Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3900: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3902: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3903: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3904: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
Niby spyware • programosy.pl

  • Ogłoszenie:

Niby spyware

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Niby spyware

Postprzez eSpEY 06 Maj 2010, 16:47

reklama
Witam. Otóż administracja pewnej firmy zwala na mnie że mam lukę w komputerach i przeze mnie wbili sie na serwer.
A wiec skanuję czym sie da.

Na pierwszy ogień laptop. htj czysty olt:
Kod: Zaznacz wszystko
OTL logfile created on: 2010-05-06 16:24:02 - Run 1
OTL by OldTimer - Version 3.1.37.1     Folder = C:\Documents and Settings\Pingwin\Pulpit
Windows XP Home Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

223,00 Mb Total Physical Memory | 87,00 Mb Available Physical Memory | 39,00% Memory free
545,00 Mb Paging File | 258,00 Mb Available in Paging File | 47,00% Paging File free
Paging file location(s): C:\pagefile.sys 336 672 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 12,36 Gb Total Space | 5,02 Gb Free Space | 40,64% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 24,90 Gb Total Space | 15,25 Gb Free Space | 61,23% Space Free | Partition Type: NTFS
Drive F: | 3,76 Gb Total Space | 0,66 Gb Free Space | 17,58% Space Free | Partition Type: FAT32
Drive G: | 267,39 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: LAPTOP
Current User Name: Pingwin
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2010-04-04 22:14:32 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010-03-14 12:56:24 | 000,555,008 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Pingwin\Pulpit\OTL.exe
PRC - [2010-01-12 12:41:00 | 003,168,216 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
PRC - [2009-11-09 12:20:14 | 000,818,432 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Firewall Plus\FWService.exe
PRC - [2009-10-13 12:26:33 | 000,466,689 | ---- | M] (Avira GmbH) -- c:\Program Files\Avira\AntiVir Desktop\avscan.exe
PRC - [2009-03-02 13:08:47 | 000,209,153 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2006-07-13 13:33:38 | 000,057,344 | ---- | M] (Lexmark International, Inc.) -- C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
PRC - [2006-07-13 13:33:14 | 000,053,248 | ---- | M] (Lexmark International, Inc.) -- C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
PRC - [2004-08-04 14:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


[color=#E56717]========== Modules (SafeList) ==========[/color]

MOD - [2010-03-14 12:56:24 | 000,555,008 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Pingwin\Pulpit\OTL.exe
MOD - [2004-08-04 14:00:00 | 001,050,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Disabled | Stopped] --  -- (MySql)
SRV - [2010-03-14 13:07:02 | 000,630,272 | ---- | M] (Macrovision Corporation) [Disabled | Stopped] -- C:\Flexlm\SolidWorks SolidNetWork License Manager\lmgrd.exe -- (SolidWorks SolidNetWork License Manager)
SRV - [2009-11-09 12:20:14 | 000,818,432 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\PC Tools Firewall Plus\FWService.exe -- (PCToolsFirewallPlus)
SRV - [2009-07-21 14:34:33 | 000,185,089 | ---- | M] (Avira GmbH) [Disabled | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2009-05-13 16:48:22 | 000,108,289 | ---- | M] (Avira GmbH) [Disabled | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2010-01-13 09:59:28 | 000,115,216 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctplfw.sys -- (pctplfw)
DRV - [2010-01-12 10:34:14 | 000,070,664 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys -- (PCTFW-PacketFilter)
DRV - [2010-01-07 13:40:26 | 000,233,136 | ---- | M] (PC Tools) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\pctgntdi.sys -- (pctgntdi)
DRV - [2010-01-07 12:35:06 | 000,058,816 | ---- | M] (PC Tools) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pctNdis.sys -- (pctNDIS)
DRV - [2009-12-18 00:25:12 | 000,026,024 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV - [2009-11-25 12:19:02 | 000,056,816 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2009-11-23 14:54:20 | 000,088,040 | ---- | M] (PC Tools) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\PCTAppEvent.sys -- (PCTAppEvent)
DRV - [2009-08-09 23:25:56 | 000,029,696 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VClone.sys -- (VClone)
DRV - [2009-05-11 10:12:24 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2009-03-30 10:33:07 | 000,096,104 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2009-02-13 12:35:05 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2007-01-16 14:52:20 | 000,017,664 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZDPSp50.sys -- (ZDPSp50)
DRV - [2006-12-18 18:55:24 | 000,715,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2006-01-18 15:08:54 | 000,402,432 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WlanBZXP.sys -- (SG762_XP)
DRV - [2005-09-19 12:46:37 | 000,006,912 | ---- | M] (NewTech Infosystems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NTIDrvr.sys -- (NTIDrvr)
DRV - [2004-08-04 14:00:00 | 000,179,584 | ---- | M] (Mylex Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys -- (dac2w2k)
DRV - [2004-08-04 14:00:00 | 000,049,024 | ---- | M] (QLogic Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\ql1280.sys -- (ql1280)
DRV - [2004-08-04 14:00:00 | 000,045,312 | ---- | M] (QLogic Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\ql12160.sys -- (ql12160)
DRV - [2004-08-04 14:00:00 | 000,040,320 | ---- | M] (QLogic Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\ql1080.sys -- (ql1080)
DRV - [2004-08-04 14:00:00 | 000,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\ultra.sys -- (ultra)
DRV - [2004-08-04 14:00:00 | 000,032,640 | ---- | M] (LSI Logic) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys -- (symc8xx)
DRV - [2004-08-04 14:00:00 | 000,030,688 | ---- | M] (LSI Logic) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys -- (sym_u3)
DRV - [2004-08-04 14:00:00 | 000,028,384 | ---- | M] (LSI Logic) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys -- (sym_hi)
DRV - [2004-08-04 14:00:00 | 000,026,496 | ---- | M] (Advanced System Products, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\asc.sys -- (asc)
DRV - [2004-08-04 14:00:00 | 000,019,072 | ---- | M] (Adaptec, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sparrow.sys -- (Sparrow)
DRV - [2004-08-04 14:00:00 | 000,017,280 | ---- | M] (American Megatrends Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys -- (mraid35x)
DRV - [2004-08-04 14:00:00 | 000,016,256 | ---- | M] (Symbios Logic Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\symc810.sys -- (symc810)
DRV - [2004-08-04 14:00:00 | 000,014,848 | ---- | M] (Advanced System Products, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\asc3550.sys -- (asc3550)
DRV - [2004-08-04 14:00:00 | 000,006,656 | ---- | M] (CMD Technology, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\cmdide.sys -- (CmdIde)
DRV - [2004-08-04 14:00:00 | 000,005,248 | ---- | M] (Acer Laboratories Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\aliide.sys -- (AliIde)
DRV - [2004-08-04 01:07:44 | 000,043,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\amdagp.sys -- (amdagp)
DRV - [2004-08-04 01:07:44 | 000,041,088 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\sisagp.sys -- (sisagp)
DRV - [2003-02-26 10:04:00 | 000,370,048 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\viaudios.sys -- (VIAudio) VIA AC'97 Audio Controller (WDM)
DRV - [2002-12-27 04:41:00 | 000,026,880 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\viaagp1.sys -- (viaagp1)
DRV - [2001-08-18 00:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001-08-17 21:57:38 | 000,016,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MODEMCSA.sys -- (MODEMCSA)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-4062043821-3100972130-817129752-1008\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKU\S-1-5-21-4062043821-3100972130-817129752-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.pl/"
FF - prefs.js..extensions.enabledItems: fdm_ffext@freedownloadmanager.org:1.3.4
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3
FF - prefs.js..extensions.enabledItems: {c1970c0d-dbe6-4d91-804f-c9c0de643a57}:1.2.4
FF - prefs.js..extensions.enabledItems: {888d99e7-e8b5-46a3-851e-1ec45da1e644}:3.6.3
FF - prefs.js..extensions.enabledItems: {2e710e6b-5e9d-44ba-8f4e-09a040978b49}:1.2.4
FF - prefs.js..extensions.enabledItems: {a7c6cf7f-112c-4500-a7ea-39801a327e5f}:1.0.7
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6
FF - prefs.js..keyword.URL: "http://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q="

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-04-09 21:03:01 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-04-04 22:14:41 | 000,000,000 | ---D | M]

[2010-02-25 20:14:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Extensions
[2010-05-06 13:30:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\extensions
[2010-04-06 22:50:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\extensions\{2e710e6b-5e9d-44ba-8f4e-09a040978b49}
[2010-04-14 14:52:07 | 000,000,000 | ---D | M] (ReloadEvery) -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\extensions\{888d99e7-e8b5-46a3-851e-1ec45da1e644}
[2010-04-06 22:50:32 | 000,000,000 | ---D | M] (FireFTP) -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}
[2010-04-03 17:27:17 | 000,000,000 | ---D | M] (NoRedirect) -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\extensions\{c1970c0d-dbe6-4d91-804f-c9c0de643a57}
[2010-03-27 23:21:43 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010-05-02 10:49:31 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2010-04-10 22:11:47 | 000,002,424 | ---- | M] () -- C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\searchplugins\askcom.xml
[2010-03-27 22:57:28 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010-03-16 21:50:20 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-03-16 21:50:20 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-03-16 21:50:20 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-03-16 21:50:20 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-03-16 21:50:20 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-03-16 21:50:20 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2004-08-04 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O3 - HKU\S-1-5-21-4062043821-3100972130-817129752-1008\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [00PCTFW] C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe (PC Tools)
O4 - HKLM..\Run: [Lexmark 1200 Series] C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe (Lexmark International, Inc.)
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-4062043821-3100972130-817129752-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Pingwin\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Pingwin\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005-09-14 08:18:52 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2009-07-15 18:35:29 | 000,012,026 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O32 - AutoRun File - [2000-09-19 14:38:04 | 000,000,000 | R--D | M] - G:\AUTOptn -- [ CDFS ]
O32 - AutoRun File - [1998-10-08 12:53:34 | 000,000,062 | R--- | M] () - G:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{5564abd0-1d8b-11df-8669-00142a6ea69e}\Shell\AutoRun\command - "" = F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\autorun.exe -- [2008-02-21 15:56:44 | 000,189,404 | RHS- | M] ()
O33 - MountPoints2\{5564abd0-1d8b-11df-8669-00142a6ea69e}\Shell\open\command - "" = F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\autorun.exe -- [2008-02-21 15:56:44 | 000,189,404 | RHS- | M] ()
O33 - MountPoints2\{bfdbc9a2-4d4d-11df-86ba-00142a6ea69e}\Shell - "" = AutoRun
O33 - MountPoints2\{bfdbc9a2-4d4d-11df-86ba-00142a6ea69e}\Shell\AutoRun\command - "" = G:\AUTOptn\AUTOptn.exe -- [2000-02-02 19:18:22 | 000,063,488 | R--- | M] (Pollen Software Pty Ltd)
O33 - MountPoints2\Z\Shell - "" = AutoRun
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2010-05-03 21:43:16 | 000,830,618 | ---- | C] (                                                            ) -- C:\Documents and Settings\Pingwin\Pulpit\Gekko_Manager_v0.77.exe
[2010-05-03 21:28:14 | 000,218,784 | ---- | C] (NCH Software) -- C:\Documents and Settings\Pingwin\Pulpit\cftpsetup.exe
[2010-04-29 22:20:42 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_26.dll
[2010-04-28 18:20:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pingwin\Dane aplikacji\PhotoFiltre
[2010-04-26 17:10:59 | 000,000,000 | ---D | C] -- C:\Program Files\Spell Software
[2010-04-19 16:36:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pingwin\Moje dokumenty\ann
[2010-04-18 14:52:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pingwin\Ustawienia lokalne\Dane aplikacji\Help
[2010-04-18 14:52:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Help
[2010-04-15 21:09:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Blender Foundation
[2010-04-15 14:44:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pingwin\Ustawienia lokalne\Dane aplikacji\AskToolbar
[2010-04-12 15:02:23 | 000,073,728 | ---- | C] (Lexmark International, Inc.) -- C:\WINDOWS\System32\lxczpwr.dll
[2010-04-12 15:02:22 | 000,069,632 | ---- | C] (Lexmark International Inc.) -- C:\WINDOWS\System32\LXCZCU.DLL
[2010-04-12 15:02:21 | 000,201,216 | ---- | C] (Lexmark International, Inc.) -- C:\WINDOWS\System32\LEXP2P32.DLL
[2010-04-12 15:02:20 | 000,198,144 | ---- | C] (Lexmark International, Inc.) -- C:\WINDOWS\System32\LEX2KUSB.DLL
[2010-04-12 15:02:20 | 000,147,456 | ---- | C] (Lexmark International, Inc.) -- C:\WINDOWS\System32\LEXBCE.DLL
[2010-04-12 15:02:19 | 000,200,704 | ---- | C] (Lexmark International, Inc.) -- C:\WINDOWS\System32\LEXLMPM.DLL
[2010-04-12 15:02:19 | 000,094,208 | ---- | C] (Lexmark International Inc.) -- C:\WINDOWS\System32\LXCZCUR.DLL
[2010-04-12 15:01:13 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wiafbdrv.dll
[2010-04-12 15:01:13 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wiafbdrv.dll
[2010-04-12 15:01:02 | 000,356,352 | ---- | C] (Lexmark International Inc.) -- C:\WINDOWS\System32\LXCZUTIL.DLL
[2010-04-12 15:01:02 | 000,069,632 | ---- | C] (Lexmark International, Inc.) -- C:\WINDOWS\System32\lxczscin.dll
[2010-04-12 15:01:01 | 000,983,107 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\LXCZGF.DLL
[2010-04-12 15:01:01 | 000,057,344 | ---- | C] (Lexmark International, Inc.) -- C:\WINDOWS\System32\lxczcinf.dll
[2010-04-12 15:01:01 | 000,049,152 | ---- | C] (Lexmark International, Inc.) -- C:\WINDOWS\System32\lxczcoin.dll
[2010-04-12 15:00:54 | 000,458,752 | ---- | C] (Lexmark International Inc.) -- C:\WINDOWS\System32\LXCZJSWR.DLL
[2010-04-12 15:00:54 | 000,000,000 | ---D | C] -- C:\Program Files\Lexmark 1200 Series
[2010-04-12 14:59:56 | 000,000,000 | ---D | C] -- C:\Lexmark
[2010-04-10 12:41:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pingwin\Dane aplikacji\ImgBurn
[2010-04-10 12:38:39 | 000,000,000 | ---D | C] -- C:\Program Files\ImgBurn
[2010-04-10 12:38:23 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2010-04-10 12:30:17 | 004,660,103 | ---- | C] (LIGHTNING UK!) -- C:\Documents and Settings\Pingwin\Pulpit\SetupImgBurn_2.5.1.0_[www.programosy.pl].exe
[2010-03-17 21:32:45 | 002,420,736 | ---- | C] (CipSoft GmbH) -- C:\Documents and Settings\All Users\Dane aplikacji\Tibia.bak
[2010-03-14 12:35:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe
[2005-09-19 20:48:55 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2005-09-19 20:48:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2005-09-19 20:48:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2005-09-19 20:48:54 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2010-05-06 16:17:38 | 000,002,441 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\HiJackThis.lnk
[2010-05-06 16:01:02 | 000,000,238 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2010-05-06 15:33:52 | 000,005,375 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\accesslog_kibicewarmii.net_5_6_2010.gz
[2010-05-06 11:19:01 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-05-06 11:18:50 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-05-06 11:18:44 | 234,409,984 | -HS- | M] () -- C:\hiberfil.sys
[2010-05-06 01:08:47 | 002,359,296 | -H-- | M] () -- C:\Documents and Settings\Pingwin\NTUSER.DAT
[2010-05-06 01:08:47 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Pingwin\ntuser.ini
[2010-05-06 01:07:48 | 003,908,018 | -H-- | M] () -- C:\Documents and Settings\Pingwin\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-05-05 11:21:41 | 000,012,937 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\sng.jpg
[2010-05-03 21:43:17 | 000,830,618 | ---- | M] (                                                            ) -- C:\Documents and Settings\Pingwin\Pulpit\Gekko_Manager_v0.77.exe
[2010-05-03 21:29:14 | 000,000,292 | ---- | M] () -- C:\WINDOWS\tasks\classicftpShakeIcon.job
[2010-05-03 21:29:13 | 000,000,292 | ---- | M] () -- C:\WINDOWS\tasks\classicftpDowngrade.job
[2010-05-03 21:28:58 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\classicftpSevenDaysInit.job
[2010-05-03 21:28:35 | 000,000,799 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Classic FTP.lnk
[2010-05-03 21:28:15 | 000,218,784 | ---- | M] (NCH Software) -- C:\Documents and Settings\Pingwin\Pulpit\cftpsetup.exe
[2010-05-03 21:24:42 | 000,001,184 | ---- | M] () -- C:\Documents and Settings\Pingwin\wincmd.ini
[2010-05-03 21:24:23 | 000,000,470 | ---- | M] () -- C:\Documents and Settings\Pingwin\wcx_ftp.ini
[2010-04-29 22:20:24 | 000,000,735 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Transport Giant GOLD.lnk
[2010-04-29 19:40:36 | 000,010,752 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\Mamusiawyjesdza.doc
[2010-04-28 18:15:40 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\PhotoFiltre.lnk
[2010-04-28 18:12:27 | 001,837,848 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\pf-setup-en.exe
[2010-04-27 20:18:35 | 000,390,048 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\billiards_install_1_0_1_14.exe
[2010-04-26 17:12:43 | 000,001,812 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\Testy maturalne 2010.lnk
[2010-04-26 16:08:05 | 000,000,241 | ---- | M] () -- C:\WINDOWS\lexstat.ini
[2010-04-24 18:19:58 | 000,008,954 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\konkurs.odt
[2010-04-24 17:11:48 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-04-21 20:06:28 | 000,000,747 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Virtual CloneDrive.lnk
[2010-04-21 20:05:00 | 001,566,576 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\SetupVirtualCloneDrive5.exe
[2010-04-21 20:03:27 | 000,256,816 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\SoftonicDownloader40385.exe
[2010-04-21 15:57:00 | 000,339,531 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\MAS-04.rar
[2010-04-19 21:16:58 | 000,021,504 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\CYTATY.doc
[2010-04-19 16:38:51 | 000,036,496 | ---- | M] () -- C:\Documents and Settings\Pingwin\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-04-19 16:24:33 | 000,000,763 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Centrum urządzenia Lexmark 1200 Series All-In-One.lnk
[2010-04-19 16:08:40 | 005,365,760 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\Mech_rcji_cz_2.doc
[2010-04-19 15:11:38 | 007,886,672 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\zadania_z_fizy.zip
[2010-04-17 13:31:36 | 000,000,701 | ---- | M] () -- C:\WINDOWS\WAPWORLDPL.INI
[2010-04-16 13:59:43 | 000,536,228 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\Michał_Stawicki_PiłkaRęczna_Korespondent.JPG
[2010-04-15 21:32:35 | 000,100,480 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\znak_drogowy.blend
[2010-04-15 21:10:19 | 000,000,817 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\Blender.lnk
[2010-04-15 20:09:30 | 000,210,518 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\syllabus_ws.pdf
[2010-04-14 22:47:09 | 000,040,405 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\chorobyweneryczne.odt
[2010-04-14 19:41:03 | 000,034,816 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\streszczonko.doc
[2010-04-14 18:45:23 | 000,012,800 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\Powt.doc
[2010-04-14 15:51:02 | 000,011,776 | ---- | M] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\Powt.Html
[2010-04-12 17:02:48 | 000,000,140 | ---- | M] () -- C:\WINDOWS\WAPWORLD.INI
[2010-04-12 15:45:12 | 000,000,084 | ---- | M] () -- C:\WINDOWS\dellstat.ini
[2010-04-11 21:31:26 | 004,274,062 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\PTD35_full.7z
[2010-04-10 12:38:40 | 000,001,528 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\ImgBurn.lnk
[2010-04-10 12:38:40 | 000,000,170 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Scan for System Errors.URL
[2010-04-10 12:38:40 | 000,000,165 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Scan for Outdated Drivers.URL
[2010-04-10 12:38:40 | 000,000,163 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Improve System Performance.URL
[2010-04-10 12:30:19 | 004,660,103 | ---- | M] (LIGHTNING UK!) -- C:\Documents and Settings\Pingwin\Pulpit\SetupImgBurn_2.5.1.0_[www.programosy.pl].exe
[2010-04-09 16:06:40 | 000,783,616 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\test_ws.zip
[2010-04-09 16:02:55 | 000,031,434 | ---- | M] () -- C:\Documents and Settings\Pingwin\Pulpit\file.pdf
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-05-06 15:33:48 | 000,005,375 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\accesslog_kibicewarmii.net_5_6_2010.gz
[2010-05-05 11:16:15 | 000,012,937 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\sng.jpg
[2010-05-03 21:29:14 | 000,000,292 | ---- | C] () -- C:\WINDOWS\tasks\classicftpShakeIcon.job
[2010-05-03 21:29:13 | 000,000,292 | ---- | C] () -- C:\WINDOWS\tasks\classicftpDowngrade.job
[2010-05-03 21:28:57 | 000,000,298 | ---- | C] () -- C:\WINDOWS\tasks\classicftpSevenDaysInit.job
[2010-04-29 22:20:24 | 000,000,735 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Transport Giant GOLD.lnk
[2010-04-29 19:40:31 | 000,010,752 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\Mamusiawyjesdza.doc
[2010-04-28 18:15:40 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\PhotoFiltre.lnk
[2010-04-28 18:10:58 | 001,837,848 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\pf-setup-en.exe
[2010-04-27 20:18:33 | 000,390,048 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\billiards_install_1_0_1_14.exe
[2010-04-26 17:12:43 | 000,001,812 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\Testy maturalne 2010.lnk
[2010-04-24 18:19:57 | 000,008,954 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\konkurs.odt
[2010-04-21 20:06:28 | 000,000,747 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Virtual CloneDrive.lnk
[2010-04-21 20:04:45 | 001,566,576 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\SetupVirtualCloneDrive5.exe
[2010-04-21 20:03:26 | 000,256,816 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\SoftonicDownloader40385.exe
[2010-04-21 15:56:57 | 000,339,531 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\MAS-04.rar
[2010-04-19 21:55:14 | 000,021,504 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\CYTATY.doc
[2010-04-19 16:11:17 | 005,365,760 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\Mech_rcji_cz_2.doc
[2010-04-19 16:11:15 | 007,886,672 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\zadania_z_fizy.zip
[2010-04-16 13:59:40 | 000,536,228 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\Michał_Stawicki_PiłkaRęczna_Korespondent.JPG
[2010-04-15 21:32:31 | 000,100,480 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\znak_drogowy.blend
[2010-04-15 21:10:19 | 000,000,817 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\Blender.lnk
[2010-04-15 20:09:23 | 000,210,518 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\syllabus_ws.pdf
[2010-04-14 22:22:44 | 000,040,405 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\chorobyweneryczne.odt
[2010-04-14 19:04:26 | 000,034,816 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\streszczonko.doc
[2010-04-14 15:51:33 | 000,012,800 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\Powt.doc
[2010-04-14 15:50:58 | 000,011,776 | ---- | C] () -- C:\Documents and Settings\Pingwin\Moje dokumenty\Powt.Html
[2010-04-12 17:02:48 | 000,000,140 | ---- | C] () -- C:\WINDOWS\WAPWORLD.INI
[2010-04-12 17:02:44 | 000,000,701 | ---- | C] () -- C:\WINDOWS\WAPWORLDPL.INI
[2010-04-12 15:06:38 | 000,000,763 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Centrum urządzenia Lexmark 1200 Series All-In-One.lnk
[2010-04-12 15:03:39 | 000,000,084 | ---- | C] () -- C:\WINDOWS\dellstat.ini
[2010-04-12 15:03:29 | 000,000,241 | ---- | C] () -- C:\WINDOWS\lexstat.ini
[2010-04-12 15:02:24 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxczvs.dll
[2010-04-12 15:02:21 | 000,155,648 | ---- | C] () -- C:\WINDOWS\System32\LEXPING.EXE
[2010-04-12 15:02:21 | 000,000,448 | ---- | C] () -- C:\WINDOWS\System32\LXCZ.LOC
[2010-04-12 15:02:20 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\INSTMON.EXE
[2010-04-12 15:02:20 | 000,000,288 | ---- | C] () -- C:\WINDOWS\System32\LXCZMA.CNT
[2010-04-12 15:02:19 | 001,114,799 | ---- | C] () -- C:\WINDOWS\System32\LXCZLPA.HLP
[2010-04-12 15:02:19 | 000,357,102 | ---- | C] () -- C:\WINDOWS\System32\LXCZDRV.HLP
[2010-04-12 15:02:19 | 000,002,449 | ---- | C] () -- C:\WINDOWS\System32\LXCZDRV.CNT
[2010-04-12 15:02:19 | 000,002,268 | ---- | C] () -- C:\WINDOWS\System32\LXCZLPA.CNT
[2010-04-12 15:01:01 | 000,000,270 | ---- | C] () -- C:\WINDOWS\System32\lxczcoin.ini
[2010-04-11 21:31:06 | 004,274,062 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\PTD35_full.7z
[2010-04-10 12:38:40 | 000,001,528 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\ImgBurn.lnk
[2010-04-10 12:38:40 | 000,000,170 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Scan for System Errors.URL
[2010-04-10 12:38:40 | 000,000,165 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Scan for Outdated Drivers.URL
[2010-04-10 12:38:40 | 000,000,163 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Improve System Performance.URL
[2010-04-10 12:38:33 | 000,000,238 | ---- | C] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2010-04-09 16:06:38 | 000,783,616 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\test_ws.zip
[2010-04-09 16:02:51 | 000,031,434 | ---- | C] () -- C:\Documents and Settings\Pingwin\Pulpit\file.pdf
[2010-04-04 13:58:41 | 000,000,192 | ---- | C] () -- C:\WINDOWS\MPLAYER.INI
[2010-03-17 16:26:35 | 000,000,027 | ---- | C] () -- C:\WINDOWS\.ini
[2010-03-12 20:23:17 | 001,970,176 | ---- | C] () -- C:\WINDOWS\System32\d3dx9.dll
[2006-12-18 18:55:22 | 000,715,248 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2006-09-12 22:09:56 | 000,017,920 | ---- | C] () -- C:\WINDOWS\System32\implode.dll
[2006-04-23 18:10:35 | 000,005,145 | ---- | C] () -- C:\WINDOWS\idef.ini
[2005-12-03 22:57:57 | 000,000,029 | ---- | C] () -- C:\WINDOWS\CDMKR32.INI
[2005-11-13 23:50:44 | 000,000,756 | ---- | C] () -- C:\WINDOWS\VPlayer.INI
[2005-10-25 23:11:05 | 000,000,155 | ---- | C] () -- C:\WINDOWS\winamp.ini
[2005-10-22 17:56:33 | 000,000,556 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2005-10-14 12:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005-10-14 12:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005-10-14 12:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005-10-14 12:56:50 | 000,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005-10-14 12:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005-10-14 12:56:48 | 003,223,552 | ---- | C] () -- C:\WINDOWS\System32\libavcodec.dll
[2005-10-14 12:56:48 | 000,540,672 | ---- | C] () -- C:\WINDOWS\System32\libmplayer.dll
[2005-10-14 12:56:48 | 000,266,240 | ---- | C] () -- C:\WINDOWS\System32\TomsMoComp_ff.dll
[2005-10-14 12:56:48 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\libmpeg2_ff.dll
[2005-09-19 20:36:19 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys
[2005-09-19 20:34:40 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll
[2005-09-19 12:48:26 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\ntiembed.dll
[2005-09-19 12:46:40 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMPEG2.dll
[2005-09-19 12:46:40 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTICDMK32.dll
[2005-09-19 12:20:57 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\UnAudioNT.dll
[2005-09-15 08:59:38 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2005-09-14 10:06:45 | 000,000,680 | R--- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2005-04-28 06:22:38 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2004-09-24 01:31:08 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\libmySQL.dll
[2004-07-29 19:08:30 | 000,024,633 | ---- | C] () -- C:\WINDOWS\php.ini
[2002-06-25 09:28:18 | 000,000,455 | ---- | C] () -- C:\WINDOWS\my.ini
[2002-03-13 15:46:46 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\zlib.dll
[2001-12-26 16:12:30 | 000,065,536 | R--- | C] () -- C:\WINDOWS\System32\multiplex_vcd.dll
[2001-09-03 23:46:38 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Hmpg12.dll
[2001-07-30 16:33:56 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC.dll
[2001-07-23 22:04:36 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC_MMX.dll

[color=#E56717]========== LOP Check ==========[/color]

[2010-01-31 12:08:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Autodesk
[2009-06-15 21:53:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Downloaded Installations
[2010-02-16 17:40:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\FreeDownloadManager.ORG
[2010-02-25 22:33:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2006-03-23 00:29:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2006-12-18 21:28:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PowerDesigner 12
[2010-05-06 11:19:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2010-02-15 14:39:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl
[2005-09-14 16:19:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Dane aplikacji\SampleView
[2010-04-15 21:09:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Blender Foundation
[2010-04-15 21:22:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Free Download Manager
[2010-02-28 14:27:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\GHISLER
[2010-04-10 12:41:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\ImgBurn
[2010-03-11 21:35:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Indentix
[2010-03-11 20:44:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\InterVideo
[2010-02-25 22:33:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\ipla
[2010-03-28 21:36:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Notepad++
[2010-02-28 14:49:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Nvu
[2010-02-16 20:59:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\OpenOffice.org
[2010-03-13 00:37:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Opera
[2010-02-25 20:05:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\PCToolsFirewallPlus
[2010-04-28 18:37:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\PhotoFiltre
[2010-03-01 19:13:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Tibia
[2010-05-03 14:39:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pingwin\Dane aplikacji\Tlen.pl
[2010-05-03 21:29:13 | 000,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\classicftpDowngrade.job
[2010-05-03 21:28:58 | 000,000,298 | ---- | M] () -- C:\WINDOWS\Tasks\classicftpSevenDaysInit.job
[2010-05-03 21:29:14 | 000,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\classicftpShakeIcon.job
[2010-05-06 16:01:02 | 000,000,238 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 121 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:C31F31E6
< End of report >


Kod: Zaznacz wszystko
OTL Extras logfile created on: 2010-05-06 16:24:02 - Run 1
OTL by OldTimer - Version 3.1.37.1     Folder = C:\Documents and Settings\Pingwin\Pulpit
Windows XP Home Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

223,00 Mb Total Physical Memory | 87,00 Mb Available Physical Memory | 39,00% Memory free
545,00 Mb Paging File | 258,00 Mb Available in Paging File | 47,00% Paging File free
Paging file location(s): C:\pagefile.sys 336 672 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 12,36 Gb Total Space | 5,02 Gb Free Space | 40,64% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 24,90 Gb Total Space | 15,25 Gb Free Space | 61,23% Space Free | Partition Type: NTFS
Drive F: | 3,76 Gb Total Space | 0,66 Gb Free Space | 17,58% Space Free | Partition Type: FAT32
Drive G: | 267,39 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: LAPTOP
Current User Name: Pingwin
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.js [@ = Notepad++_file] -- e:\Program Files\Notepad++\notepad++.exe (Don HO don.h@free.fr)

[HKEY_USERS\S-1-5-21-4062043821-3100972130-817129752-1008\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE" /n /dde File not found
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 1
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Gadu-Gadu\gg.exe" = C:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program glowny -- File not found
"E:\Program Files\Tlen.pl\tlen.exe" = E:\Program Files\Tlen.pl\tlen.exe:*:Enabled:Komunikator Tlen.pl -- (o2.pl Sp. z o.o.)
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{022F6097-A053-4B1B-BE50-3AADE4116B92}" = Opera 10.50
"{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}" = HiJackThis
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{4E68EAA3-775A-4542-A08A-47DB8E8E74A6}" = NTI Backup NOW! 3
"{64CB2553-C109-4132-AA51-1F421B515FD1}" = Microsoft .NET Framework 1.1 Polish Language Pack
"{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}" = Microsoft .NET Framework 2.0
"{72263053-50D1-4598-9502-51ED64E54C51}" = Borland Delphi 7
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{98E8A2EF-4EAE-43B8-A172-74842B764777}" = InterVideo WinDVD 4
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A248972D-94ED-43EB-9BEF-284C9921FE2B}" = Transport Giant GOLD
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{AAFD22B6-A6C7-4134-AF4E-080BCBCD3493}" = Sagem Wi-Fi 11g USB adapter (utility)
"{AC76BA86-7AD7-1045-7B44-A70000000000}" = Adobe Reader 7.0 - Polish
"{C438B7C4-B4F8-49C5-A4DF-FF6F1F242778}" = NTI CD & DVD-Maker
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{D5A6D02F-3CBB-4FBF-8F65-C3A6D721E8A4}" = OpenOffice.org 3.2
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"Blender" = Blender (remove only)
"BootXPv2" = BootXPv2 Uninstall
"CamStudio" = CamStudio
"Cheat Engine 5.6_is1" = Cheat Engine 5.6
"ClassicFTP" = Classic FTP
"Claw" = Claw
"Cool's_Codec_pack_4.12" = Codec Pack - All In 1 6.0.3.0
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"Free Download Manager_is1" = Free Download Manager 3.0
"GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker
"Gekko Manager_is1" = Gekko Manager v0.77
"ImgBurn" = ImgBurn
"InstallShield_{4E68EAA3-775A-4542-A08A-47DB8E8E74A6}" = NTI Backup NOW! 3
"InstallShield_{C438B7C4-B4F8-49C5-A4DF-FF6F1F242778}" = NTI CD & DVD-Maker Gold
"LeechFTP" = LeechFTP
"Lexmark 1200 Series" = Lexmark 1200 Series
"Microsoft .NET Framework 1.1  (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 2.0" = Microsoft .NET Framework 2.0
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"Notepad++" = Notepad++
"Nvu_is1" = Nvu 1.0
"PC Tools Firewall Plus" = PC Tools Firewall Plus 6.0
"Railroad Tycoon II" = Railroad Tycoon II
"S3" = UniChrome IGP Driver and Utilities
"Shockwave" = Shockwave
"Testy maturalne 2010" = Testy maturalne 2010 1.0
"The Sims" = The Sims
"The Sims: Livin' Large" = The Sims: Livin' Large
"Tibia_is1" = Tibia
"Tlen.pl" = Tlen.pl
"Totalcmd" = Total Commander (Remove or Repair)
"VIA Audio Driver Setup Program" = VIA Audio Driver Setup Program
"Virtual Turntables" = Virtual Turntables
"VirtualCloneDrive" = VirtualCloneDrive
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"WinGet" = WinGet 3.0
"WinRAR archiver" = Archiwizator WinRAR

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-4062043821-3100972130-817129752-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"PhotoFiltre" = PhotoFiltre

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2008-06-06 14:33:44 | Computer Name = LAPTOP | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd mastercam.exe, wersja 11.0.3.27, moduł powodujący
błąd mccore.dll, wersja 11.0.3.27, adres błędu 0x004ee0c3.

Error - 2008-11-08 15:16:50 | Computer Name = LAPTOP | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca explorer.exe, wersja 6.0.2900.2180, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2009-03-12 15:37:32 | Computer Name = LAPTOP | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd explorer.exe, wersja 6.0.2900.2180, moduł
powodujący błąd ws2_32.dll, wersja 5.1.2600.2180, adres błędu 0x0000664d.

Error - 2009-03-26 16:00:24 | Computer Name = LAPTOP | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd explorer.exe, wersja 6.0.2900.2180, moduł
powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x71a5664d.

Error - 2009-03-26 16:02:34 | Computer Name = LAPTOP | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd explorer.exe, wersja 6.0.2900.2180, moduł
powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x71a5664d.

Error - 2009-04-06 11:57:31 | Computer Name = LAPTOP | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca WINWORD.EXE, wersja 11.0.5604.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2009-06-17 15:52:20 | Computer Name = LAPTOP | Source = crypt32 | ID = 131083
Description = Nie można wyodrębnić głównej listy innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. 

Error - 2009-06-17 15:52:20 | Computer Name = LAPTOP | Source = crypt32 | ID = 131083
Description = Nie można wyodrębnić głównej listy innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. 

Error - 2009-06-17 15:52:21 | Computer Name = LAPTOP | Source = crypt32 | ID = 131083
Description = Nie można wyodrębnić głównej listy innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. 

Error - 2009-06-17 15:52:21 | Computer Name = LAPTOP | Source = crypt32 | ID = 131083
Description = Nie można wyodrębnić głównej listy innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. 

[ System Events ]
Error - 2010-05-02 04:29:13 | Computer Name = LAPTOP | Source = W32Time | ID = 39452701
Description = Dostawca czasu NtpClient jest skonfigurowany, tak aby pobierać czas
z jednego lub kilku  źródeł czasu, jednak żadne ze źródeł jest obecnie niedostępne.
   Przez 3022 min nie nastąpi próba kontaktu ze źródłem.  NtpClient nie ma źródła dokładnego
czasu.

Error - 2010-05-02 13:41:13 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding

Error - 2010-05-02 13:41:13 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding

Error - 2010-05-02 13:41:13 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding

Error - 2010-05-03 14:02:55 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding

Error - 2010-05-03 14:02:55 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding

Error - 2010-05-03 14:02:55 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding

Error - 2010-05-04 16:42:12 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding

Error - 2010-05-04 16:42:12 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding

Error - 2010-05-04 16:42:12 | Computer Name = LAPTOP | Source = DCOM | ID = 10000
Description = Nie można uruchomić serwera DCOM: {98D9A6F1-4696-4B5E-A2E8-36B3F9C1E12C}.
Błąd:
„%2”
wystąpił
podczas uruchamiania tego polecenia:  "C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe"
/PDFShell -Embedding


< End of report >



Avira AntiVir jeszcze pracuje.
Potem dodam z komputerów w centrali.
W domu:AMD Athlon X4 640 | Asus m4a78lt | DDR3 4096MB 666Mhz | NVDIA GeForce GTS 450 | ATX 500W
W pracy:Intel Core i5-3470 | 2 x DDR4 4096MB 2133Mhz | Qyadro K600 1024MB | ATX 750W
Awatar użytkownika
eSpEY
 
Posty: 1340
Dołączenie: 04 Lut 2007, 12:24
Miejscowość: Olsztyn
Pochwały: 111



Niby spyware

Postprzez wojtas 06 Maj 2010, 17:54

Uruchom OTL i w oknie Custom Scans/Fixes wklej :

:OTL
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3
FF - prefs.js..extensions.enabledItems: {c1970c0d-dbe6-4d91-804f-c9c0de643a57}:1.2.4
FF - prefs.js..extensions.enabledItems: {888d99e7-e8b5-46a3-851e-1ec45da1e644}:3.6.3
FF - prefs.js..extensions.enabledItems: {2e710e6b-5e9d-44ba-8f4e-09a040978b49}:1.2.4
FF - prefs.js..extensions.enabledItems: {a7c6cf7f-112c-4500-a7ea-39801a327e5f}:1.0.7
O3 - HKU\S-1-5-21-4062043821-3100972130-817129752-1008\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O32 - AutoRun File - [2009-07-15 18:35:29 | 000,012,026 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O32 - AutoRun File - [2000-09-19 14:38:04 | 000,000,000 | R--D | M] - G:\AUTOptn -- [ CDFS ]
O32 - AutoRun File - [1998-10-08 12:53:34 | 000,000,062 | R--- | M] () - G:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{5564abd0-1d8b-11df-8669-00142a6ea69e}\Shell\AutoRun\command - "" = F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\autorun.exe -- [2008-02-21 15:56:44 | 000,189,404 | RHS- | M] ()
O33 - MountPoints2\{5564abd0-1d8b-11df-8669-00142a6ea69e}\Shell\open\command - "" = F:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\autorun.exe -- [2008-02-21 15:56:44 | 000,189,404 | RHS- | M] ()
O33 - MountPoints2\{bfdbc9a2-4d4d-11df-86ba-00142a6ea69e}\Shell - "" = AutoRun
O33 - MountPoints2\{bfdbc9a2-4d4d-11df-86ba-00142a6ea69e}\Shell\AutoRun\command - "" = G:\AUTOptn\AUTOptn.exe -- [2000-02-02 19:18:22 | 000,063,488 | R--- | M] (Pollen Software Pty Ltd)
@Alternate Data Stream - 121 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:C31F31E6
SRV - File not found [Disabled | Stopped] -- -- (MySql)

:Files
C:\WINDOWS\tasks\classicftpShakeIcon.job
C:\WINDOWS\tasks\classicftpDowngrade.job
C:\WINDOWS\tasks\classicftpSevenDaysInit.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\Program Files\Ask.com
C:\Documents and Settings\Pingwin\Ustawienia lokalne\Dane aplikacji\AskToolbar
C:\Documents and Settings\Pingwin\Dane aplikacji\Mozilla\Firefox\Profiles\czeabugr.default\searchplugins\askcom.xml

:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]

:Commands
[emptytemp]

Kliknij w Run Fix. I potwierdź reset kompa .

Następnie uruchamiasz OTL z opcją Run Scan. Pokazujesz nowy log OTL.txt oraz raport z czyszczenia komputera + log z Gmera
gmer-opis-dzialania-vt117883.html
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 36 gości