reg Error: Value error.
 Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
 batfile [open] -- "%1" %*
 cmdfile [open] -- "%1" %*
 comfile [open] -- "%1" %*
 cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
 exefile [open] -- "%1" %*
 helpfile [open] -- Reg Error: Key error.
 htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
 piffile [open] -- "%1" %*
 regfile [merge] -- Reg Error: Key error.
 scrfile [config] -- "%1"
 scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
 scrfile [open] -- "%1" /S
 txtfile [edit] -- Reg Error: Key error.
 Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Folder [explore] -- Reg Error: Value error.
 Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
 CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
 [color=#E56717]========== Security Center Settings ==========[/color]
 
 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 "cval" = 1
 
 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
 "AntiVirusOverride" = 0
 "AntiSpywareOverride" = 0
 "FirewallOverride" = 0
 
 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
 "DisableMonitoring" = 1
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
 [color=#E56717]========== Firewall Settings ==========[/color]
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
 "EnableFirewall" = 1
 "DisableNotifications" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
 "EnableFirewall" = 1
 "DisableNotifications" = 0
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
 "EnableFirewall" = 1
 "DisableNotifications" = 0
 
 [color=#E56717]========== Authorized Applications List ==========[/color]
 
 
 [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
 "{088B3578-8C76-429A-9A5A-4A315E4BC524}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
 "{1056A6EF-238C-4F43-9988-A27840993DCA}" = lport=139 | protocol=6 | dir=in | app=system |
 "{1C760EBD-527E-4023-AFB8-3347CDFB5051}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
 "{23922D1A-60B8-4B73-84C8-87552B56E38A}" = rport=137 | protocol=17 | dir=out | app=system |
 "{2E0EFF6F-EB4F-4BB6-A22C-2F1FB62B5809}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
 "{2E415BAA-6152-4DEE-BD29-05D8B2BB1602}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
 "{44393930-9629-4282-8BB8-6D8C37C00066}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
 "{506F81F7-D110-4EE9-A979-5465EFFB13B5}" = rport=138 | protocol=17 | dir=out | app=system |
 "{51A9A57F-546D-402C-8CFB-BD7A05FD36D8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
 "{53C809AE-5F5E-48BD-9CD4-4F0A9F578D77}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
 "{55BFE8E3-9E5B-48C8-A6C3-D104A4A050A2}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
 "{629F2609-E2E0-4B9D-826A-697A1ABD70A9}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
 "{6D444D3F-BA6B-4909-AE2B-9427D63B3725}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
 "{6D68421A-03B7-425D-9C89-36B7D1EC8A36}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
 "{76273196-C64B-4749-9555-75E3CF773831}" = lport=2869 | protocol=6 | dir=in | app=system |
 "{7F6985B6-AA98-47C4-B40D-1986407F7BDC}" = lport=445 | protocol=6 | dir=in | app=system |
 "{82DDDD50-0D57-408B-801A-26289926DA17}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
 "{8A4AE491-4D63-409D-8C04-DBDE1EB6A1B1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
 "{8BE70B75-60B2-42BF-BBD8-2BBD2EE4C95B}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
 "{8C1D6045-FA1D-4B32-8C95-34017AAE8EC9}" = rport=445 | protocol=6 | dir=out | app=system |
 "{98915CBB-2FEE-4D51-9202-90DCB4A4CB8F}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
 "{A7CC6D2E-2A9D-437E-BEA2-39D3D5779EA6}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
 "{ACED6340-384B-483F-BD20-8EC23FE6D2A5}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
 "{B12C3FCD-E8CA-4864-9743-5512A80884F0}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
 "{B14D2DB9-0D50-45B7-9ED4-DED1B98F6427}" = rport=10243 | protocol=6 | dir=out | app=system |
 "{B80B2928-EAC5-4C2A-8DDB-BC5F07656364}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
 "{B9247C88-B970-46F0-823A-6BB9FF450A8B}" = rport=139 | protocol=6 | dir=out | app=system |
 "{BB679456-1738-4E93-8A08-F1B160C0802A}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
 "{CBFACD60-EA65-404A-9BFF-E210DDB9D88C}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
 "{D3071459-3933-48E1-A77F-79519368CB86}" = lport=138 | protocol=17 | dir=in | app=system |
 "{D39F494B-54D2-4405-8046-2090DF4C98B0}" = lport=10243 | protocol=6 | dir=in | app=system |
 "{E54981F3-04F2-4F23-825A-8AE23A00A1C7}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
 "{EB3D917B-50DE-4A3C-A3AD-01728E4A1E18}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
 "{EC11885C-4F56-4A8B-AD33-3A7C96BA305C}" = lport=137 | protocol=17 | dir=in | app=system |
 
 [color=#E56717]========== Vista Active Application Exception List ==========[/color]
 
 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
 "{0338DDAE-17BB-4FD7-BB5B-D422A726EC9B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
 "{04E820A6-F662-4639-82BC-3ABA8E5157AB}" = protocol=6 | dir=in | app=c:\program files (x86)\symantec\symantec endpoint protection\12.1.4100.4126.105\bin64\smc.exe |
 "{0980876E-CA08-4A5B-8AC0-1D6454F7C047}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
 "{0E4C355E-6CB6-478B-A3C0-CACC9AB47058}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
 "{14A849DE-6C75-4D8E-BE7B-20526F141A4C}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr8.exe |
 "{1E3328B1-4DEF-43AB-A20C-C8D4DF614989}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
 "{28848CD2-0944-4E23-AB08-227D51D270E2}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
 "{2E36785E-5966-4CFD-8909-EA73F4B93FD3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
 "{3C889998-5D45-48E7-922E-5B3B28835C63}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
 "{3C968B78-C36A-4E27-B49B-A1AF39E3C0D5}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
 "{3E1CC951-3D21-4C6B-B6B5-02677C9B73AC}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
 "{3F206B0F-1B79-4DB3-B878-D706C8694555}" = protocol=17 | dir=in | app=c:\program files (x86)\symantec\symantec endpoint protection\12.1.4100.4126.105\bin64\snac64.exe |
 "{4008BB56-5467-4CBC-8AF9-C77CD04E3A7E}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
 "{480D9CA8-2AF6-43D2-8BA3-FF0D80F52C4D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
 "{60D0543D-A450-4357-B178-3C7DF893B354}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
 "{70A5DA68-8504-44A5-9107-7E7186C8CBC4}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
 "{74B4653B-1CF2-45E9-A282-A17940AA883F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
 "{7A5DEDC6-2586-4520-B93B-3CFDD1C9143E}" = dir=in | app=c:\program files (x86)\cyberlink\media+player10\media+player10.exe |
 "{848765A3-B8D1-4AA0-9152-786B9A0AF529}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
 "{853ED0D5-8026-42AE-97DC-F604F10A5235}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
 "{8A5D07AE-A65B-4892-985A-9B4E06309A35}" = protocol=17 | dir=in | app=c:\program files (x86)\symantec\symantec endpoint protection\12.1.4100.4126.105\bin64\smc.exe |
 "{8DC9C3A0-055E-4AA1-B6F5-8FFBCB8736A8}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
 "{8F2FF8A8-B17E-46F4-B330-C6ABCAC912FB}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
 "{91F8589B-4286-454E-9B52-7D76E0EA2316}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
 "{96894B65-2DC0-4EF5-BA92-9DAD8B24126C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
 "{9D20EFAE-79B5-49B7-AECD-15DB29905962}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
 "{A13A6003-E1DE-4A4E-92E3-F9D87655A3B0}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
 "{AA09E8A4-73C6-4052-85F3-14149066E806}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
 "{AAD694E3-947E-4F58-8B0E-87022460C05C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
 "{BA2F618E-3885-431D-BC90-3EE4D172E051}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
 "{C912DA20-2BE0-4A84-A76C-B08E31ADC28D}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
 "{C9962C7E-94EF-4556-95AD-0A6C57074F9B}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
 "{CA70F860-E4B1-4CFE-A159-BA49BB10CE57}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
 "{CEA306C6-ECD2-40B3-A621-D765E255FA1F}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
 "{D7C1D7D9-4823-4EEC-B30A-16989C029A12}" = protocol=6 | dir=out | app=system |
 "{E0E0568E-FFE3-481C-91B5-5C6CCED3A883}" = protocol=6 | dir=in | app=c:\program files (x86)\symantec\symantec endpoint protection\12.1.4100.4126.105\bin64\snac64.exe |
 "{EDF6BBCA-203F-4F82-9213-59B7AC32C895}" = dir=in | app=c:\program files\canon\dias\cnxdias.exe |
 "{EFC43504-9026-478E-A244-BF68CFBB9549}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
 "{F98F895B-D619-458B-AD5C-6B02C187BD2B}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
 
 [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
 
 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
 "{0738F5F1-8E70-49A6-8692-F5722E1E5A4D}" = Easy Support Center
 "{084B7F4B-13E0-42CE-AE57-B3534B2076AA}" = Symantec Endpoint Protection
 "{0919C44F-F18A-4E3B-A737-03685272CE72}" = Windows Live Remote Service Resources
 "{09536BA1-E498-4CC3-B834-D884A67D7E34}" = Intel® Trusted Connect Service Client
 "{1685AE50-97ED-485B-80F6-145071EE14B0}" = Windows Live Remote Service Resources
 "{17A4FD95-A507-43F1-BC92-D8572AF8340A}" = Windows Live Remote Service Resources
 "{180C8888-50F1-426B-A9DC-AB83A1989C65}" = Windows Live Language Selector
 "{19F09425-3C20-4730-9E2A-FC2E17C9F362}" = Windows Live Remote Service Resources
 "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
 "{1EB2CFC3-E1C5-4FC4-B1F8-549DD6242C67}" = Windows Live Remote Service Resources
 "{206BD2C5-DE08-4577-A0D7-D441A79D5A3A}" = Windows Live Remote Client Resources
 "{22AB5CFD-B3DB-414E-9F99-4D024CCF1DA6}" = Windows Live Remote Client Resources
 "{230D1595-57DA-4933-8C4E-375797EBB7E1}" = Atheros Bluetooth Suite (64)
 "{2426E29F-9E8C-4C0B-97FC-0DB690C1ED98}" = Windows Live Remote Client Resources
 "{27D28586-BEF1-4E06-8787-3B1FC3A41489}" = Internet Manager
 "{27F3F8DE-AC95-4E10-90A6-EBA999DDBCAF}" = Windows Live Remote Service Resources
 "{29CFD07F-4971-41B0-B14D-621ACCC264AC}" = Windows Live Remote Service Resources
 "{2C1A6191-9804-4FDC-AB01-6F9183C91A13}" = Windows Live Remote Client Resources
 "{2F304EF4-0C31-47F4-8557-0641AAE4197C}" = Windows Live Remote Client Resources
 "{34384A2A-2CA2-4446-AB0E-1F360BA2AAC5}" = Windows Live Remote Service Resources
 "{350FD0E7-175A-4F86-84EF-05B77FCD7161}" = Windows Live Remote Service Resources
 "{3921492E-82D2-4180-8124-E347AD2F2DB4}" = Windows Live Remote Client Resources
 "{456FB9B5-AFBC-4761-BBDC-BA6BAFBB818F}" = Windows Live Remote Client Resources
 "{45F1F774-38B4-3CC3-BAAF-051E6D19E48E}" = Microsoft .NET Framework 4.5.1 (PLK)
 "{480F28F0-8BCE-404A-A52E-0DBB7D1CE2EF}" = Windows Live Remote Service Resources
 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
 "{4C2E49C0-9276-4324-841D-774CCCE5DB48}" = Windows Live Remote Client Resources
 "{4C9845D5-9FAD-4C52-B389-CAEF0F216215}" = Windows Live Remote Client Resources
 "{5141AA6E-5FAC-4473-BFFB-BEE69DDC7F2B}" = Windows Live Remote Service Resources
 "{5151E2DB-0748-4FD1-86A2-72E2F94F8BE7}" = Windows Live Remote Service Resources
 "{57F2BD1C-14A3-4785-8E48-2075B96EB2DF}" = Windows Live Remote Service Resources
 "{5E2CD4FB-4538-4831-8176-05D653C3E6D4}" = Windows Live Remote Service Resources
 "{5F44A3A1-5D24-4708-8776-66B42B174C64}" = Windows Live Remote Client Resources
 "{5FCD6EFE-C2E7-4D77-8212-4BA223D8DF8E}" = Windows Live Remote Client Resources
 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
 "{5FEAD3E5-A158-4B66-B92B-0C959D7CF838}" = Windows Live Remote Service Resources
 "{61407251-7F7D-4303-810D-226A04D5CFF3}" = Windows Live Remote Service Resources
 "{641B32DB-8226-4250-86C9-34671162F5D5}" = Windows Live Remote Client Resources
 "{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
 "{692CCE55-9EAE-4F57-A834-092882E7FE0B}" = Windows Live Remote Client Resources
 "{6A2482BC-733A-404A-939A-2D5BC636E6F9}" = Windows Live Remote Service Resources
 "{6C9D3F1D-DBBE-46F9-96A0-726CC72935AF}" = Windows Live Remote Service Resources
 "{6CBFDC3C-CF21-4C02-A6DC-A5A2707FAF55}" = Windows Live Remote Service Resources
 "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
 "{78654366-5889-4A70-90D9-04B00709EEE0}" = Windows Live Remote Client Resources
 "{7AEC844D-448A-455E-A34E-E1032196BBCD}" = Windows Live Remote Service Resources
 "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
 "{811D5159-D798-491F-B9C6-9BDBF6B02D06}" = Windows Live Remote Service Resources
 "{81E20D41-C277-4526-934D-F2380AF91B78}" = iCloud
 "{825C7D3F-D0B3-49D5-A42B-CBB0FBE85E99}" = Windows Live Remote Client Resources
 "{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
 "{850B8072-2EA7-4EDC-B930-7FE569495E76}" = Windows Live Remote Client Resources
 "{8970AE69-40BE-4058-9916-0ACB1B974A3D}" = Windows Live Remote Client Resources
 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
 "{8EB588BD-D398-40D0-ADF7-BE1CEEF7C116}" = Windows Live Remote Client Resources
 "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045" = Microsoft .NET Framework 4.5.1 (Polski)
 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
 "{97A295A7-8840-4B35-BB61-27A8F4512CA3}" = Windows Live Remote Service Resources
 "{9E9C960F-7F47-46D5-A95D-950B354DE2B8}" = Windows Live Remote Service Resources
 "{A060182D-CDBE-4AD6-B9B4-860B435D6CBD}" = Windows Live Remote Client Resources
 "{A508D5A2-3AC1-4594-A718-A663D6D3CF11}" = Windows Live Remote Service Resources
 "{A679FBE4-BA2D-4514-8834-030982C8B31A}" = Windows Live Remote Service Resources
 "{AE91E0F3-C49A-4EF4-8B98-A07BD409EB90}" = Windows Live Remote Service Resources
 "{B0BF8602-EA52-4B0A-A2BD-EDABB0977030}" = Windows Live Remote Client Resources
 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 296.01
 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 296.01
 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 1.7.12
 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.11.1111
 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
 "{B680A663-1A15-47A5-A07C-7DF9A97558B7}" = Windows Live Remote Client Resources
 "{B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}" = Windows Live Remote Client Resources
 "{C504EC13-E122-4939-BD6E-EE5A3BAA5FEC}" = Windows Live Remote Client Resources
 "{C9F05151-95A9-4B9B-B534-1760E2D014A5}" = Windows Live Remote Client Resources
 "{CFF3C688-2198-4BC3-A399-598226949C39}" = Windows Live Remote Client Resources
 "{D1C1556C-7FF3-48A3-A5D6-7126F0FAFB66}" = Windows Live Remote Client Resources
 "{D3E4F422-7E0F-49C7-8B00-F42490D7A385}" = Windows Live Remote Service Resources
 "{D5876F0A-B2E9-4376-B9F5-CD47B7B8D820}" = Windows Live Remote Client Resources
 "{D930AF5C-5193-4616-887D-B974CEFC4970}" = Windows Live Remote Service Resources
 "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
 "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
 "{DBEDAF67-C5A3-4C91-951D-31F3FE63AF3F}" = Windows Live Remote Client Resources
 "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
 "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
 "{ED421F97-E1C3-4E78-9F54-A53888215D58}" = Windows Live Remote Client Resources
 "{EFB20CF5-1A6D-41F3-8895-223346CE6291}" = Windows Live Remote Service Resources
 "{F0793412-6407-4870-9A8C-6FE198A4EB12}" = Windows Live Remote Client Resources
 "{F6CB2C5F-B2C1-4DF1-BF44-39D0DC06FE6F}" = Windows Live Remote Service Resources
 "{FAA3933C-6F0D-4350-B66B-9D7F7031343E}" = Windows Live Remote Service Resources
 "{FAD0EC0B-753B-4A97-AD34-32AC1EC8DB69}" = Windows Live Remote Client Resources
 "KONICA MINOLTA bizhub 500/420/360 Installer" = KONICA MINOLTA bizhub 500/420/360
 "McAfee Security Scan" = McAfee Security Scan Plus
 "SynTPDeinstKey" = Synaptics Pointing Device Driver
 "WinRAR archiver" = WinRAR 5.00 (64-bitowy)
 
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
 "{000F2A10-9CDF-47BF-9CF2-9AC87567B433}" = Windows Live Photo Common
 "{00884F14-05BD-4D8E-90E5-1ABF78948CA4}" = Windows Live Mesh
 "{0119B342-476F-4F5A-B712-144B5CFA781F}" = Windows Live Movie Maker
 "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
 "{03241D8D-2217-42F7-9FCB-6A68D141C14D}" = Windows Live 软件包
 "{039480EE-6933-4845-88B8-77FD0C3D059D}" = Windows Live Mesh
 "{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack
 "{062E4D94-8306-46D5-81B6-45E6AD09C799}" = Windows Live Messenger
 "{0654EA5D-308A-4196-882B-5C09744A5D81}" = Windows Live Photo Common
 "{073F306D-9851-4969-B828-7B6444D07D55}" = Windows Live Photo Common
 "{07E15DDE-CAD9-434D-B24D-35708E3BEA09}" = Windows Live 필수 패키지
 "{09922FFE-D153-44AE-8B60-EA3CB8088F93}" = Windows Live UX Platform Language Pack
 "{0A4C4B29-5A9D-4910-A13C-B920D5758744}" = بريد Windows Live
 "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
 "{0C1931EB-8339-4837-8BEC-75029BF42734}" = Windows Live UX Platform Language Pack
 "{0C975FCC-A06E-4CB6-8F54-A9B52CF37781}" = Windows Liven sähköposti
 "{0D261C88-454B-46FE-B43B-640E621BDA11}" = Windows Live Mail
 "{0EC0B576-90F9-43C3-8FAD-A4902DF4B8F4}" = Galeria de Fotografias do Windows Live
 "{10186F1A-6A14-43DF-A404-F0105D09BB07}" = Windows Live Mail
 "{110668B7-54C6-47C9-BAC4-1CE77F156AF5}" = Windows Live Mesh
 "{11417707-1F72-4279-95A3-01E0B898BBF5}" = Windows Live Mesh
 "{11778DA1-0495-4ED9-972F-F9E0B0367CD5}" = Windows Live Writer
 "{1203DC60-D9BD-44F9-B372-2B8F227E6094}" = Windows Live Temel Parçalar
 "{122800FE-3AAF-4974-9FBD-54B023FA756A}" = „Windows Live Messenger“
 "{128133D3-037A-4C62-B1B7-55666A10587A}" = Windows Live UX Platform Language Pack
 "{12F81925-F3C1-40DB-91F7-777817974319}" = Easy File Share
 "{133D9D67-D475-4407-AC3C-D558087B2453}" = Windows Live Movie Maker
 "{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Samsung Recovery Solution 5
 "{14B441B7-774D-4170-98EA-A13667AE6218}" = Windows Live Writer Resources
 "{168E7302-890A-4138-9109-A225ACAF7AD1}" = Windows Live Photo Common
 "{17283B95-21A8-4996-97DA-547A48DB266F}" = Easy Settings
 "{17835B63-8308-427F-8CF5-D76E0D5FE457}" = Windows Live Essentials
 "{17F99FCE-8F03-4439-860A-25C5A5434E18}" = Windows Live Essentials
 "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
 "{198EA334-8A3F-4CB2-9D61-6C10B8168A6F}" = Windows Live Writer
 "{19ADD3BF-C42B-47DC-81C6-5E9731B668C4}" = „Windows Live Essentials“
 "{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
 "{1A72337E-D126-4BAF-AC89-E6122DB71866}" = Windows Liven valokuvavalikoima
 "{1A82AE99-84D3-486D-BAD6-675982603E14}" = Windows Live Writer
 "{1BA1DBDC-5431-46FD-A66F-A17EB1C439EE}" = Windows Live Messenger
 "{1D6C2068-807F-4B76-A0C2-62ED05656593}" = Windows Live Writer
 "{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}" = Windows Live UX Platform Language Pack
 "{1DDB95A4-FD7B-4517-B3F1-2BCAA96879E6}" = Windows Live Writer Resources
 "{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}" = Bing Bar
 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
 "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite
 "{1FC83EAE-74C8-4C72-8400-2D8E40A017DE}" = Windows Live Writer
 "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
 "{220C7F8C-929D-4F71-9DC7-F7A6823B38E4}" = Windows Live UX Platform Language Pack
 "{249EE21B-8EDD-4F36-8A23-E580E9DBE80A}" = Windows Live Mail
 "{24DF33E0-F924-4D0D-9B96-11F28F0D602D}" = Windows Live UX Platform Language Pack
 "{2511AAD7-82DF-4B97-B0B3-E1B933317010}" = Windows Live Writer Resources
 "{25A381E1-0AB9-4E7A-ACCE-BA49D519CF4E}" = Windows Live Mail
 "{25CD4B12-8CC5-433E-B723-C9CB41FA8C5A}" = Windows Live Writer
 "{26A24AE4-039D-4CA4-87B4-2F03217067FF}" = Java 7 Update 67
 "{26A24AE4-039D-4CA4-87B4-2F83218025F0}" = Java 8 Update 25
 "{26E3C07C-7FF7-4362-9E99-9E49E383CF16}" = Windows Live Writer Resources
 "{2720009D-9566-45A7-A370-0E6DAC313F3F}" = „Windows Live Mail“
 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Client Installation Program
 "{28B9D2D8-4304-483F-AD71-51890A063A74}" = Windows Live Photo Common
 "{29373E24-AC72-424E-8F2A-FB0F9436F21F}" = Windows Live Photo Common
 "{2A07C35B-8384-4DA4-9A95-442B6C89A073}" = Windows Live Essentials
 "{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
 "{2BA5FD10-653F-4CAF-9CCD-F685082A1DC1}" = Windows Live Writer
 "{2C4E06CC-1F04-4C25-8B3C-93A9049EC42C}" = Windows Live UX Platform Language Pack
 "{2C865FB0-051E-4D22-AC62-428E035AEAF0}" = Windows Live Mesh
 "{2CC0789D-D31B-445F-8970-6E058BE39754}" = Windows Live UX Platform Language Pack
 "{2D3E034E-F76B-410A-A169-55755D2637BB}" = Windows Live Mesh
 "{2D49C296-BCCA-4800-BAF6-A0269EBDCF74}" = Windows Live Messenger
 "{2E50E321-4747-4EB5-9ECB-BBC6C3AC0F31}" = Windows Live Writer Resources
 "{2F54E453-8C93-4B3B-936A-233C909E6CAC}" = Windows Live Messenger
 "{3125D9DE-8D7A-4987-95F3-8A42389833D8}" = Windows Live Writer Resources
 "{317D56AC-0DB3-48F5-929A-42032DAC9AD7}" = Windows Live Writer
 "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
 "{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live
 "{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
 "{34FBC7C4-CD31-4D93-A428-0E524EAC4586}" = CyberLink Media+ Player10
 "{368BEC2C-B7A2-4762-9213-2D8465D533CA}" = Windows Live UX Platform Language Pack
 "{370F888E-42A7-4911-9E34-7D74632E17EB}" = Windows Live Photo Common
 "{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack
 "{39F95B0B-A0B7-4FA7-BB6C-197DA2546468}" = Windows Live Mesh
 "{3B72C1E0-26A1-40F6-8516-D50C651DFB3C}" = Windows Live Essentials
 "{3B8F240C-B75E-4A1E-BDCC-6C7F033078A3}" = Windows Live UX Platform Language Pack
 "{3B9A92DA-6374-4872-B646-253F18624D5F}" = Windows Live Writer
 "{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
 "{3F4143A1-9C21-4011-8679-3BC1014C6886}" = Windows Live Mesh
 "{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}" = Norton Online Backup
 "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go
 "{40BFD84C-64CD-42CC-9909-8734C50429C6}" = Windows Live UX Platform Language Pack
 "{410DF0AA-882D-450D-9E1B-F5397ACFFA80}" = Windows Live Essentials
 "{4264C020-850B-4F08-ACBE-98205D9C336C}" = Windows Live Writer
 "{429DF1A0-3610-4E9E-8ACE-3C8AC1BA8FCA}" = Windows Live Photo Gallery
 "{43B43577-2514-4CE0-B14A-7E85C17C0453}" = Windows Live Essentials
 "{442032CB-900C-49C7-B4B4-2B76525DD403}" = Windows Live Photo Common
 "{443B561F-DE1B-4DEF-ADD9-484B684653C7}" = Windows Live Messenger
 "{4444F27C-B1A8-464E-9486-4C37BAB39A09}" = Фотогалерия на Windows Live
 "{458F399F-62AC-4747-99F5-499BBF073D29}" = Windows Live Writer Resources
 "{4664ED39-C80A-48F7-93CD-EBDCAFAB6CC5}" = Windows Live Writer Resources
 "{46872828-6453-4138-BE1C-CE35FBF67978}" = Windows Live Mesh
 "{46ED2B64-85C7-4E1F-920C-A555B21F2E4C}" = NVIDIA PhysX
 "{48294D95-EE9A-4377-8213-44FC4265FB27}" = Windows Live Messenger
 "{488F0347-C4A7-4374-91A7-30818BEDA710}" = Galerie de photos Windows Live
 "{48C0DC5E-820A-44F2-890E-29B68EDD3C78}" = Windows Live Writer
 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
 "{4A04DB63-8F81-4EF4-9D09-61A2057EF419}" = Windows Live Essentials
 "{4B28D47A-5FF0-45F8-8745-11DC2A1C9D0F}" = Windows Live Writer
 "{4B744C85-DBB1-4038-B989-4721EB22C582}" = Windows Live Messenger
 "{4C378B16-46B7-4DA1-A2CE-2EE676F74680}" = Windows Live UX Platform Language Pack
 "{4D141929-141B-4605-95D6-2B8650C1C6DA}" = Windows Live UX Platform Language Pack
 "{4D83F339-5A5C-4B21-8FD3-5D407B981E72}" = Windows Live Photo Common
 "{4F35DF91-F834-41F7-A287-0E377D55C486}" = Windows Live Photo Common
 "{506FC723-8E6C-4417-9CFF-351F99130425}" = Windows Live UX Platform Language Pack
 "{517EAAB9-C35E-4949-B8C2-20C241162BBB}" = Windows Live Pošta
 "{51FFAC89-B6B0-4E6E-B76F-6D4E2E83086A}" = Windows Live 메일
 "{523DF2BB-3A85-4047-9898-29DC8AEB7E69}" = Windows Live UX Platform Language Pack
 "{5275D81E-83AD-4DE4-BC2B-6E6BA3A33244}" = Windows Live Writer Resources
 "{542DA303-FB91-4731-9F37-6E518368D3B9}" = Windows Live Messenger
 "{545192D4-E817-4EAA-834D-623EA50CF268}" = Windows Live UX Platform Language Pack
 "{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
 "{588CE0C0-860B-49A8-AFCF-3C69465B345F}" = Windows Live Mesh
 "{5C2F5C1B-9732-4F81-8FBF-6711627DC508}" = Windows Live Fotogalleri
 "{5CF5B1A5-CBC3-42F0-8533-5A5090665862}" = Windows Live Mesh
 "{5D163056-96B7-440F-A836-89BA5D3CFF2F}" = Windows Live Photo Common
 "{5D273F60-0525-48BA-A5FB-D0CAA4A952AE}" = Windows Live Movie Maker
 "{5D2E7BD7-4B6F-4086-BA8A-E88484750624}" = Windows Live Writer Resources
 "{5DA7D148-D2D2-4C67-8444-2F0F9BD88A06}" = Windows Live Writer
 "{5E627606-53B9-42D1-97E1-D03F6229E248}" = Windows Live UX Platform Language Pack
 "{60C3C026-DB53-4DAB-8B97-7C1241F9A847}" = Windows Live Movie Maker
 "{61506B53-EE02-46CE-8464-3F806947978F}" = Windows Live Mesh
 "{62687B11-58B5-4A18-9BC3-9DF4CE03F194}" = Windows Live Writer Resources
 "{63CF7D0C-B6E7-4EE9-8253-816B613CC437}" = Windows Live Mail
 "{640798A0-A4FB-4C52-AC72-755134767F1E}" = Windows Live Movie Maker
 "{64376910-1860-4CEF-8B34-AA5D205FC5F1}" = Poczta usługi Windows Live
 "{644063FA-ABA3-42AC-A8AC-3EDC0706018B}" = Windows Live Mesh
 "{6491AB99-A11E-41FD-A5E7-32DE8A097B8E}" = Windows Live Essentials
 "{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
 "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
 "{677AAD91-1790-4FC5-B285-0E6A9D65F7DC}" = Windows Live Mail
 "{6807427D-8D68-4D30-AF5B-0B38F8F948C8}" = Windows Live Writer Resources
 "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
 "{69C9C672-400A-43A0-B2DE-9DB38C371282}" = Windows Live Writer
 "{69CAC24D-B1DC-4B97-A1BE-FE21843108FE}" = Windows Live Writer Resources
 "{6A4ABCDC-0A49-4132-944E-01FBCCB3465C}" = Windows Live UX Platform Language Pack
 "{6A67578E-095B-4661-88F7-0B199CEC3371}" = Windows Live Messenger
 "{6ABE832B-A5C7-44C1-B697-3E123B7B4D5B}" = Windows Live Mesh
 "{6B3BAE39-4ED1-4EEB-9769-A3AA0AA58CB4}" = Windows Live Movie Maker
 "{6B556C37-8919-4991-AC34-93D018B9EA49}" = Windows Live Photo Common
 "{6CB36609-E3A6-446C-A3C1-C71E311D2B9C}" = Windows Live Movie Maker
 "{6D1221A9-17BF-4EC0-81F2-27D30EC30701}" = Skype Click to Call
 "{6DCE9C3E-3DB7-4C3C-8B80-BC55781BB7B6}" = Windows Live Writer Resources
 "{6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}" = Windows Live Movie Maker
 "{6E8AFC13-F7B8-41D8-88AB-F1D0CFC56305}" = Windows Live Messenger
 "{6EF2BE2C-3121-48B7-B7A6-C56046B3A588}" = Windows Live Movie Maker
 "{6F37D92B-41AA-44B7-80D2-457ABDE11896}" = Windows Live Photo Common
 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
 "{7115EEBC-DA7B-434C-B81C-EA5B26EA9A94}" = Windows Live Writer Resources
 "{71684DFF-CDED-450C-AF0C-4A1A6438A1A5}" = Windows Live Essentials
 "{71A81378-79D5-40CC-9BDC-380642D1A87F}" = Windows Live Writer
 "{71C95134-F6A9-45E7-B7B3-07CA6012BF2A}" = Windows Live Mesh
 "{7272F232-A7E0-4B2B-A5D2-71B7C5E2379C}" = Windows Live Fotótár
 "{7327080F-6673-421F-BBD9-B618F357EEB3}" = Windows Live UX Platform Language Pack
 "{734104DE-C2BF-412F-BB97-FCCE1EC94229}" = Windows Live Writer Resources
 "{7373E17D-18E0-44A7-AC3A-6A3BFB85D3B3}" = Windows Live Movie Maker
 "{73FC3510-6421-40F7-9503-EDAE4D0CF70D}" = Windows Live Photo Common
 "{7465A996-0FCA-4D2D-A52C-F833B0829B5B}" = Windows Live Movie Maker
 "{7496FD31-E5CB-4AE4-82D3-31099558BF6A}" = Windows Live Mesh
 "{74E8A7F6-575D-42C7-9178-E87D1B3BEFE8}" = Windows Live UX Platform Language Pack
 "{753F0A72-59C3-41CE-A36A-F2DF2079275C}" = Windows Live Mail
 "{77477AEA-5757-47D8-8B33-939F43D82218}" = Windows Live UX Platform Language Pack
 "{7780682A-47C9-480D-90BE-247539342595}" = Windows Live UX Platform Language Pack
 "{77BC9EAF-14C7-4338-9B1C-D5A3E142C0B8}" = Windows Live Photo Common
 "{77DAF553-291A-4471-988C-5677D90DB57E}" = Windows Live Writer Resources
 "{77F69CA1-E53D-4D77-8BA3-FA07606CC851}" = Фотоальбом Windows Live
 "{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
 "{78DAE910-CA72-450E-AD22-772CB1A00678}" = Windows Live Mesh
 "{78DBE8CE-61F6-4D6C-806C-A0FFF65F5E1D}" = Windows Live Messenger
 "{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.18
 "{7A9D47BA-6D50-4087-866F-0800D8B89383}" = Podstawowe programy Windows Live
 "{7ADFA72D-2A9F-4DEC-80A5-2FAA27E23F0F}" = Windows Live Photo Common
 "{7AF8E500-B349-4A77-8265-9854E9A47925}" = Windows Live Movie Maker
 "{7B982EBD-D017-4527-BF1A-FC489EC6B100}" = Windows Live 照片库
 "{7BA19818-F717-4DFB-BC11-FAF17B2B8AEE}" = Pošta Windows Live
 "{7C2A3479-A5A0-412B-B0E6-6D64CBB9B251}" = Windows Live Photo Common
 "{7CB529B2-6C74-4878-9C3F-C29C3C3BBDC6}" = Windows Live Writer Resources
 "{7D0DE76C-874E-4BDE-A204-F4240160693E}" = Windows Live Photo Common
 "{7D1C7B9F-2744-4388-B128-5C75B8BCCC84}" = Windows Live Essentials
 "{7E017923-16F8-4E32-94EF-0A150BD196FE}" = Windows Live Writer
 "{7E90B133-FF47-48BB-91B8-36FC5A548FE9}" = Windows Live Writer Resources
 "{7FF11E53-C002-4F40-8D68-6BE751E5DD62}" = Windows Live Writer Resources
 "{804DE397-F82C-4867-9085-E0AA539A3294}" = Windows Live Writer
 "{80E158EA-7181-40FE-A701-301CE6BE64AB}" = CyberLink MediaShow
 "{80E8C65A-8F70-4585-88A2-ABC54BABD576}" = Windows Live Mesh
 "{827D3E4A-0186-48B7-9801-7D1E9DD40C07}" = Windows Live Essentials
 "{82803FF3-563F-414F-A403-8D4C167D4120}" = Windows Live Mail
 "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
 "{83D2FFB0-E378-49FE-8A53-580CA7B5761F}" = Windows Live Messenger
 "{841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}" = Windows Live Mesh
 "{84267681-BF16-40B6-9564-27BC57D7D71C}" = Windows Live Photo Common
 "{84A411F9-40A5-4CDA-BF46-E09FBB2BC313}" = Windows Live Essentials
 "{85373DA7-834E-4850-8AF5-1D99F7526857}" = Windows Live Photo Common
 "{859D4022-B76D-40DE-96EF-C90CDA263F44}" = Windows Live Writer
 "{861B1145-7762-4794-B40C-3FF0A389DFE6}" = Windows Live Photo Gallery
 "{86E6D3A7-3ADC-44C0-B94E-85D2A9DD36B0}" = Windows Live Writer
 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
 "{885F1BCD-C344-4758-85BD-09640CF449A5}" = Windows Live Photo Gallery
 "{8909CFA8-97BF-4077-AC0F-6925243FFE08}" = Windows Liven asennustyökalu
 "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
 "{8CF5D47D-27B7-49D6-A14F-10550B92749D}" = Windows Live UX Platform Language Pack
 "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
 "{8FF3891F-01B5-4A71-BFCD-20761890471C}" = Windows Live Messenger
 "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
 "{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
 "{903EDF14-4E28-4463-AA5E-4AEE71C0263B}" = Windows Live Movie Maker
 "{924B4D82-1B97-48EB-8F1E-55C4353C22DB}" = Windows Live Mail
 "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
 "{93E464B3-D075-4989-87FD-A828B5C308B1}" = Windows Live Writer Resources
 "{97F77D62-5110-4FA3-A2D3-410B92D31199}" = Windows Live Fotogaléria
 "{99BE7F5D-AB52-4404-9E03-4240FFAA7DE9}" = Windows Live Mesh
 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
 "{9BD262D0-B788-4546-A0A5-F4F56EC3834B}" = Windows Live Photo Common
 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
 "{9DA3F03B-2CEE-4344-838E-117861E61FAF}" = Windows Live Mail
 "{9DB90178-B5B0-45BD-B0A7-D40A6A1DF1CA}" = Windows Live Movie Maker
 "{9E771D5B-C429-4CBC-8730-3EBD9EC99E4C}" = Windows Live Movie Maker
 "{9FAE6E8D-E686-49F5-A574-0A58DFD9580C}" = Windows Live Mail
 "{A0B91308-6666-4249-8FF6-1E11AFD75FE1}" = Windows Live Mail
 "{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
 "{A101F637-2E56-42C0-8E08-F1E9086BFAF3}" = Windows Live Movie Maker
 "{A1668729-C4D2-49AE-877B-FB608362FFF1}" = Windows Live Essentials
 "{A199DB88-E22D-4CE7-90AC-B8BE396D7BF4}" = Windows Live Movie Maker
 "{A3389C72-1782-4BB4-BBAA-33345DE52E3F}" = Windows Live Messenger
 "{A41A708E-3BE6-4561-855D-44027C1CF0F8}" = Windows Live Photo Common
 "{A60B3BF0-954B-42AF-B8D8-2C1D34B613AA}" = Windows Live Photo Gallery
 "{A6C48A9F-694A-4234-B3AA-62590B668927}" = Intel(R) Manageability Engine Firmware Recovery Agent
 "{A7056D45-C63A-4FE4-A69D-FB54EF9B21BB}" = Windows Live Messenger
 "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
 "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
 "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
 "{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
 "{AB0B2113-5B96-4B95-8AD1-44613384911F}" = Windows Live Mesh
 "{AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}" = Windows Live Messenger
 "{AB78C965-5C67-409B-8433-D7B5BDB12073}" = Windows Live Writer Resources
 "{ABD534B7-E951-470E-92C2-CD5AF1735726}" = Windows Live Essentials
 "{ABE2F2AA-7ADC-4717-9573-BF3F83C696AC}" = Windows Live Mail
 "{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) - Polish
 "{ACFBE99B-6981-4513-B17E-A2683CEB9EE5}" = Windows Live Mesh
 "{AD001A69-88CC-4766-B2DB-3C1DFAB9AC72}" = Windows Live Mesh
 "{ADE85655-8D1E-4E4B-BF88-5E312FB2C74F}" = Windows Live Mail
 "{ADFE4AED-7F8E-4658-8D6E-742B15B9F120}" = Windows Live Photo Common
 "{AF01B90A-D25C-4F60-AECD-6EEDF509DC11}" = Windows Live Mesh
 "{B0AD205F-60D0-4084-AFB8-34D9A706D9A8}" = Windows Live Essentials
 "{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie
 "{B1239994-A850-44E2-BED8-E70A21124E16}" = Windows Live Mail
 "{B2BCA478-EC0F-45EE-A9E9-5EABE87EA72D}" = Windows Live Photo Common
 "{B2E90616-C50D-4B89-A40D-92377AC669E5}" = Windows Live Messenger
 "{B33B61FE-701F-425F-98AB-2B85725CBF68}" = Windows Live Photo Common
 "{B3BE54A4-8DFE-4593-8E66-56AB7133B812}" = Windows Live Writer
 "{B4712CB7-27D7-4F61-8805-BCF9BE1CFC4A}" = Windows Live Writer Resources
 "{B618C3BF-5142-4630-81DD-F96864F97C7E}" = Windows Live Essentials
 "{B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137}" = Почта Windows Live
 "{B750B5C2-CC17-4967-905B-29F4EB986131}" = Software Launcher
 "{B7B67AA5-12DA-4F01-918D-B1BF66779D8A}" = Windows Live Writer Resources
 "{B81722D3-0A95-4BDE-AA1A-A2A5D12FCDB2}" = Windows Live Foto-galerija
 "{B9B66F77-9D00-4CA4-BDF1-BBA8236B4DB6}" = Windows Live Writer
 "{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}" = User Guide
 "{BAEE89D5-6E87-4F89-9603-A1C100479181}" = Windows Live Messenger
 "{BD0C3887-64E6-41D8-9A38-BC6F34369352}" = Windows Live Messenger
 "{BD4EBDB5-EB14-4120-BB04-BE0A26C7FB3E}" = Windows Live Photo Common
 "{BD695C2F-3EA0-4DA4-92D5-154072468721}" = Windows Live Fotoğraf Galerisi
 "{BF022D76-9F72-4203-B8FA-6522DC66DFDA}" = Windows Live Movie Maker
 "{BF35168D-F6F9-4202-BA87-86B5E3C9BF7A}" = Windows Live Mesh
 "{BFC47A0B-D487-4DF0-889E-D6D392DF31E0}" = Windows Live Messenger
 "{C00C2A91-6CB3-483F-80B3-2958E29468F1}" = Συλλογή φωτογραφιών του Windows Live
 "{C01FCACE-CC3D-49A2-ADC2-583A49857C58}" = Windows Live Essentials
 "{C08D5964-C42F-48EE-A893-2396F9562A7C}" = Windows Live Mesh
 "{C1C9D199-B4DD-4895-92DD-9A726A2FE341}" = Windows Live Writer
 "{C29FC15D-E84B-4EEC-8505-4DED94414C59}" = Windows Live Writer Resources
 "{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common
 "{C454280F-3C3E-4929-B60E-9E6CED5717E7}" = Windows Live Mail
 "{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
 "{C8421D85-CA0E-4E93-A9A9-B826C4FB88EA}" = Windows Live Mail
 "{C877E454-FA36-409A-A00E-1240CEC61BBD}" = „Windows Live“ fotogalerija
 "{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common
 "{C8A2793D-EFF2-4069-95BF-A28192E39DEB}" = Windows Live Writer
 "{C95A5A77-622F-45CA-9540-84468FCB18B1}" = Windows Live Messenger
 "{C9E1343D-E21E-4508-A1BE-04A089EC137D}" = Windows Live Messenger
 "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = CyberLink PowerDirector
 "{CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431}" = Galeria fotografii usługi Windows Live
 "{CB66242D-12B1-4494-82D2-6F53A7E024A3}" = Galerie foto Windows Live
 "{CB7224D9-6DCA-43F1-8F83-6B1E39A00F92}" = Windows Live Movie Maker
 "{CBFD061C-4B27-4A89-ADD8-210316EEFA11}" = Windows Live Messenger
 "{CD442136-9115-4236-9C14-278F6A9DCB3F}" = Windows Live Movie Maker
 "{CD7CB1E6-267A-408F-877D-B532AD2C882E}" = Windows Live Photo Common
 "{CDC39BF2-9697-4959-B893-A2EE05EF6ACB}" = Windows Live Writer
 "{CE929F09-3853-4180-BD90-30764BFF7136}" = גלריית התמונות של Windows Live
 "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
 "{CF671BFE-6BA3-44E7-98C1-500D9C51D947}" = Windows Live Photo Gallery
 "{CF936193-C584-458C-B793-15FA945621AF}" = Windows Live fotoattēlu galerija
 "{CF9DEFAA-12CD-4D04-AA45-F9F667D21E2E}" = Windows Live Movie Maker
 "{D06F10C5-3EDD-4B29-A3B5-16BBB9A047F8}" = Windows Live Mesh
 "{D07B1FDA-876B-4914-9E9A-309732B6D44F}" = Windows Live Mail
 "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
 "{D27DF849-C8C7-4892-A7F1-E0B381A1BD01}" = Windows Live Writer
 "{D299197D-CDEA-41A6-A363-F532DE4114FD}" = Windows Live UX Platform Language Pack
 "{D31169F2-CD71-4337-B783-3E53F29F4CAD}" = Windows Live Mail
 "{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
 "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
 "{D47C66BE-0EB5-4587-93FE-D1E176C4B25C}" = Windows Live Messenger
 "{D57D43BF-699A-429F-AF8C-AF1867222800}" = Windows Live 사진 갤러리
 "{D588365A-AE39-4F27-BDAE-B4E72C8E900C}" = Windows Live Mail
 "{D6CBB3B2-F510-483D-AE0D-1CF3F43CF1EE}" = Windows Live Writer Resources
 "{D6F25CF9-4E87-43EB-B324-C12BE9CDD668}" = Windows Live UX Platform Language Pack
 "{D987098B-3AD4-4E88-B80E-CF27A32D1955}" = Windows Live Writer Resources
 "{DA29F644-2420-4448-8128-1331BE588999}" = Windows Live Writer
 "{DAEF48AD-89C8-4A93-B1DD-45B7E4FB6071}" = Windows Live Movie Maker
 "{DB1208F4-B2FE-44E9-BFE6-8824DBD7891B}" = Windows Live Movie Maker
 "{DBAA2B17-D596-4195-A169-BA2166B0D69B}" = Windows Live Mail
 "{DCAB6BA7-6533-44BF-9235-E5BF33B7431C}" = Windows Live Writer
 "{DDC1E1BD-7615-4186-89E1-F5F43F9B6491}" = Windows Live Movie Maker
 "{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
 "{DE256D8B-D971-456D-BC02-CB64DA24F115}" = Easy Software Manager
 "{DE7C13A6-E4EA-4296-B0D5-5D7E8AD69501}" = Windows Live Writer
 "{DE8F99FD-2FC7-4C98-AA67-2729FDE1F040}" = Windows Live Writer Resources
 "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
 "{DEF91E0F-D266-453D-B6F2-1BA002B40CB6}" = Windows Live Essentials
 "{DF71ABBB-B834-41C0-BB58-80B0545D754C}" = Windows Live UX Platform Language Pack
 "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
 "{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker
 "{E5377D46-83C5-445A-A1F1-830336B42A10}" = Windows Live Galerija fotografija
 "{E55E0C35-AC3C-4683-BA2F-834348577B80}" = Windows Live Writer
 "{E59969EA-3B5B-4B24-8B94-43842A7FBFE9}" = Fotogalerija Windows Live
 "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
 "{E5DD4723-FE0B-436E-A815-DC23CF902A0B}" = Windows Live UX Platform Language Pack
 "{E62E0550-C098-43A2-B54B-03FB1E634483}" = Windows Live Writer
 "{E727A662-AF9F-4DEE-81C5-F4A1686F3DFC}" = Windows Live Writer Resources
 "{E83DC314-C926-4214-AD58-147691D6FE9F}" = Основные компоненты Windows Live
 "{E8524B28-3BBB-4763-AC83-0E83FE31C350}" = Windows Live Writer
 "{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}" = Galería fotográfica de Windows Live
 "{E9AD2143-26D5-4201-BED1-19DCC03B407D}" = Windows Live Messenger
 "{E9D98402-21AB-4E9F-BF6B-47AF36EF7E97}" = Windows Live Writer Resources
 "{EA777812-4905-4C08-8F6E-13BDCC734609}" = Windows Live UX Platform Language Pack
 "{EAB1BDF2-734A-4D44-9169-7615D185C974}" = Windows Live Mesh
 "{EC20FB81-9B5E-4B97-92A2-8DC52548EFCE}" = Windows Live Mesh
 "{ED16B700-D91F-44B0-867C-7EB5253CA38D}" = Raccolta foto di Windows Live
 "{EDE7A262-DB20-4432-A630-2ACEE186C416}" = Easy Migration
 "{EEF99142-3357-402C-B298-DEC303E12D92}" = Windows Live 影像中心
 "{EF7EAB13-46FC-49DD-8E3C-AAF8A286C5BB}" = Windows Live 程式集
 "{F06DD8D9-9DC8-430C-835C-C9BF21E05CC1}" = E-POP
 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
 "{F0F9505B-3ACF-4158-9311-D0285136AA00}" = Windows Live Essentials
 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
 "{F2979AAA-FDD7-4CB3-93BC-5C24D965D679}" = Windows Live Messenger
 "{F35DC85A-E96B-496B-ABE7-F04192824856}" = Windows Live Messenger
 "{F4BEA6C1-AAC3-4810-AAEA-588E26E0F237}" = Windows Live UX Platform Language Pack
 "{F52C5BE7-3F57-464E-8A54-908402E43CE8}" = Windows Live Writer Resources
 "{F66430D8-08E6-4C96-B9B7-90E66E27D58C}" = Windows Live Mail
 "{F783464C-C7C6-4E9B-AC40-BC90E5414BAF}" = Windows Live Messenger
 "{F7A46527-DF1F-4B0F-9637-98547E189442}" = Windows Live Galeria de Fotos
 "{F7E80BA7-A09D-4DD1-828B-C4A0274D4720}" = Windows Live Mesh
 "{F80E5450-3EF3-4270-B26C-6AC53BEC5E76}" = Windows Live Movie Maker
 "{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials
 "{FA20D803-14E5-4B00-8F03-B519D46F9D4A}" = Windows Live Messenger
 "{FA6CF94F-DACF-4FE7-959D-55C421B91B17}" = Windows Live Mail
 "{FB3D07AE-73D0-47A9-AC12-6F50BF8B6202}" = Windows Live Movie Maker
 "{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
 "{FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69}" = معرض صور Windows Live
 "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) OpenCL CPU Runtime
 "{FCDE76CB-989D-4E32-9739-6A272D2B0ED7}" = Windows Live Mesh
 "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
 "{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
 "{FEEF7F78-5876-438B-B554-C4CC426A4302}" = Windows Live Essentials
 "{FF105207-8423-4E13-B0B1-50753170B245}" = Windows Live Movie Maker
 "{FF3DFA01-1E98-46B4-A065-DA8AD47C9598}" = Windows Live Movie Maker
 "{FF737490-5A2D-4269-9D82-97DB2F7C0B09}" = Windows Live Movie Maker
 "{FFFA0584-8E3D-4195-8283-CCA3AD73C746}" = Windows Live Messenger
 "Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX
 "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin
 "e-ISIS Kwotacja_is1" = e-ISIS Kwotacja 8.2.1
 "ENTERPRISE" = Microsoft Office Enterprise 2007
 "Fotocyfra - odbitki przez Internet_is1" = Fotocyfra - odbitki przez Internet - 1.134
 "Game Console - WildGames" = WildTangent ORB Game Console
 "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
 "InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite
 "InstallShield_{34FBC7C4-CD31-4D93-A428-0E524EAC4586}" = CyberLink Media+ Player10
 "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go
 "InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}" = CyberLink MediaShow
 "InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = CyberLink PowerDirector
 "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.3.1025
 "Mozilla Firefox 33.1 (x86 pl)" = Mozilla Firefox 33.1 (x86 pl)
 "MozillaMaintenanceService" = Mozilla Maintenance Service
 "ODIR_is1" = ODIR
 "PLAY ONLINE" = PLAY ONLINE
 "WildTangent wildgames Master Uninstall" = WildTangent Games
 "WinLiveSuite" = Windows Live 程式集
 "WT085559" = Diner Dash 2 Restaurant Rescue
 "WT085567" = Chuzzle Deluxe
 "WT085580" = John Deere Drive Green
 "WT085581" = Penguins!
 "WT085583" = Polar Golfer
 "WT085587" = Agatha Christie - Death on the Nile
 "WT085597" = Build-a-lot
 "WT085618" = Farm Frenzy
 "WT085622" = Insaniquarium Deluxe
 "WT085663" = Peggle
 "WT085669" = Plants vs. Zombies
 "WT089285" = Zuma Deluxe
 "WT089286" = Bejeweled 2 Deluxe
 
 [color=#E56717]========== Last 20 Event Log Errors ==========[/color]
 
 [ Application Events ]
 Error - 2014-10-10 17:53:13 | Computer Name = Kamil-Komputer | Source = Bonjour Service | ID = 100
 Description = Task Scheduling Error: Continuously busy for more than a second
 
 Error - 2014-10-10 17:53:13 | Computer Name = Kamil-Komputer | Source = Bonjour Service | ID = 100
 Description = Task Scheduling Error: m->NextScheduledEvent 4181
 
 Error - 2014-10-10 17:53:13 | Computer Name = Kamil-Komputer | Source = Bonjour Service | ID = 100
 Description = Task Scheduling Error: m->NextScheduledSPRetry 4181
 
 Error - 2014-10-11 16:03:19 | Computer Name = Kamil-Komputer | Source = WinMgmt | ID = 10
 Description =
 
 Error - 2014-10-12 07:55:16 | Computer Name = Kamil-Komputer | Source = Application Error | ID = 1000
 Description = Nazwa aplikacji powodującej błąd: Plants vs. Zombies-WT.exe, wersja:
 2.2.0.82, sygnatura czasowa: 0x4a64d47f Nazwa modułu powodującego błąd: Plants vs.
 Zombies-WT.exe, wersja: 2.2.0.82, sygnatura czasowa: 0x4a64d47f Kod wyjątku: 0x4000001f
 Przesunięcie
 błędu: 0x0007f4eb Identyfikator procesu powodującego błąd: 0xac8 Godzina uruchomienia
 aplikacji powodującej błąd: 0x01cfe61361bcffc8 Ścieżka aplikacji powodującej błąd:
 C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants vs. Zombies-WT.exe Ścieżka
 modułu powodującego błąd: C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants
 vs. Zombies-WT.exe Identyfikator raportu: a15b0a41-5206-11e4-ad90-e8039af8ec89
 
 Error - 2014-10-12 07:55:45 | Computer Name = Kamil-Komputer | Source = Application Error | ID = 1000
 Description = Nazwa aplikacji powodującej błąd: Plants vs. Zombies-WT.exe, wersja:
 2.2.0.82, sygnatura czasowa: 0x4a64d47f Nazwa modułu powodującego błąd: Plants vs.
 Zombies-WT.exe, wersja: 2.2.0.82, sygnatura czasowa: 0x4a64d47f Kod wyjątku: 0x4000001f
 Przesunięcie
 błędu: 0x0007f4eb Identyfikator procesu powodującego błąd: 0x199c Godzina uruchomienia
 aplikacji powodującej błąd: 0x01cfe61373381acb Ścieżka aplikacji powodującej błąd:
 C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants vs. Zombies-WT.exe Ścieżka
 modułu powodującego błąd: C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants
 vs. Zombies-WT.exe Identyfikator raportu: b28c5a9c-5206-11e4-ad90-e8039af8ec89
 
 Error - 2014-10-12 07:55:52 | Computer Name = Kamil-Komputer | Source = Application Error | ID = 1000
 Description = Nazwa aplikacji powodującej błąd: Plants vs. Zombies-WT.exe, wersja:
 2.2.0.82, sygnatura czasowa: 0x4a64d47f Nazwa modułu powodującego błąd: Plants vs.
 Zombies-WT.exe, wersja: 2.2.0.82, sygnatura czasowa: 0x4a64d47f Kod wyjątku: 0x4000001f
 Przesunięcie
 błędu: 0x0007f4eb Identyfikator procesu powodującego błąd: 0x2248 Godzina uruchomienia
 aplikacji powodującej błąd: 0x01cfe613778fbd6b Ścieżka aplikacji powodującej błąd:
 C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants vs. Zombies-WT.exe Ścieżka
 modułu powodującego błąd: C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants
 vs. Zombies-WT.exe Identyfikator raportu: b6c9ce19-5206-11e4-ad90-e8039af8ec89
 
 Error - 2014-10-12 07:55:59 | Computer Name = Kamil-Komputer | Source = Application Error | ID = 1000
 Description = Nazwa aplikacji powodującej błąd: Plants vs. Zombies-WT.exe, wersja:
 2.2.0.82, sygnatura czasowa: 0x4a64d47f Nazwa modułu powodującego błąd: Plants vs.
 Zombies-WT.exe, wersja: 2.2.0.82, sygnatura czasowa: 0x4a64d47f Kod wyjątku: 0x4000001f
 Przesunięcie
 błędu: 0x0007f4eb Identyfikator procesu powodującego błąd: 0x2224 Godzina uruchomienia
 aplikacji powodującej błąd: 0x01cfe6137bd45509 Ścieżka aplikacji powodującej błąd:
 C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants vs. Zombies-WT.exe Ścieżka
 modułu powodującego błąd: C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants
 vs. Zombies-WT.exe Identyfikator raportu: bb074196-5206-11e4-ad90-e8039af8ec89
 
 Error - 2014-10-12 07:56:45 | Computer Name = Kamil-Komputer | Source = Application Error | ID = 1000
 Description = Nazwa aplikacji powodującej błąd: Plants vs. Zombies-WT.exe, wersja:
 2.2.0.82, sygnatura czasowa: 0x4a64d47f Nazwa modułu powodującego błąd: Plants vs.
 Zombies-WT.exe, wersja: 2.2.0.82, sygnatura czasowa: 0x4a64d47f Kod wyjątku: 0x4000001f
 Przesunięcie
 błędu: 0x0007f4eb Identyfikator procesu powodującego błąd: 0x1834 Godzina uruchomienia
 aplikacji powodującej błąd: 0x01cfe61396e7fc27 Ścieżka aplikacji powodującej błąd:
 C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants vs. Zombies-WT.exe Ścieżka
 modułu powodującego błąd: C:\Program Files (x86)\WildGames\Plants vs. Zombies\Plants
 vs. Zombies-WT.exe Identyfikator raportu: d626cf95-5206-11e4-ad90-e8039af8ec89
 
 Error - 2014-10-12 10:18:40 | Computer Name = Kamil-Komputer | Source = WinMgmt | ID = 10
 Description =
 
 [ OSession Events ]
 Error - 2014-09-30 10:34:19 | Computer Name = Kamil-Komputer | Source = Microsoft Office 12 Sessions | ID = 7001
 Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 94738
 seconds with 8520 seconds of active time. This session ended with a crash.
 
 [ Symantec Endpoint Protection Client Events ]
 Error - 2014-06-05 05:15:45 | Computer Name = Kamil-Komputer | Source = Symantec Endpoint Protection Client | ID = 16711720
 Description = Program Symantec Endpoint Protection wykrył, że na tym komputerze
 brak definicji wirusów. Komputer pozostanie niechroniony przed wirusami do chwili
 pobrania definicji wirusów.Aplikacja napotkała błąd. Aby uzyskać dodatkowe informacje,
 przejdź do: http://www.symantec.com/techsupp/servlet/ProductMessages?product=SAVCORP&version=12.1.4100.4126&language=polish&module=1000&error=0009&build=symantec_ent
 
 Error - 2014-06-05 05:18:03 | Computer Name = Kamil-Komputer | Source = Symantec Endpoint Protection Client | ID = 16711720
 Description = Program Symantec Endpoint Protection wykrył, że na tym komputerze
 brak definicji wirusów. Komputer pozostanie niechroniony przed wirusami do chwili
 pobrania definicji wirusów.Aplikacja napotkała błąd. Aby uzyskać dodatkowe informacje,
 przejdź do: http://www.symantec.com/techsupp/servlet/ProductMessages?product=SAVCORP&version=12.1.4100.4126&language=polish&module=1000&error=0009&build=symantec_ent
 
 Error - 2014-06-05 05:21:03 | Computer Name = Kamil-Komputer | Source = Symantec Endpoint Protection Client | ID = 16711720
 Description = Program Symantec Endpoint Protection wykrył, że na tym komputerze
 brak definicji wirusów. Komputer pozostanie niechroniony przed wirusami do chwili
 pobrania definicji wirusów.Aplikacja napotkała błąd. Aby uzyskać dodatkowe informacje,
 przejdź do: http://www.symantec.com/techsupp/servlet/ProductMessages?product=SAVCORP&version=12.1.4100.4126&language=polish&module=1000&error=0009&build=symantec_ent
 
 Error - 2014-10-16 09:28:26 | Computer Name = Kamil-Komputer | Source = Symantec Endpoint Protection Client | ID = 16711731
 Description = Znaleziono zagrożenie bezpieczeństwa!Trojan.Zbot w pliku: E:\~~XFDWQQOAECZCBTDNTINX.ini
 przez: Automatyczna ochrona skanowań. Działanie: Wyczyszczone poprzez usunięcie.
 Opis działania: Plik został pomyślnie usunięty.
 
 Error - 2014-10-16 11:59:51 | Computer Name = Kamil-Komputer | Source = Symantec Endpoint Protection Client | ID = 16711731
 Description = Znaleziono zagrożenie bezpieczeństwa!Trojan.Zbot w pliku: E:\~~XFDWQQOAECZCBTDNTINX.ini
 przez: Automatyczna ochrona skanowań. Działanie: Wyczyść błąd : Kwarantanna błąd.
 Opis działania: Trwa ponowne uruchamianie
 
 Error - 2014-11-24 14:09:36 | Computer Name = Kamil-Komputer | Source = Symantec Endpoint Protection Client | ID = 16711731
 Description = Znaleziono zagrożenie bezpieczeństwa!Trojan.Zbot w pliku: E:\~~PFBCUJFPSNQHOLPH.ini
 przez: Automatyczna ochrona skanowań. Działanie: Wyczyszczone poprzez usunięcie.
 Opis działania: Plik został pomyślnie usunięty.
 
 Error - 2014-11-24 14:16:37 | Computer Name = Kamil-Komputer | Source = Symantec Endpoint Protection Client | ID = 16711731
 Description = Znaleziono zagrożenie bezpieczeństwa!Trojan.Zbot w pliku: E:\~~PFBCUJFPSNQHOLPH.ini
 przez: Automatyczna ochrona skanowań. Działanie: Wyczyść błąd : Kwarantanna błąd.
 Opis działania: Trwa ponowne uruchamianie
 
 [ System Events ]
 Error - 2014-11-07 13:36:16 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7009
 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
 z usługą PLAY ONLINE. OUC.
 
 Error - 2014-11-07 13:36:16 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7000
 Description = Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego
 błędu: %%1053
 
 Error - 2014-11-08 04:07:26 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7009
 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
 z usługą Internet Manager. OUC.
 
 Error - 2014-11-08 04:07:26 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7000
 Description = Nie można uruchomić usługi Internet Manager. OUC z powodu następującego
 błędu: %%1053
 
 Error - 2014-11-08 04:07:28 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7009
 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
 z usługą PLAY ONLINE. OUC.
 
 Error - 2014-11-08 04:07:28 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7000
 Description = Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego
 błędu: %%1053
 
 Error - 2014-11-08 07:33:25 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7009
 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
 z usługą Internet Manager. OUC.
 
 Error - 2014-11-08 07:33:25 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7000
 Description = Nie można uruchomić usługi Internet Manager. OUC z powodu następującego
 błędu: %%1053
 
 Error - 2014-11-08 07:33:27 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7009
 Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się
 z usługą PLAY ONLINE. OUC.
 
 Error - 2014-11-08 07:33:27 | Computer Name = Kamil-Komputer | Source = Service Control Manager | ID = 7000
 Description = Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego
 błędu: %%1053
 
 
 < End of report >
 Oraz
 OTL logfile created on: 2014-11-24 23:24:00 - Run 1
 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Kamil\Downloads
 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
 Internet Explorer (Version = 9.11.9600.17420)
 Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
 3,78 Gb Total Physical Memory | 1,73 Gb Available Physical Memory | 45,61% Memory free
 7,57 Gb Paging File | 5,09 Gb Available in Paging File | 67,26% Paging File free
 Paging file location(s): ?:\pagefile.sys [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
 Drive C: | 274,41 Gb Total Space | 185,41 Gb Free Space | 67,57% Space Free | Partition Type: NTFS
 Drive E: | 14,53 Gb Total Space | 0,11 Gb Free Space | 0,79% Space Free | Partition Type: FAT32
 
 Computer Name: KAMIL-KOMPUTER | User Name: Kamil | Logged in as Administrator.
 Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
 Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
 [color=#E56717]========== Processes (SafeList) ==========[/color]
 
 PRC - [2014-11-24 23:23:32 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Kamil\Downloads\OTL.exe
 PRC - [2014-11-12 17:01:22 | 001,880,752 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_223.exe
 PRC - [2014-11-12 15:42:36 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
 PRC - [2014-10-01 11:09:30 | 000,968,504 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
 PRC - [2014-10-01 11:09:28 | 001,871,160 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
 PRC - [2014-10-01 11:09:20 | 007,229,752 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
 PRC - [2014-09-12 10:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
 PRC - [2014-08-18 15:26:55 | 000,246,112 | ---- | M] () -- C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe
 PRC - [2014-07-14 17:21:46 | 001,390,176 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
 PRC - [2014-07-14 17:21:06 | 001,767,520 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
 PRC - [2014-03-19 22:51:19 | 000,144,496 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Bin\ccSvcHst.exe
 PRC - [2013-11-20 14:43:26 | 000,059,720 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
 PRC - [2013-11-20 14:43:14 | 000,059,720 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
 PRC - [2013-11-01 08:22:46 | 000,059,720 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
 PRC - [2012-05-09 04:00:38 | 001,113,992 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
 PRC - [2012-05-02 00:03:44 | 002,279,304 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
 PRC - [2012-04-25 05:18:10 | 000,784,264 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
 PRC - [2012-04-24 05:47:30 | 002,797,648 | ---- | M] (Samsung Electronics CO., LTD.) -- C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe
 PRC - [2012-04-16 03:52:52 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
 PRC - [2012-04-06 03:16:24 | 000,069,448 | ---- | M] (ZTE) -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\mcserver.exe
 PRC - [2012-04-06 03:16:22 | 000,221,512 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\dbus-daemon.exe
 PRC - [2012-04-06 03:16:20 | 000,037,192 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\db_daemon.exe
 PRC - [2012-02-25 16:27:00 | 002,458,944 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
 PRC - [2012-02-13 07:02:24 | 000,031,624 | ---- | M] () -- C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
 PRC - [2012-02-13 03:43:12 | 000,158,880 | ---- | M] (Atheros) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
 PRC - [2012-02-08 03:03:36 | 000,363,800 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
 PRC - [2012-02-08 03:03:34 | 000,277,784 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
 PRC - [2012-02-08 03:03:28 | 000,128,280 | ---- | M] () -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
 PRC - [2012-02-08 03:03:16 | 000,161,560 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
 PRC - [2012-01-31 07:56:48 | 001,640,328 | ---- | M] (Samsung Electronics) -- C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
 PRC - [2012-01-28 06:38:52 | 004,466,256 | ---- | M] (SEC) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
 PRC - [2011-02-25 02:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
 PRC - [2010-11-21 04:24:03 | 000,302,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cmd.exe
 PRC - [2010-09-20 04:24:42 | 000,087,336 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
 PRC - [2009-11-02 06:21:26 | 000,103,720 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
 
 
 [color=#E56717]========== Modules (No Company Name) ==========[/color]
 
 MOD - [2014-11-12 17:01:22 | 016,840,880 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll
 MOD - [2014-11-12 15:42:35 | 003,649,648 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
 MOD - [2013-09-14 00:51:02 | 000,087,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll
 MOD - [2013-09-14 00:50:36 | 001,242,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll
 MOD - [2012-04-06 03:16:22 | 000,221,512 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\dbus-daemon.exe
 MOD - [2012-04-06 03:16:20 | 000,037,192 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\db_daemon.exe
 MOD - [2012-04-06 03:15:26 | 000,021,504 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\libctlsvr.dll
 MOD - [2012-04-06 03:14:28 | 000,099,840 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\itapi.dll
 MOD - [2012-04-06 03:14:24 | 000,043,520 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\audio.dll
 MOD - [2012-04-06 03:14:20 | 000,058,880 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\coder.dll
 MOD - [2012-04-06 03:14:18 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\libConfig.dll
 MOD - [2012-04-06 03:14:18 | 000,027,648 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\log.dll
 MOD - [2011-12-26 08:41:00 | 000,090,624 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\CaptureCrash.dll
 MOD - [2011-09-08 11:40:10 | 001,645,056 | ---- | M] () -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\Resdll.dll
 MOD - [2011-05-06 04:03:32 | 000,594,944 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\dbus-1.dll
 MOD - [2011-05-06 04:02:40 | 000,341,504 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\sqlite3.dll
 MOD - [2011-02-16 17:03:20 | 000,203,776 | ---- | M] () -- C:\Program Files (x86)\Samsung\Easy Settings\WinCRT.dll
 MOD - [2010-10-14 10:37:52 | 000,971,776 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\libxml2.dll
 MOD - [2010-10-14 10:37:52 | 000,080,688 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\zlib1.dll
 MOD - [2009-11-02 06:23:36 | 000,013,096 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
 MOD - [2009-11-02 06:20:10 | 000,619,816 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
 MOD - [2007-09-09 16:07:00 | 000,151,552 | ---- | M] () -- C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\libexpat.dll
 MOD - [2006-08-12 04:48:40 | 000,049,152 | ---- | M] () -- C:\Program Files (x86)\Samsung\Easy Settings\HookDllPS2.dll
 
 
 [color=#E56717]========== Services (SafeList) ==========[/color]
 
 SRV:[b]64bit:[/b] - [2014-11-06 04:30:08 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
 SRV:[b]64bit:[/b] - [2014-04-09 14:13:48 | 000,289,256 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe -- (McComponentHostService)
 SRV:[b]64bit:[/b] - [2013-05-27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
 SRV:[b]64bit:[/b] - [2012-02-02 14:29:52 | 000,628,448 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
 SRV:[b]64bit:[/b] - [2011-09-28 13:37:50 | 005,912,240 | ---- | M] (CANON INC.) [Auto | Running] -- C:\Program Files\Canon\DIAS\CnxDIAS.exe -- (Canon Driver Information Assist Service)
 SRV:[b]64bit:[/b] - [2010-09-22 10:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
 SRV - [2014-11-12 17:01:22 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
 SRV - [2014-11-12 15:42:35 | 000,114,288 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
 SRV - [2014-10-01 11:09:30 | 000,968,504 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
 SRV - [2014-10-01 11:09:28 | 001,871,160 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
 SRV - [2014-09-12 10:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
 SRV - [2014-08-18 15:26:55 | 000,246,112 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe -- (PLAY ONLINE. RunOuc)
 SRV - [2014-07-14 17:21:46 | 001,390,176 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
 SRV - [2014-07-14 17:21:06 | 001,767,520 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
 SRV - [2014-03-20 23:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 SRV - [2014-03-19 23:34:02 | 002,379,128 | ---- | M] (Symantec Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Bin64\Smc.exe -- (SmcService)
 SRV - [2014-03-19 23:33:55 | 000,335,216 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Bin64\snac64.exe -- (SNAC)
 SRV - [2014-03-19 22:51:19 | 000,144,496 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Bin\ccSvcHst.exe -- (SepMasterService)
 SRV - [2013-09-11 20:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
 SRV - [2012-02-25 16:27:00 | 002,458,944 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
 SRV - [2012-02-14 02:07:54 | 000,274,200 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
 SRV - [2012-02-13 07:02:24 | 000,031,624 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe -- (SamsungDeviceConfigurationWinService)
 SRV - [2012-02-13 03:43:12 | 000,158,880 | ---- | M] (Atheros) [Auto | Running] -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe -- (ZAtheros Bt&Wlan Coex Agent)
 SRV - [2012-02-08 03:03:36 | 000,363,800 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
 SRV - [2012-02-08 03:03:34 | 000,277,784 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
 SRV - [2012-02-08 03:03:28 | 000,128,280 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe -- (Intel(R)
 SRV - [2012-02-08 03:03:16 | 000,161,560 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
 SRV - [2011-03-01 13:23:36 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
 SRV - [2011-02-25 02:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
 SRV - [2010-06-01 07:31:28 | 002,804,568 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe -- (NOBU)
 
 
 [color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
 DRV:[b]64bit:[/b] - [2014-11-24 22:38:55 | 000,129,752 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
 DRV:[b]64bit:[/b] - [2014-10-01 11:11:26 | 000,063,704 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
 DRV:[b]64bit:[/b] - [2014-10-01 11:11:12 | 000,025,816 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
 DRV:[b]64bit:[/b] - [2014-06-05 10:14:45 | 000,177,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent)
 DRV:[b]64bit:[/b] - [2014-06-05 10:14:18 | 000,153,912 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SysPlant.sys -- (SysPlant)
 DRV:[b]64bit:[/b] - [2014-03-19 22:53:22 | 000,104,472 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\Teefer.sys -- (Teefer2)
 DRV:[b]64bit:[/b] - [2014-03-19 22:53:16 | 000,437,976 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C011004\101E.105\x64\symnets.sys -- (SYMNETS)
 DRV:[b]64bit:[/b] - [2014-03-19 22:53:14 | 001,148,120 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\SEP\0C011004\101E.105\x64\SymEFA64.sys -- (SymEFA)
 DRV:[b]64bit:[/b] - [2014-03-19 22:53:13 | 000,493,656 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SEP\0C011004\101E.105\x64\SymDS64.sys -- (SymDS)
 DRV:[b]64bit:[/b] - [2014-03-19 22:51:41 | 000,225,496 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C011004\101E.105\x64\Ironx64.sys -- (SymIRON)
 DRV:[b]64bit:[/b] - [2014-03-19 22:51:19 | 000,169,048 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C011004\101E.105\x64\ccSetx64.sys -- (ccSettings_{8E5DE20D-303B-4B4F-B828-B4BCF53E295A})
 DRV:[b]64bit:[/b] - [2014-03-19 22:51:00 | 000,867,032 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C011004\101E.105\x64\srtsp64.sys -- (SRTSP)
 DRV:[b]64bit:[/b] - [2014-03-19 22:51:00 | 000,036,952 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C011004\101E.105\x64\srtspx64.sys -- (SRTSPX)
 DRV:[b]64bit:[/b] - [2012-04-16 03:53:12 | 000,031,216 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
 DRV:[b]64bit:[/b] - [2012-03-01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
 DRV:[b]64bit:[/b] - [2012-02-25 16:27:00 | 000,028,992 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
 DRV:[b]64bit:[/b] - [2012-02-13 03:34:12 | 000,550,560 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
 DRV:[b]64bit:[/b] - [2012-02-13 03:33:24 | 000,280,992 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_rcp.sys -- (BTATH_RCP)
 DRV:[b]64bit:[/b] - [2012-02-13 03:33:12 | 000,068,256 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_lwflt.sys -- (BTATH_LWFLT)
 DRV:[b]64bit:[/b] - [2012-02-13 03:32:42 | 000,167,584 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_hcrp.sys -- (BTATH_HCRP)
 DRV:[b]64bit:[/b] - [2012-02-13 03:32:24 | 000,036,000 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_flt.sys -- (AthBTPort)
 DRV:[b]64bit:[/b] - [2012-02-13 03:32:12 | 000,030,368 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_bus.sys -- (BTATH_BUS)
 DRV:[b]64bit:[/b] - [2012-02-13 03:31:54 | 000,110,752 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_avdt.sys -- (btath_avdt)
 DRV:[b]64bit:[/b] - [2012-02-13 03:31:42 | 000,339,616 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_a2dp.sys -- (BTATH_A2DP)
 DRV:[b]64bit:[/b] - [2012-01-05 12:36:54 | 014,652,768 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
 DRV:[b]64bit:[/b] - [2012-01-05 10:53:04 | 000,410,384 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
 DRV:[b]64bit:[/b] - [2011-12-12 11:32:22 | 002,797,056 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
 DRV:[b]64bit:[/b] - [2011-12-05 20:23:08 | 000,331,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
 DRV:[b]64bit:[/b] - [2011-11-29 11:40:32 | 000,568,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
 DRV:[b]64bit:[/b] - [2011-11-23 15:02:20 | 000,648,808 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
 DRV:[b]64bit:[/b] - [2011-11-10 10:04:14 | 000,060,184 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
 DRV:[b]64bit:[/b] - [2011-08-10 11:56:46 | 000,079,872 | ---- | M] (ZTE) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\zte_cdc_acm.sys -- (zte_cdc_acm)
 DRV:[b]64bit:[/b] - [2011-03-11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
 DRV:[b]64bit:[/b] - [2011-03-11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
 DRV:[b]64bit:[/b] - [2010-11-21 04:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
 DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
 DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
 DRV:[b]64bit:[/b] - [2009-12-15 03:46:38 | 000,039,552 | ---- | M] (Bytemobile, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tcpipBM.sys -- (tcpipBM)
 DRV:[b]64bit:[/b] - [2009-12-15 03:46:30 | 000,016,512 | ---- | M] (Bytemobile, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\BMLoad.sys -- (BMLoad)
 DRV:[b]64bit:[/b] - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
 DRV:[b]64bit:[/b] - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
 DRV:[b]64bit:[/b] - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
 DRV:[b]64bit:[/b] - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
 DRV:[b]64bit:[/b] - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
 DRV:[b]64bit:[/b] - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
 DRV:[b]64bit:[/b] - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
 DRV:[b]64bit:[/b] - [2009-05-28 07:38:04 | 000,013,824 | ---- | M] (SAMSUNG ELECTRONICS) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SABI.sys -- (SABI)
 DRV:[b]64bit:[/b] - [2007-05-14 15:06:18 | 000,027,520 | ---- | M] (Research In Motion Limited) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys -- (RimUsb)
 DRV - [2014-10-23 02:32:02 | 000,525,016 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Data\Definitions\IPSDefs\20141121.011\IDSviA64.sys -- (IDSVia64)
 DRV - [2014-09-24 19:05:23 | 002,137,304 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Data\Definitions\VirusDefs\20141123.021\ex64.sys -- (NAVEX15)
 DRV - [2014-09-24 19:05:23 | 000,129,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Data\Definitions\VirusDefs\20141123.021\eng64.sys -- (NAVENG)
 DRV - [2014-09-13 00:46:07 | 001,586,904 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Data\Definitions\BASHDefs\20141119.011\BHDrvx64.sys -- (BHDrvx64)
 DRV - [2014-09-09 12:34:30 | 000,487,216 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
 DRV - [2014-09-09 12:34:30 | 000,142,640 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
 DRV - [2014-03-19 23:34:02 | 000,035,432 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Bin64\SyDvCtrl64.sys -- (SyDvCtrl)
 DRV - [2009-12-15 03:46:38 | 000,039,552 | ---- | M] (Bytemobile, Inc.) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\tcpipBM.sys -- (tcpipBM)
 DRV - [2009-12-15 03:46:30 | 000,016,512 | ---- | M] (Bytemobile, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysWOW64\drivers\BMLoad.sys -- (BMLoad)
 DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
 [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
 [color=#E56717]========== Internet Explorer ==========[/color]
 
 IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
 IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
 IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
 IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=SMSTDF&pc=MASM&src=IE-SearchBox
 
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
 IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
 [color=#E56717]========== FireFox ==========[/color]
 
 FF - prefs.js..browser.startup.homepage: "http://google.pl/"
 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:33.1
 FF - user.js - File not found
 
 FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll File not found
 FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
 FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
 FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
 FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
 FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.25.2: C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
 FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2: C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
 FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
 FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
 FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
 FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Data\IPSFF [2014-06-05 10:15:10 | 000,000,000 | ---D | M]
 FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ff-bmboc@bytemobile.com: C:\Program Files (x86)\T-Mobile\InternetManager_Z\Bin\addon [2010-04-01 13:29:34 | 000,000,000 | ---D | M]
 FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 33.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
 FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 33.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
 FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{e4f94d1e-2f53-401e-8885-681602c0ddd8}: C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04 11:36:14 | 000,010,691 | ---- | M] ()
 FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 33.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
 FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 33.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
 
 [2014-08-05 13:41:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kamil\AppData\Roaming\mozilla\Extensions
 [2014-11-24 22:21:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kamil\AppData\Roaming\mozilla\Firefox\Profiles\tduw6d3g.default\extensions
 [2014-11-12 15:42:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
 [2014-11-12 15:42:37 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
 
 O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
 O2:[b]64bit:[/b] - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
 O2 - BHO: (MSS+ Identifier) - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
 O2 - BHO: (Symantec Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.4100.4126.105\Bin\IPS\IPSBHO.dll (Symantec Corporation)
 O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
 O2 - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
 O2 - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
 O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
 O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
 O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
 O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
 O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
 O4:[b]64bit:[/b] - HKLM..\Run: [AthBtTray] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations)
 O4:[b]64bit:[/b] - HKLM..\Run: [AtherosBtStack] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Communications)
 O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
 O4 - HKCU..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
 O4 - HKCU..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.)
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
 O9:[b]64bit:[/b] - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
 O9 - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
 O9 - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
 O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
 O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
 O13[b]64bit:[/b] - gopher Prefix: missing
 O13 - gopher Prefix: missing
 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 31.11.202.254 37.8.214.2
 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EF567123-38B3-41C7-9246-1C70FAB49008}: DhcpNameServer = 31.11.202.254 37.8.214.2
 O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS - No CLSID value found
 O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
 O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
 O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
 O18:[b]64bit:[/b] - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
 O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
 O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
 O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
 O20:[b]64bit:[/b] - AppInit_DLLs: (C:\windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
 O20 - AppInit_DLLs: (C:\windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
 O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
 O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
 O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
 O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
 O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
 O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
 O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
 O32 - HKLM CDRom: AutoRun - 1
 O32 - AutoRun File - [2014-11-24 10:59:58 | 000,000,000 | -HS- | M] () - E:\autorun.inf -- [ FAT32 ]
 O33 - MountPoints2\{09465031-1ee2-11e4-aacd-e8039adb1380}\Shell - "" = AutoRun
 O33 - MountPoints2\{09465031-1ee2-11e4-aacd-e8039adb1380}\Shell\AutoRun\command - "" = E:\Startme.exe
 O33 - MountPoints2\{1b469664-26e3-11e4-9488-806e6f6e6963}\Shell - "" = AutoRun
 O33 - MountPoints2\{1b469664-26e3-11e4-9488-806e6f6e6963}\Shell\AutoRun\command - "" = E:\AutoRun.exe
 O33 - MountPoints2\{1b4696ca-26e3-11e4-9488-e8039af8ec89}\Shell - "" = AutoRun
 O33 - MountPoints2\{1b4696ca-26e3-11e4-9488-e8039af8ec89}\Shell\AutoRun\command - "" = E:\AutoRun.exe
 O33 - MountPoints2\{d8b7e8be-73ba-11e4-8015-e8039af8ec89}\Shell - "" = AutoRun
 O33 - MountPoints2\{d8b7e8be-73ba-11e4-8015-e8039af8ec89}\Shell\AutoRun\command - "" = E:\windows\Install\Install.exe
 O33 - MountPoints2\{eeb688da-5cea-11e4-8989-e8039af8ec89}\Shell - "" = AutoRun
 O33 - MountPoints2\{eeb688da-5cea-11e4-8989-e8039af8ec89}\Shell\AutoRun\command - "" = E:\AutoRun.exe
 O33 - MountPoints2\{eeb688ea-5cea-11e4-8989-e8039af8ec89}\Shell - "" = AutoRun
 O33 - MountPoints2\{eeb688ea-5cea-11e4-8989-e8039af8ec89}\Shell\AutoRun\command - "" = E:\AutoRun.exe
 O33 - MountPoints2\E\Shell - "" = AutoRun
 O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\AutoRun.exe
 O34 - HKLM BootExecute: (autocheck autochk *)
 O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
 O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
 O35 - HKLM\..comfile [open] -- "%1" %*
 O35 - HKLM\..exefile [open] -- "%1" %*
 O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
 O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
 O37 - HKLM\...com [@ = comfile] -- "%1" %*
 O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
 O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
 O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
 [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
 [2014-11-24 22:54:50 | 000,000,000 | R--D | C] -- C:\Users\Kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
 [2014-11-24 22:38:41 | 000,129,752 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
 [2014-11-24 22:38:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
 [2014-11-24 22:38:14 | 000,093,400 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbamchameleon.sys
 [2014-11-24 22:38:14 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
 [2014-11-24 22:38:14 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
 [2014-11-24 22:38:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
 [2014-11-24 22:38:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
 [2014-11-24 22:37:00 | 000,000,000 | ---D | C] -- C:\Users\Kamil\AppData\Local\Programs
 [2014-11-24 22:24:19 | 000,000,000 | ---D | C] -- C:\AdwCleaner
 [2014-11-24 12:28:23 | 000,000,000 | ---D | C] -- C:\Users\Kamil\AppData\Roaming\InternetManager_Z
 [2014-11-24 12:26:22 | 000,724,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\bmutil.dll
 [2014-11-24 12:26:22 | 000,724,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bmutil.dll
 [2014-11-24 12:26:22 | 000,480,384 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysWow64\bmnet.dll
 [2014-11-24 12:26:22 | 000,480,384 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysNative\bmnet.dll
 [2014-11-24 12:26:22 | 000,308,352 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysWow64\bminstall.dll
 [2014-11-24 12:26:22 | 000,308,352 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysNative\bminstall.dll
 [2014-11-24 12:26:22 | 000,271,488 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysWow64\bmapi.dll
 [2014-11-24 12:26:22 | 000,271,488 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysNative\bmapi.dll
 [2014-11-24 12:26:22 | 000,132,224 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysWow64\bmdumpd.bin
 [2014-11-24 12:26:22 | 000,132,224 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysNative\bmdumpd.bin
 [2014-11-24 12:26:22 | 000,039,552 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysWow64\drivers\tcpipBM.sys
 [2014-11-24 12:26:22 | 000,039,552 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysNative\drivers\tcpipBM.sys
 [2014-11-24 12:26:22 | 000,016,512 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysWow64\drivers\BMLoad.sys
 [2014-11-24 12:26:22 | 000,016,512 | ---- | C] (Bytemobile, Inc.) -- C:\windows\SysNative\drivers\BMLoad.sys
 [2014-11-24 12:26:22 | 000,013,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sporder.dll
 [2014-11-24 12:26:22 | 000,013,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sporder.dll
 [2014-11-24 12:26:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Manager
 [2014-11-24 12:25:46 | 000,079,872 | ---- | C] (ZTE) -- C:\windows\SysNative\drivers\zte_cdc_acm.sys
 [2014-11-24 12:25:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\T-Mobile
 [2014-11-20 22:38:56 | 000,000,000 | ---D | C] -- C:\Users\Kamil\Desktop\Profki
 [2014-11-17 23:28:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
 [2014-11-13 21:52:57 | 000,000,000 | ---D | C] -- C:\Users\Kamil\Desktop\Druki GNB
 [2014-11-13 13:09:36 | 000,000,000 | ---D | C] -- C:\Users\Kamil\AppData\Local\KONICA MINOLTA
 [2014-11-13 13:09:16 | 000,152,064 | ---- | C] (KONICA MINOLTA, INC.) -- C:\windows\KOBDrvAPIW64.EXE
 [2014-11-13 13:09:16 | 000,108,544 | ---- | C] (KONICA MINOLTA, INC.) -- C:\windows\SysNative\KOBDrvAPIIF.DLL
 [2014-11-13 13:09:16 | 000,090,112 | ---- | C] (KONICA MINOLTA, INC.) -- C:\windows\SysWow64\KOBDrvAPIIF.DLL
 [2014-11-12 15:42:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
 [2014-11-12 15:31:23 | 000,304,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\generaltel.dll
 [2014-11-12 15:31:23 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll
 [2014-11-12 15:31:22 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll
 [2014-11-12 15:31:09 | 000,681,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\adtschema.dll
 [2014-11-12 15:31:09 | 000,681,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\adtschema.dll
 [2014-11-12 15:31:08 | 001,460,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll
 [2014-11-12 15:31:08 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msaudite.dll
 [2014-11-12 15:31:08 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msaudite.dll
 [2014-11-12 15:30:30 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ie4uinit.exe
 [2014-11-12 15:30:30 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollector.exe
 [2014-11-12 15:30:30 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll
 [2014-11-12 15:30:30 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwproxystub.dll
 [2014-11-12 15:30:30 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieetwproxystub.dll
 [2014-11-12 15:30:30 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iernonce.dll
 [2014-11-12 15:30:29 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\JavaScriptCollectionAgent.dll
 [2014-11-12 15:30:29 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\JavaScriptCollectionAgent.dll
 [2014-11-12 15:30:29 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iernonce.dll
 [2014-11-12 15:30:26 | 002,051,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl
 [2014-11-12 15:30:26 | 000,708,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieapfltr.dll
 [2014-11-12 15:30:26 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iesetup.dll
 [2014-11-12 15:30:25 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollectorres.dll
 [2014-11-12 15:30:24 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MsSpellCheckingFacility.exe
 [2014-11-12 15:30:24 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
 [2014-11-12 15:30:24 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\jscript9diag.dll
 [2014-11-12 15:30:24 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll
 [2014-11-12 15:30:24 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll
 [2014-11-12 15:30:24 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe
 [2014-11-12 15:30:22 | 000,799,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieapfltr.dll
 [2014-11-12 15:30:22 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iesetup.dll
 [2014-11-12 15:30:21 | 002,124,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl
 [2014-11-12 15:30:20 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmlmedia.dll
 [2014-11-12 15:30:18 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msrating.dll
 [2014-11-12 15:30:18 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe
 [2014-11-12 15:30:18 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MshtmlDac.dll
 [2014-11-12 15:30:17 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll
 [2014-11-12 15:30:17 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll
 [2014-11-12 15:30:15 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmlmedia.dll
 [2014-11-12 15:30:15 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll
 [2014-11-12 15:30:14 | 006,040,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll
 [2014-11-12 15:30:14 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9diag.dll
 [2014-11-12 15:30:13 | 000,580,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll
 [2014-11-12 15:30:12 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MshtmlDac.dll
 [2014-11-12 15:30:11 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msrating.dll
 [2014-11-12 15:26:22 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msxml3r.dll
 [2014-11-12 15:26:22 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msxml3r.dll
 [2014-11-12 15:26:21 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\IMJP10K.DLL
 [2014-11-12 15:26:21 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\IMJP10K.DLL
 [2014-11-12 15:26:20 | 000,500,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AUDIOKSE.dll
 [2014-11-12 15:26:20 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AUDIOKSE.dll
 [2014-11-12 15:26:20 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AudioEng.dll
 [2014-11-12 15:26:20 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AudioSes.dll
 [2014-11-12 15:26:20 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\EncDump.dll
 [2014-11-12 15:26:13 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ncrypt.dll
 [2014-11-12 15:26:01 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\packager.dll
 [2014-11-12 15:26:01 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\packager.dll
 [2014-11-12 15:25:54 | 003,241,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msi.dll
 [2014-11-12 15:25:51 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\oleaut32.dll
 [2014-11-06 14:25:15 | 000,000,000 | ---D | C] -- C:\Users\Kamil\AppData\Local\{873641DB-2F8B-4B03-9F3D-9746491B1BFF}
 [2014-10-28 18:16:47 | 000,000,000 | ---D | C] -- C:\Users\Kamil\AppData\Local\{33256CD0-17C8-423A-834F-CDB9D780A7A2}
 [2014-10-26 10:12:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Internet Manager
 [2014-10-26 10:11:06 | 000,000,000 | ---D | C] -- C:\Users\Kamil\AppData\Roaming\T-Mobile
 
 [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
 [2014-11-24 23:01:16 | 000,000,930 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
 [2014-11-24 22:53:29 | 000,000,828 | ---- | M] () -- C:\windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
 [2014-11-24 22:38:55 | 000,129,752 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
 [2014-11-24 22:38:51 | 000,028,848 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
 [2014-11-24 22:38:51 | 000,028,848 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
 [2014-11-24 22:38:20 | 000,001,066 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
 [2014-11-24 22:30:57 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
 [2014-11-24 22:30:50 | 4063,797,248 | -HS- | M] () -- C:\hiberfil.sys
 [2014-11-24 19:39:00 | 000,000,830 | ---- | M] () -- C:\windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
 [2014-11-24 19:08:39 | 001,669,178 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
 [2014-11-24 19:08:39 | 000,740,346 | ---- | M] () -- C:\windows\SysNative\perfh015.dat
 [2014-11-24 19:08:39 | 000,654,138 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
 [2014-11-24 19:08:39 | 000,155,888 | ---- | M] () -- C:\windows\SysNative\perfc015.dat
 [2014-11-24 19:08:39 | 000,122,010 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
 [2014-11-24 12:27:43 | 000,000,000 | -H-- | M] () -- C:\windows\SysNative\drivers\Msft_Kernel_zte_cdc_acm_01009.Wdf
 [2014-11-24 12:26:25 | 000,001,275 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\mcserver.lnk
 [2014-11-24 12:26:22 | 000,000,519 | ---- | M] () -- C:\windows\SysWow64\bocinstall.ini
 [2014-11-24 12:26:22 | 000,000,519 | ---- | M] () -- C:\windows\SysNative\bocinstall.ini
 [2014-11-24 12:26:20 | 000,002,210 | ---- | M] () -- C:\Users\Public\Desktop\Internet Manager.lnk
 [2014-11-24 12:25:22 | 000,000,118 | ---- | M] () -- C:\windows\SysWow64\SupportApp.bat
 [2014-11-22 21:21:10 | 000,051,630 | ---- | M] () -- C:\Users\Kamil\Desktop\10811260_10202942359869311_1970422520_n.jpg
 [2014-11-22 21:13:57 | 000,069,914 | ---- | M] () -- C:\Users\Kamil\Desktop\10805442_809109922479555_1852118768_n.jpg
 [2014-11-22 20:24:56 | 000,077,116 | ---- | M] () -- C:\Users\Kamil\Desktop\10799485_809109609146253_165333689_n.jpg
 [2014-11-22 20:24:43 | 000,077,116 | ---- | M] () -- C:\Users\Kamil\Desktop\10743709_809109502479597_1778935634_n.jpg
 [2014-11-17 23:27:01 | 000,098,216 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\WindowsAccessBridge-32.dll
 [2014-11-17 23:23:59 | 000,039,627 | ---- | M] () -- C:\Users\Kamil\Desktop\zwrot podatku Dajana.pdf
 [2014-11-16 18:38:18 | 001,938,669 | ---- | M] () -- C:\Users\Kamil\Desktop\Szczepienia obowiązkowe i zalecane.pdf
 [2014-11-14 13:25:10 | 000,402,183 | ---- | M] () -- C:\Users\Kamil\Desktop\Minimalne koszty budowy.pdf
 [2014-11-14 12:46:51 | 000,421,328 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
 [2014-11-12 17:01:22 | 000,701,104 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerApp.exe
 [2014-11-12 17:01:22 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
 [2014-11-07 15:06:51 | 000,027,384 | ---- | M] () -- C:\Users\Kamil\Desktop\Przechwytywanie.JPG
 [2014-11-06 05:03:50 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollectorres.dll
 [2014-11-06 04:47:03 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\iesetup.dll
 [2014-11-06 04:46:12 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll
 [2014-11-06 04:46:12 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieetwproxystub.dll
 [2014-11-06 04:44:28 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\MshtmlDac.dll
 [2014-11-06 04:35:59 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\iernonce.dll
 [2014-11-06 04:31:48 | 000,633,856 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll
 [2014-11-06 04:30:22 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe
 [2014-11-06 04:30:08 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollector.exe
 [2014-11-06 04:29:18 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\jscript9diag.dll
 [2014-11-06 04:23:57 | 006,040,064 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll
 [2014-11-06 04:20:18 | 000,968,704 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\MsSpellCheckingFacility.exe
 [2014-11-06 04:16:23 | 000,490,496 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll
 [2014-11-06 04:13:36 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\iesetup.dll
 [2014-11-06 04:12:44 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieetwproxystub.dll
 [2014-11-06 04:10:58 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\MshtmlDac.dll
 [2014-11-06 04:07:29 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\JavaScriptCollectionAgent.dll
 [2014-11-06 04:03:56 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\iernonce.dll
 [2014-11-06 04:02:05 | 000,199,680 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msrating.dll
 [2014-11-06 04:00:56 | 000,478,208 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll
 [2014-11-06 04:00:51 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll
 [2014-11-06 03:59:36 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe
 [2014-11-06 03:58:38 | 000,620,032 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\jscript9diag.dll
 [2014-11-06 03:57:38 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll
 [2014-11-06 03:42:36 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\JavaScriptCollectionAgent.dll
 [2014-11-06 03:41:26 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
 [2014-11-06 03:41:26 | 000,716,800 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ie4uinit.exe
 [2014-11-06 03:39:39 | 001,359,360 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mshtmlmedia.dll
 [2014-11-06 03:38:25 | 002,124,288 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl
 [2014-11-06 03:37:58 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msrating.dll
 [2014-11-06 03:36:47 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll
 [2014-11-06 03:21:25 | 002,051,072 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl
 [2014-11-06 03:20:37 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmlmedia.dll
 [2014-11-06 02:53:19 | 000,799,232 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieapfltr.dll
 [2014-11-06 02:47:17 | 000,708,096 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieapfltr.dll
 [2014-11-05 18:56:54 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\generaltel.dll
 [2014-11-05 18:56:36 | 000,228,864 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll
 [2014-11-05 18:52:22 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll
 [2014-10-28 22:07:02 | 000,050,057 | ---- | M] () -- C:\Users\Kamil\Desktop\IMG_0003.jpg
 [2014-10-26 10:10:50 | 001,490,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WdfCoInstaller01007.dll
 [2014-10-26 10:10:50 | 001,490,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\WdfCoInstaller01007.dll
 [2014-10-26 10:10:30 | 000,000,000 | -H-- | M] () -- C:\windows\SysNative\drivers\Msft_Kernel_ew_juextctrl_01007.Wdf
 [2014-10-26 10:09:53 | 000,000,000 | -H-- | M] () -- C:\windows\SysNative\drivers\Msft_Kernel_ew_jucdcacm_01007.Wdf
 
 [color=#E56717]========== Files Created - No Company Name ==========[/color]
 
 [2014-11-24 22:38:20 | 000,001,066 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
 [2014-11-24 12:27:43 | 000,000,000 | -H-- | C] () -- C:\windows\SysNative\drivers\Msft_Kernel_zte_cdc_acm_01009.Wdf
 [2014-11-24 12:26:25 | 000,001,275 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\mcserver.lnk
 [2014-11-24 12:26:22 | 000,193,664 | ---- | C] () -- C:\windows\SysWow64\bmsdk.exe
 [2014-11-24 12:26:22 | 000,193,664 | ---- | C] () -- C:\windows\SysNative\bmsdk.exe
 [2014-11-24 12:26:22 | 000,002,960 | ---- | C] () -- C:\windows\SysWow64\boc.ini
 [2014-11-24 12:26:22 | 000,002,960 | ---- | C] () -- C:\windows\SysNative\boc.ini
 [2014-11-24 12:26:22 | 000,000,519 | ---- | C] () -- C:\windows\SysWow64\bocinstall.ini
 [2014-11-24 12:26:22 | 000,000,519 | ---- | C] () -- C:\windows\SysNative\bocinstall.ini
 [2014-11-24 12:26:20 | 000,002,210 | ---- | C] () -- C:\Users\Public\Desktop\Internet Manager.lnk
 [2014-11-24 12:25:22 | 000,000,118 | ---- | C] () -- C:\windows\SysWow64\SupportApp.bat
 [2014-11-22 21:21:09 | 000,051,630 | ---- | C] () -- C:\Users\Kamil\Desktop\10811260_10202942359869311_1970422520_n.jpg
 [2014-11-22 20:25:10 | 000,069,914 | ---- | C] () -- C:\Users\Kamil\Desktop\10805442_809109922479555_1852118768_n.jpg
 [2014-11-22 20:24:56 | 000,077,116 | ---- | C] () -- C:\Users\Kamil\Desktop\10799485_809109609146253_165333689_n.jpg
 [2014-11-22 20:24:42 | 000,077,116 | ---- | C] () -- C:\Users\Kamil\Desktop\10743709_809109502479597_1778935634_n.jpg
 [2014-11-17 23:23:59 | 000,039,627 | ---- | C] () -- C:\Users\Kamil\Desktop\zwrot podatku Dajana.pdf
 [2014-11-16 18:38:15 | 001,938,669 | ---- | C] () -- C:\Users\Kamil\Desktop\Szczepienia obowiązkowe i zalecane.pdf
 [2014-11-14 13:25:10 | 000,402,183 | ---- | C] () -- C:\Users\Kamil\Desktop\Minimalne koszty budowy.pdf
 [2014-11-07 15:06:49 | 000,027,384 | ---- | C] () -- C:\Users\Kamil\Desktop\Przechwytywanie.JPG
 [2014-10-28 22:07:02 | 000,050,057 | ---- | C] () -- C:\Users\Kamil\Desktop\IMG_0003.jpg
 [2014-10-26 10:10:30 | 000,000,000 | -H-- | C] () -- C:\windows\SysNative\drivers\Msft_Kernel_ew_juextctrl_01007.Wdf
 [2014-10-26 10:09:53 | 000,000,000 | -H-- | C] () -- C:\windows\SysNative\drivers\Msft_Kernel_ew_jucdcacm_01007.Wdf
 [2014-10-25 11:11:35 | 000,000,047 | ---- | C] () -- C:\Program Files (x86)\FotoCyfraFotocyfra.url
 [2014-08-05 23:07:51 | 001,641,056 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
 
 [color=#E56717]========== ZeroAccess Check ==========[/color]
 
 [2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
 
 [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
 [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
 [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 "" = C:\Windows\SysNative\shell32.dll -- [2014-06-25 03:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
 "ThreadingModel" = Apartment
 
 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 "" = %SystemRoot%\system32\shell32.dll -- [2014-06-25 02:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
 "ThreadingModel" = Apartment
 
 [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
 "ThreadingModel" = Free
 
 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
 "" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
 "ThreadingModel" = Free
 
 [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
 "ThreadingModel" = Both
 
 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 < End of report >
 Oraz
 # AdwCleaner v4.102 - Log utworzony 24/11/2014 o 22:29:27
 # Aktualizacja 23/11/2014 przez Xplode
 # Database : 2014-11-24.1 [Live]
 # System operacyjny : Windows 7 Home Premium Service Pack 1 (64 bits)
 # Użytkownik : Kamil - KAMIL-KOMPUTER
 # Ścieżka : C:\Users\Kamil\Downloads\AdwCleaner.exe
 # Opcja : Usuń
 ***** [ Usługi ] *****
 ***** [ Pliki / Foldery ] *****
 Folder Usunięto : C:\ProgramData\apn
 Folder Usunięto : C:\Users\Gość\AppData\Local\Temp\apn
 Folder Usunięto : C:\Users\Kamil\AppData\Local\Temp\apn
 Folder Usunięto : C:\Users\Kamil\Documents\Mobogenie
 Plik Usunięto : C:\Users\Gość\AppData\Roaming\Mozilla\Firefox\Profiles\lv56qhvs.default\searchplugins\ask-search.xml
 Plik Usunięto : C:\Users\Kamil\AppData\Roaming\Mozilla\Firefox\Profiles\tduw6d3g.default\searchplugins\ask-search.xml
 ***** [ Zadania ] *****
 ***** [ Skróty ] *****
 ***** [ Rejestr ] *****
 ***** [ Przeglądarki internetowe ] *****
 -\\ Internet Explorer v11.0.9600.17420
 -\\ Mozilla Firefox v33.1 (x86 pl)
 [lv56qhvs.default\prefs.js] - Wpis usunięty : user_pref("browser.startup.homepage", "hxxp://www.search.ask.com/?tpid=ORJ-SPE&o=APN11409&pf=V7&trgb=FF&p2=%5EBBH%5EOSJ000%5EYY%5EPL&gct=hp&apn_ptnrs=BBH&apn_dtid=%5EOSJ000%5EYY%5EPL&apn_dbr=ff_32.0.0[...]
 *************************
 AdwCleaner[R0].txt - [1464 octets] - [24/11/2014 22:24:37]
 AdwCleaner[S0].txt - [1377 octets] - [24/11/2014 22:29:28]
 ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1437 octets] ##########
Będę bardzo wdzięczna za pomoc i wyjaśnienie sprawy blondynce
 
				
 
	