• Ogłoszenie:

Komputer się resetuje automatycznie co 2 minuty

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Komputer się resetuje automatycznie co 2 minuty

Postprzez Wojtaz 17 Wrz 2011, 18:11

reklama
Witam.
Podłączyłem dziś pendrive'a, który był ostatnio w innym komputerze i był taki folder "Euro data", kliknąłem w niego, a okazał się to wirus, lecz nie folder.
Szybko odłączyłem pendrive'a, lecz było za późno. Komp się automatycznie resetuje co 2 minuty i za bardzo nic nie mogę zdziałać.
Daję LOG z OTL z awaryjnego.
Proszę o pomoc.
Kod: Zaznacz wszystko
OTL logfile created on: 2011-09-17 18:12:27 - Run 4
OTL by OldTimer - Version 3.2.28.0     Folder = C:\Users\Wojtaz\Desktop
64bit- An unknown product  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 1,35 Gb Available Physical Memory | 67,39% Memory free
4,00 Gb Paging File | 3,39 Gb Available in Paging File | 84,67% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,73 Gb Total Space | 6,95 Gb Free Space | 14,25% Space Free | Partition Type: NTFS
Drive D: | 165,23 Gb Total Space | 6,23 Gb Free Space | 3,77% Space Free | Partition Type: NTFS
Drive E: | 221,62 Gb Total Space | 2,82 Gb Free Space | 1,27% Space Free | Partition Type: NTFS

Computer Name: WOJTAZ-PC | User Name: Wojtaz | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2011-09-17 18:07:05 | 000,581,632 | ---- | M] (OldTimer Tools) -- C:\Users\Wojtaz\Desktop\OTL.exe
PRC - [2011-04-21 01:36:28 | 000,912,344 | ---- | M] (Mozilla Corporation) -- D:\Program Files (x86)\Mozilla Firefox\firefox.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2011-04-21 01:36:28 | 001,014,232 | ---- | M] () -- D:\Program Files (x86)\Mozilla Firefox\js3250.dll
MOD - [2010-07-30 23:33:12 | 005,612,496 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011-05-19 11:48:52 | 000,075,136 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011-01-07 20:48:56 | 000,378,984 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2010-10-20 11:22:24 | 000,630,272 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010-02-19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009-07-16 17:04:16 | 000,316,664 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2005-03-09 21:50:18 | 000,018,944 | ---- | M] (http://libusb-win32.sourceforge.net) [Auto | Stopped] -- C:\Windows\SysWOW64\libusbd-nt.exe -- (libusbd)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2011-09-05 17:36:45 | 000,503,352 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:[b]64bit:[/b] - [2011-05-16 18:35:14 | 000,156,912 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:[b]64bit:[/b] - [2011-05-10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2011-01-25 12:40:06 | 000,142,936 | ---- | M] (Tonec Inc.) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\idmwfp.sys -- (IDMWFP)
DRV:[b]64bit:[/b] - [2011-01-03 10:38:36 | 000,177,128 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadmdm.sys -- (ssadmdm)
DRV:[b]64bit:[/b] - [2011-01-03 10:38:36 | 000,157,160 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadbus.sys -- (ssadbus) SAMSUNG Android USB Composite Device driver (WDM)
DRV:[b]64bit:[/b] - [2011-01-03 10:38:36 | 000,016,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadmdfl.sys -- (ssadmdfl) SAMSUNG Android USB Modem (Filter)
DRV:[b]64bit:[/b] - [2010-12-21 07:55:02 | 000,172,104 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdmdm.sys -- (sscdmdm)
DRV:[b]64bit:[/b] - [2010-12-21 07:55:02 | 000,136,264 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdbus.sys -- (sscdbus) SAMSUNG USB Composite Device driver (WDM)
DRV:[b]64bit:[/b] - [2010-12-21 07:55:02 | 000,036,328 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadadb.sys -- (androidusb)
DRV:[b]64bit:[/b] - [2010-12-21 07:55:02 | 000,019,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV:[b]64bit:[/b] - [2010-11-09 14:35:24 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\cpuz135_x64.sys -- (cpuz135)
DRV:[b]64bit:[/b] - [2010-10-21 16:11:04 | 000,097,552 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
DRV:[b]64bit:[/b] - [2010-08-19 20:24:34 | 000,074,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:[b]64bit:[/b] - [2010-08-11 18:23:12 | 000,034,032 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\seehcri.sys -- (seehcri)
DRV:[b]64bit:[/b] - [2010-08-11 18:23:00 | 000,027,176 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggsemc.sys -- (ggsemc)
DRV:[b]64bit:[/b] - [2010-08-11 18:23:00 | 000,013,352 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggflt.sys -- (ggflt)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:22 | 000,161,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscemdm.sys -- (sscemdm)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:22 | 000,129,024 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssceserd.sys -- (ssceserd) SAMSUNG Mobile Modem Diagnostic Serial Port V2 (WDM)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:22 | 000,127,488 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscebus.sys -- (sscebus) SAMSUNG USB Composite Device V2 driver (WDM)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:22 | 000,018,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscemdfl.sys -- (sscemdfl)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:16 | 000,161,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:16 | 000,127,488 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:16 | 000,018,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter)
DRV:[b]64bit:[/b] - [2010-02-26 14:33:40 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64j.sys -- (UsbserFilt)
DRV:[b]64bit:[/b] - [2010-02-26 14:33:24 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:[b]64bit:[/b] - [2010-02-26 14:33:22 | 000,025,088 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdcx64)
DRV:[b]64bit:[/b] - [2010-02-26 14:33:22 | 000,019,456 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcdx64)
DRV:[b]64bit:[/b] - [2010-02-26 14:21:22 | 000,173,056 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys -- (nmwcdnsux64)
DRV:[b]64bit:[/b] - [2010-02-26 14:21:20 | 000,012,288 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsucx64.sys -- (nmwcdnsucx64)
DRV:[b]64bit:[/b] - [2010-02-04 14:00:08 | 000,020,568 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dgderdrv.sys -- (dgderdrv)
DRV:[b]64bit:[/b] - [2009-11-27 15:47:56 | 000,067,072 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:[b]64bit:[/b] - [2009-11-09 01:42:00 | 000,016,392 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TFsExDisk.sys -- (TFsExDisk)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 02:06:32 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:54 | 000,151,592 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029unic.sys -- (s1029unic) Sony Ericsson Device 1029 USB Ethernet Emulation (WDM)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:54 | 000,139,304 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029mgmt.sys -- (s1029mgmt) Sony Ericsson Device 1029 USB WMC Device Management Drivers (WDM)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:54 | 000,135,208 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029obex.sys -- (s1029obex)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:52 | 000,158,760 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029mdm.sys -- (s1029mdm)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:52 | 000,034,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029nd5.sys -- (s1029nd5) Sony Ericsson Device 1029 USB Ethernet Emulation (NDIS)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:50 | 000,019,496 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029mdfl.sys -- (s1029mdfl)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:48 | 000,116,264 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029bus.sys -- (s1029bus) Sony Ericsson Device 1029 driver (WDM)
DRV:[b]64bit:[/b] - [2009-05-05 04:00:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:44 | 000,145,960 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017unic.sys -- (s0017unic) Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:44 | 000,128,552 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017obex.sys -- (s0017obex)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:44 | 000,034,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017nd5.sys -- (s0017nd5) Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (NDIS)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:42 | 000,152,616 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017mdm.sys -- (s0017mdm)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:42 | 000,133,160 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017mgmt.sys -- (s0017mgmt) Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:42 | 000,019,496 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017mdfl.sys -- (s0017mdfl)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:40 | 000,113,704 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017bus.sys -- (s0017bus) Sony Ericsson Device 0017 driver (WDM)
DRV:[b]64bit:[/b] - [2008-08-28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:[b]64bit:[/b] - [2007-01-04 13:47:10 | 000,071,832 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\e4ldrx64.sys -- (E4LOADER) General Purpose USB Driver (e4ldrx64.sys)
DRV:[b]64bit:[/b] - [2007-01-04 13:46:30 | 000,146,968 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\e4usbawx64.sys -- (e4usbaw)
DRV - [2010-06-14 10:32:54 | 000,016,448 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\TFsExDisk.Sys -- (TFsExDisk)
DRV - [2010-01-29 11:40:16 | 000,115,600 | ---- | M] (EZB Systems, Inc.) [File_System | System | Stopped] -- D:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys -- (ISODrive)
DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2007-01-04 13:46:30 | 000,146,968 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\e4usbawx64.sys -- (e4usbaw)
DRV - [2005-03-09 21:50:16 | 000,033,792 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\libusb0.sys -- (libusb0)
DRV - [2002-04-26 12:04:16 | 000,095,484 | ---- | M] (DATOM Dariusz Cielebąk) [Kernel | Auto | Stopped] -- C:\Windows\SysWow64\drivers\KMM4XNT.SYS -- (Kmm4xNT)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2206084
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\URLSearchHook: {9d81af43-de53-48d0-a199-42c2a226b24c} - Reg Error: No CLSID value found. File not found
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.update: false
FF - prefs.js..browser.startup.homepage: "google.pl"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.8
FF - prefs.js..extensions.enabledItems: {02450954-cdd9-410f-b1da-db804e18c671}:0.96.3
FF - prefs.js..extensions.enabledItems: {446c03e0-2c35-11db-a98b-0800200c9a66}:0.6.2.15
FF - prefs.js..extensions.enabledItems: {8b86149f-01fb-4842-9dd8-4d7eb02fd055}:0.22.0
FF - prefs.js..extensions.enabledItems: extension@virtusdesigns.com:3.6.7
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: nasanightlaunch@example.com:0.6.20110508
FF - prefs.js..extensions.enabledItems: {5c8bfb7c-9a54-11dc-8314-0800200c9a66}:3.6.7
FF - prefs.js..extensions.enabledItems: info@djzig.com:1.3.3
FF - prefs.js..extensions.enabledItems: zigboom@ymail.com:1.3.3

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Components: D:\Program Files (x86)\Mozilla Firefox\components [2011-08-31 18:43:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Plugins: D:\Program Files (x86)\Mozilla Firefox\plugins [2011-06-21 13:35:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.12\extensions\\Components: D:\Program Files (x86)\Mozilla Thunderbird\components [2011-08-19 22:15:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.12\extensions\\Plugins: D:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\Wojtaz\AppData\Roaming\IDM\idmmzcc3 [2011-03-17 21:29:13 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\Wojtaz\AppData\Roaming\IDM\idmmzcc3 [2011-03-17 21:29:13 | 000,000,000 | ---D | M]

[2010-08-19 09:32:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Extensions
[2010-08-19 09:32:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011-06-18 23:00:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions
[2010-08-02 20:50:18 | 000,000,000 | ---D | M] (Screengrab) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
[2011-06-08 21:35:55 | 000,000,000 | ---D | M] (Favicon Picker 2) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{446c03e0-2c35-11db-a98b-0800200c9a66}
[2011-02-10 21:11:03 | 000,000,000 | ---D | M] (Aero Fox XL) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}
[2011-04-27 15:55:35 | 000,000,000 | ---D | M] (All-in-One Gestures) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{8b86149f-01fb-4842-9dd8-4d7eb02fd055}
[2011-05-24 18:34:35 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2011-02-10 21:11:07 | 000,000,000 | ---D | M] (Virtus Search Opt-in) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\extension@virtusdesigns.com
[2011-05-08 21:02:52 | 000,000,000 | ---D | M] (LavaFox V1) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\info@djzig.com
[2011-05-18 08:22:04 | 000,000,000 | ---D | M] (NASA Night Launch) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\nasanightlaunch@example.com
[2011-06-10 14:04:35 | 000,000,000 | ---D | M] (LavaFox V1-Green) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\zigboom@ymail.com
[2011-02-10 21:11:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\extension@virtusdesigns.com\chrome
[2011-02-10 21:11:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\win\mozapps\extensions
[2011-03-20 16:17:33 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011-03-26 17:02:20 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}

O1 HOSTS File: ([2011-09-17 14:54:34 | 000,012,393 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR/html4/strict.dtd">
O1 - Hosts: <html lang='en'>
O1 - Hosts: <head>
O1 - Hosts:             <meta name="description" content="Yahoo! GeoCities offers you a free web site and all the tools you need to build a dynamic site. Features include easy-to-use site building tools, online help, web site statistics, secure and reliable hosting, and an intuitive control panel.">
O1 - Hosts:             <title>Yahoo! GeoCities: Get a web site with easy-to-use site building tools.</title>
O1 - Hosts:             <link rel="stylesheet" type="text/css" media="all" href="http://l.yimg.com/a/combo?yui/2.5.2/build/reset-fonts-grids/reset-fonts-grids.css&smbiz/css/headfoot_6.css&smbiz/css/ysbs_glossary_1.css">
O1 - Hosts: <link rel="stylesheet" type="text/css" media="all" href="http://l.yimg.com/a/lib/smbiz/css/geocities_84954.css">
O1 - Hosts: <style>
O1 - Hosts: h1 { line-height:30px;height:30px; padding-left:15px; font-weight:bold;font-size:1.6em;color:#1f296a;}
O1 - Hosts: .services li { margin-left:1.0em; padding-left:0.5em; background:url("http://l.yimg.com/a/lib/smbiz/i/geo_bullet_3x3_1.gif") no-repeat 0 0.5em; margin-bottom:0.5em;margin-left:1.5em;margin-right:0.5em;width:6em}
O1 - Hosts: .services li {float:left; width:17em; font-size:116%;margin-top:0.8em}
O1 - Hosts:  .services {  font-size:116%; padding-bottom:20px }
O1 - Hosts: .learnmore a {color:#2882DE;font-size:16px}
O1 - Hosts: .image_web  {float:right; margin:15px 0 0 15px}
O1 - Hosts: p {margin:20px;font-size:1em;}
O1 - Hosts: h2 {margin:20px 0 0 20px;color:#1F296;font-weight:bold;font-size:1.25em;color:#1f296a;}
O1 - Hosts: h3 {margin:20px;color:#1F296;font-weight:bold;font-size:1.15em;color:#1f296a;}
O1 - Hosts: li.rule {border-top:solid 1px #DBE1E6;}
O1 - Hosts: </style>
O1 - Hosts: </head>
O1 - Hosts: <body>
O1 - Hosts: <!-- following code added by server. PLEASE REMOVE -->
O1 - Hosts: <!-- preceding code added by server. PLEASE REMOVE -->
O1 - Hosts:  <div class="ez-mw" style ="height:900px;width:905px">
O1 - Hosts:     <div class="ez-wri ez-oh" style="width:900px">
O1 - Hosts: 90 more lines...
O2:[b]64bit:[/b] - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O3:[b]64bit:[/b] - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser - No CLSID value found.
O3: - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser - No CLSID value found.
O3 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser: (no name) - {9D81AF43-DE53-48D0-A199-42C2A226B24C} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [adiras] C:\Windows\adirasx64.exe ()
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Bron-Spizaetus] C:\Windows\ShellNew\ElnorB.exe ( )
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [NPSStartup]  File not found
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000..\Run: [Tok-Cirrhatus] C:\Users\Wojtaz\AppData\Local\smss.exe ( )
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Wojtaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Empty.pif ( )
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 1
O7 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O8:[b]64bit:[/b] - Extra context menu item: E&ksport do programu Microsoft Excel - D:\Program Files (x86)\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O8:[b]64bit:[/b] - Extra context menu item: Ściągnij przez IDM - D:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8:[b]64bit:[/b] - Extra context menu item: Ściągnij wszystkie linki przez IDM - D:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:[b]64bit:[/b] - Extra context menu item: Ściągnij zawartość wideo FLV przez IDM - D:\Program Files (x86)\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - D:\Program Files (x86)\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Ściągnij przez IDM - D:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Ściągnij wszystkie linki przez IDM - D:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Ściągnij zawartość wideo FLV przez IDM - D:\Program Files (x86)\Internet Download Manager\IEGetVL.htm ()
O9 - Extra Button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files (x86)\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9C3275CF-314E-4A5F-9747-5A45B7B7B772}: DhcpNameServer = 192.168.1.1
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\mso-offdap11 - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\text/xml - No CLSID value found
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{a104c946-a550-11df-a41f-4061868ec1f2}\Shell - "" = AutoRun
O33 - MountPoints2\{a104c946-a550-11df-a41f-4061868ec1f2}\Shell\AutoRun\command - "" = I:\Startme.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2011-09-17 18:07:04 | 000,581,632 | ---- | C] (OldTimer Tools) -- C:\Users\Wojtaz\Desktop\OTL.exe
[2011-09-17 14:54:08 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Local\Bron.tok-4-17
[2011-09-14 19:25:35 | 000,316,416 | ---- | C] (Analog Devices.) -- C:\Windows\SysNative\unaddrv.x64.exe
[2011-09-14 19:25:35 | 000,212,992 | ---- | C] (Analog Devices.) -- C:\Windows\SysNative\unaddrv.exe
[2011-09-14 19:25:35 | 000,155,648 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysNative\adadix32.dll
[2011-09-14 19:25:35 | 000,004,981 | ---- | C] (SITECSOFT Co., LTD.) -- C:\Windows\SysNative\ADADIX2K.DLL
[2011-09-14 19:25:28 | 000,169,496 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\adiusbawx64.sys
[2011-09-14 19:25:28 | 000,146,968 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\e4usbawx64.sys
[2011-09-14 19:25:28 | 000,146,968 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysNative\drivers\e4usbawx64.sys
[2011-09-14 19:25:28 | 000,118,552 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\adiusbaw.sys
[2011-09-14 19:25:28 | 000,104,344 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\e4usbaw.sys
[2011-09-14 19:25:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAGEM F@st 800-840
[2011-09-14 19:25:27 | 000,071,832 | ---- | C] (Analog Deivces) -- C:\Windows\SysNative\drivers\e4ldrx64.sys
[2011-09-14 19:25:27 | 000,069,656 | ---- | C] (Analog Deivces) -- C:\Windows\SysNative\drivers\e4ldr.sys
[2011-09-14 19:25:27 | 000,058,264 | ---- | C] (Analog Deivces) -- C:\Windows\SysNative\drivers\adildrx64.sys
[2011-09-14 19:25:27 | 000,056,088 | ---- | C] (Analog Deivces) -- C:\Windows\SysNative\drivers\adildr.sys
[2011-09-14 19:25:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SAGEM
[2011-09-14 19:25:00 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Roaming\InstallShield
[2011-09-14 19:19:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSpeedUp
[2011-09-05 17:39:54 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Documents\Alcohol 120%
[2011-09-05 17:38:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Alcohol Soft
[2011-09-05 17:36:45 | 000,503,352 | ---- | C] (Duplex Secure Ltd.) -- C:\Windows\SysNative\drivers\sptd.sys
[2011-09-05 17:26:14 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Desktop\NFSP
[2011-09-05 17:15:56 | 000,000,000 | ---D | C] -- C:\7-ZipPortable
[2011-09-04 21:42:38 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Desktop\Broken.2006.PL.DVDRip.XViD.AC3
[2011-08-28 13:24:14 | 014,415,008 | ---- | C] (Mozilla) -- C:\Users\Wojtaz\Desktop\Firefox Setup 5.0.1.exe
[2011-08-28 09:11:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011-08-28 09:10:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2011-08-28 09:07:31 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo
[2011-08-27 23:07:05 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Desktop\480p
[2011-08-23 23:58:09 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Desktop\Reckless_Racing_files
[2011-08-23 17:44:39 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Roaming\UltraVNC
[2011-08-23 17:44:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraVNC
[2011-08-23 17:44:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\UltraVNC
[2011-08-21 17:02:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Solidshield
[2011-08-20 13:49:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Symulator Jazdy 2
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\winlogon.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\smss.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\services.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\lsass.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\inetinfo.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\csrss.exe
[2010-08-17 21:55:47 | 000,148,736 | ---- | C] (Avanquest Software) -- C:\ProgramData\hpeB0CA.dll
[9 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2011-09-17 18:07:05 | 000,581,632 | ---- | M] (OldTimer Tools) -- C:\Users\Wojtaz\Desktop\OTL.exe
[2011-09-17 18:05:45 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-09-17 18:05:41 | 1609,965,568 | -HS- | M] () -- C:\hiberfil.sys
[2011-09-17 15:00:21 | 000,737,242 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2011-09-17 15:00:21 | 000,651,450 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011-09-17 15:00:21 | 000,153,930 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2011-09-17 15:00:21 | 000,120,382 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011-09-17 15:00:20 | 001,661,232 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011-09-17 14:54:34 | 000,012,393 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011-09-17 14:30:08 | 000,009,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-09-17 14:30:08 | 000,009,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-09-17 11:31:12 | 000,000,069 | ---- | M] () -- C:\Windows\NeroDigital.ini
[2011-09-15 19:35:46 | 004,363,581 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Backstab_HD_Samsung_GTi9000_Galaxy_S_android_v1.2.3_Cracked_Twingo.apk
[2011-09-14 19:26:10 | 000,000,168 | ---- | M] () -- C:\Windows\adidsl.ini
[2011-09-14 19:25:48 | 000,001,100 | ---- | M] () -- C:\Windows\adiras.ini
[2011-09-14 19:25:48 | 000,000,033 | ---- | M] () -- C:\Windows\SysNative\drivers\adidsl.cfg
[2011-09-14 19:25:48 | 000,000,021 | ---- | M] () -- C:\Windows\Fast800.ini
[2011-09-09 16:36:22 | 003,138,069 | ---- | M] () -- C:\Users\Wojtaz\Desktop\07. Rafi - Ciemna Strona Mocy feat. S-o- -pro....mp3
[2011-09-06 17:24:45 | 000,000,132 | ---- | M] () -- C:\Users\Wojtaz\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011-09-06 14:52:02 | 000,586,392 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Mickiewicz Adam - Dziady cz. 3.pdf
[2011-09-05 18:31:28 | 001,741,116 | ---- | M] () -- C:\Users\Wojtaz\Desktop\P9052038.jpg
[2011-09-05 18:12:10 | 000,585,172 | ---- | M] () -- C:\Users\Wojtaz\Desktop\P9051946.JPG
[2011-09-05 17:42:59 | 000,000,260 | ---- | M] () -- C:\Users\Wojtaz\Documents\ax_files.xml
[2011-09-05 17:36:45 | 000,503,352 | ---- | M] (Duplex Secure Ltd.) -- C:\Windows\SysNative\drivers\sptd.sys
[2011-09-05 16:56:02 | 002,098,323 | ---- | M] () -- C:\Users\Wojtaz\Desktop\FPse for android v0.10.57.apk
[2011-09-05 16:55:53 | 000,243,206 | ---- | M] () -- C:\Users\Wojtaz\Desktop\SCPH1001.zip
[2011-09-05 16:39:35 | 291,421,132 | ---- | M] () -- C:\Users\Wojtaz\Desktop\com.eamobile.nfshotpursuit_sonyericsson.rar
[2011-09-05 16:31:22 | 000,009,906 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Plug-ins.rar
[2011-09-05 16:28:45 | 003,269,930 | ---- | M] () -- C:\Users\Wojtaz\Desktop\NFS_HP_Adreno_Cracked_Nops.apk
[2011-09-04 15:42:15 | 046,184,940 | ---- | M] () -- C:\Users\Wojtaz\Desktop\BlackDroidPinballTHD_dj.apk
[2011-09-03 22:33:41 | 019,342,869 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Marilyn Manson - Born Villain (Official Video) - No Reason.mp4
[2011-09-03 13:38:47 | 000,005,632 | ---- | M] () -- C:\Users\Wojtaz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-08-31 22:44:32 | 000,083,065 | ---- | M] () -- C:\Users\Wojtaz\Desktop\IMG_8737.JPG
[2011-08-30 10:55:06 | 102,154,208 | ---- | M] () -- C:\Users\Wojtaz\Desktop\cm_galaxysmtd_full-103.zip
[2011-08-30 10:20:37 | 003,538,376 | ---- | M] () -- C:\Users\Wojtaz\Desktop\sp510uz.pdf
[2011-08-29 11:43:15 | 000,266,563 | ---- | M] () -- C:\Users\Wojtaz\Desktop\nissan-silvia-s15-drift-255372.jpeg
[2011-08-29 10:20:10 | 102,142,936 | ---- | M] () -- C:\Users\Wojtaz\Desktop\cm_galaxysmtd_full-101.zip
[2011-08-28 13:25:26 | 014,415,008 | ---- | M] (Mozilla) -- C:\Users\Wojtaz\Desktop\Firefox Setup 5.0.1.exe
[2011-08-28 11:34:10 | 006,818,200 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Need For Speed Underground Soundtrack-The Wonders Of You.mp3
[2011-08-25 16:10:20 | 732,370,944 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Simpsonowie_by_Thaw.avi
[2011-08-25 09:29:11 | 004,580,875 | ---- | M] () -- C:\Users\Wojtaz\Desktop\JVR.zip
[2011-08-23 23:18:53 | 013,879,373 | ---- | M] () -- C:\Users\Wojtaz\Desktop\MafiaBlog.org_Monster_Truck_Rally_v1.02.rar
[2011-08-22 09:52:18 | 000,273,101 | ---- | M] () -- C:\Users\Wojtaz\Desktop\application_snappz.apk
[2011-08-21 17:11:37 | 001,572,864 | ---- | M] () -- C:\Users\Wojtaz\Desktop\default.sav
[2011-08-21 17:06:52 | 000,000,214 | ---- | M] () -- C:\Users\Wojtaz\Desktop\SHIFT 2 UNLEASHED™.lnk
[2011-08-20 13:50:08 | 000,122,904 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2011-08-20 13:50:07 | 000,109,080 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2011-08-20 13:49:35 | 000,000,871 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Symulator Jazdy 2.lnk
[2011-08-19 15:05:28 | 000,212,175 | ---- | M] () -- C:\Users\Wojtaz\Desktop\CM7fixgps&video&bootanimation Updates 1.1.zip
[2011-08-19 10:21:32 | 002,344,825 | ---- | M] () -- C:\Users\Wojtaz\Desktop\swiety_-_nie_wiem_po_co_to_wszystko.mp3
[2011-08-19 09:06:43 | 052,644,347 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Reckless_Racing_files.rar
[2011-08-19 09:05:40 | 003,470,551 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Reckless_Racing_v1.0.4_Cracked.apk
[9 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-09-15 19:35:36 | 004,363,581 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Backstab_HD_Samsung_GTi9000_Galaxy_S_android_v1.2.3_Cracked_Twingo.apk
[2011-09-14 19:25:48 | 000,000,168 | ---- | C] () -- C:\Windows\adidsl.ini
[2011-09-14 19:25:48 | 000,000,021 | ---- | C] () -- C:\Windows\Fast800.ini
[2011-09-14 19:25:35 | 000,261,964 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep3.bnm
[2011-09-14 19:25:35 | 000,261,960 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep1.bnm
[2011-09-14 19:25:35 | 000,261,952 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld3.bnm
[2011-09-14 19:25:35 | 000,261,932 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld0.bnm
[2011-09-14 19:25:35 | 000,261,926 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei1.bnm
[2011-09-14 19:25:35 | 000,261,926 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p0.BNM
[2011-09-14 19:25:35 | 000,261,920 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld2.bnm
[2011-09-14 19:25:35 | 000,261,918 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p3.BNM
[2011-09-14 19:25:35 | 000,261,918 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p1.BNM
[2011-09-14 19:25:35 | 000,261,916 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep0.bnm
[2011-09-14 19:25:35 | 000,261,916 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei0.bnm
[2011-09-14 19:25:35 | 000,261,914 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei2.bnm
[2011-09-14 19:25:35 | 000,261,908 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei3.bnm
[2011-09-14 19:25:35 | 000,261,900 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p2.BNM
[2011-09-14 19:25:35 | 000,261,894 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld1.bnm
[2011-09-14 19:25:35 | 000,261,892 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep2.bnm
[2011-09-14 19:25:35 | 000,253,008 | ---- | C] () -- C:\Windows\adirasx64.exe
[2011-09-14 19:25:35 | 000,194,128 | ---- | C] () -- C:\Windows\adiras.exe
[2011-09-14 19:25:35 | 000,127,456 | ---- | C] () -- C:\Windows\SysNative\IPDETECT.EXE
[2011-09-14 19:25:35 | 000,081,088 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep4.bnm
[2011-09-14 19:25:35 | 000,078,040 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei4.bnm
[2011-09-14 19:25:35 | 000,055,228 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld4.bnm
[2011-09-14 19:25:35 | 000,046,892 | ---- | C] () -- C:\Windows\SysNative\ADADIX16.DLL
[2011-09-14 19:25:35 | 000,022,288 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p4.BNM
[2011-09-14 19:25:35 | 000,001,100 | ---- | C] () -- C:\Windows\adiras.ini
[2011-09-14 19:25:34 | 000,261,964 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9i1.bnm
[2011-09-14 19:25:34 | 000,261,962 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p3.bnm
[2011-09-14 19:25:34 | 000,261,960 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9i0.bnm
[2011-09-14 19:25:34 | 000,261,952 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p1.bnm
[2011-09-14 19:25:34 | 000,261,930 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p0.bnm
[2011-09-14 19:25:34 | 000,261,926 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p2.bnm
[2011-09-14 19:25:34 | 000,261,918 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9i2.bnm
[2011-09-14 19:25:34 | 000,152,220 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4I2.BIN
[2011-09-14 19:25:34 | 000,152,220 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4I1.BIN
[2011-09-14 19:25:34 | 000,152,220 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4I0.BIN
[2011-09-14 19:25:34 | 000,152,132 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4P2.BIN
[2011-09-14 19:25:34 | 000,152,132 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4P1.BIN
[2011-09-14 19:25:34 | 000,152,132 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4P0.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9P2.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9P1.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9P0.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9I2.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9I1.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9I0.BIN
[2011-09-14 19:25:34 | 000,152,036 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4D2.BIN
[2011-09-14 19:25:34 | 000,152,034 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4D1.BIN
[2011-09-14 19:25:34 | 000,152,034 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4D0.BIN
[2011-09-14 19:25:34 | 000,053,590 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9i4.bnm
[2011-09-14 19:25:34 | 000,041,620 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p4.bnm
[2011-09-14 19:25:34 | 000,022,395 | ---- | C] () -- C:\Windows\SysNative\drivers\fpga.bin
[2011-09-14 19:25:34 | 000,000,033 | ---- | C] () -- C:\Windows\SysNative\drivers\adidsl.cfg
[2011-09-14 19:25:29 | 000,016,254 | ---- | C] () -- C:\Windows\SysWow64\drivers\adiusbawx64.cat
[2011-09-14 19:25:28 | 000,016,254 | ---- | C] () -- C:\Windows\SysWow64\drivers\adiusbaw.cat
[2011-09-14 19:25:28 | 000,013,981 | ---- | C] () -- C:\Windows\SysWow64\drivers\e4usbawx64.cat
[2011-09-14 19:25:28 | 000,013,981 | ---- | C] () -- C:\Windows\SysWow64\drivers\e4usbaw.cat
[2011-09-14 19:25:27 | 000,024,576 | ---- | C] () -- C:\Windows\enddisk32.exe
[2011-09-14 19:25:27 | 000,012,403 | ---- | C] () -- C:\Windows\SysNative\drivers\adildrx64.cat
[2011-09-14 19:25:27 | 000,012,403 | ---- | C] () -- C:\Windows\SysNative\drivers\adildr.cat
[2011-09-14 19:25:27 | 000,011,399 | ---- | C] () -- C:\Windows\SysNative\drivers\e4ldrx64.cat
[2011-09-14 19:25:27 | 000,011,399 | ---- | C] () -- C:\Windows\SysNative\drivers\e4ldr.cat
[2011-09-09 16:36:03 | 003,138,069 | ---- | C] () -- C:\Users\Wojtaz\Desktop\07. Rafi - Ciemna Strona Mocy feat. S-o- -pro....mp3
[2011-09-06 14:51:59 | 000,586,392 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Mickiewicz Adam - Dziady cz. 3.pdf
[2011-09-05 18:31:25 | 001,741,116 | ---- | C] () -- C:\Users\Wojtaz\Desktop\P9052038.jpg
[2011-09-05 18:12:10 | 000,585,172 | ---- | C] () -- C:\Users\Wojtaz\Desktop\P9051946.JPG
[2011-09-05 17:40:15 | 000,000,260 | ---- | C] () -- C:\Users\Wojtaz\Documents\ax_files.xml
[2011-09-05 16:55:58 | 002,098,323 | ---- | C] () -- C:\Users\Wojtaz\Desktop\FPse for android v0.10.57.apk
[2011-09-05 16:55:51 | 000,243,206 | ---- | C] () -- C:\Users\Wojtaz\Desktop\SCPH1001.zip
[2011-09-05 16:31:21 | 000,009,906 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Plug-ins.rar
[2011-09-05 16:29:30 | 291,421,132 | ---- | C] () -- C:\Users\Wojtaz\Desktop\com.eamobile.nfshotpursuit_sonyericsson.rar
[2011-09-05 16:28:39 | 003,269,930 | ---- | C] () -- C:\Users\Wojtaz\Desktop\NFS_HP_Adreno_Cracked_Nops.apk
[2011-09-04 15:38:29 | 046,184,940 | ---- | C] () -- C:\Users\Wojtaz\Desktop\BlackDroidPinballTHD_dj.apk
[2011-09-03 22:33:19 | 019,342,869 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Marilyn Manson - Born Villain (Official Video) - No Reason.mp4
[2011-08-31 22:44:30 | 000,083,065 | ---- | C] () -- C:\Users\Wojtaz\Desktop\IMG_8737.JPG
[2011-08-30 10:53:28 | 102,154,208 | ---- | C] () -- C:\Users\Wojtaz\Desktop\cm_galaxysmtd_full-103.zip
[2011-08-30 10:20:33 | 003,538,376 | ---- | C] () -- C:\Users\Wojtaz\Desktop\sp510uz.pdf
[2011-08-29 11:43:14 | 000,266,563 | ---- | C] () -- C:\Users\Wojtaz\Desktop\nissan-silvia-s15-drift-255372.jpeg
[2011-08-29 10:18:31 | 102,142,936 | ---- | C] () -- C:\Users\Wojtaz\Desktop\cm_galaxysmtd_full-101.zip
[2011-08-28 11:33:54 | 006,818,200 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Need For Speed Underground Soundtrack-The Wonders Of You.mp3
[2011-08-28 09:10:37 | 000,002,563 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2011-08-25 15:45:31 | 732,370,944 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Simpsonowie_by_Thaw.avi
[2011-08-25 09:28:59 | 004,580,875 | ---- | C] () -- C:\Users\Wojtaz\Desktop\JVR.zip
[2011-08-24 18:10:27 | 000,212,175 | ---- | C] () -- C:\Users\Wojtaz\Desktop\CM7fixgps&video&bootanimation Updates 1.1.zip
[2011-08-23 23:17:58 | 013,879,373 | ---- | C] () -- C:\Users\Wojtaz\Desktop\MafiaBlog.org_Monster_Truck_Rally_v1.02.rar
[2011-08-22 09:52:14 | 000,273,101 | ---- | C] () -- C:\Users\Wojtaz\Desktop\application_snappz.apk
[2011-08-21 17:11:23 | 001,572,864 | ---- | C] () -- C:\Users\Wojtaz\Desktop\default.sav
[2011-08-21 17:06:52 | 000,000,214 | ---- | C] () -- C:\Users\Wojtaz\Desktop\SHIFT 2 UNLEASHED™.lnk
[2011-08-20 13:49:35 | 000,000,871 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Symulator Jazdy 2.lnk
[2011-08-19 10:20:45 | 002,344,825 | ---- | C] () -- C:\Users\Wojtaz\Desktop\swiety_-_nie_wiem_po_co_to_wszystko.mp3
[2011-08-19 09:05:56 | 052,644,347 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Reckless_Racing_files.rar
[2011-08-19 09:05:35 | 003,470,551 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Reckless_Racing_v1.0.4_Cracked.apk
[2011-07-14 12:59:29 | 000,093,651 | ---- | C] () -- C:\Windows\LookDisk Uninstaller.exe
[2011-07-07 14:14:47 | 000,000,132 | ---- | C] () -- C:\Users\Wojtaz\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011-07-02 13:33:16 | 001,636,610 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011-06-30 15:45:15 | 000,000,600 | ---- | C] () -- C:\Users\Wojtaz\AppData\Roaming\winscp.rnd
[2011-04-09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011-03-17 21:59:39 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2011-02-26 03:19:32 | 000,041,872 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2011-02-19 18:00:30 | 000,034,308 | ---- | C] () -- C:\Windows\SysWow64\bassmod.dll
[2011-01-29 18:00:22 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll
[2011-01-29 18:00:22 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll
[2011-01-29 18:00:22 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll
[2011-01-29 18:00:22 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll
[2011-01-23 16:10:29 | 000,000,000 | ---- | C] () -- C:\Windows\Darkstone.INI
[2010-12-23 18:50:54 | 000,189,248 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010-12-23 18:50:50 | 000,669,184 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2010-12-23 18:50:50 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2010-12-21 21:37:39 | 000,033,792 | ---- | C] () -- C:\Windows\SysWow64\drivers\libusb0.sys
[2010-12-18 23:34:11 | 000,000,043 | ---- | C] () -- C:\Users\Wojtaz\AppData\Roaming\TheHunterSettings_live.cfg
[2010-12-18 18:21:28 | 000,000,043 | ---- | C] () -- C:\Users\Wojtaz\AppData\Roaming\TheHunterSettings.cfg
[2010-12-17 22:45:59 | 000,000,015 | ---- | C] () -- C:\Windows\Firestorm.INI
[2010-11-29 17:09:36 | 000,004,096 | -H-- | C] () -- C:\Users\Wojtaz\AppData\Local\keyfile3.drm
[2010-11-14 17:45:30 | 000,016,968 | ---- | C] () -- C:\Windows\hplj1300.ini
[2010-10-26 15:00:34 | 000,005,120 | ---- | C] () -- C:\Windows\SysWow64\BReWErS.dll
[2010-09-05 16:08:26 | 000,000,331 | ---- | C] () -- C:\Windows\game.ini
[2010-08-29 12:42:11 | 000,005,632 | ---- | C] () -- C:\Users\Wojtaz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-08-19 09:32:32 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010-08-17 20:43:30 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI
[2010-08-14 13:19:01 | 000,143,016 | ---- | C] () -- C:\Windows\hpoins44.dat
[2010-08-14 13:19:01 | 000,000,512 | ---- | C] () -- C:\Windows\hpomdl44.dat
[2010-08-13 22:49:51 | 000,000,000 | ---- | C] () -- C:\Windows\Viewer.INI
[2010-08-05 15:02:10 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2010-08-03 19:17:01 | 000,027,648 | ---- | C] () -- C:\Windows\SysWow64\AVSredirect.dll
[2010-07-31 15:35:37 | 000,000,000 | ---- | C] () -- C:\Windows\HPMProp.INI
[2010-07-30 23:10:05 | 000,002,048 | ---- | C] () -- C:\Windows\SysWow64\winver.exe
[2010-07-30 14:47:02 | 000,007,635 | ---- | C] () -- C:\Users\Wojtaz\AppData\Local\Resmon.ResmonCfg
[2009-07-14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009-07-14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009-07-14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009-07-14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2007-10-25 18:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\SysWow64\drivers\StarOpen.sys
[2003-10-28 19:07:20 | 000,372,736 | ---- | C] () -- C:\Windows\SysWow64\ffvfw.dll
[2003-10-28 16:51:41 | 000,106,496 | ---- | C] () -- C:\Windows\SysWow64\ff_theora.dll
[2001-08-29 14:11:40 | 000,398,848 | R--- | C] () -- C:\Windows\SysWow64\DK2WIN32.DLL

[color=#E56717]========== LOP Check ==========[/color]

[2011-06-06 19:23:45 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\AnvSoft
[2011-06-20 13:37:49 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Audacity
[2011-02-27 10:40:39 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\BESTplayer
[2011-02-12 20:49:15 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Bioshock2
[2010-10-06 21:05:33 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\BlackBean
[2011-09-17 14:54:51 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\DMCache
[2010-09-20 21:46:57 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\DVDVideoSoft
[2010-08-18 13:59:19 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\farcxcpatcher
[2011-03-16 16:27:37 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\FileZilla
[2011-09-17 14:36:27 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\foobar2000
[2011-02-03 19:54:03 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\GHISLER
[2011-03-03 00:00:31 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\gtk-2.0
[2011-06-21 15:00:31 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\IDM
[2011-09-05 19:36:47 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\ipla
[2011-09-17 18:06:40 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Kadu
[2011-07-14 12:59:31 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\ldw_data
[2010-09-29 21:01:29 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\MD5 Checksum Verifier
[2010-08-14 23:05:30 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\mkvtoolnix
[2010-08-21 21:25:07 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Mobile Atlas Creator
[2010-08-21 10:06:52 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\MOBILedit
[2010-08-21 12:05:43 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\MyPhoneExplorer
[2010-08-02 23:48:12 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Need for Speed World
[2010-09-12 15:55:28 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\New Technology Studio
[2011-08-10 08:02:50 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Nokia
[2010-08-21 10:15:17 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Nokia Ovi Suite
[2010-08-14 23:11:20 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Notepad++
[2011-02-16 20:18:26 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\OxyCube
[2010-08-28 20:03:36 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\PC Suite
[2011-02-26 20:06:45 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Publish Providers
[2011-05-19 11:48:50 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\PunkBuster
[2011-03-22 21:18:26 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\RDRM
[2011-08-09 09:59:50 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Samsung
[2011-02-26 20:13:29 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Sony
[2011-02-26 20:23:41 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Sony Creative Software Inc
[2011-07-03 12:28:36 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2010-09-21 13:58:36 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Thinstall
[2010-08-19 09:32:31 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Thunderbird
[2011-02-13 15:23:48 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Ubisoft
[2011-09-17 14:54:52 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\uTorrent
[2010-12-25 12:19:50 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\VitySoft
[2011-06-05 14:59:40 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\XnView
[2011-09-03 08:28:59 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]



< End of report >


log z włączonego normalnie Windowsa i wywaliłem parę podejrzanych procesów...
Kod: Zaznacz wszystko
OTL logfile created on: 2011-09-17 18:16:59 - Run 5
OTL by OldTimer - Version 3.2.28.0     Folder = C:\Users\Wojtaz\Desktop
64bit- An unknown product  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 1,20 Gb Available Physical Memory | 59,97% Memory free
4,00 Gb Paging File | 3,15 Gb Available in Paging File | 78,84% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,73 Gb Total Space | 7,04 Gb Free Space | 14,44% Space Free | Partition Type: NTFS
Drive D: | 165,23 Gb Total Space | 6,23 Gb Free Space | 3,77% Space Free | Partition Type: NTFS
Drive E: | 221,62 Gb Total Space | 2,82 Gb Free Space | 1,27% Space Free | Partition Type: NTFS
Drive H: | 585,26 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: WOJTAZ-PC | User Name: Wojtaz | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2011-09-17 18:07:05 | 000,581,632 | ---- | M] (OldTimer Tools) -- C:\Users\Wojtaz\Desktop\OTL.exe
PRC - [2011-05-19 11:48:52 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2011-04-21 01:36:28 | 000,912,344 | ---- | M] (Mozilla Corporation) -- D:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011-01-07 20:48:56 | 000,378,984 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2011-04-21 01:36:28 | 001,014,232 | ---- | M] () -- D:\Program Files (x86)\Mozilla Firefox\js3250.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011-05-19 11:48:52 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011-01-07 20:48:56 | 000,378,984 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2010-10-20 11:22:24 | 000,630,272 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010-02-19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009-07-16 17:04:16 | 000,316,664 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2005-03-09 21:50:18 | 000,018,944 | ---- | M] (http://libusb-win32.sourceforge.net) [Auto | Stopped] -- C:\Windows\SysWOW64\libusbd-nt.exe -- (libusbd)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2011-09-05 17:36:45 | 000,503,352 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:[b]64bit:[/b] - [2011-05-16 18:35:14 | 000,156,912 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:[b]64bit:[/b] - [2011-05-10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2011-01-25 12:40:06 | 000,142,936 | ---- | M] (Tonec Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\idmwfp.sys -- (IDMWFP)
DRV:[b]64bit:[/b] - [2011-01-03 10:38:36 | 000,177,128 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadmdm.sys -- (ssadmdm)
DRV:[b]64bit:[/b] - [2011-01-03 10:38:36 | 000,157,160 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadbus.sys -- (ssadbus) SAMSUNG Android USB Composite Device driver (WDM)
DRV:[b]64bit:[/b] - [2011-01-03 10:38:36 | 000,016,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadmdfl.sys -- (ssadmdfl) SAMSUNG Android USB Modem (Filter)
DRV:[b]64bit:[/b] - [2010-12-21 07:55:02 | 000,172,104 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdmdm.sys -- (sscdmdm)
DRV:[b]64bit:[/b] - [2010-12-21 07:55:02 | 000,136,264 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdbus.sys -- (sscdbus) SAMSUNG USB Composite Device driver (WDM)
DRV:[b]64bit:[/b] - [2010-12-21 07:55:02 | 000,036,328 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadadb.sys -- (androidusb)
DRV:[b]64bit:[/b] - [2010-12-21 07:55:02 | 000,019,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV:[b]64bit:[/b] - [2010-11-09 14:35:24 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\cpuz135_x64.sys -- (cpuz135)
DRV:[b]64bit:[/b] - [2010-10-21 16:11:04 | 000,097,552 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
DRV:[b]64bit:[/b] - [2010-08-19 20:24:34 | 000,074,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:[b]64bit:[/b] - [2010-08-11 18:23:12 | 000,034,032 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\seehcri.sys -- (seehcri)
DRV:[b]64bit:[/b] - [2010-08-11 18:23:00 | 000,027,176 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggsemc.sys -- (ggsemc)
DRV:[b]64bit:[/b] - [2010-08-11 18:23:00 | 000,013,352 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggflt.sys -- (ggflt)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:22 | 000,161,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscemdm.sys -- (sscemdm)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:22 | 000,129,024 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssceserd.sys -- (ssceserd) SAMSUNG Mobile Modem Diagnostic Serial Port V2 (WDM)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:22 | 000,127,488 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscebus.sys -- (sscebus) SAMSUNG USB Composite Device V2 driver (WDM)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:22 | 000,018,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscemdfl.sys -- (sscemdfl)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:16 | 000,161,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:16 | 000,127,488 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM)
DRV:[b]64bit:[/b] - [2010-04-27 04:25:16 | 000,018,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter)
DRV:[b]64bit:[/b] - [2010-02-26 14:33:40 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64j.sys -- (UsbserFilt)
DRV:[b]64bit:[/b] - [2010-02-26 14:33:24 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:[b]64bit:[/b] - [2010-02-26 14:33:22 | 000,025,088 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdcx64)
DRV:[b]64bit:[/b] - [2010-02-26 14:33:22 | 000,019,456 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcdx64)
DRV:[b]64bit:[/b] - [2010-02-26 14:21:22 | 000,173,056 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys -- (nmwcdnsux64)
DRV:[b]64bit:[/b] - [2010-02-26 14:21:20 | 000,012,288 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsucx64.sys -- (nmwcdnsucx64)
DRV:[b]64bit:[/b] - [2010-02-04 14:00:08 | 000,020,568 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dgderdrv.sys -- (dgderdrv)
DRV:[b]64bit:[/b] - [2009-11-27 15:47:56 | 000,067,072 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:[b]64bit:[/b] - [2009-11-09 01:42:00 | 000,016,392 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TFsExDisk.sys -- (TFsExDisk)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 02:06:32 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:54 | 000,151,592 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029unic.sys -- (s1029unic) Sony Ericsson Device 1029 USB Ethernet Emulation (WDM)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:54 | 000,139,304 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029mgmt.sys -- (s1029mgmt) Sony Ericsson Device 1029 USB WMC Device Management Drivers (WDM)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:54 | 000,135,208 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029obex.sys -- (s1029obex)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:52 | 000,158,760 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029mdm.sys -- (s1029mdm)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:52 | 000,034,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029nd5.sys -- (s1029nd5) Sony Ericsson Device 1029 USB Ethernet Emulation (NDIS)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:50 | 000,019,496 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029mdfl.sys -- (s1029mdfl)
DRV:[b]64bit:[/b] - [2009-05-25 13:34:48 | 000,116,264 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s1029bus.sys -- (s1029bus) Sony Ericsson Device 1029 driver (WDM)
DRV:[b]64bit:[/b] - [2009-05-05 04:00:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:44 | 000,145,960 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017unic.sys -- (s0017unic) Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:44 | 000,128,552 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017obex.sys -- (s0017obex)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:44 | 000,034,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017nd5.sys -- (s0017nd5) Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (NDIS)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:42 | 000,152,616 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017mdm.sys -- (s0017mdm)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:42 | 000,133,160 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017mgmt.sys -- (s0017mgmt) Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:42 | 000,019,496 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017mdfl.sys -- (s0017mdfl)
DRV:[b]64bit:[/b] - [2008-10-21 09:22:40 | 000,113,704 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\s0017bus.sys -- (s0017bus) Sony Ericsson Device 0017 driver (WDM)
DRV:[b]64bit:[/b] - [2008-08-28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:[b]64bit:[/b] - [2007-01-04 13:47:10 | 000,071,832 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\e4ldrx64.sys -- (E4LOADER) General Purpose USB Driver (e4ldrx64.sys)
DRV:[b]64bit:[/b] - [2007-01-04 13:46:30 | 000,146,968 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\e4usbawx64.sys -- (e4usbaw)
DRV - [2010-06-14 10:32:54 | 000,016,448 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\TFsExDisk.Sys -- (TFsExDisk)
DRV - [2010-01-29 11:40:16 | 000,115,600 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- D:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys -- (ISODrive)
DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2007-01-04 13:46:30 | 000,146,968 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\e4usbawx64.sys -- (e4usbaw)
DRV - [2005-03-09 21:50:16 | 000,033,792 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\libusb0.sys -- (libusb0)
DRV - [2002-04-26 12:04:16 | 000,095,484 | ---- | M] (DATOM Dariusz Cielebąk) [Kernel | Auto | Stopped] -- C:\Windows\SysWow64\drivers\KMM4XNT.SYS -- (Kmm4xNT)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2206084
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\URLSearchHook: {9d81af43-de53-48d0-a199-42c2a226b24c} - Reg Error: No CLSID value found. File not found
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.update: false
FF - prefs.js..browser.startup.homepage: "google.pl"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.8
FF - prefs.js..extensions.enabledItems: {02450954-cdd9-410f-b1da-db804e18c671}:0.96.3
FF - prefs.js..extensions.enabledItems: {446c03e0-2c35-11db-a98b-0800200c9a66}:0.6.2.15
FF - prefs.js..extensions.enabledItems: {8b86149f-01fb-4842-9dd8-4d7eb02fd055}:0.22.0
FF - prefs.js..extensions.enabledItems: extension@virtusdesigns.com:3.6.7
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: nasanightlaunch@example.com:0.6.20110508
FF - prefs.js..extensions.enabledItems: {5c8bfb7c-9a54-11dc-8314-0800200c9a66}:3.6.7
FF - prefs.js..extensions.enabledItems: info@djzig.com:1.3.3
FF - prefs.js..extensions.enabledItems: zigboom@ymail.com:1.3.3

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Components: D:\Program Files (x86)\Mozilla Firefox\components [2011-08-31 18:43:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Plugins: D:\Program Files (x86)\Mozilla Firefox\plugins [2011-06-21 13:35:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.12\extensions\\Components: D:\Program Files (x86)\Mozilla Thunderbird\components [2011-08-19 22:15:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.12\extensions\\Plugins: D:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\Wojtaz\AppData\Roaming\IDM\idmmzcc3 [2011-03-17 21:29:13 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\Wojtaz\AppData\Roaming\IDM\idmmzcc3 [2011-03-17 21:29:13 | 000,000,000 | ---D | M]

[2010-08-19 09:32:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Extensions
[2010-08-19 09:32:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011-06-18 23:00:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions
[2010-08-02 20:50:18 | 000,000,000 | ---D | M] (Screengrab) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
[2011-06-08 21:35:55 | 000,000,000 | ---D | M] (Favicon Picker 2) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{446c03e0-2c35-11db-a98b-0800200c9a66}
[2011-02-10 21:11:03 | 000,000,000 | ---D | M] (Aero Fox XL) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}
[2011-04-27 15:55:35 | 000,000,000 | ---D | M] (All-in-One Gestures) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{8b86149f-01fb-4842-9dd8-4d7eb02fd055}
[2011-05-24 18:34:35 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2011-02-10 21:11:07 | 000,000,000 | ---D | M] (Virtus Search Opt-in) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\extension@virtusdesigns.com
[2011-05-08 21:02:52 | 000,000,000 | ---D | M] (LavaFox V1) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\info@djzig.com
[2011-05-18 08:22:04 | 000,000,000 | ---D | M] (NASA Night Launch) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\nasanightlaunch@example.com
[2011-06-10 14:04:35 | 000,000,000 | ---D | M] (LavaFox V1-Green) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\zigboom@ymail.com
[2011-02-10 21:11:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\extension@virtusdesigns.com\chrome
[2011-02-10 21:11:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Wojtaz\AppData\Roaming\mozilla\Firefox\Profiles\ztqyzql8.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\win\mozapps\extensions
[2011-03-20 16:17:33 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011-03-26 17:02:20 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}

O1 HOSTS File: ([2011-09-17 14:54:34 | 000,012,393 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR/html4/strict.dtd">
O1 - Hosts: <html lang='en'>
O1 - Hosts: <head>
O1 - Hosts:             <meta name="description" content="Yahoo! GeoCities offers you a free web site and all the tools you need to build a dynamic site. Features include easy-to-use site building tools, online help, web site statistics, secure and reliable hosting, and an intuitive control panel.">
O1 - Hosts:             <title>Yahoo! GeoCities: Get a web site with easy-to-use site building tools.</title>
O1 - Hosts:             <link rel="stylesheet" type="text/css" media="all" href="http://l.yimg.com/a/combo?yui/2.5.2/build/reset-fonts-grids/reset-fonts-grids.css&smbiz/css/headfoot_6.css&smbiz/css/ysbs_glossary_1.css">
O1 - Hosts: <link rel="stylesheet" type="text/css" media="all" href="http://l.yimg.com/a/lib/smbiz/css/geocities_84954.css">
O1 - Hosts: <style>
O1 - Hosts: h1 { line-height:30px;height:30px; padding-left:15px; font-weight:bold;font-size:1.6em;color:#1f296a;}
O1 - Hosts: .services li { margin-left:1.0em; padding-left:0.5em; background:url("http://l.yimg.com/a/lib/smbiz/i/geo_bullet_3x3_1.gif") no-repeat 0 0.5em; margin-bottom:0.5em;margin-left:1.5em;margin-right:0.5em;width:6em}
O1 - Hosts: .services li {float:left; width:17em; font-size:116%;margin-top:0.8em}
O1 - Hosts:  .services {  font-size:116%; padding-bottom:20px }
O1 - Hosts: .learnmore a {color:#2882DE;font-size:16px}
O1 - Hosts: .image_web  {float:right; margin:15px 0 0 15px}
O1 - Hosts: p {margin:20px;font-size:1em;}
O1 - Hosts: h2 {margin:20px 0 0 20px;color:#1F296;font-weight:bold;font-size:1.25em;color:#1f296a;}
O1 - Hosts: h3 {margin:20px;color:#1F296;font-weight:bold;font-size:1.15em;color:#1f296a;}
O1 - Hosts: li.rule {border-top:solid 1px #DBE1E6;}
O1 - Hosts: </style>
O1 - Hosts: </head>
O1 - Hosts: <body>
O1 - Hosts: <!-- following code added by server. PLEASE REMOVE -->
O1 - Hosts: <!-- preceding code added by server. PLEASE REMOVE -->
O1 - Hosts:  <div class="ez-mw" style ="height:900px;width:905px">
O1 - Hosts:     <div class="ez-wri ez-oh" style="width:900px">
O1 - Hosts: 90 more lines...
O2:[b]64bit:[/b] - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O3:[b]64bit:[/b] - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser - No CLSID value found.
O3: - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser - No CLSID value found.
O3 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser: (no name) - {9D81AF43-DE53-48D0-A199-42C2A226B24C} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [adiras] C:\Windows\adirasx64.exe ()
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Bron-Spizaetus] C:\Windows\ShellNew\ElnorB.exe ( )
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [NPSStartup]  File not found
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000..\Run: [Tok-Cirrhatus] C:\Users\Wojtaz\AppData\Local\smss.exe ( )
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Wojtaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Empty.pif ( )
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 1
O7 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O8:[b]64bit:[/b] - Extra context menu item: E&ksport do programu Microsoft Excel - D:\Program Files (x86)\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O8:[b]64bit:[/b] - Extra context menu item: Ściągnij przez IDM - D:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8:[b]64bit:[/b] - Extra context menu item: Ściągnij wszystkie linki przez IDM - D:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:[b]64bit:[/b] - Extra context menu item: Ściągnij zawartość wideo FLV przez IDM - D:\Program Files (x86)\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - D:\Program Files (x86)\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Ściągnij przez IDM - D:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Ściągnij wszystkie linki przez IDM - D:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Ściągnij zawartość wideo FLV przez IDM - D:\Program Files (x86)\Internet Download Manager\IEGetVL.htm ()
O9 - Extra Button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files (x86)\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9C3275CF-314E-4A5F-9747-5A45B7B7B772}: DhcpNameServer = 192.168.1.1
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\mso-offdap11 - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\text/xml - No CLSID value found
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{a104c946-a550-11df-a41f-4061868ec1f2}\Shell - "" = AutoRun
O33 - MountPoints2\{a104c946-a550-11df-a41f-4061868ec1f2}\Shell\AutoRun\command - "" = I:\Startme.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2011-09-17 18:07:04 | 000,581,632 | ---- | C] (OldTimer Tools) -- C:\Users\Wojtaz\Desktop\OTL.exe
[2011-09-17 14:54:08 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Local\Bron.tok-4-17
[2011-09-14 19:25:35 | 000,316,416 | ---- | C] (Analog Devices.) -- C:\Windows\SysNative\unaddrv.x64.exe
[2011-09-14 19:25:35 | 000,212,992 | ---- | C] (Analog Devices.) -- C:\Windows\SysNative\unaddrv.exe
[2011-09-14 19:25:35 | 000,155,648 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysNative\adadix32.dll
[2011-09-14 19:25:35 | 000,004,981 | ---- | C] (SITECSOFT Co., LTD.) -- C:\Windows\SysNative\ADADIX2K.DLL
[2011-09-14 19:25:28 | 000,169,496 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\adiusbawx64.sys
[2011-09-14 19:25:28 | 000,146,968 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\e4usbawx64.sys
[2011-09-14 19:25:28 | 000,146,968 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysNative\drivers\e4usbawx64.sys
[2011-09-14 19:25:28 | 000,118,552 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\adiusbaw.sys
[2011-09-14 19:25:28 | 000,104,344 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\e4usbaw.sys
[2011-09-14 19:25:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAGEM F@st 800-840
[2011-09-14 19:25:27 | 000,071,832 | ---- | C] (Analog Deivces) -- C:\Windows\SysNative\drivers\e4ldrx64.sys
[2011-09-14 19:25:27 | 000,069,656 | ---- | C] (Analog Deivces) -- C:\Windows\SysNative\drivers\e4ldr.sys
[2011-09-14 19:25:27 | 000,058,264 | ---- | C] (Analog Deivces) -- C:\Windows\SysNative\drivers\adildrx64.sys
[2011-09-14 19:25:27 | 000,056,088 | ---- | C] (Analog Deivces) -- C:\Windows\SysNative\drivers\adildr.sys
[2011-09-14 19:25:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SAGEM
[2011-09-14 19:25:00 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Roaming\InstallShield
[2011-09-14 19:19:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSpeedUp
[2011-09-05 17:39:54 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Documents\Alcohol 120%
[2011-09-05 17:38:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Alcohol Soft
[2011-09-05 17:26:14 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Desktop\NFSP
[2011-09-05 17:15:56 | 000,000,000 | ---D | C] -- C:\7-ZipPortable
[2011-09-04 21:42:38 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Desktop\Broken.2006.PL.DVDRip.XViD.AC3
[2011-08-28 13:24:14 | 014,415,008 | ---- | C] (Mozilla) -- C:\Users\Wojtaz\Desktop\Firefox Setup 5.0.1.exe
[2011-08-28 09:11:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011-08-28 09:10:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2011-08-28 09:07:31 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo
[2011-08-27 23:07:05 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Desktop\480p
[2011-08-23 23:58:09 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\Desktop\Reckless_Racing_files
[2011-08-23 17:44:39 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Roaming\UltraVNC
[2011-08-23 17:44:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraVNC
[2011-08-23 17:44:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\UltraVNC
[2011-08-21 17:02:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Solidshield
[2011-08-20 13:49:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Symulator Jazdy 2
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\winlogon.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\smss.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\services.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\lsass.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\inetinfo.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\csrss.exe
[2010-08-17 21:55:47 | 000,148,736 | ---- | C] (Avanquest Software) -- C:\ProgramData\hpeB0CA.dll
[9 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2011-09-17 18:15:27 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-09-17 18:15:24 | 1609,965,568 | -HS- | M] () -- C:\hiberfil.sys
[2011-09-17 18:07:05 | 000,581,632 | ---- | M] (OldTimer Tools) -- C:\Users\Wojtaz\Desktop\OTL.exe
[2011-09-17 15:00:21 | 000,737,242 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2011-09-17 15:00:21 | 000,651,450 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011-09-17 15:00:21 | 000,153,930 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2011-09-17 15:00:21 | 000,120,382 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011-09-17 15:00:20 | 001,661,232 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011-09-17 14:54:34 | 000,012,393 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011-09-17 14:30:08 | 000,009,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-09-17 14:30:08 | 000,009,792 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-09-17 11:31:12 | 000,000,069 | ---- | M] () -- C:\Windows\NeroDigital.ini
[2011-09-15 19:35:46 | 004,363,581 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Backstab_HD_Samsung_GTi9000_Galaxy_S_android_v1.2.3_Cracked_Twingo.apk
[2011-09-14 19:26:10 | 000,000,168 | ---- | M] () -- C:\Windows\adidsl.ini
[2011-09-14 19:25:48 | 000,001,100 | ---- | M] () -- C:\Windows\adiras.ini
[2011-09-14 19:25:48 | 000,000,033 | ---- | M] () -- C:\Windows\SysNative\drivers\adidsl.cfg
[2011-09-14 19:25:48 | 000,000,021 | ---- | M] () -- C:\Windows\Fast800.ini
[2011-09-09 16:36:22 | 003,138,069 | ---- | M] () -- C:\Users\Wojtaz\Desktop\07. Rafi - Ciemna Strona Mocy feat. S-o- -pro....mp3
[2011-09-06 17:24:45 | 000,000,132 | ---- | M] () -- C:\Users\Wojtaz\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011-09-06 14:52:02 | 000,586,392 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Mickiewicz Adam - Dziady cz. 3.pdf
[2011-09-05 18:31:28 | 001,741,116 | ---- | M] () -- C:\Users\Wojtaz\Desktop\P9052038.jpg
[2011-09-05 18:12:10 | 000,585,172 | ---- | M] () -- C:\Users\Wojtaz\Desktop\P9051946.JPG
[2011-09-05 17:42:59 | 000,000,260 | ---- | M] () -- C:\Users\Wojtaz\Documents\ax_files.xml
[2011-09-05 17:36:45 | 000,503,352 | ---- | M] () -- C:\Windows\SysNative\drivers\sptd.sys
[2011-09-05 16:56:02 | 002,098,323 | ---- | M] () -- C:\Users\Wojtaz\Desktop\FPse for android v0.10.57.apk
[2011-09-05 16:55:53 | 000,243,206 | ---- | M] () -- C:\Users\Wojtaz\Desktop\SCPH1001.zip
[2011-09-05 16:39:35 | 291,421,132 | ---- | M] () -- C:\Users\Wojtaz\Desktop\com.eamobile.nfshotpursuit_sonyericsson.rar
[2011-09-05 16:31:22 | 000,009,906 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Plug-ins.rar
[2011-09-05 16:28:45 | 003,269,930 | ---- | M] () -- C:\Users\Wojtaz\Desktop\NFS_HP_Adreno_Cracked_Nops.apk
[2011-09-04 15:42:15 | 046,184,940 | ---- | M] () -- C:\Users\Wojtaz\Desktop\BlackDroidPinballTHD_dj.apk
[2011-09-03 22:33:41 | 019,342,869 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Marilyn Manson - Born Villain (Official Video) - No Reason.mp4
[2011-09-03 13:38:47 | 000,005,632 | ---- | M] () -- C:\Users\Wojtaz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-08-31 22:44:32 | 000,083,065 | ---- | M] () -- C:\Users\Wojtaz\Desktop\IMG_8737.JPG
[2011-08-30 10:55:06 | 102,154,208 | ---- | M] () -- C:\Users\Wojtaz\Desktop\cm_galaxysmtd_full-103.zip
[2011-08-30 10:20:37 | 003,538,376 | ---- | M] () -- C:\Users\Wojtaz\Desktop\sp510uz.pdf
[2011-08-29 11:43:15 | 000,266,563 | ---- | M] () -- C:\Users\Wojtaz\Desktop\nissan-silvia-s15-drift-255372.jpeg
[2011-08-29 10:20:10 | 102,142,936 | ---- | M] () -- C:\Users\Wojtaz\Desktop\cm_galaxysmtd_full-101.zip
[2011-08-28 13:25:26 | 014,415,008 | ---- | M] (Mozilla) -- C:\Users\Wojtaz\Desktop\Firefox Setup 5.0.1.exe
[2011-08-28 11:34:10 | 006,818,200 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Need For Speed Underground Soundtrack-The Wonders Of You.mp3
[2011-08-25 16:10:20 | 732,370,944 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Simpsonowie_by_Thaw.avi
[2011-08-25 09:29:11 | 004,580,875 | ---- | M] () -- C:\Users\Wojtaz\Desktop\JVR.zip
[2011-08-23 23:18:53 | 013,879,373 | ---- | M] () -- C:\Users\Wojtaz\Desktop\MafiaBlog.org_Monster_Truck_Rally_v1.02.rar
[2011-08-22 09:52:18 | 000,273,101 | ---- | M] () -- C:\Users\Wojtaz\Desktop\application_snappz.apk
[2011-08-21 17:11:37 | 001,572,864 | ---- | M] () -- C:\Users\Wojtaz\Desktop\default.sav
[2011-08-21 17:06:52 | 000,000,214 | ---- | M] () -- C:\Users\Wojtaz\Desktop\SHIFT 2 UNLEASHED™.lnk
[2011-08-20 13:50:08 | 000,122,904 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2011-08-20 13:50:07 | 000,109,080 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2011-08-20 13:49:35 | 000,000,871 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Symulator Jazdy 2.lnk
[2011-08-19 15:05:28 | 000,212,175 | ---- | M] () -- C:\Users\Wojtaz\Desktop\CM7fixgps&video&bootanimation Updates 1.1.zip
[2011-08-19 10:21:32 | 002,344,825 | ---- | M] () -- C:\Users\Wojtaz\Desktop\swiety_-_nie_wiem_po_co_to_wszystko.mp3
[2011-08-19 09:06:43 | 052,644,347 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Reckless_Racing_files.rar
[2011-08-19 09:05:40 | 003,470,551 | ---- | M] () -- C:\Users\Wojtaz\Desktop\Reckless_Racing_v1.0.4_Cracked.apk
[9 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-09-15 19:35:36 | 004,363,581 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Backstab_HD_Samsung_GTi9000_Galaxy_S_android_v1.2.3_Cracked_Twingo.apk
[2011-09-14 19:25:48 | 000,000,168 | ---- | C] () -- C:\Windows\adidsl.ini
[2011-09-14 19:25:48 | 000,000,021 | ---- | C] () -- C:\Windows\Fast800.ini
[2011-09-14 19:25:35 | 000,261,964 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep3.bnm
[2011-09-14 19:25:35 | 000,261,960 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep1.bnm
[2011-09-14 19:25:35 | 000,261,952 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld3.bnm
[2011-09-14 19:25:35 | 000,261,932 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld0.bnm
[2011-09-14 19:25:35 | 000,261,926 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei1.bnm
[2011-09-14 19:25:35 | 000,261,926 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p0.BNM
[2011-09-14 19:25:35 | 000,261,920 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld2.bnm
[2011-09-14 19:25:35 | 000,261,918 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p3.BNM
[2011-09-14 19:25:35 | 000,261,918 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p1.BNM
[2011-09-14 19:25:35 | 000,261,916 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep0.bnm
[2011-09-14 19:25:35 | 000,261,916 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei0.bnm
[2011-09-14 19:25:35 | 000,261,914 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei2.bnm
[2011-09-14 19:25:35 | 000,261,908 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei3.bnm
[2011-09-14 19:25:35 | 000,261,900 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p2.BNM
[2011-09-14 19:25:35 | 000,261,894 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld1.bnm
[2011-09-14 19:25:35 | 000,261,892 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep2.bnm
[2011-09-14 19:25:35 | 000,253,008 | ---- | C] () -- C:\Windows\adirasx64.exe
[2011-09-14 19:25:35 | 000,194,128 | ---- | C] () -- C:\Windows\adiras.exe
[2011-09-14 19:25:35 | 000,127,456 | ---- | C] () -- C:\Windows\SysNative\IPDETECT.EXE
[2011-09-14 19:25:35 | 000,081,088 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldep4.bnm
[2011-09-14 19:25:35 | 000,078,040 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbldei4.bnm
[2011-09-14 19:25:35 | 000,055,228 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld4.bnm
[2011-09-14 19:25:35 | 000,046,892 | ---- | C] () -- C:\Windows\SysNative\ADADIX16.DLL
[2011-09-14 19:25:35 | 000,022,288 | ---- | C] () -- C:\Windows\SysNative\drivers\RTBLD3p4.BNM
[2011-09-14 19:25:35 | 000,001,100 | ---- | C] () -- C:\Windows\adiras.ini
[2011-09-14 19:25:34 | 000,261,964 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9i1.bnm
[2011-09-14 19:25:34 | 000,261,962 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p3.bnm
[2011-09-14 19:25:34 | 000,261,960 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9i0.bnm
[2011-09-14 19:25:34 | 000,261,952 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p1.bnm
[2011-09-14 19:25:34 | 000,261,930 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p0.bnm
[2011-09-14 19:25:34 | 000,261,926 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p2.bnm
[2011-09-14 19:25:34 | 000,261,918 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9i2.bnm
[2011-09-14 19:25:34 | 000,152,220 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4I2.BIN
[2011-09-14 19:25:34 | 000,152,220 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4I1.BIN
[2011-09-14 19:25:34 | 000,152,220 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4I0.BIN
[2011-09-14 19:25:34 | 000,152,132 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4P2.BIN
[2011-09-14 19:25:34 | 000,152,132 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4P1.BIN
[2011-09-14 19:25:34 | 000,152,132 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4P0.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9P2.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9P1.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9P0.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9I2.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9I1.BIN
[2011-09-14 19:25:34 | 000,152,126 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E9I0.BIN
[2011-09-14 19:25:34 | 000,152,036 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4D2.BIN
[2011-09-14 19:25:34 | 000,152,034 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4D1.BIN
[2011-09-14 19:25:34 | 000,152,034 | ---- | C] () -- C:\Windows\SysNative\drivers\L1E4D0.BIN
[2011-09-14 19:25:34 | 000,053,590 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9i4.bnm
[2011-09-14 19:25:34 | 000,041,620 | ---- | C] () -- C:\Windows\SysNative\drivers\rtbld9p4.bnm
[2011-09-14 19:25:34 | 000,022,395 | ---- | C] () -- C:\Windows\SysNative\drivers\fpga.bin
[2011-09-14 19:25:34 | 000,000,033 | ---- | C] () -- C:\Windows\SysNative\drivers\adidsl.cfg
[2011-09-14 19:25:29 | 000,016,254 | ---- | C] () -- C:\Windows\SysWow64\drivers\adiusbawx64.cat
[2011-09-14 19:25:28 | 000,016,254 | ---- | C] () -- C:\Windows\SysWow64\drivers\adiusbaw.cat
[2011-09-14 19:25:28 | 000,013,981 | ---- | C] () -- C:\Windows\SysWow64\drivers\e4usbawx64.cat
[2011-09-14 19:25:28 | 000,013,981 | ---- | C] () -- C:\Windows\SysWow64\drivers\e4usbaw.cat
[2011-09-14 19:25:27 | 000,024,576 | ---- | C] () -- C:\Windows\enddisk32.exe
[2011-09-14 19:25:27 | 000,012,403 | ---- | C] () -- C:\Windows\SysNative\drivers\adildrx64.cat
[2011-09-14 19:25:27 | 000,012,403 | ---- | C] () -- C:\Windows\SysNative\drivers\adildr.cat
[2011-09-14 19:25:27 | 000,011,399 | ---- | C] () -- C:\Windows\SysNative\drivers\e4ldrx64.cat
[2011-09-14 19:25:27 | 000,011,399 | ---- | C] () -- C:\Windows\SysNative\drivers\e4ldr.cat
[2011-09-09 16:36:03 | 003,138,069 | ---- | C] () -- C:\Users\Wojtaz\Desktop\07. Rafi - Ciemna Strona Mocy feat. S-o- -pro....mp3
[2011-09-06 14:51:59 | 000,586,392 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Mickiewicz Adam - Dziady cz. 3.pdf
[2011-09-05 18:31:25 | 001,741,116 | ---- | C] () -- C:\Users\Wojtaz\Desktop\P9052038.jpg
[2011-09-05 18:12:10 | 000,585,172 | ---- | C] () -- C:\Users\Wojtaz\Desktop\P9051946.JPG
[2011-09-05 17:40:15 | 000,000,260 | ---- | C] () -- C:\Users\Wojtaz\Documents\ax_files.xml
[2011-09-05 17:36:45 | 000,503,352 | ---- | C] () -- C:\Windows\SysNative\drivers\sptd.sys
[2011-09-05 16:55:58 | 002,098,323 | ---- | C] () -- C:\Users\Wojtaz\Desktop\FPse for android v0.10.57.apk
[2011-09-05 16:55:51 | 000,243,206 | ---- | C] () -- C:\Users\Wojtaz\Desktop\SCPH1001.zip
[2011-09-05 16:31:21 | 000,009,906 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Plug-ins.rar
[2011-09-05 16:29:30 | 291,421,132 | ---- | C] () -- C:\Users\Wojtaz\Desktop\com.eamobile.nfshotpursuit_sonyericsson.rar
[2011-09-05 16:28:39 | 003,269,930 | ---- | C] () -- C:\Users\Wojtaz\Desktop\NFS_HP_Adreno_Cracked_Nops.apk
[2011-09-04 15:38:29 | 046,184,940 | ---- | C] () -- C:\Users\Wojtaz\Desktop\BlackDroidPinballTHD_dj.apk
[2011-09-03 22:33:19 | 019,342,869 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Marilyn Manson - Born Villain (Official Video) - No Reason.mp4
[2011-08-31 22:44:30 | 000,083,065 | ---- | C] () -- C:\Users\Wojtaz\Desktop\IMG_8737.JPG
[2011-08-30 10:53:28 | 102,154,208 | ---- | C] () -- C:\Users\Wojtaz\Desktop\cm_galaxysmtd_full-103.zip
[2011-08-30 10:20:33 | 003,538,376 | ---- | C] () -- C:\Users\Wojtaz\Desktop\sp510uz.pdf
[2011-08-29 11:43:14 | 000,266,563 | ---- | C] () -- C:\Users\Wojtaz\Desktop\nissan-silvia-s15-drift-255372.jpeg
[2011-08-29 10:18:31 | 102,142,936 | ---- | C] () -- C:\Users\Wojtaz\Desktop\cm_galaxysmtd_full-101.zip
[2011-08-28 11:33:54 | 006,818,200 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Need For Speed Underground Soundtrack-The Wonders Of You.mp3
[2011-08-28 09:10:37 | 000,002,563 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2011-08-25 15:45:31 | 732,370,944 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Simpsonowie_by_Thaw.avi
[2011-08-25 09:28:59 | 004,580,875 | ---- | C] () -- C:\Users\Wojtaz\Desktop\JVR.zip
[2011-08-24 18:10:27 | 000,212,175 | ---- | C] () -- C:\Users\Wojtaz\Desktop\CM7fixgps&video&bootanimation Updates 1.1.zip
[2011-08-23 23:17:58 | 013,879,373 | ---- | C] () -- C:\Users\Wojtaz\Desktop\MafiaBlog.org_Monster_Truck_Rally_v1.02.rar
[2011-08-22 09:52:14 | 000,273,101 | ---- | C] () -- C:\Users\Wojtaz\Desktop\application_snappz.apk
[2011-08-21 17:11:23 | 001,572,864 | ---- | C] () -- C:\Users\Wojtaz\Desktop\default.sav
[2011-08-21 17:06:52 | 000,000,214 | ---- | C] () -- C:\Users\Wojtaz\Desktop\SHIFT 2 UNLEASHED™.lnk
[2011-08-20 13:49:35 | 000,000,871 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Symulator Jazdy 2.lnk
[2011-08-19 10:20:45 | 002,344,825 | ---- | C] () -- C:\Users\Wojtaz\Desktop\swiety_-_nie_wiem_po_co_to_wszystko.mp3
[2011-08-19 09:05:56 | 052,644,347 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Reckless_Racing_files.rar
[2011-08-19 09:05:35 | 003,470,551 | ---- | C] () -- C:\Users\Wojtaz\Desktop\Reckless_Racing_v1.0.4_Cracked.apk
[2011-07-14 12:59:29 | 000,093,651 | ---- | C] () -- C:\Windows\LookDisk Uninstaller.exe
[2011-07-07 14:14:47 | 000,000,132 | ---- | C] () -- C:\Users\Wojtaz\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011-07-02 13:33:16 | 001,636,610 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011-06-30 15:45:15 | 000,000,600 | ---- | C] () -- C:\Users\Wojtaz\AppData\Roaming\winscp.rnd
[2011-04-09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011-03-17 21:59:39 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2011-02-26 03:19:32 | 000,041,872 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2011-02-19 18:00:30 | 000,034,308 | ---- | C] () -- C:\Windows\SysWow64\bassmod.dll
[2011-01-29 18:00:22 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll
[2011-01-29 18:00:22 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll
[2011-01-29 18:00:22 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll
[2011-01-29 18:00:22 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll
[2011-01-23 16:10:29 | 000,000,000 | ---- | C] () -- C:\Windows\Darkstone.INI
[2010-12-23 18:50:54 | 000,189,248 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010-12-23 18:50:50 | 000,669,184 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2010-12-23 18:50:50 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2010-12-21 21:37:39 | 000,033,792 | ---- | C] () -- C:\Windows\SysWow64\drivers\libusb0.sys
[2010-12-18 23:34:11 | 000,000,043 | ---- | C] () -- C:\Users\Wojtaz\AppData\Roaming\TheHunterSettings_live.cfg
[2010-12-18 18:21:28 | 000,000,043 | ---- | C] () -- C:\Users\Wojtaz\AppData\Roaming\TheHunterSettings.cfg
[2010-12-17 22:45:59 | 000,000,015 | ---- | C] () -- C:\Windows\Firestorm.INI
[2010-11-29 17:09:36 | 000,004,096 | -H-- | C] () -- C:\Users\Wojtaz\AppData\Local\keyfile3.drm
[2010-11-14 17:45:30 | 000,016,968 | ---- | C] () -- C:\Windows\hplj1300.ini
[2010-10-26 15:00:34 | 000,005,120 | ---- | C] () -- C:\Windows\SysWow64\BReWErS.dll
[2010-09-05 16:08:26 | 000,000,331 | ---- | C] () -- C:\Windows\game.ini
[2010-08-29 12:42:11 | 000,005,632 | ---- | C] () -- C:\Users\Wojtaz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-08-19 09:32:32 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010-08-17 20:43:30 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI
[2010-08-14 13:19:01 | 000,143,016 | ---- | C] () -- C:\Windows\hpoins44.dat
[2010-08-14 13:19:01 | 000,000,512 | ---- | C] () -- C:\Windows\hpomdl44.dat
[2010-08-13 22:49:51 | 000,000,000 | ---- | C] () -- C:\Windows\Viewer.INI
[2010-08-05 15:02:10 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2010-08-03 19:17:01 | 000,027,648 | ---- | C] () -- C:\Windows\SysWow64\AVSredirect.dll
[2010-07-31 15:35:37 | 000,000,000 | ---- | C] () -- C:\Windows\HPMProp.INI
[2010-07-30 23:10:05 | 000,002,048 | ---- | C] () -- C:\Windows\SysWow64\winver.exe
[2010-07-30 14:47:02 | 000,007,635 | ---- | C] () -- C:\Users\Wojtaz\AppData\Local\Resmon.ResmonCfg
[2009-07-14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009-07-14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009-07-14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009-07-14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2007-10-25 18:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\SysWow64\drivers\StarOpen.sys
[2003-10-28 19:07:20 | 000,372,736 | ---- | C] () -- C:\Windows\SysWow64\ffvfw.dll
[2003-10-28 16:51:41 | 000,106,496 | ---- | C] () -- C:\Windows\SysWow64\ff_theora.dll
[2001-08-29 14:11:40 | 000,398,848 | R--- | C] () -- C:\Windows\SysWow64\DK2WIN32.DLL

[color=#E56717]========== LOP Check ==========[/color]

[2011-06-06 19:23:45 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\AnvSoft
[2011-06-20 13:37:49 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Audacity
[2011-02-27 10:40:39 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\BESTplayer
[2011-02-12 20:49:15 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Bioshock2
[2010-10-06 21:05:33 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\BlackBean
[2011-09-17 14:54:51 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\DMCache
[2010-09-20 21:46:57 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\DVDVideoSoft
[2010-08-18 13:59:19 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\farcxcpatcher
[2011-03-16 16:27:37 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\FileZilla
[2011-09-17 14:36:27 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\foobar2000
[2011-02-03 19:54:03 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\GHISLER
[2011-03-03 00:00:31 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\gtk-2.0
[2011-06-21 15:00:31 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\IDM
[2011-09-05 19:36:47 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\ipla
[2011-09-17 18:06:40 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Kadu
[2011-07-14 12:59:31 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\ldw_data
[2010-09-29 21:01:29 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\MD5 Checksum Verifier
[2010-08-14 23:05:30 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\mkvtoolnix
[2010-08-21 21:25:07 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Mobile Atlas Creator
[2010-08-21 10:06:52 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\MOBILedit
[2010-08-21 12:05:43 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\MyPhoneExplorer
[2010-08-02 23:48:12 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Need for Speed World
[2010-09-12 15:55:28 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\New Technology Studio
[2011-08-10 08:02:50 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Nokia
[2010-08-21 10:15:17 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Nokia Ovi Suite
[2010-08-14 23:11:20 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Notepad++
[2011-02-16 20:18:26 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\OxyCube
[2010-08-28 20:03:36 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\PC Suite
[2011-02-26 20:06:45 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Publish Providers
[2011-05-19 11:48:50 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\PunkBuster
[2011-03-22 21:18:26 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\RDRM
[2011-08-09 09:59:50 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Samsung
[2011-02-26 20:13:29 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Sony
[2011-02-26 20:23:41 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Sony Creative Software Inc
[2011-07-03 12:28:36 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2010-09-21 13:58:36 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Thinstall
[2010-08-19 09:32:31 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Thunderbird
[2011-02-13 15:23:48 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\Ubisoft
[2011-09-17 14:54:52 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\uTorrent
[2010-12-25 12:19:50 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\VitySoft
[2011-06-05 14:59:40 | 000,000,000 | ---D | M] -- C:\Users\Wojtaz\AppData\Roaming\XnView
[2011-09-03 08:28:59 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]



< End of report >
MSI 770-G45 + AMD Athlon II X2 245 2.9GHz + GoodRam 2GB 1333MHz + Samsung 500GB + Zotac GeForce GTS-250 512MB DDR3 + Fortron 400W + Logitech X-540 + LG L1730P + Microsoft Windows Professional 64bit
Wojtaz
~user
 
Posty: 2042
Dołączenie: 12 Paź 2007, 18:50
Pochwały: 69



Komputer się resetuje automatycznie co 2 minuty

Postprzez wojtas 18 Wrz 2011, 13:54

Uruchom OTL i w sekcji własne opcje skanowania / skrypt wklej:
:OTL
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2206084
IE - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\URLSearchHook: {9d81af43-de53-48d0-a199-42c2a226b24c} - Reg Error: No CLSID value found. File not found
O3:64bit: - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser - No CLSID value found.
O3: - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser - No CLSID value found.
O3 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\..\Toolbar\WebBrowser: (no name) - {9D81AF43-DE53-48D0-A199-42C2A226B24C} - No CLSID value found.
O4 - HKLM..\Run: [adiras] C:\Windows\adirasx64.exe ()
O4 - HKLM..\Run: [Bron-Spizaetus] C:\Windows\ShellNew\ElnorB.exe ( )
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000..\Run: [Tok-Cirrhatus] C:\Users\Wojtaz\AppData\Local\smss.exe ( )
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Wojtaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Empty.pif ( )
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O7 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 1
O7 - HKU\S-1-5-21-737202195-1978434609-1293629131-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
[2011-09-17 14:54:08 | 000,000,000 | ---D | C] -- C:\Users\Wojtaz\AppData\Local\Bron.tok-4-17
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\winlogon.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\smss.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\services.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\lsass.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\inetinfo.exe
[2011-04-18 23:38:56 | 000,102,400 | ---- | C] ( ) -- C:\Users\Wojtaz\AppData\Local\csrss.exe

:Commands
[emptytemp]
[emptyflash]


Kliknij wykonaj skrypt. I potwierdź reset komputera .


zrób skan : http://www.programosy.pl/program,dr-web-cureit.html ( pokaż raport )
Następnie uruchamiasz OTL z opcją skanuj. Pokazujesz nowy log OTL.txt oraz raport z czyszczenia (zawartość notatnika, która otworzy się po restarcie).
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 9 gości