
Od jakiegoś czasu stale brakowało mi miejsca na dysku C.
Miałem 500 mega, a ostatnio było tylko 200, chwilami spada do kilku kilobajtów.
Poza tym dzisiaj, firefox cały czas zużywa 99% zasobów procesora.
Uruchamiałem go kilka razy i za każdym było tak samo.
Proszę o sprawdzenie logów:
GMER
- Kod: Zaznacz wszystko
GMER 1.0.15.15640 - http://www.gmer.net
Rootkit scan 2011-06-09 14:25:43
Windows 5.1.2600 Dodatek Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-4 SAMSUNG_SP2001H rev.QT100-60
Running: k4imme35.exe; Driver: C:\DOCUME~1\x\USTAWI~1\Temp\pxtdipow.sys
---- Kernel code sections - GMER 1.0.15 ----
.text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xF7DBF340, 0xFFF3F, 0xF8000020]
.text C:\WINDOWS\System32\nv4_disp.dll section is writeable [0xBF012300, 0x234A20, 0xF8000020]
pnidata C:\WINDOWS\System32\DRIVERS\secdrv.sys unknown last section [0xEC603F00, 0x24000, 0x48000000]
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Ntfs \Ntfs InCDrec.SYS (InCD File System Recognizer/Nero AG)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume1 snapman.sys (Acronis Snapshot API/Acronis)
AttachedDevice \Driver\Ftdisk \Device\HarddiskVolume2 snapman.sys (Acronis Snapshot API/Acronis)
AttachedDevice \FileSystem\Fastfat \Fat InCDrec.SYS (InCD File System Recognizer/Nero AG)
---- EOF - GMER 1.0.15 ----
OTL
- Kod: Zaznacz wszystko
OTL logfile created on: 2011-06-09 14:26:45 - Run 1
OTL by OldTimer - Version 3.2.23.0 Folder = C:\Documents and Settings\x\Pulpit
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
511,49 Mb Total Physical Memory | 297,83 Mb Available Physical Memory | 58,23% Memory free
1,22 Gb Paging File | 1,08 Gb Available in Paging File | 88,44% Paging File free
Paging file location(s): D:\pagefile.sys 766 1500 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 4,31 Gb Total Space | 0,10 Gb Free Space | 2,35% Space Free | Partition Type: NTFS
Drive D: | 14,36 Gb Total Space | 2,78 Gb Free Space | 19,34% Space Free | Partition Type: FAT32
Computer Name: XXX | User Name: x | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2011-06-09 13:52:21 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Pulpit\OTL.exe
PRC - [2006-07-07 17:15:12 | 000,348,160 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFTVFM\WFWIZ.exe
PRC - [2005-04-30 06:52:00 | 000,836,132 | ---- | M] (C. Ghisler & Co.) -- D:\DO NAGRANIA\Pozostałe\WC\TC PowerPack\TOTALCMD.EXE
PRC - [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2001-10-26 18:29:52 | 000,024,064 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\devldr32.exe
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - [2011-06-09 13:52:21 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Pulpit\OTL.exe
MOD - [2004-08-04 00:42:34 | 001,050,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - [2006-11-10 16:18:42 | 000,859,136 | ---- | M] (Nero AG) [Disabled | Stopped] -- D:\Programy\nero\Nero 7\InCD\InCDsrv.exe -- (InCDsrv)
SRV - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2009-01-16 19:42:27 | 000,114,048 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\snapman.sys -- (snapman)
DRV - [2008-05-16 12:33:12 | 000,089,256 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016bus.sys -- (s0016bus) Sony Ericsson Device 0016 driver (WDM)
DRV - [2006-11-10 16:17:50 | 000,033,792 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDRm.sys -- (incdrm)
DRV - [2006-11-10 16:16:34 | 000,031,360 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDPass.sys -- (InCDPass)
DRV - [2006-11-10 16:15:44 | 000,102,912 | ---- | M] (Nero AG) [File_System | Disabled | Running] -- C:\WINDOWS\system32\drivers\InCDfs.sys -- (InCDfs)
DRV - [2005-10-09 05:26:40 | 000,019,034 | R--- | M] (Kingsun Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\KS-959.sys -- (KS-959)
DRV - [2005-08-16 12:23:10 | 000,038,422 | ---- | M] (Generic) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\StMp3Rec.sys -- (StMp3Rec)
DRV - [2005-06-28 09:24:00 | 000,163,584 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cx88vid.sys -- (CX23880)
DRV - [2005-06-28 09:22:00 | 000,030,976 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cx88tune.sys -- (CXTUNE)
DRV - [2005-06-28 09:21:00 | 000,009,728 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\cxavxbar.sys -- (CXAVXBAR)
DRV - [2005-01-06 16:55:38 | 000,009,446 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Running] -- C:\Program Files\WinFast\WFTVFM\WFIOCTL.sys -- (WFIOCTL)
DRV - [2004-08-03 23:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004-08-03 23:04:34 | 000,012,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usb8023.sys -- (USB_RNDIS)
DRV - [2004-08-03 23:03:36 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004-03-08 12:55:50 | 000,013,567 | ---- | M] (B.H.A Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\CDRBSDRV.SYS -- (cdrbsdrv)
DRV - [2001-10-26 17:48:56 | 000,009,600 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NtApm.sys -- (NtApm)
DRV - [2001-08-17 23:54:18 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2001-08-17 23:54:18 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2001-08-17 23:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001-08-17 21:19:34 | 000,036,480 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sfmanm.sys -- (sfman) Sterownik Creative SoundFont Manager (WDM)
DRV - [2001-08-17 21:19:28 | 000,006,912 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctlfacem.sys -- (emu10k1) Sterownik Creative Interface Manager (WDM)
DRV - [2001-08-17 21:19:26 | 000,283,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emu10k1m.sys -- (emu10k) Creative SB Live! (WDM)
DRV - [2001-08-17 21:19:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk)
DRV - [2001-08-17 21:11:06 | 000,066,591 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\el90xbc5.sys -- (el90xbc)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-842925246-436374069-1957994488-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
IE - HKU\S-1-5-21-842925246-436374069-1957994488-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.8
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Components: D:\Programs\Mozilla Firefox\components [2011-05-11 17:41:36 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Plugins: D:\Programs\Mozilla Firefox\plugins [2011-05-11 17:41:36 | 000,000,000 | ---D | M]
[2011-05-11 17:41:51 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\x\Dane aplikacji\Mozilla\Extensions
[2011-06-08 19:31:37 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\x\Dane aplikacji\Mozilla\Firefox\Profiles\mkx6so57.default\extensions
[2011-05-24 11:54:08 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\x\Dane aplikacji\Mozilla\Firefox\Profiles\mkx6so57.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010-07-21 18:59:42 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011-05-11 17:47:18 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMS\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
O1 HOSTS File: ([2010-07-21 22:28:20 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFTVFM\WFWIZ.exe (Leadtek Research Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-842925246-436374069-1957994488-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-842925246-436374069-1957994488-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3
O7 - HKU\S-1-5-21-842925246-436374069-1957994488-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.172.224.160 89.228.7.228
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\x\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\x\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007-05-04 22:42:04 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010-10-12 16:09:25 | 000,000,000 | RHSD | M] - C:\Autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-10-12 16:09:26 | 000,000,000 | RHSD | M] - D:\Autorun.inf -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2011-06-09 13:52:21 | 000,580,096 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\x\Pulpit\OTL.exe
[2011-06-07 10:49:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\x\Recent
[2011-05-30 10:15:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\x\Dane aplikacji\vlc
[2011-05-21 09:54:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware
[2011-05-19 17:01:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\x\Ustawienia lokalne\Dane aplikacji\Intel
[2011-05-19 16:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Intel
[2011-05-19 16:50:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2011-05-19 16:50:24 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2011-05-19 16:50:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2011-05-19 16:50:09 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2011-05-19 16:49:09 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpssvcs.dll
[2011-05-19 16:49:09 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll
[2011-05-19 16:49:09 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe
[2011-05-19 16:49:09 | 000,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll
[2011-05-19 16:49:09 | 000,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prntvpt.dll
[2011-05-19 16:49:09 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll
[2011-05-19 16:47:13 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2011-05-19 16:46:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2011-05-19 16:44:33 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 6.0
[2011-05-17 15:08:46 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011-05-11 17:48:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011-05-11 17:47:15 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2011-05-11 17:47:14 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2011-05-11 17:47:14 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2011-05-11 17:47:14 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2011-05-11 17:46:46 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2011-05-11 17:09:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\MozBackup
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2011-06-09 14:12:01 | 000,001,116 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-436374069-1957994488-1003UA.job
[2011-06-09 14:12:01 | 000,001,064 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-436374069-1957994488-1003Core.job
[2011-06-09 13:52:21 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\x\Pulpit\OTL.exe
[2011-06-09 13:52:02 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\x\Pulpit\k4imme35.exe
[2011-06-09 13:32:33 | 000,002,048 | ---- | M] () -- C:\WINDOWS\bootstat.dat
[2011-06-09 13:32:31 | 536,403,968 | -HS- | M] () -- C:\hiberfil.sys
[2011-06-07 18:16:56 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011-06-07 10:50:29 | 000,004,536 | ---- | M] () -- C:\Documents and Settings\x\Moje dokumenty\cc_20110607_105028.reg
[2011-06-06 10:34:40 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011-06-02 11:26:46 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011-05-31 20:55:49 | 000,000,552 | ---- | M] () -- C:\WINDOWS\System32\d3d8caps.dat
[2011-05-30 09:04:35 | 000,139,776 | ---- | M] () -- C:\Documents and Settings\x\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-05-29 15:51:20 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-05-28 08:54:04 | 000,004,614 | ---- | M] () -- C:\Documents and Settings\x\Moje dokumenty\cc_20110528_085401.reg
[2011-05-20 19:45:10 | 000,259,840 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-05-20 10:19:32 | 000,000,264 | ---- | M] () -- C:\boot.ini
[2011-05-19 17:48:18 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2011-05-19 17:48:18 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011-05-19 17:48:18 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2011-05-19 17:48:18 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011-05-19 17:16:34 | 000,073,999 | -H-- | M] () -- C:\treeinfo.wc
[2011-05-11 17:46:55 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deployJava1.dll
[2011-05-11 17:46:55 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2011-05-11 17:46:55 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2011-05-11 17:46:55 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2011-05-11 17:46:55 | 000,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2011-06-09 13:52:01 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\x\Pulpit\k4imme35.exe
[2011-06-07 10:50:29 | 000,004,536 | ---- | C] () -- C:\Documents and Settings\x\Moje dokumenty\cc_20110607_105028.reg
[2011-05-31 20:55:49 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2011-05-28 08:54:02 | 000,004,614 | ---- | C] () -- C:\Documents and Settings\x\Moje dokumenty\cc_20110528_085401.reg
[2011-05-23 08:50:50 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011-05-19 16:51:41 | 000,542,096 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2011-05-11 17:58:49 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader X.lnk
[2011-05-10 20:02:32 | 000,001,116 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-436374069-1957994488-1003UA.job
[2011-05-10 20:02:28 | 000,001,064 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-436374069-1957994488-1003Core.job
[2010-11-13 15:38:47 | 000,000,619 | ---- | C] () -- C:\WINDOWS\eReg.dat
[2009-05-07 16:22:03 | 000,225,280 | ---- | C] () -- C:\WINDOWS\6610phmgunin.exe
[2009-02-20 17:35:48 | 000,001,084 | ---- | C] () -- C:\WINDOWS\checkip.dat
[2009-02-15 11:32:25 | 000,122,880 | ---- | C] () -- C:\WINDOWS\UnGins.exe
[2009-02-06 18:52:05 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Pool.INI
[2009-02-05 21:35:02 | 000,000,094 | -H-- | C] () -- C:\WINDOWS\System32\spv1_WCssg.ini
[2009-02-05 21:25:05 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2009-02-05 21:19:39 | 000,000,040 | ---- | C] () -- C:\WINDOWS\RSoftInfo.dat
[2009-01-05 11:32:07 | 000,000,091 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2008-01-07 13:54:36 | 000,000,056 | ---- | C] () -- C:\WINDOWS\Kulki.ini
[2007-09-06 19:43:52 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2007-07-16 15:52:33 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SETUP32.INI
[2007-07-10 13:50:04 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll
[2007-06-26 19:51:40 | 000,000,021 | ---- | C] () -- C:\WINDOWS\FH_setup.ini
[2007-06-22 20:51:40 | 000,000,061 | ---- | C] () -- C:\WINDOWS\popcinfo.dat
[2007-05-31 19:27:36 | 000,000,239 | ---- | C] () -- C:\WINDOWS\WINCMD.INI
[2007-05-19 20:57:44 | 000,172,032 | ---- | C] () -- C:\WINDOWS\ESUSDX.DLL
[2007-05-19 20:57:44 | 000,077,824 | ---- | C] () -- C:\WINDOWS\ESUSD.DLL
[2007-05-16 20:31:28 | 000,000,054 | ---- | C] () -- C:\WINDOWS\JascCmdFile.INI
[2007-05-10 22:29:48 | 000,139,776 | ---- | C] () -- C:\Documents and Settings\x\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007-05-07 21:39:19 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2007-05-07 20:37:05 | 000,001,165 | ---- | C] () -- C:\WINDOWS\mozver.dat
[2007-05-07 20:29:26 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2007-05-07 19:29:01 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2007-05-04 23:33:04 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2007-05-04 23:32:02 | 000,259,840 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2007-05-04 22:43:11 | 000,002,048 | ---- | C] () -- C:\WINDOWS\bootstat.dat
[2007-05-04 22:38:54 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2006-10-22 12:22:00 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2006-10-22 12:22:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2006-10-22 12:22:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2006-10-22 12:22:00 | 000,581,632 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2006-10-22 12:22:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2006-10-22 12:22:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2006-10-22 12:22:00 | 000,212,992 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
[2005-10-14 11:56:50 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005-10-14 11:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005-10-14 11:56:50 | 000,778,240 | ---- | C] () -- C:\WINDOWS\System32\DivXsm.exe
[2005-10-14 11:56:50 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005-10-14 11:56:50 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005-10-14 11:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005-10-14 11:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005-10-14 11:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2004-08-02 14:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2002-09-20 18:19:46 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2001-10-26 18:15:16 | 000,490,628 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat
[2001-10-26 18:15:16 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat
[2001-10-26 18:15:16 | 000,083,880 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat
[2001-10-26 18:15:16 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat
[2001-08-23 15:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2001-08-23 15:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2001-08-17 23:30:24 | 000,432,492 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2001-08-17 23:30:24 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2001-08-17 23:30:24 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2001-08-17 23:30:22 | 000,067,448 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2001-08-17 23:15:38 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2001-07-31 09:17:12 | 000,094,274 | ---- | C] () -- C:\WINDOWS\System32\HPBHEALR.DLL
[2001-07-22 00:36:48 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2001-07-22 00:36:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2001-07-22 00:24:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[1999-01-22 18:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL
[color=#E56717]========== LOP Check ==========[/color]
[2009-01-16 20:04:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Acronis
[2009-05-07 20:59:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AlawarWrapper
[2009-02-05 20:52:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EA
[2008-05-28 08:04:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\n7-89-o9-3r-4t-r9
[2009-02-05 21:44:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Sandlot Games
[2007-12-06 10:44:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SBT
[2008-05-19 14:42:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2007-09-10 18:07:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems
[2008-05-05 11:31:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\Alawar
[2009-06-10 18:56:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\avidemux
[2011-02-27 11:00:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\BESTplayer
[2008-05-07 18:00:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\Big Fish Games
[2010-11-15 15:57:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\EurekaLog
[2007-05-10 22:09:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\FUJIFILM
[2007-05-08 08:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\Gadu-Gadu
[2008-06-13 13:40:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\GameHouse
[2009-02-05 21:24:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\Incredible Ink
[2009-05-07 16:19:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\MobileAction
[2009-06-19 09:58:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\Opera
[2008-01-04 11:48:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\TC PowerPack
[2009-10-20 19:23:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\Thinstall
[2007-06-22 09:56:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\Thunderbird
[2010-11-22 20:38:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\VSO
[color=#E56717]========== Purity Check ==========[/color]
< End of report >
Etras
- Kod: Zaznacz wszystko
OTL Extras logfile created on: 2011-06-09 14:26:45 - Run 1
OTL by OldTimer - Version 3.2.23.0 Folder = C:\Documents and Settings\x\Pulpit
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
511,49 Mb Total Physical Memory | 297,83 Mb Available Physical Memory | 58,23% Memory free
1,22 Gb Paging File | 1,08 Gb Available in Paging File | 88,44% Paging File free
Paging file location(s): D:\pagefile.sys 766 1500 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 4,31 Gb Total Space | 0,10 Gb Free Space | 2,35% Space Free | Partition Type: NTFS
Drive D: | 14,36 Gb Total Space | 2,78 Gb Free Space | 19,34% Space Free | Partition Type: FAT32
Computer Name: XXX | User Name: x | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
[color=#E56717]========== File Associations ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
[color=#E56717]========== Shell Spawning ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- "D:\Programy\Office\Office\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "D:\Programy\Office\Office\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [FinePix] -- "D:\Programy\FinePixViewer\FinePixViewer.exe" "%1" (FUJI PHOTO FILM CO.,LTD.)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[color=#E56717]========== Security Center Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 1
"FirewallOverride" = 0
"FirewallDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[color=#E56717]========== System Restore Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
[color=#E56717]========== Firewall Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
[color=#E56717]========== Authorized Applications List ==========[/color]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"D:\Program2\Wapster\AQQ\AQQ.exe" = D:\Program2\Wapster\AQQ\AQQ.exe:*:Enabled:P2P AQQ -- (AQQ Sp. z o.o.)
"C:\Program Files\Gadu-Gadu\gg.exe" = C:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny -- (Gadu-Gadu S.A.)
"C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe" = C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe:*:Disabled:Nero ProductSetup -- (Nero AG)
"D:\Program2\Wapster\AQQ\WapSter AQQ\AQQ.exe" = D:\Program2\Wapster\AQQ\WapSter AQQ\AQQ.exe:*:Enabled:AQQ -- (Creative Team S.A.)
"C:\Program Files\Java\jre6\bin\java.exe" = C:\Program Files\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
"D:\Programs\Opera\opera.exe" = D:\Programs\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00000415-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Premium
"{00040415-78E1-11D2-B60F-006097C998E7}" = Microsoft Office 2000 Dysk 2
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = DVD Suite
"{21A7C708-D575-491C-94AE-86FFCF2BF19F}" = ArcSoft Funhouse
"{2300ee96-0a41-4fab-bd03-989ec44577a0}" = Acronis Disk Director Suite
"{24ED4D80-8294-11D5-96CD-0040266301AD}" = FinePixViewer Ver.5.1
"{26A24AE4-039D-4CA4-87B4-2F83216025FF}" = Java(TM) 6 Update 25
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3EE51BAD-9916-49C7-90BA-3D500B031E0C}_is1" = VSO Image Resizer 2.2.2.1
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{5490882C-6961-11D5-BAE5-00E0188E010B}" = FUJIFILM USB Driver
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{934519A2-4D50-4B83-A459-92D90E9E3188}" = WinFast PVR
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9F57DB08-26D6-11D6-8AA5-0000E22DA3A0}" = EPSON Scan Tool
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{AAB93551-3FFE-42B2-8315-96252BBC1045}" = Nero 7 Essentials
"{AAF70000-22B9-4CE9-98D6-2CCF359BAC07}" = ABBYY FineReader 7.0 Professional Edition
"{AC76BA86-7AD7-1033-7B44-AA0000000001}" = Adobe Reader X (10.0.1)
"{B44529FF-501E-47CD-A06D-223C161BE058}" = FinePixViewer Resource
"{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = PowerProducer
"{BE4AA694-815A-4045-BD49-C94F2BED7458}" = WinFast Entertainment Center
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D680C913-5955-469D-9D88-C1940F7506D6}" = RAW FILE CONVERTER LE
"{DA2D4D11-1811-4A24-B719-BF9F048C6106}" = Windows XP Creativity Fun Packs - Windows Movie Maker 2
"{F8131A35-47FD-27AD-116D-0E79AF5DE5EE}" = Acrobat.com
"{F843C6A3-224D-4615-94F8-3C461BD9AEA0}" = Jasc Paint Shop Pro 9
"{FB8148DD-C575-4B0A-9F6C-0CFC46937930}" = Opera 10.10
"7-zip" = 7-Zip 4.64
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"ancient tri-jong" = GameHouse Games Collection: Ancient Tri-Jong
"ancient tripeaks" = GameHouse Games Collection: Ancient Tripeaks
"Applian FLV Player2.0.24" = Applian FLV Player
"AQQ" = WapSter AQQ
"Avidemux 2.4" = Avidemux 2.4
"Big Kahuna Reef 2" = Big Kahuna Reef 2
"bounce out blitz" = GameHouse Games Collection: Bounce Out Blitz
"BSPlayerf" = BS.Player FREE
"CCleaner" = CCleaner
"CD Audio Reader Filter" = CD Audio Reader Filter (remove only)
"chainz 2: relinked" = GameHouse Games Collection: Chainz 2 - Relinked
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"combo chaos!" = GameHouse Games Collection: Combo Chaos!
"Cosmic Stacker" = Cosmic Stacker
"Crimsonland_is1" = Crimsonland
"DScaler 5 Mpeg Decoders_is1" = DScaler 5 Mpeg Decoders
"E.M. PowerPoint Video Converter_is1" = E.M. PowerPoint Video Converter 2.50
"HaaliMkx" = Haali Media Splitter
"hamsterball" = GameHouse Games Collection: Hamsterball
"HijackThis" = HijackThis 2.0.2
"ie8" = Windows Internet Explorer 8
"jewel quest" = GameHouse Games Collection: Jewel Quest
"luxor" = GameHouse Games Collection: Luxor
"magic ball 2" = GameHouse Games Collection: Magic Ball 2
"mah jong adventures" = GameHouse Games Collection: Mah Jong Adventures
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MediaInfo" = MediaInfo 0.7.8
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"MozBackup" = MozBackup 1.5.1
"Mozilla Firefox (3.6.17)" = Mozilla Firefox (3.6.17)
"MP3 Player Recovery Tool_is1" = MP3 Player Recovery Tool
"Multimedialne słowniki języka polskiego PWN" = Multimedialne słowniki języka polskiego PWN
"MuVo Driver" = Creative Mass Storage Drivers
"napiprojekt_is1" = NAPIPROJEKT 1.0.6.2
"NVIDIA" = NVIDIA Windows 2000/XP Display Drivers
"NVIDIA Drivers" = NVIDIA Drivers
"Odkurzacz 12.6_is1" = Odkurzacz 12.6
"OpenSource Flash Video Splitter" = OpenSource Flash Video Splitter (remove only)
"Polish Your English - Kurs" = Polish Your English - Kurs
"puzzle express" = GameHouse Games Collection: Puzzle Express
"puzzle inlay" = GameHouse Games Collection: Puzzle Inlay
"RealAlt_is1" = Real Alternative 1.7.5
"Revo Uninstaller" = Revo Uninstaller 1.89
"shape shifter" = GameHouse Games Collection: Shape Shifter
"ST6UNST #1" = Wari
"SubEdit-Player_is1" = SubEdit-Player
"super bounce out!" = GameHouse Games Collection: Super Bounce Out!
"super collapse!" = GameHouse Games Collection: Super Collapse!
"super gem drop" = GameHouse Games Collection: Super Gem Drop
"super letter linker" = GameHouse Games Collection: Super Letter Linker
"super mah jong solitaire" = GameHouse Games Collection: Super Mah Jong Solitaire
"super rumble cube" = GameHouse Games Collection: Super Rumble Cube
"super texttwist" = GameHouse Games Collection: Super TextTwist
"SWB PWN 2006" = Słownik wyrazów bliskoznacznych PWN 2006
"SystemRequirementsLab" = System Requirements Lab
"VLC media player" = VLC media player 1.1.9
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows XP Service Pack" = Windows XP Service Pack 2
"WinRAR archiver" = Archiwizator WinRAR
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
[HKEY_USERS\S-1-5-21-842925246-436374069-1957994488-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
[color=#E56717]========== Last 10 Event Log Errors ==========[/color]
[ Application Events ]
Error - 2011-05-19 10:54:05 | Computer Name = XXX | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 Language Pack
- PLK - nie można zainstalować aktualizacji '.NET Framework 1 - PLK'. Kod błędu
1603. Dodatkowe informacje są dostępne w pliku dziennika C:\DOCUME~1\x\USTAWI~1\Temp\dd_NET_Framework_20LP_Agile_Setup43D1.txt.
Error - 2011-05-19 10:54:05 | Computer Name = XXX | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 Language Pack
- PLK - nie można zainstalować aktualizacji '.NET Framework CA - PLK'. Kod błędu
1603. Dodatkowe informacje są dostępne w pliku dziennika C:\DOCUME~1\x\USTAWI~1\Temp\dd_NET_Framework_20LP_Agile_Setup43D1.txt.
Error - 2011-05-19 10:54:05 | Computer Name = XXX | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 Language Pack
- PLK - nie można zainstalować aktualizacji '.NET Framework ASP .NET - PLK'. Kod
błędu 1603. Dodatkowe informacje są dostępne w pliku dziennika C:\DOCUME~1\x\USTAWI~1\Temp\dd_NET_Framework_20LP_Agile_Setup43D1.txt.
Error - 2011-05-19 10:54:05 | Computer Name = XXX | Source = MsiInstaller | ID = 1023
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 Language Pack
- PLK - nie można zainstalować aktualizacji '.NET Framework 2 - PLK'. Kod błędu
1603. Dodatkowe informacje są dostępne w pliku dziennika C:\DOCUME~1\x\USTAWI~1\Temp\dd_NET_Framework_20LP_Agile_Setup43D1.txt.
Error - 2011-05-19 11:19:38 | Computer Name = XXX | Source = MsiInstaller | ID = 1013
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Microsoft .NET
Framework 2.0 Service Pack 2 cannot be uninstalled because it will affect other
applications that are installed. For more information, see http://go.microsoft.com/fwlink/?LinkId=91126.
Error - 2011-05-19 12:06:36 | Computer Name = XXX | Source = MsiInstaller | ID = 1013
Description = Produkt: Microsoft .NET Framework 2.0 Service Pack 2 - Microsoft .NET
Framework 2.0 Service Pack 2 cannot be uninstalled because it will affect other
applications that are installed. For more information, see http://go.microsoft.com/fwlink/?LinkId=91126.
Error - 2011-05-26 12:58:22 | Computer Name = XXX | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd wfwiz.exe, wersja 5.13.1.2006, moduł powodujący
błąd ksproxy.ax, wersja 5.3.2600.2180, adres błędu 0x000077eb.
Error - 2011-05-27 03:08:02 | Computer Name = XXX | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd setup.exe, wersja 11.0.696.71, moduł powodujący
błąd setup.exe, wersja 11.0.696.71, adres błędu 0x0007d230.
Error - 2011-05-28 02:51:21 | Computer Name = XXX | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd odkurzacz.exe, wersja 12.6.0.9, moduł powodujący
błąd kernel32.dll, wersja 5.1.2600.2180, adres błędu 0x0001eb33.
Error - 2011-05-31 08:28:27 | Computer Name = XXX | Source = MsiInstaller | ID = 1013
Description = Produkt: Adobe Reader 7.0.5 - Polish -- Instalator wykrył, że w tym
systemie zainstalowany jest bardziej funkcjonalny produkt. Instalacja zostanie
przerwana.
[ System Events ]
Error - 2011-06-07 08:06:11 | Computer Name = XXX | Source = Service Control Manager | ID = 7023
Description = Usługa HID Input Service zakończyła działanie; wystąpił następujący
błąd: %%126
Error - 2011-06-07 12:10:36 | Computer Name = XXX | Source = Service Control Manager | ID = 7023
Description = Usługa HID Input Service zakończyła działanie; wystąpił następujący
błąd: %%126
Error - 2011-06-08 04:22:48 | Computer Name = XXX | Source = Dhcp | ID = 1002
Description = Adres IP połączenia 192.168.1.100 dla karty sieciowej o adresie 00104B300B59
został zabroniony przez serwer DHCP 192.168.1.1 (Serwer DHCP wysłał komunikat DHCPNACK).
Error - 2011-06-08 04:22:58 | Computer Name = XXX | Source = Service Control Manager | ID = 7023
Description = Usługa HID Input Service zakończyła działanie; wystąpił następujący
błąd: %%126
Error - 2011-06-08 12:05:32 | Computer Name = XXX | Source = Service Control Manager | ID = 7023
Description = Usługa HID Input Service zakończyła działanie; wystąpił następujący
błąd: %%126
Error - 2011-06-09 04:11:33 | Computer Name = XXX | Source = Dhcp | ID = 1002
Description = Adres IP połączenia 192.168.1.100 dla karty sieciowej o adresie 00104B300B59
został zabroniony przez serwer DHCP 192.168.1.1 (Serwer DHCP wysłał komunikat DHCPNACK).
Error - 2011-06-09 04:11:43 | Computer Name = XXX | Source = Service Control Manager | ID = 7023
Description = Usługa HID Input Service zakończyła działanie; wystąpił następujący
błąd: %%126
Error - 2011-06-09 07:32:45 | Computer Name = XXX | Source = Service Control Manager | ID = 7023
Description = Usługa HID Input Service zakończyła działanie; wystąpił następujący
błąd: %%126
Error - 2011-06-09 08:00:06 | Computer Name = XXX | Source = atapi | ID = 262153
Description = Urządzenie \Device\Ide\IdePort0 nie odpowiedziało w ramach ustalonego
limitu czasu.
Error - 2011-06-09 08:00:14 | Computer Name = XXX | Source = atapi | ID = 262153
Description = Urządzenie \Device\Ide\IdePort0 nie odpowiedziało w ramach ustalonego
limitu czasu.
< End of report >