• Ogłoszenie:

Systemowy explorer wariuje

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Systemowy explorer wariuje

Postprzez Box 15 Kwi 2014, 21:15

reklama
Cześć.
Systemowy explorer zaczął mi wariować, katalogi się nie odświeżają samoczynnie, trzeba im pomóc, ikonki znikają, programy nie wyświetlają się w "całości" (brak czasem przycisków, nie można wciskać opcji). Po restarcie komputera wszystko jest ok przez jakiś czas (zdążyłem zrobić logi, bo nie mogłem w ogóle odpalić OTLa, a w gmerze brakowało przycisków).

gmer
Kod: Zaznacz wszystko
GMER 2.1.19357 - http://www.gmer.net
Rootkit scan 2014-04-15 20:12:22
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 ST950032 rev.0001 465,76GB
Running: gmer.exe; Driver: C:\Users\Box\AppData\Local\Temp\uxrirpow.sys


---- Kernel code sections - GMER 2.1 ----

.text   C:\Windows\System32\win32k.sys!W32pServiceTable                                                                 fffff960000d3f00 7 bytes [00, 98, F3, FF, 01,

A6, F0]
.text   C:\Windows\System32\win32k.sys!W32pServiceTable + 8                                                             fffff960000d3f08 3 bytes [C0, 06, 02]

---- User code sections - GMER 2.1 ----

.text   C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe[1592] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69   0000000076211465 2 bytes [21, 76]
.text   C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe[1592] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155  00000000762114bb 2 bytes [21, 76]
.text   ...                                                                                                             * 2

---- Threads - GMER 2.1 ----

Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1764]     0000000076f33e85
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1784]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1788]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1796]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1800]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1804]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1808]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1812]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1816]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1820]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1824]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1884]     0000000076f33e85
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1888]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1892]     0000000076f32e65
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1896]     0000000042cf2820
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1900]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1904]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1908]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1912]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:1916]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:2836]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:2356]     000000007498f5e1
Thread  C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [1680:4796]     0000000076f37151

---- Registry - GMER 2.1 ----

Reg     HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04                               
Reg     HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0                             1
Reg     HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew                          0xC3 0x95 0xBC 0xCB ...
Reg     HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC                               
Reg     HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0                             0x00 0x00 0x00 0x00 ...
Reg     HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                             0
Reg     HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                          0xAB 0xCC 0xD8 0x51 ...
Reg     HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)           
Reg     HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0                                 1
Reg     HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew                              0xC3 0x95 0xBC 0xCB ...
Reg     HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)           
Reg     HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0                                 0x00 0x00 0x00 0x00 ...
Reg     HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                                 0
Reg     HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                              0xAB 0xCC 0xD8 0x51 ...

---- EOF - GMER 2.1 ----


OTL
Kod: Zaznacz wszystko
OTL logfile created on: 4/15/2014 8:13:32 PM - Run 5
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Box\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16521)
Locale: 00000409 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3.97 Gb Total Physical Memory | 1.18 Gb Available Physical Memory | 29.75% Memory free
7.93 Gb Paging File | 4.29 Gb Available in Paging File | 54.14% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 116.44 Gb Total Space | 0.14 Gb Free Space | 0.12% Space Free | Partition Type: NTFS
Drive D: | 334.67 Gb Total Space | 114.46 Gb Free Space | 34.20% Space Free | Partition Type: NTFS

Computer Name: BOX-KOMPUTER | User Name: Box | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2014/04/15 18:29:56 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Box\Downloads\OTL_[www.programosy.pl].exe
PRC - [2014/03/28 16:05:11 | 000,228,744 | ---- | M] (Google Inc.) -- C:\Users\Box\AppData\Local\Google\Update\1.3.23.9\GoogleCrashHandler.exe
PRC - [2014/01/28 18:36:04 | 000,380,416 | ---- | M] () -- C:\Users\Box\Downloads\gmer\gmer.exe
PRC - [2012/03/26 17:35:16 | 000,449,168 | ---- | M] (CANON INC.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
PRC - [2009/11/03 05:13:44 | 003,054,136 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe
PRC - [2009/07/24 20:32:50 | 001,593,344 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
PRC - [2009/07/24 03:13:38 | 000,306,232 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe
PRC - [2009/07/23 03:58:46 | 000,017,976 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
PRC - [2009/07/16 20:07:54 | 000,178,744 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe
PRC - [2009/06/19 20:29:42 | 000,105,016 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
PRC - [2009/06/19 20:29:26 | 002,488,888 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe
PRC - [2009/06/16 03:30:42 | 000,084,536 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe
PRC - [2009/05/19 01:58:38 | 000,305,720 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
PRC - [2008/12/23 03:15:34 | 000,174,648 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe
PRC - [2008/08/14 07:00:08 | 000,113,208 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe
PRC - [2008/08/14 06:59:56 | 000,301,624 | ---- | M] () -- C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe
PRC - [2008/07/19 05:52:16 | 000,104,936 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
PRC - [2007/08/08 10:08:40 | 000,094,208 | ---- | M] () -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe
PRC - [2002/12/17 18:26:22 | 007,520,337 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2014/04/02 03:58:03 | 000,390,472 | ---- | M] () -- C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll
MOD - [2014/04/02 03:58:02 | 013,691,720 | ---- | M] () -- C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\PepperFlash\pepflashplayer.dll
MOD - [2014/04/02 03:57:59 | 004,081,480 | ---- | M] () -- C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\pdf.dll
MOD - [2014/04/02 03:57:54 | 000,674,632 | ---- | M] () -- C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\libglesv2.dll
MOD - [2014/04/02 03:57:53 | 000,093,000 | ---- | M] () -- C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\libegl.dll
MOD - [2014/04/02 03:57:52 | 001,647,432 | ---- | M] () -- C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\ffmpegsumo.dll
MOD - [2014/04/02 03:57:49 | 000,065,352 | ---- | M] () -- C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\chrome_elf.dll
MOD - [2014/02/13 04:50:27 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\72284863df9bea3f081ae98996400619\PresentationFramework.Aero.ni.dll
MOD - [2014/02/13 04:49:56 | 014,340,096 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\f703846404bb66a4ae03ef8133755007\PresentationFramework.ni.dll
MOD - [2014/02/13 04:49:30 | 012,238,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\660ac5d6da77df8e86fb26f05c6a9816\PresentationCore.ni.dll
MOD - [2014/02/13 04:49:18 | 003,348,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1d696b2d3de530f7ee971070263667ff\WindowsBase.ni.dll
MOD - [2014/02/13 04:49:08 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dll
MOD - [2014/02/13 04:48:52 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dll
MOD - [2014/01/28 18:36:04 | 000,380,416 | ---- | M] () -- C:\Users\Box\Downloads\gmer\gmer.exe
MOD - [2010/11/13 04:37:37 | 000,311,296 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll
MOD - [2009/07/24 20:32:50 | 001,593,344 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
MOD - [2009/07/23 03:58:46 | 000,017,976 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
MOD - [2008/08/28 02:32:36 | 000,619,816 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
MOD - [2008/06/09 19:55:08 | 000,013,096 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2014/03/01 06:33:34 | 000,111,616 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2013/05/27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2011/04/07 17:37:16 | 005,352,960 | ---- | M] (Native Instruments GmbH) [Disabled | Stopped] -- C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe -- (NIHardwareService)
SRV:[b]64bit:[/b] - [2009/09/15 23:21:58 | 000,359,552 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Windows\SysNative\FBAgent.exe -- (AFBAgent)
SRV:[b]64bit:[/b] - [2007/08/08 10:08:40 | 000,094,208 | ---- | M] () [Auto | Running] -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv)
SRV - [2014/03/26 22:07:25 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/01/07 23:00:22 | 000,569,768 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013/07/02 17:40:43 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/06/23 11:19:46 | 012,867,584 | ---- | M] () [On_Demand | Stopped] -- d:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe -- (wampmysqld)
SRV - [2013/06/23 11:09:48 | 000,024,576 | ---- | M] (Apache Software Foundation) [On_Demand | Stopped] -- d:\wamp\bin\apache\Apache2.4.4\bin\httpd.exe -- (wampapache)
SRV - [2012/03/23 14:25:24 | 000,087,040 | ---- | M] () [Disabled | Stopped] -- C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service)
SRV - [2010/09/08 21:46:00 | 003,852,792 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
SRV - [2010/07/23 09:45:26 | 000,045,056 | ---- | M] () [Disabled | Stopped] -- C:\Program Files (x86)\blueconnect\BackgroundService\ServiceManager.exe -- (Modem Device Helper)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/10/14 16:44:38 | 000,090,112 | ---- | M] (France Telecom SA) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC)
SRV - [2009/09/15 03:03:42 | 000,044,312 | ---- | M] () [Disabled | Stopped] -- C:\Program Files (x86)\ASUS\Game Park\GameConsole\OberonGameConsoleService.exe -- (OberonGameConsoleService)
SRV - [2009/09/11 04:09:28 | 000,109,184 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\ASUS\AI Recovery\ServiceSimple2.exe -- (ASUSRDVDService)
SRV - [2009/07/24 03:13:38 | 000,306,232 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe -- (FastBootAgent)
SRV - [2009/06/16 03:30:42 | 000,084,536 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe -- (ASLDRService)
SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2002/12/17 18:26:22 | 007,520,337 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe -- (MSSQL$SONY_MEDIAMGR)
SRV - [2002/12/17 18:23:30 | 000,311,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE -- (SQLAgent$SONY_MEDIAMGR)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\gPotato.eu\Rappelz\GameGuard\dump_wmimmc.sys -- (dump_wmimmc)
DRV:[b]64bit:[/b] - [2013/08/29 03:29:52 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2012/04/12 18:12:56 | 000,147,248 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:[b]64bit:[/b] - [2012/03/07 10:10:00 | 000,183,544 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mkd3kfnt.sys -- (Mkd3kfNt)
DRV:[b]64bit:[/b] - [2012/03/07 10:10:00 | 000,107,768 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Mkd2Nadr.sys -- (Mkd2Nadr)
DRV:[b]64bit:[/b] - [2012/03/07 10:10:00 | 000,098,040 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Mkd2BthF.sys -- (Mkd2Bthf)
DRV:[b]64bit:[/b] - [2012/03/01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/06/15 10:30:46 | 000,093,240 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:[b]64bit:[/b] - [2011/03/11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010/11/20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/11/20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010/08/25 20:36:04 | 010,611,552 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2010/07/23 09:45:28 | 000,119,680 | ---- | M] (TCT International Mobile Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\jrdusbser.sys -- (jrdusbser)
DRV:[b]64bit:[/b] - [2010/06/25 16:08:10 | 000,036,928 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\htcnprot.sys -- (htcnprot)
DRV:[b]64bit:[/b] - [2009/11/02 18:16:50 | 000,033,736 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ANDROIDUSB.sys -- (HTCAND64)
DRV:[b]64bit:[/b] - [2009/10/05 17:34:00 | 001,542,656 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:[b]64bit:[/b] - [2009/08/04 13:04:28 | 000,116,864 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:[b]64bit:[/b] - [2009/08/04 13:04:28 | 000,116,224 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbfake.sys -- (hwusbfake)
DRV:[b]64bit:[/b] - [2009/07/20 11:29:39 | 000,015,416 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbfiltr.sys -- (kbfiltr)
DRV:[b]64bit:[/b] - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/07/14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (1394hub)
DRV:[b]64bit:[/b] - [2009/07/14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:[b]64bit:[/b] - [2009/07/14 02:35:37 | 000,025,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WSDScan.sys -- (WSDScan)
DRV:[b]64bit:[/b] - [2009/07/14 02:09:50 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:[b]64bit:[/b] - [2009/07/14 02:09:10 | 000,007,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\loop.sys -- (msloop)
DRV:[b]64bit:[/b] - [2009/07/14 02:01:09 | 000,679,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xnacc.sys -- (xnacc)
DRV:[b]64bit:[/b] - [2009/07/09 10:11:31 | 001,222,144 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService)
DRV:[b]64bit:[/b] - [2009/06/18 22:18:10 | 000,015,928 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\lullaby.sys -- (lullaby)
DRV:[b]64bit:[/b] - [2009/06/12 05:41:55 | 000,112,128 | ---- | M] (ELAN Microelectronic Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD)
DRV:[b]64bit:[/b] - [2009/06/10 22:35:57 | 000,056,832 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SiSG664.sys -- (SiSGbeLH)
DRV:[b]64bit:[/b] - [2009/06/10 22:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009/06/09 06:38:23 | 000,055,296 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1E62x64.sys -- (L1E)
DRV:[b]64bit:[/b] - [2009/06/05 12:15:55 | 001,806,400 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC)
DRV:[b]64bit:[/b] - [2009/06/04 12:54:35 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2009/05/26 15:32:37 | 000,040,448 | ---- | M] (Alcor Micro, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmUStor.sys -- (AmUStor)
DRV:[b]64bit:[/b] - [2009/05/13 03:07:19 | 000,015,928 | ---- | M] (ASUS) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ATK64AMD.sys -- (MTsensor)
DRV:[b]64bit:[/b] - [2009/03/18 17:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:[b]64bit:[/b] - [2008/12/08 18:35:52 | 000,061,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:[b]64bit:[/b] - [2008/05/24 03:27:28 | 000,154,168 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV:[b]64bit:[/b] - [2007/07/24 21:11:32 | 000,014,904 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64)
DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2008/10/17 11:00:00 | 000,106,040 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\Mkd2Nadr.sys -- (Mkd2Nadr)
DRV - [2005/01/03 17:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\npptNT2.sys -- (NPPTNT2)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
IE - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\..\URLSearchHook: {1c68c940-1b2f-46eb-bd8c-2e1612ff6a58} - No CLSID value found
IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\..\SearchScopes\{25477387-2310-45df-933D-E9416D3D0303}: "URL" = http://eis.esnips.com/page/search_provider/?client_uuid=bda82ac0-85c3-4b48-b0d2-41fde8d1391d&q={searchTerms}
IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "qvo6"
FF - prefs.js..browser.search.order.1: "qvo6"
FF - prefs.js..browser.search.selectedEngine: "qvo6"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "google.pl"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29
FF - prefs.js..extensions.enabledItems: IplextoALL@ALLPlayer.org:0.1.0
FF - prefs.js..extensions.enabledItems: {1c68c940-1b2f-46eb-bd8c-2e1612ff6a58}:10.10.27.6
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_262.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1165635.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@ahnlab.com/asp/npaosmgr.1: C:\Program Files (x86)\AhnLab\ASP\Components\aosmgr\conflict_469\npaosmgr.dll (AhnLab, Inc.)
FF - HKLM\Software\MozillaPlugins\@ahnlab.com/asp/npmkd25aos: C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25aos.dll (AhnLab, Inc.)
FF - HKLM\Software\MozillaPlugins\@ahnlab.com/asp/npmkd25sp: C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25sp.dll (AhnLab, Inc.)
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nexon.com/NxGame: C:\ProgramData\Nexon\NGM\npNxGame.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@ahnlab.com/asp/npmkd25aos: C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25aos.dll (AhnLab, Inc.)
FF - HKCU\Software\MozillaPlugins\@ahnlab.com/asp/npmkd25sp: C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25sp.dll (AhnLab, Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Box\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Box\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Box\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/03/26 22:12:50 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/03/26 22:07:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

[2010/08/03 17:07:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Box\AppData\Roaming\mozilla\Extensions
[2014/03/26 22:17:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Box\AppData\Roaming\mozilla\Firefox\Profiles\o37cpy9r.default\extensions
[2014/03/26 22:13:00 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/03/26 22:13:00 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2012/06/28 17:42:00 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[2013/07/22 15:29:58 | 000,000,735 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\qvo6.xml

[color=#E56717]========== Chrome  ==========[/color]

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - homepage: http://google.pl/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: AhnLab Online Security (Enabled) = C:\Program Files (x86)\AhnLab\ASP\Components\aosmgr\conflict_221\npaosmgr.dll
CHR - plugin: AhnLab MyKeyDefense 2.5 (Enabled) = C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25aos.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: Windows Live® Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
CHR - plugin: Unity Player (Enabled) = C:\Users\Box\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Box\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - Extension: Angry Birds = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0\
CHR - Extension: Dysk Google = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: Glow = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\bekmjjakgojplnhahcilegeiklenjbgb\1.0_0\
CHR - Extension: YouTube = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Pool = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\cedbddnnmhgnedpamoenmdkhnpnfbpjb\1.0.4_0\
CHR - Extension: Szukaj w Google = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Pulse = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\iehllpiamddoghfbfbgmajdcifkpjopm\1.2.3_0\
CHR - Extension: Urban Rivals = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhaipmgfdihnlnbagikdpijhkifeonbi\1.0.2_0\
CHR - Extension: Google Wallet = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Gmail = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
CHR - Extension: RSS Feed Reader = C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnjaodmkngahhkoihejjehlcdlnohgmp\5.2.3_0\

O1 HOSTS File: ([2014/03/30 21:35:05 | 000,000,851 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O2:[b]64bit:[/b] - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation)
O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files (x86)\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKU\S-1-5-21-2465420228-375340488-1497802240-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (AlcorMicro Co., Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (CANON INC.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\.DEFAULT..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-18..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8:[b]64bit:[/b] - Extra context menu item: 使用快车3下载 - C:\Users\Box\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O8:[b]64bit:[/b] - Extra context menu item: 使用快车3下载全部链接 - C:\Users\Box\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: 使用快车3下载 - C:\Users\Box\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: 使用快车3下载全部链接 - C:\Users\Box\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O9 - Extra Button: PokerStars.eu - {07BA1DA9-F501-4796-8728-74D1B91A6CD5} - C:\Program Files (x86)\PokerStars.EU\PokerStarsUpdate.exe File not found
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:[b]64bit:[/b] - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25)
O16:[b]64bit:[/b] - DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25)
O16:[b]64bit:[/b] - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab (Java Plug-in 1.6.0_25)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 10.45.2)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 10.45.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.60 62.179.1.61
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2B466487-FFF9-467A-AB69-7A0E79CF7BD8}: DhcpNameServer = 62.179.1.60 62.179.1.61
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F2DA9F33-8344-4633-A248-0BD554A5634B}: DhcpNameServer = 62.179.1.60 62.179.1.61
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{05b09eab-d1cd-11e0-a99a-bf01b810e7c2}\Shell - "" = AutoRun
O33 - MountPoints2\{05b09eab-d1cd-11e0-a99a-bf01b810e7c2}\Shell\AutoRun\command - "" = G:\MicroLauncher.exe
O33 - MountPoints2\{08c7b8a7-b4c2-11e0-a97f-a6dad2ae30c1}\Shell - "" = AutoRun
O33 - MountPoints2\{08c7b8a7-b4c2-11e0-a97f-a6dad2ae30c1}\Shell\AutoRun\command - "" = F:\setup.exe
O33 - MountPoints2\{08c7bbf0-b4c2-11e0-a97f-a6dad2ae30c1}\Shell - "" = AutoRun
O33 - MountPoints2\{08c7bbf0-b4c2-11e0-a97f-a6dad2ae30c1}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{14487c31-15ab-11e0-8f32-90e6ba9e3968}\Shell - "" = AutoRun
O33 - MountPoints2\{14487c31-15ab-11e0-8f32-90e6ba9e3968}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{2306ae1d-cbc9-11e1-ae9f-90e6ba9e3968}\Shell - "" = AutoRun
O33 - MountPoints2\{2306ae1d-cbc9-11e1-ae9f-90e6ba9e3968}\Shell\AutoRun\command - "" = G:\autorun.exe
O33 - MountPoints2\{2a35be8c-d9e8-11e0-a938-85268849fbc3}\Shell - "" = AutoRun
O33 - MountPoints2\{2a35be8c-d9e8-11e0-a938-85268849fbc3}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{2a35bea0-d9e8-11e0-a938-85268849fbc3}\Shell - "" = AutoRun
O33 - MountPoints2\{2a35bea0-d9e8-11e0-a938-85268849fbc3}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{2cf7cf80-845b-11df-938a-8b87912d1060}\Shell - "" = AutoRun
O33 - MountPoints2\{2cf7cf80-845b-11df-938a-8b87912d1060}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\{319daaf2-e738-11df-a7cf-90e6ba9e3968}\Shell - "" = AutoRun
O33 - MountPoints2\{319daaf2-e738-11df-a7cf-90e6ba9e3968}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{3a321054-5fb9-11e2-87fc-90e6ba9e3968}\Shell - "" = AutoRun
O33 - MountPoints2\{3a321054-5fb9-11e2-87fc-90e6ba9e3968}\Shell\AutoRun\command - "" = F:\MicroLauncher.exe
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2014/04/14 00:20:41 | 000,000,000 | ---D | C] -- C:\Users\Box\AppData\Roaming\Opera Software
[2014/04/14 00:20:41 | 000,000,000 | ---D | C] -- C:\Users\Box\AppData\Local\Opera Software
[2014/04/09 19:10:32 | 000,000,000 | ---D | C] -- C:\Users\Box\Desktop\JavaApplication13
[2014/04/09 04:50:09 | 000,190,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2014/04/09 04:50:09 | 000,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2014/04/09 04:50:09 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iologmsg.dll
[2014/04/09 04:50:09 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iologmsg.dll
[2014/04/09 04:50:00 | 001,163,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2014/04/09 04:50:00 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2014/04/09 04:50:00 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2014/04/09 04:49:59 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2014/04/09 04:49:59 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2014/04/09 04:49:59 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2014/04/09 04:49:59 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2014/04/09 04:49:59 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2014/04/09 04:49:59 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2014/04/09 04:49:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2014/04/08 18:58:26 | 000,000,000 | ---D | C] -- C:\Users\Box\Desktop\Lab8Zadania
[2014/04/05 23:18:30 | 000,000,000 | ---D | C] -- C:\Users\Box\blablastery
[2014/04/03 22:29:51 | 000,000,000 | ---D | C] -- C:\Users\Box\Desktop\Kulki
[2014/04/03 18:15:13 | 000,000,000 | ---D | C] -- C:\Users\Box\Desktop\Krolestwa_Graph
[2014/04/03 15:39:45 | 000,000,000 | ---D | C] -- C:\Users\Box\AppData\Local\Ubisoft
[2014/04/02 19:46:19 | 000,000,000 | ---D | C] -- C:\Users\Box\Desktop\Lab7Zad1
[2014/03/30 21:36:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WampServer
[2014/03/27 21:28:31 | 000,000,000 | ---D | C] -- C:\Users\Box\Desktop\KomunikacjaMiejska
[2014/03/26 22:07:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2014/03/26 22:07:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2014/03/25 23:49:38 | 000,000,000 | ---D | C] -- C:\Users\Box\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ruby 1.9.3-p545
[2014/03/25 23:49:22 | 000,000,000 | ---D | C] -- C:\Ruby193
[2014/03/24 17:58:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tibia
[2011/01/05 18:53:24 | 007,623,968 | ---- | C] (SuperTux Development Team                                   ) -- C:\Users\Box\supertux-0.1.3-setup.exe
[2008/08/12 07:45:20 | 000,155,648 | ---- | C] (ASUS) -- C:\Program Files (x86)\Common Files\MSIactionall.dll
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Users\Box\Documents\*.tmp files -> C:\Users\Box\Documents\*.tmp -> ]
[1 C:\Users\Box\AppData\Local\*.tmp files -> C:\Users\Box\AppData\Local\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2014/04/15 20:12:00 | 000,000,280 | ---- | M] () -- C:\Windows\tasks\FoxTab.job
[2014/04/15 20:10:00 | 000,001,050 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000UA.job
[2014/04/15 20:07:24 | 000,001,042 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/04/15 19:50:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/04/15 18:51:40 | 000,010,560 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/04/15 18:51:40 | 000,010,560 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/04/15 18:50:10 | 002,009,842 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/04/15 18:50:10 | 000,862,282 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2014/04/15 18:50:10 | 000,767,422 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/04/15 18:50:10 | 000,205,412 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2014/04/15 18:50:10 | 000,170,218 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/04/15 18:43:47 | 000,045,056 | ---- | M] () -- C:\Windows\SysNative\acovcnt.exe
[2014/04/15 18:43:40 | 000,001,038 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/04/15 18:42:59 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/04/15 18:42:42 | 3193,765,888 | -HS- | M] () -- C:\hiberfil.sys
[2014/04/15 15:10:00 | 000,000,998 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000Core.job
[2014/04/14 00:20:43 | 000,017,890 | ---- | M] () -- C:\Users\Box\Desktop\Opera 12 Notes.html
[2014/04/14 00:20:38 | 000,001,091 | ---- | M] () -- C:\Users\Public\Desktop\Opera 20.lnk
[2014/04/13 23:12:53 | 000,332,823 | ---- | M] () -- C:\Users\Box\Desktop\XR2-Orbit-Cropped.jpg
[2014/04/10 22:37:23 | 000,000,600 | ---- | M] () -- C:\Users\Box\AppData\Roaming\winscp.rnd
[2014/04/10 15:47:49 | 000,002,292 | ---- | M] () -- C:\Users\Box\Desktop\Lab8.rar
[2014/04/10 14:31:48 | 000,006,644 | ---- | M] () -- C:\Users\Box\Desktop\2013miesieczny.png
[2014/04/10 14:09:05 | 000,068,330 | ---- | M] () -- C:\Users\Box\.recently-used.xbel
[2014/04/10 14:09:05 | 000,000,352 | ---- | M] () -- C:\Users\Box\Desktop\down.png
[2014/04/10 14:08:11 | 000,000,329 | ---- | M] () -- C:\Users\Box\Desktop\up.png
[2014/04/10 04:46:28 | 000,001,709 | ---- | M] () -- C:\Windows\SysNative\ServiceFilter.ini
[2014/04/09 23:12:43 | 023,047,683 | ---- | M] () -- C:\Users\Box\Desktop\mapka 001.xcf
[2014/04/07 21:46:19 | 000,026,108 | ---- | M] () -- C:\Users\Box\Desktop\10168488_730570430320994_103877351_n.jpg
[2014/04/06 14:30:17 | 000,000,733 | ---- | M] () -- C:\Users\Box\Desktop\szczalka.png
[2014/04/05 23:36:44 | 001,031,775 | ---- | M] () -- C:\Users\Box\Desktop\mapka 001.jpg
[2014/04/05 18:36:51 | 000,093,694 | ---- | M] () -- C:\Users\Box\Desktop\button.gif
[2014/04/04 11:48:42 | 000,000,222 | ---- | M] () -- C:\Users\Box\Desktop\Monaco.url
[2014/04/03 15:32:43 | 000,000,222 | ---- | M] () -- C:\Users\Box\Desktop\Might & Magic Duel of Champions.url
[2014/04/01 23:39:37 | 000,004,123 | ---- | M] () -- C:\Users\Box\Desktop\tmp.png
[2014/04/01 00:12:04 | 000,000,153 | ---- | M] () -- C:\Users\Box\AppData\Roaming\WB.CFG
[2014/03/30 21:36:38 | 000,000,533 | ---- | M] () -- C:\Users\Box\Desktop\WampServer.lnk
[2014/03/30 19:37:58 | 000,001,001 | ---- | M] () -- C:\Users\Box\Desktop\MyThread.class
[2014/03/30 19:37:58 | 000,000,324 | ---- | M] () -- C:\Users\Box\Desktop\Watki.class
[2014/03/30 17:47:01 | 000,000,543 | ---- | M] () -- C:\Users\Box\Desktop\Watki.java
[2014/03/30 13:55:06 | 000,028,556 | ---- | M] () -- C:\Users\Box\Desktop\wykresKołowy.png
[2014/03/29 16:43:27 | 001,082,673 | ---- | M] () -- C:\Users\Box\Desktop\tibia10.png
[2014/03/26 22:49:02 | 000,003,440 | ---- | M] () -- C:\Users\Box\Desktop\test.html
[2014/03/24 19:55:12 | 004,468,818 | ---- | M] () -- C:\Users\Box\Desktop\sfwizytowka.xcf
[2014/03/24 17:58:18 | 000,000,925 | ---- | M] () -- C:\Users\Public\Desktop\Tibia.lnk
[2014/03/22 15:54:44 | 000,569,486 | ---- | M] () -- C:\Users\Box\Desktop\gwiazda.xcf
[2014/03/21 01:40:35 | 000,065,593 | ---- | M] () -- C:\Users\Box\AppData\Roaming\Camdata.ini
[2014/03/21 01:40:35 | 000,004,537 | ---- | M] () -- C:\Users\Box\AppData\Roaming\CamStudio.cfg
[2014/03/21 01:40:35 | 000,000,408 | ---- | M] () -- C:\Users\Box\AppData\Roaming\CamShapes.ini
[2014/03/21 01:40:35 | 000,000,408 | ---- | M] () -- C:\Users\Box\AppData\Roaming\CamLayout.ini
[2014/03/21 01:39:47 | 180,094,464 | ---- | M] () -- C:\Users\Box\Desktop\cc.avi
[2014/03/21 01:38:15 | 000,000,096 | ---- | M] () -- C:\Users\Box\AppData\Roaming\version2.xml
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Users\Box\Documents\*.tmp files -> C:\Users\Box\Documents\*.tmp -> ]
[1 C:\Users\Box\AppData\Local\*.tmp files -> C:\Users\Box\AppData\Local\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2014/04/14 00:20:43 | 000,017,890 | ---- | C] () -- C:\Users\Box\Desktop\Opera 12 Notes.html
[2014/04/14 00:20:38 | 000,001,091 | ---- | C] () -- C:\Users\Public\Desktop\Opera 20.lnk
[2014/04/14 00:20:38 | 000,001,091 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera 20.lnk
[2014/04/13 23:12:47 | 000,332,823 | ---- | C] () -- C:\Users\Box\Desktop\XR2-Orbit-Cropped.jpg
[2014/04/10 15:47:49 | 000,002,292 | ---- | C] () -- C:\Users\Box\Desktop\Lab8.rar
[2014/04/10 14:31:42 | 000,006,644 | ---- | C] () -- C:\Users\Box\Desktop\2013miesieczny.png
[2014/04/10 14:09:05 | 000,068,330 | ---- | C] () -- C:\Users\Box\.recently-used.xbel
[2014/04/10 14:09:05 | 000,000,352 | ---- | C] () -- C:\Users\Box\Desktop\down.png
[2014/04/10 14:08:11 | 000,000,329 | ---- | C] () -- C:\Users\Box\Desktop\up.png
[2014/04/07 21:46:17 | 000,026,108 | ---- | C] () -- C:\Users\Box\Desktop\10168488_730570430320994_103877351_n.jpg
[2014/04/06 14:29:27 | 000,000,733 | ---- | C] () -- C:\Users\Box\Desktop\szczalka.png
[2014/04/06 00:40:58 | 023,047,683 | ---- | C] () -- C:\Users\Box\Desktop\mapka 001.xcf
[2014/04/05 23:32:36 | 001,031,775 | ---- | C] () -- C:\Users\Box\Desktop\mapka 001.jpg
[2014/04/05 18:36:51 | 000,093,694 | ---- | C] () -- C:\Users\Box\Desktop\button.gif
[2014/04/04 11:48:42 | 000,000,222 | ---- | C] () -- C:\Users\Box\Desktop\Monaco.url
[2014/04/03 15:32:42 | 000,000,222 | ---- | C] () -- C:\Users\Box\Desktop\Might & Magic Duel of Champions.url
[2014/03/30 21:36:38 | 000,000,533 | ---- | C] () -- C:\Users\Box\Desktop\WampServer.lnk
[2014/03/30 19:37:58 | 000,001,001 | ---- | C] () -- C:\Users\Box\Desktop\MyThread.class
[2014/03/30 19:37:58 | 000,000,324 | ---- | C] () -- C:\Users\Box\Desktop\Watki.class
[2014/03/30 19:37:47 | 000,000,543 | ---- | C] () -- C:\Users\Box\Desktop\Watki.java
[2014/03/30 13:55:06 | 000,028,556 | ---- | C] () -- C:\Users\Box\Desktop\wykresKołowy.png
[2014/03/29 16:43:26 | 001,082,673 | ---- | C] () -- C:\Users\Box\Desktop\tibia10.png
[2014/03/26 22:42:43 | 000,003,440 | ---- | C] () -- C:\Users\Box\Desktop\test.html
[2014/03/26 22:07:31 | 000,001,121 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014/03/24 19:55:12 | 004,468,818 | ---- | C] () -- C:\Users\Box\Desktop\sfwizytowka.xcf
[2014/03/24 17:58:18 | 000,000,925 | ---- | C] () -- C:\Users\Public\Desktop\Tibia.lnk
[2014/03/22 15:54:42 | 000,569,486 | ---- | C] () -- C:\Users\Box\Desktop\gwiazda.xcf
[2014/03/21 01:39:27 | 180,094,464 | ---- | C] () -- C:\Users\Box\Desktop\cc.avi
[2014/02/17 23:00:44 | 000,031,132 | ---- | C] () -- C:\Users\Box\AppData\Local\recently-used.xbel
[2014/02/10 22:21:28 | 000,000,600 | ---- | C] () -- C:\Users\Box\AppData\Roaming\winscp.rnd
[2014/02/05 20:33:13 | 000,065,593 | ---- | C] () -- C:\Users\Box\AppData\Roaming\Camdata.ini
[2014/02/05 20:33:13 | 000,004,537 | ---- | C] () -- C:\Users\Box\AppData\Roaming\CamStudio.cfg
[2014/02/05 20:33:13 | 000,000,408 | ---- | C] () -- C:\Users\Box\AppData\Roaming\CamShapes.ini
[2014/02/05 20:33:13 | 000,000,408 | ---- | C] () -- C:\Users\Box\AppData\Roaming\CamLayout.ini
[2014/02/05 20:25:51 | 000,000,096 | ---- | C] () -- C:\Users\Box\AppData\Roaming\version2.xml
[2013/12/19 01:12:03 | 000,000,153 | ---- | C] () -- C:\Users\Box\AppData\Roaming\WB.CFG
[2013/11/09 19:11:37 | 000,364,318 | ---- | C] () -- C:\Users\Box\AppData\Local\foxtab_speeddial.crx
[2013/10/28 23:03:07 | 000,000,184 | ---- | C] () -- C:\Users\Box\.packettracer
[2013/07/23 01:58:38 | 000,000,000 | ---- | C] () -- C:\Users\Box\defogger_reenable
[2013/04/12 16:03:27 | 000,389,646 | ---- | C] () -- C:\Users\Box\walkiklas.xcf
[2012/08/19 22:42:27 | 000,644,608 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2012/08/19 22:42:27 | 000,258,048 | ---- | C] () -- C:\Windows\SysWow64\libFLAC.dll
[2012/05/03 04:54:46 | 000,042,392 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2011/02/16 16:14:47 | 000,007,646 | ---- | C] () -- C:\Users\Box\AppData\Local\Resmon.ResmonCfg
[2011/01/06 00:36:37 | 207,101,828 | ---- | C] () -- C:\Users\Box\flstudio_9.1_online.exe
[2010/10/14 12:57:49 | 003,627,901 | ---- | C] () -- C:\Users\Box\KOCHAMM.JPG
[2010/10/10 23:16:14 | 000,134,584 | ---- | C] () -- C:\Users\Box\2sacriu.jpg
[2010/10/10 11:03:51 | 000,039,045 | ---- | C] () -- C:\Users\Box\tosty.gif
[2010/10/01 23:40:43 | 000,009,216 | ---- | C] () -- C:\Users\Box\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/09/03 23:19:28 | 000,000,036 | ---- | C] () -- C:\Users\Box\BUZZER.m3u
[2010/07/29 01:20:21 | 000,000,091 | ---- | C] () -- C:\Users\Box\AppData\Local\fusioncache.dat
[2009/11/03 04:52:26 | 000,131,368 | ---- | C] () -- C:\ProgramData\FullRemove.exe
[2009/09/09 00:01:33 | 000,000,000 | ---- | C] () -- C:\Users\Box\AppData\Local\{74C6757F-8498-4866-8504-C25DDD8BA815}
[2009/04/08 20:31:56 | 000,106,496 | ---- | C] () -- C:\Program Files (x86)\Common Files\CPInstallAction.dll
[2008/05/22 18:35:54 | 000,051,962 | ---- | C] () -- C:\Program Files (x86)\Common Files\banner.jpg

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/26 04:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 03:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== LOP Check ==========[/color]

[2013/07/23 01:51:29 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\.minecraft
[2013/03/20 17:21:04 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Arduino
[2010/10/21 23:09:51 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Astroburn Lite
[2010/01/18 20:36:28 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Asus WebStorage
[2011/09/18 18:08:00 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Automatyczny Terminarz
[2011/06/08 21:21:37 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\BITS
[2010/07/05 18:58:37 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\blueconnect
[2013/06/11 13:28:28 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Canon
[2010/09/12 16:03:18 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Clickteam
[2012/10/07 16:48:28 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\CorsixTH
[2013/07/27 20:19:07 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\DAEMON Tools Lite
[2010/09/29 12:54:52 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Dev-Cpp
[2012/05/22 22:55:35 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\DroidExplorer
[2012/02/09 19:04:41 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\e-academy Inc
[2010/06/02 18:42:38 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\EeeStorageUploader
[2013/07/22 15:29:51 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\eIntaller
[2011/01/20 03:06:22 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\ESET
[2011/04/25 11:54:47 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\EurekaLog
[2011/06/08 21:16:16 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\FlashGet
[2011/06/08 21:16:13 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\FlashGetBHO
[2013/11/09 19:12:11 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\FoxTab
[2011/08/27 13:20:12 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\fretsonfire
[2011/01/04 21:57:24 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\gamigo
[2010/12/22 23:43:20 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\GetRightToGo
[2011/03/28 22:09:14 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\GHISLER
[2014/04/10 14:09:05 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\gtk-2.0
[2012/05/22 22:01:49 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\HTC
[2012/05/22 22:02:46 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2010/11/17 02:13:44 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Inkscape
[2011/02/10 16:34:25 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\ipla
[2013/02/13 13:53:33 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\JCreator
[2013/11/26 23:21:04 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\JetBrains
[2011/01/04 21:36:52 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\launcher
[2010/10/29 12:35:14 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Logia
[2011/08/15 04:03:07 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\LolClient
[2011/01/04 21:36:52 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Martial Empires Luancher OBT
[2010/06/17 23:33:39 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\maxup
[2011/09/16 17:32:09 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Notepad++
[2013/12/12 00:21:26 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\OBS
[2010/10/25 23:46:01 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\OpenOffice.org
[2010/01/19 00:32:28 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Opera
[2014/04/14 00:20:41 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Opera Software
[2011/09/17 15:22:03 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Orbit
[2011/06/08 21:33:39 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\ProgSense
[2010/07/29 01:32:22 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Publish Providers
[2013/07/06 18:10:30 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Riot Games
[2011/11/08 16:20:35 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Scribus
[2010/07/29 01:32:23 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Sony
[2013/07/02 17:40:16 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\SplitMediaLabs
[2013/11/30 11:09:18 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Spotify
[2011/12/07 15:41:08 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Stardock
[2013/11/19 23:02:19 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\SWI-Prolog
[2010/08/17 02:04:56 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Synthesia
[2011/05/06 19:51:44 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\SynthMaker
[2010/06/02 18:42:30 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\temp
[2011/07/22 00:52:30 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Thunderbird
[2014/03/24 18:02:18 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Tibia
[2010/10/13 00:02:17 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\treasurechest
[2012/06/28 12:06:48 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\TS3Client
[2012/06/28 12:18:00 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\ts3overlay
[2011/11/13 13:42:13 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Unity
[2013/11/15 04:25:44 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\uTorrent
[2010/11/05 21:14:56 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\Wypas
[2013/12/10 22:52:48 | 000,000,000 | ---D | M] -- C:\Users\Box\AppData\Roaming\xpce

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 145 bytes -> C:\ProgramData\Temp:AB689DEA
@Alternate Data Stream - 129 bytes -> C:\ProgramData\Temp:05EE1EEF

< End of report >


Extras
Kod: Zaznacz wszystko
OTL Extras logfile created on: 4/15/2014 8:13:32 PM - Run 5
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Box\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16521)
Locale: 00000409 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3.97 Gb Total Physical Memory | 1.18 Gb Available Physical Memory | 29.75% Memory free
7.93 Gb Paging File | 4.29 Gb Available in Paging File | 54.14% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 116.44 Gb Total Space | 0.14 Gb Free Space | 0.12% Space Free | Partition Type: NTFS
Drive D: | 334.67 Gb Total Space | 114.46 Gb Free Space | 34.20% Space Free | Partition Type: NTFS

Computer Name: BOX-KOMPUTER | User Name: Box | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"AutoUpdateDisableNotify" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3
"C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\Connectivity\ConnectivityManager.exe" = C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\Connectivity\ConnectivityManager.exe:*:enabled:CSS -- (France Telecom SA)
"C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe" = C:\Program Files (x86)\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3
"C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\Connectivity\ConnectivityManager.exe" = C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\Connectivity\ConnectivityManager.exe:*:enabled:CSS -- (France Telecom SA)


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{087FADDF-152B-4F15-91E1-38A6954AC21C}" = rport=137 | protocol=17 | dir=out | app=system |
"{12FCE80A-EB0B-4B09-9A06-79E79A7718A6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{2F6C84DA-3793-41D1-AE32-B38956940B9D}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |
"{42888788-3C17-4189-BD9C-03B10C04D302}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4772891F-3AA0-4D6C-B17B-9F8A9FA4CD15}" = lport=2869 | protocol=6 | dir=in | app=system |
"{4E16F43F-04F4-43F7-A9C7-383800CB12BE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{5650B9F1-FD08-45DF-B268-C9B372AA74D8}" = lport=138 | protocol=17 | dir=in | app=system |
"{616FB82F-6C81-4215-A7B9-A07D029F476C}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe |
"{6183D845-FD39-49A8-8FF5-849C9D54FA9E}" = rport=139 | protocol=6 | dir=out | app=system |
"{795BA23D-6FC0-4C49-82FE-9772C87A45EF}" = rport=138 | protocol=17 | dir=out | app=system |
"{839B66F6-3EA6-477A-A76D-E309689B5D5D}" = rport=445 | protocol=6 | dir=out | app=system |
"{8D75A4F3-BF6C-47AE-941C-A2B062C4579B}" = lport=445 | protocol=6 | dir=in | app=system |
"{970AA011-F1C3-42D3-A0A3-5CCCC5D7B1FC}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{A2601739-1E44-495F-95AA-948E00411781}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{A35103F7-943D-4ECA-A00C-1E2B10509993}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{C2FCF247-82E1-4D16-9F4B-CF2EE42527B3}" = lport=137 | protocol=17 | dir=in | app=system |
"{C492DF84-5171-4221-94E0-6AA121B46FB7}" = lport=139 | protocol=6 | dir=in | app=system |
"{E8CFC392-4BE6-4A27-A3ED-3AA1C788286D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00B01361-A629-4317-9344-04A63127AF2D}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{00CD22EE-59AA-468F-8455-7C6E52C4CDD7}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer_service.exe |
"{038C962E-90F9-43B2-807F-3EEF23EAEC69}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{0B95C3B4-9F51-4E5E-BEF6-8DC7F0F6F49E}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
"{0C66DF24-91B4-41D2-88B7-A9B8F92EC156}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\monaco\monaco.exe |
"{0CB04DCC-9EBF-47C7-9D10-E95E5385551C}" = protocol=17 | dir=in | app=d:\cherrydegames\dragon nest\dragonnest.exe |
"{1036B78D-3B9A-4ABA-B12F-CD4AB00E4585}" = protocol=17 | dir=in | app=c:\users\box\desktop\terraria\terraria 1.03\terraria 1.03\terrariaserver.exe |
"{14FCD611-3DE3-46CC-87FC-6331430E1A56}" = protocol=17 | dir=in | app=c:\programdata\nexonus\ngm\ngm.exe |
"{1A3D4DDA-3E42-4559-81C4-C0761C93DA18}" = protocol=6 | dir=in | app=c:\users\box\appdata\roaming\dropbox\bin\dropbox.exe |
"{205470A1-2934-429B-8AC9-3604145E0165}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe |
"{24C8C277-EB9E-4606-90E2-C7B7DBEB274E}" = protocol=17 | dir=in | app=c:\programdata\nexonus\ngm\ngm.exe |
"{24DCAF08-37B2-4F7E-A1FC-6E05B124467F}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{2533F59D-513F-4940-9806-39350D9E25A1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe |
"{27758E9F-476E-4CF1-80AB-FD4F88BE83F6}" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{2B1BEDDE-1719-49E3-B945-18C6CF48E682}" = dir=in | app=c:\program files\echobit\evolve\evosvc.exe |
"{2ECB6511-85F0-4E81-A56B-E8581D66F54E}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{2FF987DE-B043-4C46-AA70-EA98DE298B43}" = protocol=17 | dir=in | app=d:\world of warcraft\launcher.patch.exe |
"{326FD2E0-A79D-4099-BC70-570CC492B0BE}" = dir=in | app=c:\program files\echobit\evolve\evolveclient.exe |
"{38172892-9B78-4501-A3D3-9AD50219AAFD}" = protocol=17 | dir=in | app=c:\users\box\downloads\terraria 1.0.6\terraria 1.0.6\terrariaserver.exe |
"{3B73BC95-1DEB-48CA-ACBA-F3807196F740}" = protocol=17 | dir=in | app=c:\users\box\genki\utorrent.exe |
"{3D08B32F-B697-47E3-99B7-8DA172BEC18B}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{3D2B9E71-3790-46F0-8458-3DEA289E2FAA}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{419BA4EF-DC06-4418-8DF6-327FC63C1162}" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"{42BE9111-D1B9-4F1D-AD0F-3FD08AC29856}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{4452669F-EB8A-4CE9-BB1A-A677DE6EE4EC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{4A2B8A43-82B7-44DA-8A94-978085E1E3A7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe |
"{4B9CA472-9ECE-4C01-958D-9820A5448183}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\pluginwrapper\opera_plugin_wrapper.exe |
"{4E5C0516-7D4C-4D05-861D-0695BE7C241F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{51AABEAB-4E8C-41B7-AE74-163546E9838C}" = protocol=6 | dir=in | app=c:\cherrydegames\dragon nest\dragonnest.exe |
"{533837A4-1222-4582-B826-0126585AF200}" = protocol=6 | dir=in | app=d:\sacred\system\sacred2.exe |
"{534224A0-C23F-46F8-8C50-1ABA49BAB5C8}" = protocol=17 | dir=in | app=c:\cherrydegames\dragon nest\dragonnest.exe |
"{5AD5E69A-F14A-45D3-87DE-296D7700D52C}" = protocol=6 | dir=in | app=d:\sacred\system\s2gs.exe |
"{5AE73705-202B-43FA-B8D1-89CC4E68C066}" = protocol=6 | dir=in | app=c:\users\box\desktop\terraria\terraria 1.03\terraria 1.03\terrariaserver.exe |
"{5B46C894-4120-4D75-A053-DDD2793DEB98}" = protocol=6 | dir=in | app=c:\users\box\genki\utorrent.exe |
"{609EB720-66E9-4CAF-B8D3-1C5372313A5A}" = protocol=17 | dir=in | app=c:\program files (x86)\webserv\apache2\bin\webserv(apache).exe |
"{60BBA502-4161-405E-A600-FBAE841BD14F}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{625A5694-5A18-4198-A185-A094F59CE9CE}" = protocol=6 | dir=in | app=c:\programdata\nexonus\ngm\ngm.exe |
"{674BC99E-8F9F-4158-9E33-62DD24F56477}" = protocol=6 | dir=in | app=c:\program files (x86)\webserv\apache2\bin\webserv(apache).exe |
"{68C90C96-521E-4421-BBCF-50132C8CBDF7}" = protocol=17 | dir=in | app=c:\programdata\nexon\ngm\ngm.exe |
"{698159C6-4A41-4B3B-9167-7FE420458D04}" = protocol=17 | dir=in | app=c:\users\box\desktop\muzyka\download\eo_2_0_0\server\server.exe |
"{6C2FBA85-7543-4812-B8B7-992EE2D3A623}" = protocol=17 | dir=in | app=c:\users\box\desktop\aurasea.exe |
"{6E46237B-68BF-4809-A3B4-0A68F8485304}" = protocol=17 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe |
"{71C9BEF9-C8F9-4D29-AFF7-8AEB562D864F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{73BCF5A8-A68E-42D2-A769-3C16B454D464}" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\battlefield bad company 2\bfbc2updater.exe |
"{74DA5C04-A756-4A9E-9CFB-83579E3FE4E9}" = protocol=6 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe |
"{760F1AE4-777B-42FF-A220-30869335C42B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{766486FC-0929-4173-86A1-22915584C38E}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{7F2B4FEB-548D-4AFB-BFF6-EC16D883DB9F}" = protocol=6 | dir=in | app=d:\cherrydegames\dragon nest\dragonnest.exe |
"{86013274-BA2E-455C-961B-46474D6A4834}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{860991F7-D288-4FF0-9458-9B2B585C189B}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\might & magic - duel of champions\game.exe |
"{89DCF208-24FF-4DEC-80E3-87DBCE3840A5}" = protocol=17 | dir=in | app=c:\users\box\desktop\terraria\terraria.exe |
"{8D595218-76C2-49EE-8D22-5FA07EE3D61B}" = protocol=6 | dir=in | app=c:\programdata\nexonus\ngm\ngm.exe |
"{8DD1157D-342D-42F1-9201-91AF156A2687}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{8EC8387D-D082-44D7-9BCF-75914D0564C2}" = protocol=17 | dir=in | app=d:\sacred\system\s2gs.exe |
"{905AD954-7FE9-4B49-88AA-D05B56673683}" = protocol=6 | dir=in | app=c:\users\box\desktop\terraria\terraria.exe |
"{91EB5E58-E321-47FF-94B7-AAF74630925B}" = protocol=6 | dir=in | app=c:\programdata\nexon\ngm\ngm.exe |
"{97471A31-21D2-4DB9-8314-1A2BE6794E84}" = protocol=6 | dir=in | app=d:\steamlibrary\steamapps\common\might & magic - duel of champions\game.exe |
"{97F467C1-C503-4C5F-B8EA-1D9231B3F2A6}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer.exe |
"{98E60929-F7EB-4232-9A49-809FC89EDC23}" = protocol=6 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe |
"{9B5C55F2-AB92-4B30-B806-8F184B063D1B}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{9C418811-5ABF-4004-A240-4F15291EA7AD}" = protocol=17 | dir=in | app=c:\programdata\nexon\common\nmservice.exe |
"{9E5DBB5B-2B8D-4376-98C4-C0F828CFA5F3}" = protocol=17 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe |
"{A6AB0059-73A1-4372-9546-AB746D3116E6}" = protocol=6 | dir=in | app=d:\world of warcraft\launcher.patch.exe |
"{A7DCD5D9-C982-4187-9F85-215868803CBC}" = protocol=6 | dir=in | app=c:\users\box\desktop\aurasea.exe |
"{A83080BA-01B2-4CEC-A5E4-9AE62E5FDE4F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{AA2B6449-8AAE-408A-94F0-1D6ED294C8ED}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\groove.exe |
"{AD8AAFB9-5EEF-405F-90F8-46641F240C5C}" = protocol=6 | dir=in | app=c:\program files (x86)\terraria\terraria.exe |
"{ADEA8327-5663-43BD-B186-B6F6FE494023}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\pluginwrapper\opera_plugin_wrapper.exe |
"{B69B8AC8-FF9A-496E-B09C-E1EDB1348891}" = protocol=6 | dir=in | app=c:\program files (x86)\webserv\mysql\bin\webserv(mysqld).exe |
"{B7C0EFEE-0C61-4A6C-81C3-657754B8E968}" = protocol=17 | dir=in | app=d:\sacred\system\sacred2.exe |
"{C1027255-E51D-49B8-8615-46D85CBDF5AA}" = protocol=6 | dir=in | app=c:\programdata\nexon\common\nmservice.exe |
"{C56698B4-DFB1-4887-8A47-CCA4B5CEC914}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer_service.exe |
"{C6387EB8-2AF5-43AA-A650-5B7B8F0D43A6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe |
"{CE117EE1-A5F9-4A22-9565-5506CF01980C}" = protocol=6 | dir=in | app=c:\users\box\downloads\terraria 1.0.6\terraria 1.0.6\terrariaserver.exe |
"{D2DA8BC5-0CE0-468D-89B6-ABFFF31720D6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terraria.exe |
"{D5BC0F1E-E011-46F3-85C2-F0CB56D735CF}" = protocol=6 | dir=in | app=c:\program files (x86)\wapster\wapster aqq\aqq.exe |
"{D69D908A-353A-4D7F-90CA-FDA48ECE82F5}" = protocol=17 | dir=in | app=c:\program files (x86)\webserv\mysql\bin\webserv(mysqld).exe |
"{D7E1719D-6FFD-401B-B2BC-DD0E1921CF80}" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"{DDD7C1FC-D238-44B3-B3C8-C9A88837FBF4}" = protocol=17 | dir=in | app=c:\users\box\appdata\roaming\dropbox\bin\dropbox.exe |
"{EAC211E9-2249-407A-88E3-C8F1F9864058}" = protocol=17 | dir=in | app=d:\world of warcraft\launcher.exe |
"{EB2E97C1-724F-4820-89FC-23E9E7BE6187}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version6\teamviewer.exe |
"{EBFA9170-9380-4722-92AE-49C5E4C7438F}" = protocol=17 | dir=in | app=d:\steamlibrary\steamapps\common\monaco\monaco.exe |
"{F07A2DB0-40CD-4EAF-A3E3-773DDBEBA19C}" = protocol=17 | dir=in | app=c:\program files (x86)\terraria\terraria.exe |
"{F1C0C3EC-4982-4CB1-A945-8BEC1A4D04F2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{F1D84382-45A7-4D6D-8CD1-F8620B487339}" = protocol=17 | dir=in | app=c:\program files (x86)\wapster\wapster aqq\aqq.exe |
"{F58240A9-06BD-46A4-A8F3-BC02BDDC5851}" = protocol=6 | dir=in | app=d:\world of warcraft\launcher.exe |
"{F829D152-92A1-4C6E-A383-FE673876A0C3}" = protocol=6 | dir=in | app=c:\users\box\desktop\muzyka\download\eo_2_0_0\server\server.exe |
"{F9D5E3CE-9D07-4366-B378-75A20BF486B5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe |
"{FB57AD8E-22DD-4E90-8691-3A473DA21737}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"TCP Query User{0A6D78AC-6C27-42B6-A449-9F66CE77FBFD}C:\users\box\genki\utorrent.exe" = protocol=6 | dir=in | app=c:\users\box\genki\utorrent.exe |
"TCP Query User{0B56B689-AB57-4D52-A48B-C41F34A34285}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"TCP Query User{0D2F915E-25BF-4A3C-999C-95A259742E56}C:\program files (x86)\wapster\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\wapster\wapster aqq\aqq.exe |
"TCP Query User{15585905-DF5D-43B4-B1CA-6D65742A2289}C:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe" = protocol=6 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe |
"TCP Query User{17D03E2F-A918-43AD-9BD8-47E1EBBC754E}C:\program files (x86)\terraria\terraria.exe" = protocol=6 | dir=in | app=c:\program files (x86)\terraria\terraria.exe |
"TCP Query User{20C73B52-6B19-45B8-8111-B85C7A57E7DA}C:\program files (x86)\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"TCP Query User{210CA08D-9BC1-45C8-849D-F5BC4644E0C3}C:\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd.exe |
"TCP Query User{2855B1DD-6833-463B-AE23-489646AED7B5}C:\users\box\desktop\harry-1.2.0\harry-1.2.0\harry.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\harry-1.2.0\harry-1.2.0\harry.exe |
"TCP Query User{316C67A3-8962-4043-B9A2-BC2133C2ACEB}C:\users\box\desktop\wapster\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\wapster\wapster aqq\aqq.exe |
"TCP Query User{34116465-29BF-4FA8-99AF-CFBC328011E7}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"TCP Query User{3B30D32E-4419-4D52-8F84-4E4B5D7C1F22}C:\program files (x86)\mad tracks\madtracks.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mad tracks\madtracks.exe |
"TCP Query User{425EF31B-1DB2-442E-81C0-E105273B5D1B}C:\users\box\desktop\terraria\terraria.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\terraria\terraria.exe |
"TCP Query User{4A0A1336-6AA8-427F-81F8-EC4FE7CAC9C0}C:\users\box\desktop\sony_vegas_6.0-darkwarez.pl-zibix89.rar\sony\vegas 6.0\vegsrv60.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\sony_vegas_6.0-darkwarez.pl-zibix89.rar\sony\vegas 6.0\vegsrv60.exe |
"TCP Query User{79D97B07-5C19-41B6-BE11-EAFBC6FCD941}C:\totalcmd\totalcmd.exe" = protocol=6 | dir=in | app=c:\totalcmd\totalcmd.exe |
"TCP Query User{7C5625CD-6799-41AF-A1BF-DA0880C14B06}C:\program files (x86)\flashget network\flashget 3\flashget3.exe" = protocol=6 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe |
"TCP Query User{7D7532DF-20F0-4E16-8136-0F15233CDEFA}C:\program files (x86)\webserv\apache2\bin\webserv(apache).exe" = protocol=6 | dir=in | app=c:\program files (x86)\webserv\apache2\bin\webserv(apache).exe |
"TCP Query User{7DC3EAE2-F203-4F78-A03C-B660ACD35472}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{7DC8679A-23B2-4B45-8B03-1BA2BA7CF8FD}C:\program files (x86)\orbitdownloader\orbitnet.exe" = protocol=6 | dir=in | app=c:\program files (x86)\orbitdownloader\orbitnet.exe |
"TCP Query User{7F97AA87-F8BE-4F7B-939F-EE07D95122DD}C:\users\box\appdata\local\temp\cdd.tmp\kmservice.exe" = protocol=6 | dir=in | app=c:\users\box\appdata\local\temp\cdd.tmp\kmservice.exe |
"TCP Query User{82896738-0A68-4213-A450-F0AEAC559456}C:\program files (x86)\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"TCP Query User{92A28FC1-DDEE-4F80-AB71-BC6B7F30D132}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{98DBFF1F-C1DA-4C94-8159-19234199C23F}C:\users\box\downloads\terraria 1.0.6\terraria 1.0.6\terrariaserver.exe" = protocol=6 | dir=in | app=c:\users\box\downloads\terraria 1.0.6\terraria 1.0.6\terrariaserver.exe |
"TCP Query User{A6674857-C558-4574-BC79-8704202EA27D}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe |
"TCP Query User{B2F2A92D-782C-4165-B0E8-8105C0FC986C}C:\program files (x86)\microsoft games\flight simulator 9\fs9.exe" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\flight simulator 9\fs9.exe |
"TCP Query User{B4E9CB3A-903E-408C-BA74-A9D6F3E01ABF}C:\users\box\desktop\muzyka\download\eo_2_0_0\server\server.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\muzyka\download\eo_2_0_0\server\server.exe |
"TCP Query User{C18061E7-2A18-465D-A9FB-CEFA68E8CCC9}C:\users\box\desktop\wapster\wapster aqq\aqq.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\wapster\wapster aqq\aqq.exe |
"TCP Query User{CFC395B9-B5AD-44BB-B457-E2AA9D1AA91E}C:\users\box\desktop\terraria\terraria 1.03\terraria 1.03\terrariaserver.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\terraria\terraria 1.03\terraria 1.03\terrariaserver.exe |
"TCP Query User{E58B939D-BECF-4DA6-9745-4B3A8215C39D}C:\program files (x86)\webserv\mysql\bin\webserv(mysqld).exe" = protocol=6 | dir=in | app=c:\program files (x86)\webserv\mysql\bin\webserv(mysqld).exe |
"TCP Query User{E79CD45F-C505-4B63-BB8D-7E964FE8995B}C:\users\box\desktop\muzyka\download\xw1.0.3\server\server.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\muzyka\download\xw1.0.3\server\server.exe |
"TCP Query User{E8095B76-B412-48DF-8BBD-EEDD38804A93}D:\sacred\system\s2gs.exe" = protocol=6 | dir=in | app=d:\sacred\system\s2gs.exe |
"TCP Query User{EFD0DBB6-0BAB-433A-B236-4035ECC02DEC}C:\users\box\desktop\aurasea.exe" = protocol=6 | dir=in | app=c:\users\box\desktop\aurasea.exe |
"TCP Query User{F5A9D4FC-3AB4-4468-A710-1A8DD7F8FC3B}C:\program files (x86)\empire interactive\flatout2\flatout2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\empire interactive\flatout2\flatout2.exe |
"TCP Query User{FF1F4B6B-AA2B-4B8C-A8DC-5199833F793E}D:\world of warcraft\blizzard downloader.exe" = protocol=6 | dir=in | app=d:\world of warcraft\blizzard downloader.exe |
"UDP Query User{0E9EC56C-8975-43A5-B2E2-FCD44D2D2596}C:\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd.exe |
"UDP Query User{14496428-C0E7-40A3-8618-AD79F295BD88}C:\users\box\desktop\muzyka\download\eo_2_0_0\server\server.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\muzyka\download\eo_2_0_0\server\server.exe |
"UDP Query User{14A115C1-6F3D-4921-865C-095232F80C40}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe |
"UDP Query User{1B4A9197-56CA-4641-9306-C74DC6DE82D1}C:\program files (x86)\empire interactive\flatout2\flatout2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\empire interactive\flatout2\flatout2.exe |
"UDP Query User{20BC7A32-C617-40F6-B7FF-4D57C1414142}C:\users\box\desktop\wapster\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\wapster\wapster aqq\aqq.exe |
"UDP Query User{43A502C4-0A5C-4B0E-99B0-A19A46CB8A78}C:\program files (x86)\mad tracks\madtracks.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mad tracks\madtracks.exe |
"UDP Query User{4E9A0925-5797-40B5-B6CC-EE7906F24E14}C:\users\box\desktop\wapster\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\wapster\wapster aqq\aqq.exe |
"UDP Query User{5C1ED571-065A-4721-8652-9417C3087C3E}C:\program files (x86)\wapster\wapster aqq\aqq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\wapster\wapster aqq\aqq.exe |
"UDP Query User{60556925-A9C4-40D4-BC61-7689D7C6879D}C:\users\box\appdata\local\temp\cdd.tmp\kmservice.exe" = protocol=17 | dir=in | app=c:\users\box\appdata\local\temp\cdd.tmp\kmservice.exe |
"UDP Query User{6A1FFA1E-84C1-4BB9-BA37-3E1533A15F40}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe |
"UDP Query User{6CCD3EE8-44C1-452D-8C80-645C92B9B7EE}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{77C61D83-01B2-43FB-9693-4972BF6A7642}C:\users\box\desktop\aurasea.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\aurasea.exe |
"UDP Query User{89DF19FE-324A-4C7F-A206-D581B7A552AA}C:\users\box\desktop\terraria\terraria 1.03\terraria 1.03\terrariaserver.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\terraria\terraria 1.03\terraria 1.03\terrariaserver.exe |
"UDP Query User{901C679B-80E6-4574-9959-F0EA410E78D9}C:\program files (x86)\terraria\terraria.exe" = protocol=17 | dir=in | app=c:\program files (x86)\terraria\terraria.exe |
"UDP Query User{943B0800-D3EC-4764-B5E8-3CD866594006}C:\program files (x86)\orbitdownloader\orbitnet.exe" = protocol=17 | dir=in | app=c:\program files (x86)\orbitdownloader\orbitnet.exe |
"UDP Query User{97D24AB1-0457-4A66-B399-B4CD6DBDA2DC}C:\program files (x86)\webserv\apache2\bin\webserv(apache).exe" = protocol=17 | dir=in | app=c:\program files (x86)\webserv\apache2\bin\webserv(apache).exe |
"UDP Query User{9F57EC6C-B241-4543-9CAE-BD1B9488B7C1}C:\program files (x86)\flashget network\flashget 3\flashget3.exe" = protocol=17 | dir=in | app=c:\program files (x86)\flashget network\flashget 3\flashget3.exe |
"UDP Query User{A94AFB9A-A74A-4EEB-9076-D6D95041179F}C:\totalcmd\totalcmd.exe" = protocol=17 | dir=in | app=c:\totalcmd\totalcmd.exe |
"UDP Query User{B475E5EE-EF2A-43AB-B40F-30CBC1397E25}C:\program files (x86)\webserv\mysql\bin\webserv(mysqld).exe" = protocol=17 | dir=in | app=c:\program files (x86)\webserv\mysql\bin\webserv(mysqld).exe |
"UDP Query User{C08452CF-519C-44AA-89BA-B471AFA7B56E}C:\program files (x86)\microsoft games\flight simulator 9\fs9.exe" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\flight simulator 9\fs9.exe |
"UDP Query User{C7AE5F4F-A2AD-40D8-8E36-435D2D743D27}C:\users\box\genki\utorrent.exe" = protocol=17 | dir=in | app=c:\users\box\genki\utorrent.exe |
"UDP Query User{CD74C1D5-9717-44B8-9647-0E388AC60DA2}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{CE2FC071-1EC2-430B-8BB7-E2F72E07FDFD}C:\users\box\desktop\muzyka\download\xw1.0.3\server\server.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\muzyka\download\xw1.0.3\server\server.exe |
"UDP Query User{D3EDCA6F-4DE5-479E-B4AB-B017892DD79C}C:\program files (x86)\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"UDP Query User{D5D2DCA8-CA31-4148-B4ED-3A33B3FDFD71}C:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe" = protocol=17 | dir=in | app=c:\program files (x86)\veoh networks\veohwebplayer\veohwebplayer.exe |
"UDP Query User{E1EE4F5A-C53D-4300-A1AC-85C1663733F7}C:\users\box\downloads\terraria 1.0.6\terraria 1.0.6\terrariaserver.exe" = protocol=17 | dir=in | app=c:\users\box\downloads\terraria 1.0.6\terraria 1.0.6\terrariaserver.exe |
"UDP Query User{E7C96B4F-3886-4D97-B3F6-06D5D7AA96E0}C:\users\box\desktop\terraria\terraria.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\terraria\terraria.exe |
"UDP Query User{E844D625-1602-48E1-AE56-1E2521DE1EA4}C:\users\box\desktop\sony_vegas_6.0-darkwarez.pl-zibix89.rar\sony\vegas 6.0\vegsrv60.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\sony_vegas_6.0-darkwarez.pl-zibix89.rar\sony\vegas 6.0\vegsrv60.exe |
"UDP Query User{E85CC23B-4194-47AB-B9FE-8AD559705CBC}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{ED223B4B-CD42-416C-B67B-1FCF35C7BBAD}C:\users\box\desktop\harry-1.2.0\harry-1.2.0\harry.exe" = protocol=17 | dir=in | app=c:\users\box\desktop\harry-1.2.0\harry-1.2.0\harry.exe |
"UDP Query User{EE044DD9-ED63-4242-9A68-37A4E41FDACA}C:\program files (x86)\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe |
"UDP Query User{EE2B5169-3F9D-469F-AFFE-99D17DDC084A}D:\world of warcraft\blizzard downloader.exe" = protocol=17 | dir=in | app=d:\world of warcraft\blizzard downloader.exe |
"UDP Query User{F53BFFA6-0D8A-41CF-B6C6-70455E9C1E25}D:\sacred\system\s2gs.exe" = protocol=17 | dir=in | app=d:\sacred\system\s2gs.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01D57CF6-B5BC-4D03-AFF5-7960CFBD05A9}" = Native Instruments Guitar Rig 5
"{034106B5-54B7-467F-B477-5B7DBB492624}" = Microsoft Sync Framework Services v1.0 SP1 (x64)
"{04B83666-3A62-452B-85D3-70F8117F2329}_is1" = CamStudio 2.7.2
"{0826F9E4-787E-481D-83E0-BC6A57B056D5}" = Microsoft SQL Server VSS Writer
"{0886900B-B2F3-452C-B580-60F1253F7F80}" = Native Instruments Controller Editor
"{0AB1CEAD-FF24-33F8-8A25-292A8E835822}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK
"{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}" = Native Instruments Service Center
"{0F37D969-1260-419E-B308-EF7D29ABDE20}" = Web Deployment Tool
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3200_series" = Canon MG3200 series MP Drivers
"{13F4A7F3-EABC-4261-AF6B-1317777F0755}" = Fast Boot
"{1686C4D1-B1FD-42E8-B7A8-FB4C4DBA5BA8}" = ASUS Power4Gear Hybrid
"{1AB7EDC5-D891-34C5-9FF1-BE6A85ACC44B}" = Microsoft Team Foundation Server 2010 Object Model - ENU
"{1CB6C387-65A7-327F-B4A5-7DDC75A291AF}" = Microsoft Visual Studio 2010 Office Developer Tools (x64)
"{1D1CEEF8-3741-45BD-8E77-963E1DEBDDD3}" = Microsoft Sync Services for ADO.NET v2.0 SP1 (x64)
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{26A24AE4-039D-4CA4-87B4-2F86416025FF}" = Java(TM) 6 Update 25 (64-bit)
"{2930FB47-6452-4476-BF16-D77F748646DB}" = Native Instruments Guitar Rig Mobile I/O
"{2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF}" = Sql Server Customer Experience Improvement Program
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{390239C9-8AB0-4E81-9E74-2020988D5582}" = MySQL Server 5.1
"{4A8CE6D7-4D52-43B9-970B-03FC75FAD667}" = Microsoft SQL Server System CLR Types (x64)
"{5340A3B5-3853-4745-BED2-DD9FF5371331}" = Microsoft SQL Server 2008 Common Files
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{64A3A4F4-B792-11D6-A78A-00B0D0160250}" = Java(TM) SE Development Kit 6 Update 25 (64-bit)
"{662014D2-0450-37ED-ABAE-157C88127BEB}" = Visual Studio 2010 Prerequisites - English
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{7930FB47-6452-4476-BF16-D77F748646DB}" = Native Instruments Guitar Rig Session I/O
"{7ACE202B-1B01-4B43-B6AE-03D66D621CDE}" = Microsoft SQL Server 2008 RsFx Driver
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{8438EC02-B8A9-462D-AC72-1B521349C001}" = Microsoft Sync Framework Runtime v1.0 SP1 (x64)
"{893F27E6-D6BE-4B9F-80E6-0ADA694A31A8}" = Microsoft SQL Server 2008 Common Files
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0015-0415-1000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010
"{90140000-0016-0415-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010
"{90140000-0018-0415-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010
"{90140000-0019-0415-1000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010
"{90140000-001A-0415-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010
"{90140000-001B-0415-1000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010
"{90140000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0415-1000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010
"{90140000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010
"{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010
"{90140000-0043-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2010
"{90140000-0044-0415-1000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010
"{90140000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010
"{90140000-00A1-0415-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010
"{90140000-00BA-0415-1000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010
"{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch
"{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
"{90150000-001F-0415-1000-0000000FF1CE}" = Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski
"{90150000-002C-0415-1000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2013
"{90150000-0054-0415-1000-0000000FF1CE}" = Microsoft Visio MUI (Polish) 2013
"{90150000-006E-0415-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2013
"{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013
"{90150000-00C1-0415-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Polish) 2013
"{90150000-00E1-0415-1000-0000000FF1CE}" = Microsoft Office OSM MUI (Polish) 2013
"{91150000-0051-0000-1000-0000000FF1CE}" = Microsoft Visio Professional 2013
"{94D70749-4281-39AC-AD90-B56A0E0A402E}" = Microsoft Visual C++ 2010  x64 Runtime - 10.0.30319
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95F7B3C3-3D4C-471B-982A-76DB26E0EA2B}" = Bezpieczeństwo rodzinne usługi Windows Live
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B143BE44-8723-315E-9413-011C55873C0E}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{B40EE88B-400A-4266-A17B-E3DE64E94431}" = Microsoft SQL Server 2008 Setup Support Files
"{B962AD08-335F-46f7-A182-257D37672E5C}" = Native Instruments Rig Kontrol 3
"{BBDE8A3D-64A2-43A6-95F3-C27B87DF7AC1}" = Microsoft SQL Server 2008 Native Client
"{CC8BA866-16A7-4667-BA0C-C494A1E7B2BF}" = Microsoft SQL Server 2008 Database Engine Shared
"{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}" = Microsoft SQL Server Compact 3.5 SP2 x64 ENU
"{DA67488A-2689-4F10-B90F-D2F6977509D6}" = Microsoft SQL Server 2008 R2 Management Objects (x64)
"{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb" = Microsoft Windows Application Compatibility Database
"{DF167CE3-60E7-44EA-99EC-2507C51F37AE}" = Microsoft SQL Server 2008 Database Engine Shared
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F5079164-1DB9-3BDA-853B-F78AF67CE071}" = Microsoft Visual C++ 2010  x64 Designtime - 10.0.30319
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{FA7394B8-CE65-4F9E-AC99-F372AD365424}" = Microsoft SQL Server 2008 Database Engine Services
"{FBD367D1-642F-47CF-B79B-9BE48FB34007}" = Microsoft SQL Server 2008 Database Engine Services
"{FCADA26A-5672-31DD-BF0E-BA76ECF9B02D}" = Microsoft Help Viewer 1.0
"Asus WebStorage" = Asus WebStorage
"CCleaner" = CCleaner
"Elantech" = ETDWare PS/2-x64 7.0.5.5_WHQL
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft Help Viewer 1.0" = Microsoft Help Viewer 1.0
"Microsoft SQL Server 10" = Microsoft SQL Server 2008 (64-bit)
"Microsoft SQL Server 10 Release" = Microsoft SQL Server 2008 (64-bit)
"Microsoft Team Foundation Server 2010 Object Model - ENU" = Microsoft Team Foundation Server 2010 Object Model - ENU
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK" = Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"nbi-nb-base-7.1.1.0.0" = NetBeans IDE 7.1.1
"Office14.PROPLUS" = Microsoft Office Professional Plus 2010
"Office15.VISPROR" = Microsoft Visio Professional 2013
"SWI-Prolog" = SWI-Prolog (remove only)
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"USB 2.0 1.3M UVC WebCam" = USB 2.0 1.3M UVC WebCam
"WinRAR archiver" = Archiwizator WinRAR

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}" = ASUS AI Recovery
"{0908334B-6065-48A1-BD91-EC7A03DF77CE}_is1" = Lame Front-End 1.7
"{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology
"{0B63BF75-9F0A-4E93-A69D-BDCC6A26C4B1}" = Podstawowe programy Windows Live
"{0DDCEC37-369C-484B-B16D-B4413FD42FB9}" = Microsoft SQL Server 2008 R2 Data-Tier Application Framework
"{0E3DFC64-CC49-4BE2-8C9C-58EF129675DB}" = Microsoft Sync Framework SDK v1.0 SP1
"{1023383E-D9F6-478C-A965-23A4657B3C9A}" = Sacred 2 - Fallen Angel
"{112C23F2-C036-4D40-BED4-0CB47BF5555C}" = Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU
"{14DD7530-CCD2-3798-B37D-3839ED6A441C}" = Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools
"{1803A630-3C38-4D2B-9B9A-0CB37243539C}" = Microsoft ASP.NET MVC 2
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1AD6A797-E83F-4E1E-AF49-15CBA9AFE4E0}" = Sacred - Z쿽ta Edycja
"{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3
"{2012098D-EEE9-4769-8DD3-B038050854D4}" = Microsoft Silverlight 3 SDK
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}" = Wireless Console 3
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 29
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 45
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2A2F3AE8-246A-4252-BB26-1BEB45627074}" = Microsoft SQL Server System CLR Types
"{2A5FBE73-76DA-4A31-BD86-1B0E01DC33F8}" = Windows Live Messenger
"{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
"{2D9FEBEE-F1B7-344F-BFDF-760E18332D96}" = Microsoft Visual Studio 2010 SharePoint Developer Tools
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet Driver
"{31A559C1-9E4D-423B-9DD3-34A6C5398752}" = HTC BMP USB Driver
"{394BE3D9-7F57-4638-A8D1-1D88671913B7}" = Microsoft AppLocale
"{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU
"{3B05F2FB-745B-4012-ADF2-439F36B2E70B}" = ATKOSD2
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{40416836-56CC-4C0E-A6AF-5C34BADCE483}" = Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go
"{40CC0CC6-C1BA-476D-98CF-5430DA439B4F}" = Galeria fotografii usługi Windows Live
"{415ADF7E-6DB8-4481-86C0-1CEC0163CC7B}" = Nexon Game Manager
"{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}" = Dotfuscator Software Services - Community Edition
"{47FA2C44-D148-4DBC-AF60-B91934AA4842}" = Adobe AIR
"{49310D8B-AF88-4212-B745-4A05BA4B3988}_is1" = 3nity CD DVD Burner version 3.1
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A423411-E28A-4A13-BDB0-8E8BC42FFA29}" = HTC Sync
"{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}" = Google Earth Plug-in
"{4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A}" = Junk Mail filter update
"{4E968D9C-21A7-4915-B698-F7AEB913541D}" = Microsoft SQL Server 2008 R2 Management Objects
"{4EB106F5-110F-4E96-BCBA-1687AE57A04E}" = FlatOut2
"{4F68B605-2F2B-42A8-8689-0CA7E67797B0}" = Sony Vegas 6.0d
"{5A22D889-FBDD-4AE8-86EC-089D45FC133E}" = Alcor Micro USB Card Reader
"{5B65EF64-1DFA-414A-8C94-7BB726158E21}" = ControlDeck
"{5DE67937-45D5-45E4-923C-0B7F7EC929A7}" = League of Legends
"{60D6618B-153F-4353-8185-908E676E5888}" = ASUS FancyStart
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS SmartLogon
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{6A86554B-8928-30E4-A53C-D7337689134D}" = Microsoft Visual C++ 2010  x86 Runtime - 10.0.30319
"{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}" = ASUS CopyProtect
"{6C3496DF-CC4C-4CDE-87A1-8657619EE2D6}_is1" = Game Park Console
"{6CDEAD7E-F8D8-37F7-AB6F-1E22716E30F3}" = Microsoft Visual Studio Macro Tools
"{6D6664A9-3342-4948-9B7E-034EFE366F0F}" = HTC Driver Installer
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{729A3000-BC8A-3B74-BA5D-5068FE12D70C}" = Microsoft Visual F# 2.0 Runtime
"{74CC5B4D-CBB5-46F1-82B0-3169977B1D36}" = Asystent rejestracji usługi Windows Live
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{78C3657E-742C-40B1-9F53-E5A921D40F17}" = Microsoft SQL Server 2008 R2 Transact-SQL Language Service
"{7C05592D-424B-46CB-B505-E0013E8E75C9}" = ATK Hotkey
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593}" = Chicken Invaders 2
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8A74E887-8F0F-4017-AF53-CBA42211AAA5}" = Microsoft Sync Framework Runtime Native v1.0 (x86)
"{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{943A8D28-80D6-41DC-AE94-81FEB42041BF}" = System Requirements Lab CYRI
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D48531D-2135-49FC-BC29-ACCDA5396A76}" = ASUS MultiFrame
"{A4CBCF09-0C7E-40AA-0080-34B8A5CFE7FA}" = Harry Potter(TM) i więzień Azkabanu
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AB56EEE6-D64A-43BB-B68F-D150FD26FFED}_is1" = Chicken Invaders 4 The Ultimate Omelette version 1.00
"{AC41D924-8C68-4BD5-A7A1-0AE4176C31A6}" = Crystal Reports for Visual Studio
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.4.6 MUI
"{ACE28263-76A4-4BF5-B6F4-8BD719595969}" = Microsoft SQL Server Database Publishing Wizard 1.4
"{B13F5727-F12F-4253-B6AD-26AFA880B709}" = Sony Media Manager 2.0
"{B7E38540-E355-3503-AFD7-635B2F2F76E1}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{BEWINTERNET-PL-IEW}.UninstallSuite" = Orange Free
"{C3335EFB-008F-44DB-A87A-9EC8EE53D045}" = Windows Live Sync
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
"{C688457E-03FD-4941-923B-A27F4D42A7DD}" = Microsoft SQL Server 2008 Browser
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack
"{D1E5870E-E3E5-4475-98A6-ADD614524ADF}" = ATK Media
"{D3D54F3E-C5C3-443D-978F-87A72E5616E8}" = ATK Generic Function Service
"{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas
"{D6B15AE6-B052-363E-B6BB-C4714CBA6509}" = Microsoft Visual Studio 2010 Professional - ENU
"{DB4690C5-9015-401D-A96C-A49909B7C372}" = Poczta usługi Windows Live
"{DD49053A-0140-44EF-AE75-C4BC1FDB8286}" = Windows Live Writer
"{E09B48B5-E141-427A-AB0C-D3605127224A}" = Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
"{E2494AD8-314D-44F8-B39C-4358A60DC184}" = LogMeIn Hamachi
"{E5AE9031-79A5-4627-9641-BEFA82819B08}" = Microsoft SQL Server 2008 R2 Data-Tier Application Project
"{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}" = ASUS Live Update
"{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}" = Nexon Game Manager
"{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}" = ASUS Virtual Camera
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F2996FC2-47B9-409E-9442-C89390D49D8E}" = Windows Vista Battery Sidebar Gadget
"{F69E83CF-B440-43F8-89E6-6EA80712109B}" = Windows Live Communications Platform
"{F9EE7C75-F083-35DA-B203-42A72D3CB6B8}" = Microsoft Visual Studio 2010 Professional - PLK Language Pack
"{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1" = ALLMediaServer
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 9.20
"Abakan 5.0_is1" = Abakan 5.0
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"AhnLab Online Security" = AhnLab Online Security
"ALLPlayer_is1" = ALLPlayer V5.X
"Android Studio" = Android Studio
"AP Tuner 3.08" = AP Tuner 3.08
"AQQ" = WapSter AQQ
"ASIO4ALL" = ASIO4ALL
"Astroburn Lite" = Astroburn Lite
"ASUS AP Bank_is1" = ASUS AP Bank
"Asus_Camera_ScreenSaver" = Asus_Camera_ScreenSaver
"Audacity_is1" = Audacity 1.2.6
"AVIcodec" = AVIcodec (remove only)
"blueconnect_is1" = blueconnect
"Canon MG3200 series On-screen Manual" = Canon MG3200 series On-screen Manual
"Canon My Image Garden" = Canon My Image Garden
"Canon My Image Garden Design Files" = Canon My Image Garden Design Files
"Canon_IJ_Network_Scanner_Selector_EX" = Canon IJ Network Scanner Selector EX
"Canon_IJ_Network_UTILITY" = Canon IJ Network Tool
"Canon_IJ_Scan_Utility" = Canon IJ Scan Utility
"CanonMyPrinter" = Canon My Printer
"CanonQuickMenu" = Canon Quick Menu
"CardDetectorHUAWEI1752_1552" = Card Detector for Huawei E1752 and E1552
"Cisco Packet Tracer 6.0.1_is1" = Cisco Packet Tracer 6.0.1
"Dev-C++" = Dev-C++ 5 beta 9 release (4.9.9.2)
"Drumaxx" = Drumaxx
"Easy-WebPrint EX" = Canon Easy-WebPrint EX
"Europe MapleStory for Vista_is1" = Europe MapleStory for Vista
"Europe MapleStory_is1" = Europe MapleStory
"FL Studio 9" = FL Studio 9
"Flight Simulator 9.0" = Microsoft Flight Simulator 2004 A Century of Flight
"foxtab" = Foxtab
"Fraps" = Fraps (remove only)
"Free WMA to MP3 Converter_is1" = Free WMA to MP3 Converter 1.16
"Guitar Pro 5_is1" = Guitar Pro 5.0
"Hardcore" = Hardcore
"HyperCam 2" = HyperCam 2
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform Device Manager
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go
"InstallShield_{5A22D889-FBDD-4AE8-86EC-089D45FC133E}" = Alcor Micro USB Card Reader
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
"KiCad" = KiCad 2013.03.19
"KLiteCodecPack_is1" = K-Lite Codec Pack 9.2.0 (Full)
"LastFM_is1" = Last.fm Scrobbler 2.1.30
"League of Legends 3.0.1" = League of Legends
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware wersja 1.51.2.1300
"MapleStory" = MapleStory
"Microsoft .NET Framework 1.1  (1033)" = Microsoft .NET Framework 1.1
"Microsoft Visual Studio 2010 Professional - ENU" = Microsoft Visual Studio 2010 Professional - ENU
"Microsoft Visual Studio 2010 Professional - PLK Language Pack" = Microsoft Visual Studio 2010 wersja Professional - PLK
"Microsoft Visual Studio Macro Tools" = Microsoft Visual Studio Macro Tools
"mIRC" = mIRC
"Mozilla Firefox 28.0 (x86 pl)" = Mozilla Firefox 28.0 (x86 pl)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Multimedia Fusion 2" = Multimedia Fusion 2
"Native Instruments Controller Editor" = Native Instruments Controller Editor
"Native Instruments Guitar Rig 5" = Native Instruments Guitar Rig 5
"Native Instruments Guitar Rig Mobile I/O" = Native Instruments Guitar Rig Mobile I/O
"Native Instruments Guitar Rig Session I/O" = Native Instruments Guitar Rig Session I/O
"Native Instruments GuitarRig 2.01 RTAS VSTi DXi" = Native Instruments GuitarRig 2.01 RTAS VSTi DXi
"Native Instruments Rig Kontrol 3" = Native Instruments Rig Kontrol 3
"Native Instruments Service Center" = Native Instruments Service Center
"Notepad++" = Notepad++
"OCCT_is1" = OCCT Perestroika 3.1.0
"Open Broadcaster Software" = Open Broadcaster Software
"Open Codecs" = Xiph.Org Open Codecs 0.85.17777
"OpenAL" = OpenAL
"Opera 12.16.1860" = Opera 12.16
"Opera 20.0.1387.91" = Opera Stable 20.0.1387.91
"PoiZone" = PoiZone
"PokerStars.eu" = PokerStars.eu
"PowerISO" = PowerISO
"Rejestracja użytkownika drukarki Canon MG3200 series" = Rejestracja użytkownika drukarki Canon MG3200 series
"Sakura" = Sakura
"Sawer" = Sawer
"Steam App 104900" = ORION: Dino Horde
"Steam App 105600" = Terraria
"Steam App 113020" = Monaco
"Steam App 211820" = Starbound
"Steam App 256410" = Might & Magic: Duel of Champions
"SuperTux_is1" = SuperTux 0.1.3
"Tasker_is1" = Tasker v4.110
"Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
"Tibia_is1" = Tibia
"Totalcmd" = Total Commander (Remove or Repair)
"Toxic Biohazard" = Toxic Biohazard
"UnLock Root" = UnLock Root 2.31
"uTorrent" = µTorrent
"WampServer 2_is1" = WampServer 2.4
"WebServ_is1" = WebServ 2.0
"Winamp" = Winamp
"WinGimp-2.0_is1" = GIMP 2.6.7
"WinGTK-2_is1" = GTK+ 2.10.13 runtime environment
"WinLiveSuite_Wave3" = Podstawowe programy Windows Live
"winscp3_is1" = WinSCP 5.5.1
"World of Warcraft" = World of Warcraft
"Xfire" = Xfire (remove only)

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-2465420228-375340488-1497802240-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{17E73B15-62D2-43FD-B851-ACF86A8C9D25}_is1" = Ruby 1.9.3-p545
"Akamai" = Akamai NetSession Interface
"FoxTab" = FoxTab
"GameMaker-Studio12" = GameMaker-Studio 1.2
"Google Chrome" = Google Chrome
"Spotify" = Spotify
"Ultra MMF2" = Ultra MMF2
"UnityWebPlayer" = Unity Web Player
"Winamp Detect" = Detektor Winampa

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 4/15/2014 9:14:42 AM | Computer Name = Box-Komputer | Source = VSS | ID = 12292
Description =

Error - 4/15/2014 11:27:55 AM | Computer Name = Box-Komputer | Source = Application Hang | ID = 1002
Description = Program winamp.exe w wersji 5.6.3.3235 zatrzymał interakcję z systemem
Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
akcji.    Identyfikator procesu: d5c    Godzina rozpoczęcia: 01cf58bf1eae1185    Godzina zakończenia:
82    Ścieżka aplikacji: C:\Program Files (x86)\Winamp\winamp.exe    Identyfikator raportu:
81844eec-c4b2-11e3-929b-90e6ba9e3968 

Error - 4/15/2014 11:28:54 AM | Computer Name = Box-Komputer | Source = Application Hang | ID = 1002
Description = Program winamp.exe w wersji 5.6.3.3235 zatrzymał interakcję z systemem
Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
akcji.    Identyfikator procesu: b68    Godzina rozpoczęcia: 01cf58bf47599548    Godzina zakończenia:
78    Ścieżka aplikacji: C:\Program Files (x86)\Winamp\winamp.exe    Identyfikator raportu:
a514fc4c-c4b2-11e3-929b-90e6ba9e3968 

Error - 4/15/2014 12:28:14 PM | Computer Name = Box-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: OTL.exe, wersja: 3.2.21.0, sygnatura
czasowa: 0x2a425e19  Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7601.18229,
sygnatura czasowa: 0x51fb1116  Kod wyjątku: 0x0eedfade  Przesunięcie błędu: 0x0000c41f
Identyfikator
procesu powodującego błąd: 0x15e8  Godzina uruchomienia aplikacji powodującej błąd:
0x01cf58c7b1e36f43  Ścieżka aplikacji powodującej błąd: D:\dane\OTL.exe  Ścieżka modułu
powodującego błąd: C:\Windows\syswow64\KERNELBASE.dll  Identyfikator raportu: f0cf1e28-c4ba-11e3-929b-90e6ba9e3968

Error - 4/15/2014 12:29:15 PM | Computer Name = Box-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: OTL.exe, wersja: 3.2.21.0, sygnatura
czasowa: 0x2a425e19  Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7601.18229,
sygnatura czasowa: 0x51fb1116  Kod wyjątku: 0x0eedfade  Przesunięcie błędu: 0x0000c41f
Identyfikator
procesu powodującego błąd: 0x1118  Godzina uruchomienia aplikacji powodującej błąd:
0x01cf58c7d79fb756  Ścieżka aplikacji powodującej błąd: D:\dane\OTL.exe  Ścieżka modułu
powodującego błąd: C:\Windows\syswow64\KERNELBASE.dll  Identyfikator raportu: 156ece80-c4bb-11e3-929b-90e6ba9e3968

Error - 4/15/2014 12:30:00 PM | Computer Name = Box-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: OTL_[www.programosy.pl].exe, wersja:
3.2.69.0, sygnatura czasowa: 0x2a425e19  Nazwa modułu powodującego błąd: KERNELBASE.dll,
wersja: 6.1.7601.18229, sygnatura czasowa: 0x51fb1116  Kod wyjątku: 0x0eedfade  Przesunięcie
błędu: 0x0000c41f  Identyfikator procesu powodującego błąd: 0x4a4  Godzina uruchomienia
aplikacji powodującej błąd: 0x01cf58c7f255e036  Ścieżka aplikacji powodującej błąd:
C:\Users\Box\Downloads\OTL_[www.programosy.pl].exe  Ścieżka modułu powodującego błąd:
C:\Windows\syswow64\KERNELBASE.dll  Identyfikator raportu: 301fa01d-c4bb-11e3-929b-90e6ba9e3968

Error - 4/15/2014 12:35:41 PM | Computer Name = Box-Komputer | Source = VSS | ID = 13
Description =

Error - 4/15/2014 12:35:41 PM | Computer Name = Box-Komputer | Source = VSS | ID = 12292
Description =

Error - 4/15/2014 12:35:41 PM | Computer Name = Box-Komputer | Source = VSS | ID = 8193
Description =

Error - 4/15/2014 12:35:41 PM | Computer Name = Box-Komputer | Source = System Restore | ID = 8193
Description =

[ System Events ]
Error - 4/11/2014 9:02:43 PM | Computer Name = Box-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft
.NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64
(KB2858725).

Error - 4/12/2014 9:04:33 PM | Computer Name = Box-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft
.NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64
(KB2858725).

Error - 4/13/2014 9:00:23 PM | Computer Name = Box-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
następującej aktualizacji, ponieważ wystąpił błąd 0x80070663: Aktualizacja dla produktu
Microsoft Office 2013 (KB2825631) Wersja 64-bitowa.

Error - 4/13/2014 9:01:02 PM | Computer Name = Box-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft
.NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64
(KB2858725).

Error - 4/14/2014 7:28:21 AM | Computer Name = Box-Komputer | Source = bowser | ID = 8003
Description =

Error - 4/14/2014 9:00:28 PM | Computer Name = Box-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
następującej aktualizacji, ponieważ wystąpił błąd 0x80070070: Aktualizacja dla produktu
Microsoft Office 2013 (KB2825631) Wersja 64-bitowa.

Error - 4/14/2014 9:04:22 PM | Computer Name = Box-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft
.NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64
(KB2858725).

Error - 4/15/2014 12:36:09 PM | Computer Name = Box-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft
.NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64
(KB2858725).

Error - 4/15/2014 12:44:25 PM | Computer Name = Box-Komputer | Source = DCOM | ID = 10016
Description =

Error - 4/15/2014 1:15:01 PM | Computer Name = Box-Komputer | Source = BROWSER | ID = 8032
Description =


< End of report >
:O ffs.
Box
~user
 
Posty: 54
Dołączenie: 03 Cze 2008, 18:35



Systemowy explorer wariuje

Postprzez Łowca Androidów 16 Kwi 2014, 09:50

Pobierz FRST zgodny dla Twojego systemu x64
Kod: Zaznacz wszystko
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/

Zapisz na pulpicie i uruchom prawym myszy i opcja Uruchom jako administrator.
Po uruchomieniu wciśnij przycisk SCAN
Wstaw tu logi - powinny być 2 - FRST.txt i Addition.txt
Kobiety nie zmienisz, możesz zmienić kobietę, ale to nic nie zmieni.

nie potrafie znaleźć darmowego programu który byłby za darmo
---------------------------------------------------------------------------------------
sprawdź czy na systemie jest system
Awatar użytkownika
Łowca Androidów
»ekspert
»ekspert
 
Posty: 2138
Dołączenie: 11 Kwi 2014, 13:03
Pochwały: 105



Systemowy explorer wariuje

Postprzez Box 17 Kwi 2014, 13:34

FRST
Kod: Zaznacz wszystko
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-04-2014
Ran by Box (administrator) on BOX-KOMPUTER on 17-04-2014 13:26:41
Running from C:\Users\Box\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(ASUSTeK Computer Inc.) C:\Windows\system32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
(ASUSTeK Computer Inc.) C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe
() C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(ATK) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe
() C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(AlcorMicro Co., Ltd.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Windows\AsScrPro.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Update\1.3.23.9\GoogleCrashHandler.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Update\1.3.23.9\GoogleCrashHandler64.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDECK.EXE
(ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\system32\SndVol.exe
(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE
(Microsoft Corporation) C:\Windows\system32\msiexec.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winamp.exe
(Last.fm) C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [320000 2009-04-09] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [619392 2009-06-12] (ELAN Microelectronic Corp.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2244096 2009-07-13] (VIA)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [449168 2012-03-26] (CANON INC.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 0
HKLM\...\Policies\Explorer: [NoResolveSearch] 1
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2013-03-20] (Microsoft Corporation)
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\Run: [Google Update] => C:\Users\Box\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-06-26] (Google Inc.)
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: G - G:\AutoRun.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {05b09eab-d1cd-11e0-a99a-bf01b810e7c2} - G:\MicroLauncher.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {08c7b8a7-b4c2-11e0-a97f-a6dad2ae30c1} - F:\setup.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {08c7bbf0-b4c2-11e0-a97f-a6dad2ae30c1} - G:\AutoRun.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {14487c31-15ab-11e0-8f32-90e6ba9e3968} - G:\AutoRun.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {2306ae1d-cbc9-11e1-ae9f-90e6ba9e3968} - G:\autorun.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {2a35be8c-d9e8-11e0-a938-85268849fbc3} - G:\AutoRun.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {2a35bea0-d9e8-11e0-a938-85268849fbc3} - G:\AutoRun.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {2cf7cf80-845b-11df-938a-8b87912d1060} - F:\AutoRun.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {319daaf2-e738-11df-a7cf-90e6ba9e3968} - G:\AutoRun.exe
HKU\S-1-5-21-2465420228-375340488-1497802240-1000\...\MountPoints2: {3a321054-5fb9-11e2-87fc-90e6ba9e3968} - F:\MicroLauncher.exe

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
URLSearchHook: HKCU - (No Name) - {1c68c940-1b2f-46eb-bd8c-2e1612ff6a58} - No File
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
SearchScopes: HKCU - {25477387-2310-45df-933D-E9416D3D0303} URL = http://eis.esnips.com/page/search_provider/?client_uuid=bda82ac0-85c3-4b48-b0d2-41fde8d1391d&q={searchTerms}
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=ST9500325AS_S2W2DW9EXXXXS2W2DW9E&ts=1374499797
BHO: Windows Live Family Safety Browser Helper Class - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocnik rejestracji usługi Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files (x86)\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 62.179.1.60 62.179.1.61

FireFox:
========
FF ProfilePath: C:\Users\Box\AppData\Roaming\Mozilla\Firefox\Profiles\o37cpy9r.default
FF DefaultSearchEngine: qvo6
FF SearchEngineOrder.1: qvo6
FF SelectedSearchEngine: qvo6
FF Homepage: google.pl
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_262.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1165635.dll (Adobe Systems, Inc.)
FF Plugin-x32: @ahnlab.com/asp/npaosmgr.1 - C:\Program Files (x86)\AhnLab\ASP\Components\aosmgr\conflict_469\npaosmgr.dll (AhnLab, Inc.)
FF Plugin-x32: @ahnlab.com/asp/npmkd25aos - C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25aos.dll (AhnLab, Inc.)
FF Plugin-x32: @ahnlab.com/asp/npmkd25sp - C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25sp.dll (AhnLab, Inc.)
FF Plugin-x32: @canon.com/EPPEX - C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8051.1204 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nexon.com/NxGame - C:\ProgramData\Nexon\NGM\npNxGame.dll (Nexon)
FF Plugin-x32: @nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @ahnlab.com/asp/npmkd25aos - C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25aos.dll (AhnLab, Inc.)
FF Plugin HKCU: @ahnlab.com/asp/npmkd25sp - C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25sp.dll (AhnLab, Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Box\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Box\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Box\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\qvo6.xml
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

Chrome:
=======
CHR HomePage: hxxp://google.pl/
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.290.11) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U29) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Winamp Application Detector) - C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll (Nullsoft, Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (AhnLab Online Security) - C:\Program Files (x86)\AhnLab\ASP\Components\aosmgr\conflict_221\npaosmgr.dll (AhnLab, Inc.)
CHR Plugin: (AhnLab MyKeyDefense 2.5) - C:\Program Files (x86)\AhnLab\ASP\MyKeyDefense 2.5\npmkd25aos.dll (AhnLab, Inc.)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Nexon Game Controller) - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
CHR Plugin: (Unity Player) - C:\Users\Box\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
CHR Plugin: (Google Update) - C:\Users\Box\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Extension: (Angry Birds) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2012-06-26]
CHR Extension: (Dysk Google) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-09-04]
CHR Extension: (Glow) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\bekmjjakgojplnhahcilegeiklenjbgb [2014-02-03]
CHR Extension: (YouTube) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-06-26]
CHR Extension: (Pool) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\cedbddnnmhgnedpamoenmdkhnpnfbpjb [2012-08-27]
CHR Extension: (Szukaj w Google) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-06-26]
CHR Extension: (Pulse) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\iehllpiamddoghfbfbgmajdcifkpjopm [2012-08-27]
CHR Extension: (Urban Rivals) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhaipmgfdihnlnbagikdpijhkifeonbi [2012-09-04]
CHR Extension: (Google Wallet) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-24]
CHR Extension: (Gmail) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-06-26]
CHR Extension: (RSS Feed Reader) - C:\Users\Box\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnjaodmkngahhkoihejjehlcdlnohgmp [2013-06-20]
CHR HKLM\...\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\Users\Box\AppData\Local\foxtab_speeddial.crx [2013-11-09]
CHR HKCU\...\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\Users\Box\AppData\Local\foxtab_speeddial.crx [2013-11-09]
CHR HKCU\...\Chrome\Extension: [gnlaniokgfckpjblpafbfchhghecmifi] - C:\Users\Box\AppData\Local\CRE\gnlaniokgfckpjblpafbfchhghecmifi.crx [2012-09-09]
CHR HKLM-x32\...\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\Users\Box\AppData\Local\foxtab_speeddial.crx [2013-11-09]
CHR HKLM-x32\...\Chrome\Extension: [gnlaniokgfckpjblpafbfchhghecmifi] - C:\Users\Box\AppData\Local\CRE\gnlaniokgfckpjblpafbfchhghecmifi.crx [2012-09-09]
CHR HKLM-x32\...\Chrome\Extension: [lgnbhdnimikkoodkogjlcllngimhlapp] - C:\Program Files (x86)\FTDownloader.com\FTDownloader10.crx [2012-09-09]
CHR StartMenuInternet: Google Chrome - C:\Users\Box\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Whitelisted) =================

S2 ASUSRDVDService; C:\Program Files (x86)\ASUS\AI Recovery\ServiceSimple2.exe [109184 2009-09-11] ()
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] ()
R2 FastBootAgent; C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe [306232 2009-07-24] (ASUSTeK Computer Inc.)
S4 FTRTSVC; C:\Program Files (x86)\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe [90112 2009-10-14] (France Telecom SA)
R2 MSSQL$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [7520337 2002-12-17] (Microsoft Corporation)
R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [57617752 2009-03-30] (Microsoft Corporation)
S3 MSSQLServerADHelper; C:\Program Files (x86)\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [66112 2002-12-17] (Microsoft Corporation)
S4 MySQL; C:\Program Files\MySQL\MySQL Server 5.1\my.ini [8919 2010-09-24] ()
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3852792 2010-09-08] (INCA Internet Co., Ltd.)
S4 OberonGameConsoleService; C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe [44312 2009-09-15] ()
S4 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [87040 2012-03-23] ()
S3 SQLAgent$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [311872 2002-12-17] (Microsoft Corporation)
S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [427880 2009-03-30] (Microsoft Corporation)
S3 wampapache; d:\wamp\bin\apache\apache2.4.4\bin\httpd.exe [24576 2013-06-23] (Apache Software Foundation)
S3 wampmysqld; d:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe [12867584 2013-06-23] ()
S4 Hamachi2Svc; "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s [X]

==================== Drivers (Whitelisted) ====================

S3 1394hub; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 ASMMAP64; C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] ()
S3 jrdusbser; C:\Windows\System32\DRIVERS\jrdusbser.sys [119680 2010-07-23] (TCT International Mobile Ltd)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 Mkd2Bthf; C:\Windows\System32\drivers\Mkd2Bthf.sys [98040 2012-03-07] (AhnLab, Inc.)
S3 Mkd2Nadr; C:\Windows\System32\drivers\Mkd2Nadr.sys [107768 2012-03-07] (AhnLab, Inc.)
S3 Mkd2Nadr; C:\Windows\SysWOW64\drivers\Mkd2Nadr.sys [106040 2008-10-17] (AhnLab, Inc.)
S3 Mkd3kfNt; C:\Windows\System32\drivers\Mkd3kfNt.sys [183544 2012-03-07] (AhnLab, Inc.)
S3 NPPTNT2; C:\Windows\SysWOW64\npptNT2.sys [4682 2005-01-03] (INCA Internet Co., Ltd.)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1806400 2009-06-05] ()
S3 dump_wmimmc; \??\C:\Program Files\gPotato.eu\Rappelz\GameGuard\dump_wmimmc.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X]
U4 Messenger;
S4 sptd; System32\Drivers\sptd.sys [X]
U3 tmlwf;
U3 tmwfp;
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
S3 X6va002; \??\C:\Users\Box\AppData\Local\Temp\002249.tmp [X]
U3 uxrirpow; \??\C:\Users\Box\AppData\Local\Temp\uxrirpow.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-04-17 13:26 - 2014-04-17 13:27 - 00025242 _____ () C:\Users\Box\Downloads\FRST.txt
2014-04-17 13:16 - 2014-04-17 13:26 - 00000000 ____D () C:\FRST
2014-04-17 13:15 - 2014-04-17 13:15 - 02158592 _____ (Farbar) C:\Users\Box\Downloads\FRST64.exe
2014-04-15 20:29 - 2014-04-15 20:29 - 00127104 _____ () C:\Users\Box\Downloads\Extras.Txt
2014-04-15 20:26 - 2014-04-15 20:26 - 00131134 _____ () C:\Users\Box\Downloads\OTL.Txt
2014-04-15 20:12 - 2014-04-15 20:12 - 00006249 _____ () C:\Users\Box\Desktop\gmer.txt
2014-04-15 18:29 - 2014-04-15 18:29 - 00602112 _____ (OldTimer Tools) C:\Users\Box\Downloads\OTL_[www.programosy.pl].exe
2014-04-15 18:27 - 2014-04-15 18:27 - 00000000 ____D () C:\Users\Box\Downloads\gmer
2014-04-15 18:26 - 2014-04-15 18:26 - 00700824 _____ ( ) C:\Users\Box\Downloads\AIMP(12499) (1).exe
2014-04-15 18:26 - 2014-04-15 18:26 - 00370943 _____ () C:\Users\Box\Downloads\gmer.zip
2014-04-15 18:24 - 2014-04-15 18:24 - 00380416 _____ () C:\Users\Box\Downloads\qopelm4m.exe
2014-04-15 18:22 - 2014-04-15 18:22 - 00623224 _____ (Duplex Secure Ltd.) C:\Users\Box\Downloads\SPTDinst-v186-x64.exe
2014-04-15 17:57 - 2014-04-15 17:57 - 07681400 _____ (AIMP DevTeam) C:\Users\Box\Downloads\aimp_3.55.1345.exe
2014-04-15 17:57 - 2014-04-15 17:57 - 00700824 _____ ( ) C:\Users\Box\Downloads\AIMP(12499).exe
2014-04-14 21:32 - 2014-04-14 21:32 - 00000000 ____D () C:\Users\Box\Downloads\Wielki Przekręt
2014-04-14 21:31 - 2014-04-14 21:31 - 32337177 _____ () C:\Users\Box\Downloads\Wielki Przekręt.zip
2014-04-14 00:20 - 2014-04-14 00:20 - 00017890 _____ () C:\Users\Box\Desktop\Opera 12 Notes.html
2014-04-14 00:20 - 2014-04-14 00:20 - 00001091 _____ () C:\Users\Public\Desktop\Opera 20.lnk
2014-04-14 00:20 - 2014-04-14 00:20 - 00000000 ____D () C:\Users\Box\AppData\Roaming\Opera Software
2014-04-14 00:20 - 2014-04-14 00:20 - 00000000 ____D () C:\Users\Box\AppData\Local\Opera Software
2014-04-14 00:18 - 2014-04-14 00:18 - 34718824 _____ (Opera Software ASA) C:\Users\Box\Downloads\Opera_20.0.1387.91_Setup.exe
2014-04-13 23:22 - 2014-04-13 23:22 - 00000874 _____ () C:\Users\Box\Downloads\Pobrane — skrót.lnk
2014-04-10 22:24 - 2014-04-10 22:24 - 00020062 _____ () C:\Users\Box\Desktop\USERS.xlsx
2014-04-10 22:17 - 2014-04-10 22:17 - 00012549 _____ () C:\Users\Box\Downloads\users (1).csv
2014-04-10 22:13 - 2014-04-10 22:13 - 00012516 _____ () C:\Users\Box\Downloads\users.csv
2014-04-10 17:44 - 2014-04-10 17:57 - 00000378 _____ () C:\Users\Box\Desktop\kwerendyshoutbox.txt
2014-04-10 15:47 - 2014-04-10 15:47 - 00002292 _____ () C:\Users\Box\Desktop\Lab8.rar
2014-04-10 14:09 - 2014-04-10 14:09 - 00068330 _____ () C:\Users\Box\.recently-used.xbel
2014-04-09 19:10 - 2014-04-09 19:10 - 00000000 ____D () C:\Users\Box\Desktop\JavaApplication13
2014-04-09 04:50 - 2014-03-31 03:16 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-09 04:50 - 2014-03-31 03:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-09 04:50 - 2014-03-31 02:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-09 04:50 - 2014-03-31 01:57 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-09 04:50 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-09 04:50 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-04-09 04:50 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-04-09 04:50 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-04-09 04:50 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-04-09 04:50 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-04-09 04:50 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-04-09 04:50 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-04-09 04:50 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2014-04-09 04:49 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-04-09 04:49 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-04-09 04:49 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-04-09 04:49 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-04-09 04:49 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-04-09 04:49 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-04-09 04:49 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-04-09 04:49 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-08 18:58 - 2014-04-08 20:00 - 00000000 ____D () C:\Users\Box\Desktop\Lab8Zadania
2014-04-07 16:33 - 2014-04-07 16:33 - 00046091 _____ () C:\Users\Box\Downloads\ustnyppr.rar
2014-04-06 00:40 - 2014-04-09 23:12 - 23047683 _____ () C:\Users\Box\Desktop\mapka 001.xcf
2014-04-05 23:18 - 2014-04-05 23:18 - 00000000 ____D () C:\Users\Box\blablastery
2014-04-05 23:08 - 2014-04-05 23:08 - 07401472 _____ () C:\Users\Box\Downloads\k4b13esx.exe
2014-04-03 22:29 - 2014-04-03 22:43 - 00000000 ____D () C:\Users\Box\Desktop\Kulki
2014-04-03 18:15 - 2014-04-03 18:15 - 00000000 ____D () C:\Users\Box\Desktop\Krolestwa_Graph
2014-04-03 16:52 - 2014-04-03 16:52 - 00052736 _____ () C:\Users\Box\Downloads\egzamin-s.ppt
2014-04-03 15:39 - 2014-04-03 15:39 - 00000000 ____D () C:\Users\Box\AppData\Local\Ubisoft
2014-04-03 15:32 - 2014-04-03 15:32 - 00000222 _____ () C:\Users\Box\Desktop\Might & Magic Duel of Champions.url
2014-04-02 19:46 - 2014-04-02 19:46 - 00000000 ____D () C:\Users\Box\Desktop\Lab7Zad1
2014-03-30 21:36 - 2014-03-30 21:36 - 00000533 _____ () C:\Users\Box\Desktop\WampServer.lnk
2014-03-30 21:31 - 2014-03-30 21:32 - 40603386 _____ (Hervé Leclerc (HeL) ) C:\Users\Box\Downloads\Wampserver2.4-x64.exe
2014-03-30 19:37 - 2014-03-30 19:37 - 00001001 _____ () C:\Users\Box\Desktop\MyThread.class
2014-03-30 19:37 - 2014-03-30 19:37 - 00000324 _____ () C:\Users\Box\Desktop\Watki.class
2014-03-30 19:37 - 2014-03-30 19:37 - 00000000 ____D () C:\Users\Box\Downloads\Watki
2014-03-30 19:37 - 2014-03-30 17:47 - 00000543 _____ () C:\Users\Box\Desktop\Watki.java
2014-03-30 19:36 - 2014-03-30 19:36 - 00014647 _____ () C:\Users\Box\Downloads\Watki.rar
2014-03-27 21:28 - 2014-03-27 21:53 - 00000000 ____D () C:\Users\Box\Desktop\KomunikacjaMiejska
2014-03-26 23:18 - 2014-03-26 23:18 - 01749276 _____ () C:\Users\Box\Downloads\SS_gems.zip
2014-03-26 22:42 - 2014-03-26 22:49 - 00003440 _____ () C:\Users\Box\Desktop\test.html
2014-03-26 22:11 - 2014-03-26 22:12 - 00283168 _____ (Mozilla) C:\Users\Box\Downloads\Firefox Setup Stub 28.0.exe
2014-03-26 22:07 - 2014-03-26 22:07 - 00000000 ____D () C:\ProgramData\Mozilla
2014-03-26 22:07 - 2014-03-26 22:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-26 00:03 - 2011-12-29 22:59 - 00010390 _____ () C:\Users\Box\Downloads\dk.rb
2014-03-26 00:03 - 2011-12-29 22:59 - 00000361 _____ () C:\Users\Box\Downloads\devkitvars.ps1
2014-03-26 00:03 - 2010-04-17 05:53 - 00000000 ____D () C:\Users\Box\Downloads\sbin
2014-03-26 00:02 - 2011-12-29 22:59 - 00000297 _____ () C:\Users\Box\Downloads\devkitvars.bat
2014-03-26 00:02 - 2011-12-29 22:59 - 00000000 ____D () C:\Users\Box\Downloads\share
2014-03-26 00:02 - 2011-12-29 22:59 - 00000000 ____D () C:\Users\Box\Downloads\mingw
2014-03-26 00:02 - 2011-12-29 22:59 - 00000000 ____D () C:\Users\Box\Downloads\lib
2014-03-26 00:02 - 2011-12-29 22:59 - 00000000 ____D () C:\Users\Box\Downloads\bin
2014-03-26 00:02 - 2010-09-29 01:48 - 00007167 _____ () C:\Users\Box\Downloads\msys.bat
2014-03-26 00:02 - 2010-03-18 00:06 - 00000000 ____D () C:\Users\Box\Downloads\postinstall
2014-03-26 00:02 - 2010-02-06 02:39 - 00000000 ____D () C:\Users\Box\Downloads\include
2014-03-25 23:49 - 2014-03-25 23:49 - 00000000 ____D () C:\Users\Box\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ruby 1.9.3-p545
2014-03-25 23:49 - 2014-03-25 23:49 - 00000000 ____D () C:\Ruby193
2014-03-24 19:55 - 2014-03-24 19:55 - 04468818 _____ () C:\Users\Box\Desktop\sfwizytowka.xcf
2014-03-24 17:58 - 2014-04-03 23:18 - 00000000 ____D () C:\Program Files (x86)\Tibia
2014-03-24 17:58 - 2014-03-24 17:58 - 00000925 _____ () C:\Users\Public\Desktop\Tibia.lnk
2014-03-22 15:54 - 2014-03-22 15:54 - 00569486 _____ () C:\Users\Box\Desktop\gwiazda.xcf
2014-03-21 18:43 - 2014-03-21 18:44 - 05533875 _____ () C:\Users\Box\Downloads\backup_1395420241_b5e5d46e375e3ce4.sql.gz
2014-03-21 01:39 - 2014-03-21 01:39 - 180094464 _____ () C:\Users\Box\Desktop\cc.avi

==================== One Month Modified Files and Folders =======

2014-04-17 13:27 - 2014-04-17 13:26 - 00025242 _____ () C:\Users\Box\Downloads\FRST.txt
2014-04-17 13:26 - 2014-04-17 13:16 - 00000000 ____D () C:\FRST
2014-04-17 13:24 - 2011-12-24 02:52 - 00000000 ____D () C:\Users\Box\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-04-17 13:24 - 2011-12-24 02:37 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-04-17 13:19 - 2013-07-06 18:10 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin
2014-04-17 13:18 - 2009-11-03 04:45 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-04-17 13:17 - 2010-07-05 18:42 - 00000000 ____D () C:\Program Files (x86)\blueconnect
2014-04-17 13:15 - 2014-04-17 13:15 - 02158592 _____ (Farbar) C:\Users\Box\Downloads\FRST64.exe
2014-04-17 13:12 - 2013-11-09 19:12 - 00000280 _____ () C:\Windows\Tasks\FoxTab.job
2014-04-17 13:10 - 2012-06-26 21:13 - 00001050 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000UA.job
2014-04-17 13:07 - 2013-06-02 21:30 - 00001042 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-17 12:50 - 2013-06-20 15:47 - 00003992 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{7FB7CABC-86C6-41CD-9512-4C4743FB2CFE}
2014-04-17 12:50 - 2012-05-15 12:03 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-17 12:13 - 2009-11-03 04:19 - 01883430 _____ () C:\Windows\WindowsUpdate.log
2014-04-16 23:07 - 2013-06-02 21:30 - 00001038 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-16 15:10 - 2012-06-26 21:13 - 00000998 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000Core.job
2014-04-16 00:31 - 2009-08-03 21:55 - 00862282 _____ () C:\Windows\system32\perfh015.dat
2014-04-16 00:31 - 2009-08-03 21:55 - 00205412 _____ () C:\Windows\system32\perfc015.dat
2014-04-16 00:31 - 2009-07-14 07:13 - 02009842 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-15 20:29 - 2014-04-15 20:29 - 00127104 _____ () C:\Users\Box\Downloads\Extras.Txt
2014-04-15 20:26 - 2014-04-15 20:26 - 00131134 _____ () C:\Users\Box\Downloads\OTL.Txt
2014-04-15 20:12 - 2014-04-15 20:12 - 00006249 _____ () C:\Users\Box\Desktop\gmer.txt
2014-04-15 18:51 - 2009-07-14 06:45 - 00010560 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-15 18:51 - 2009-07-14 06:45 - 00010560 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-15 18:44 - 2010-12-25 11:47 - 19415552 ___SH () C:\Users\Box\Desktop\Thumbs.db
2014-04-15 18:43 - 2011-02-16 23:01 - 00271363 _____ () C:\Windows\setupact.log
2014-04-15 18:43 - 2010-11-03 12:51 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2014-04-15 18:43 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-15 18:42 - 2009-11-03 05:00 - 01573276 _____ () C:\Windows\PFRO.log
2014-04-15 18:29 - 2014-04-15 18:29 - 00602112 _____ (OldTimer Tools) C:\Users\Box\Downloads\OTL_[www.programosy.pl].exe
2014-04-15 18:27 - 2014-04-15 18:27 - 00000000 ____D () C:\Users\Box\Downloads\gmer
2014-04-15 18:26 - 2014-04-15 18:26 - 00700824 _____ ( ) C:\Users\Box\Downloads\AIMP(12499) (1).exe
2014-04-15 18:26 - 2014-04-15 18:26 - 00370943 _____ () C:\Users\Box\Downloads\gmer.zip
2014-04-15 18:24 - 2014-04-15 18:24 - 00380416 _____ () C:\Users\Box\Downloads\qopelm4m.exe
2014-04-15 18:22 - 2014-04-15 18:22 - 00623224 _____ (Duplex Secure Ltd.) C:\Users\Box\Downloads\SPTDinst-v186-x64.exe
2014-04-15 17:57 - 2014-04-15 17:57 - 07681400 _____ (AIMP DevTeam) C:\Users\Box\Downloads\aimp_3.55.1345.exe
2014-04-15 17:57 - 2014-04-15 17:57 - 00700824 _____ ( ) C:\Users\Box\Downloads\AIMP(12499).exe
2014-04-14 21:32 - 2014-04-14 21:32 - 00000000 ____D () C:\Users\Box\Downloads\Wielki Przekręt
2014-04-14 21:31 - 2014-04-14 21:31 - 32337177 _____ () C:\Users\Box\Downloads\Wielki Przekręt.zip
2014-04-14 00:20 - 2014-04-14 00:20 - 00017890 _____ () C:\Users\Box\Desktop\Opera 12 Notes.html
2014-04-14 00:20 - 2014-04-14 00:20 - 00001091 _____ () C:\Users\Public\Desktop\Opera 20.lnk
2014-04-14 00:20 - 2014-04-14 00:20 - 00000000 ____D () C:\Users\Box\AppData\Roaming\Opera Software
2014-04-14 00:20 - 2014-04-14 00:20 - 00000000 ____D () C:\Users\Box\AppData\Local\Opera Software
2014-04-14 00:20 - 2010-01-19 00:31 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-04-14 00:18 - 2014-04-14 00:18 - 34718824 _____ (Opera Software ASA) C:\Users\Box\Downloads\Opera_20.0.1387.91_Setup.exe
2014-04-13 23:22 - 2014-04-13 23:22 - 00000874 _____ () C:\Users\Box\Downloads\Pobrane — skrót.lnk
2014-04-11 23:22 - 2009-11-03 04:30 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-04-10 22:45 - 2012-11-06 22:26 - 00000000 ___RD () C:\Users\Box\Desktop\Pliki dzielone
2014-04-10 22:37 - 2014-02-10 22:21 - 00000600 _____ () C:\Users\Box\AppData\Roaming\winscp.rnd
2014-04-10 22:24 - 2014-04-10 22:24 - 00020062 _____ () C:\Users\Box\Desktop\USERS.xlsx
2014-04-10 22:17 - 2014-04-10 22:17 - 00012549 _____ () C:\Users\Box\Downloads\users (1).csv
2014-04-10 22:13 - 2014-04-10 22:13 - 00012516 _____ () C:\Users\Box\Downloads\users.csv
2014-04-10 17:57 - 2014-04-10 17:44 - 00000378 _____ () C:\Users\Box\Desktop\kwerendyshoutbox.txt
2014-04-10 15:47 - 2014-04-10 15:47 - 00002292 _____ () C:\Users\Box\Desktop\Lab8.rar
2014-04-10 14:09 - 2014-04-10 14:09 - 00068330 _____ () C:\Users\Box\.recently-used.xbel
2014-04-10 14:09 - 2010-03-27 12:21 - 00000000 ____D () C:\Users\Box\AppData\Roaming\gtk-2.0
2014-04-10 14:09 - 2010-03-27 12:18 - 00000000 ____D () C:\Users\Box\.gimp-2.6
2014-04-10 14:09 - 2010-01-18 20:28 - 00000000 ____D () C:\Users\Box
2014-04-10 04:46 - 2009-11-03 05:16 - 00001709 _____ () C:\Windows\system32\ServiceFilter.ini
2014-04-10 04:45 - 2010-08-03 17:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-10 03:42 - 2013-07-13 03:00 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-10 03:24 - 2010-01-21 21:28 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-04-09 23:12 - 2014-04-06 00:40 - 23047683 _____ () C:\Users\Box\Desktop\mapka 001.xcf
2014-04-09 19:10 - 2014-04-09 19:10 - 00000000 ____D () C:\Users\Box\Desktop\JavaApplication13
2014-04-08 20:00 - 2014-04-08 18:58 - 00000000 ____D () C:\Users\Box\Desktop\Lab8Zadania
2014-04-08 19:35 - 2012-11-26 00:56 - 00000000 ____D () C:\Users\Box\Desktop\Studia
2014-04-07 16:33 - 2014-04-07 16:33 - 00046091 _____ () C:\Users\Box\Downloads\ustnyppr.rar
2014-04-05 23:18 - 2014-04-05 23:18 - 00000000 ____D () C:\Users\Box\blablastery
2014-04-05 23:18 - 2010-12-27 15:56 - 00487936 ___SH () C:\Users\Box\Thumbs.db
2014-04-05 23:08 - 2014-04-05 23:08 - 07401472 _____ () C:\Users\Box\Downloads\k4b13esx.exe
2014-04-05 16:42 - 2011-01-15 00:03 - 00000000 ___RD () C:\Users\Box\Desktop\Opowiadania
2014-04-03 23:18 - 2014-03-24 17:58 - 00000000 ____D () C:\Program Files (x86)\Tibia
2014-04-03 22:43 - 2014-04-03 22:29 - 00000000 ____D () C:\Users\Box\Desktop\Kulki
2014-04-03 18:48 - 2010-12-29 18:00 - 00000000 ___RD () C:\Users\Box\Desktop\GIMPowanie
2014-04-03 18:15 - 2014-04-03 18:15 - 00000000 ____D () C:\Users\Box\Desktop\Krolestwa_Graph
2014-04-03 17:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-04-03 16:52 - 2014-04-03 16:52 - 00052736 _____ () C:\Users\Box\Downloads\egzamin-s.ppt
2014-04-03 15:39 - 2014-04-03 15:39 - 00000000 ____D () C:\Users\Box\AppData\Local\Ubisoft
2014-04-03 15:32 - 2014-04-03 15:32 - 00000222 _____ () C:\Users\Box\Desktop\Might & Magic Duel of Champions.url
2014-04-02 19:46 - 2014-04-02 19:46 - 00000000 ____D () C:\Users\Box\Desktop\Lab7Zad1
2014-04-01 00:12 - 2013-12-19 01:12 - 00000153 _____ () C:\Users\Box\AppData\Roaming\WB.CFG
2014-03-31 03:16 - 2014-04-09 04:50 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-31 03:13 - 2014-04-09 04:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-31 02:13 - 2014-04-09 04:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-31 01:57 - 2014-04-09 04:50 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-30 23:02 - 2013-06-02 21:30 - 00004038 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-03-30 23:02 - 2013-06-02 21:30 - 00003786 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-03-30 21:36 - 2014-03-30 21:36 - 00000533 _____ () C:\Users\Box\Desktop\WampServer.lnk
2014-03-30 21:32 - 2014-03-30 21:31 - 40603386 _____ (Hervé Leclerc (HeL) ) C:\Users\Box\Downloads\Wampserver2.4-x64.exe
2014-03-30 19:37 - 2014-03-30 19:37 - 00001001 _____ () C:\Users\Box\Desktop\MyThread.class
2014-03-30 19:37 - 2014-03-30 19:37 - 00000324 _____ () C:\Users\Box\Desktop\Watki.class
2014-03-30 19:37 - 2014-03-30 19:37 - 00000000 ____D () C:\Users\Box\Downloads\Watki
2014-03-30 19:36 - 2014-03-30 19:36 - 00014647 _____ () C:\Users\Box\Downloads\Watki.rar
2014-03-30 17:47 - 2014-03-30 19:37 - 00000543 _____ () C:\Users\Box\Desktop\Watki.java
2014-03-30 11:24 - 2012-02-10 16:13 - 00000000 ____D () C:\Users\Box\Documents\Visual Studio 2010
2014-03-28 16:05 - 2012-06-26 21:13 - 00004016 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000UA
2014-03-28 16:05 - 2012-06-26 21:13 - 00003620 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000Core
2014-03-28 01:27 - 2014-02-27 01:53 - 00000000 ____D () C:\Users\Box\Desktop\Pomoc Koleżeńska
2014-03-27 21:53 - 2014-03-27 21:28 - 00000000 ____D () C:\Users\Box\Desktop\KomunikacjaMiejska
2014-03-26 23:18 - 2014-03-26 23:18 - 01749276 _____ () C:\Users\Box\Downloads\SS_gems.zip
2014-03-26 22:49 - 2014-03-26 22:42 - 00003440 _____ () C:\Users\Box\Desktop\test.html
2014-03-26 22:13 - 2010-08-03 17:07 - 00000000 ____D () C:\Users\Box\AppData\Local\Mozilla
2014-03-26 22:12 - 2014-03-26 22:11 - 00283168 _____ (Mozilla) C:\Users\Box\Downloads\Firefox Setup Stub 28.0.exe
2014-03-26 22:07 - 2014-03-26 22:07 - 00000000 ____D () C:\ProgramData\Mozilla
2014-03-26 22:07 - 2014-03-26 22:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-03-25 23:49 - 2014-03-25 23:49 - 00000000 ____D () C:\Users\Box\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ruby 1.9.3-p545
2014-03-25 23:49 - 2014-03-25 23:49 - 00000000 ____D () C:\Ruby193
2014-03-24 19:55 - 2014-03-24 19:55 - 04468818 _____ () C:\Users\Box\Desktop\sfwizytowka.xcf
2014-03-24 18:02 - 2012-01-08 03:50 - 00000000 ____D () C:\Users\Box\AppData\Roaming\Tibia
2014-03-24 17:58 - 2014-03-24 17:58 - 00000925 _____ () C:\Users\Public\Desktop\Tibia.lnk
2014-03-23 16:41 - 2012-10-15 22:03 - 00000000 ____D () C:\Users\Box\Desktop\SP EU
2014-03-22 15:54 - 2014-03-22 15:54 - 00569486 _____ () C:\Users\Box\Desktop\gwiazda.xcf
2014-03-21 18:44 - 2014-03-21 18:43 - 05533875 _____ () C:\Users\Box\Downloads\backup_1395420241_b5e5d46e375e3ce4.sql.gz
2014-03-21 14:08 - 2010-05-05 11:06 - 00000000 ____D () C:\Users\Box\AppData\Local\Last.fm
2014-03-21 01:40 - 2014-02-05 20:33 - 00065593 _____ () C:\Users\Box\AppData\Roaming\Camdata.ini
2014-03-21 01:40 - 2014-02-05 20:33 - 00004537 _____ () C:\Users\Box\AppData\Roaming\CamStudio.cfg
2014-03-21 01:40 - 2014-02-05 20:33 - 00000408 _____ () C:\Users\Box\AppData\Roaming\CamShapes.ini
2014-03-21 01:40 - 2014-02-05 20:33 - 00000408 _____ () C:\Users\Box\AppData\Roaming\CamLayout.ini
2014-03-21 01:39 - 2014-03-21 01:39 - 180094464 _____ () C:\Users\Box\Desktop\cc.avi
2014-03-21 01:39 - 2014-02-05 20:30 - 00000000 ____D () C:\Users\Box\Documents\My CamStudio Temp Files
2014-03-21 01:38 - 2014-02-05 20:25 - 00000096 _____ () C:\Users\Box\AppData\Roaming\version2.xml

Files to move or delete:
====================
C:\Users\Box\AppData\Roaming\CamLayout.ini
C:\Users\Box\AppData\Roaming\CamShapes.ini
C:\Users\Box\flstudio_9.1_online.exe
C:\Users\Box\supertux-0.1.3-setup.exe


Some content of TEMP:
====================
C:\Users\Box\AppData\Local\Temp\80359uninstall.exe
C:\Users\Box\AppData\Local\Temp\8au2d0es.dll
C:\Users\Box\AppData\Local\Temp\amd64.exe
C:\Users\Box\AppData\Local\Temp\AutoRun.exe
C:\Users\Box\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Box\AppData\Local\Temp\AutoUI.exe
C:\Users\Box\AppData\Local\Temp\av1vi4lo.dll
C:\Users\Box\AppData\Local\Temp\binkw32.dll
C:\Users\Box\AppData\Local\Temp\bitool.dll
C:\Users\Box\AppData\Local\Temp\d2l_Install.exe
C:\Users\Box\AppData\Local\Temp\d2l_PlayD2.exe
C:\Users\Box\AppData\Local\Temp\DataCard_Setup64.exe
C:\Users\Box\AppData\Local\Temp\dotNetFx40_Web_Setup.exe
C:\Users\Box\AppData\Local\Temp\drm_dyndata_7400006.dll
C:\Users\Box\AppData\Local\Temp\eauninstall.exe
C:\Users\Box\AppData\Local\Temp\gtapi_signed.dll
C:\Users\Box\AppData\Local\Temp\guninst.exe
C:\Users\Box\AppData\Local\Temp\Harry Potter and the Goblet of Fire_uninst.exe
C:\Users\Box\AppData\Local\Temp\HC2SetupPvt.exe
C:\Users\Box\AppData\Local\Temp\i4jdel0.exe
C:\Users\Box\AppData\Local\Temp\incredibar_installer.exe
C:\Users\Box\AppData\Local\Temp\jansi-64-git-Bukkit-1.4.7-R1.0-b2624jnks.dll
C:\Users\Box\AppData\Local\Temp\jansi-64-git-Bukkit-1.5.2-R0.1-b2771jnks.dll
C:\Users\Box\AppData\Local\Temp\jansi-64-git-Bukkit-1.6.2-R1.0-3-g9532cb6-b2887jnks.dll
C:\Users\Box\AppData\Local\Temp\jna7872856849487184838.dll
C:\Users\Box\AppData\Local\Temp\jna9163550851868552526.dll
C:\Users\Box\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe
C:\Users\Box\AppData\Local\Temp\jre-6u29-windows-i586-iftw-rv.exe
C:\Users\Box\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
C:\Users\Box\AppData\Local\Temp\Last.fm-2.1.30.exe
C:\Users\Box\AppData\Local\Temp\mirc725.exe
C:\Users\Box\AppData\Local\Temp\MSETUP4.EXE
C:\Users\Box\AppData\Local\Temp\NGM.exe
C:\Users\Box\AppData\Local\Temp\NGMDll.dll
C:\Users\Box\AppData\Local\Temp\NGMResource.dll
C:\Users\Box\AppData\Local\Temp\NGMSetup.exe
C:\Users\Box\AppData\Local\Temp\Sqlite3.dll
C:\Users\Box\AppData\Local\Temp\stub.exe
C:\Users\Box\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\Box\AppData\Local\Temp\tbMini.dll
C:\Users\Box\AppData\Local\Temp\unicows.dll
C:\Users\Box\AppData\Local\Temp\uninstall.exe
C:\Users\Box\AppData\Local\Temp\UpdateCheckerSetup.exe
C:\Users\Box\AppData\Local\Temp\WinampPluginSetup_2.1.0.9.exe
C:\Users\Box\AppData\Local\Temp\xmlUpdater.exe
C:\Users\Box\AppData\Local\Temp\xpadder_gamepad_profiler.exe
C:\Users\Box\AppData\Local\Temp\_unps.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-04-10 05:27

==================== End Of Log ============================


Addition
Kod: Zaznacz wszystko
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-04-2014
Ran by Box at 2014-04-17 13:28:08
Running from C:\Users\Box\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

µTorrent (HKLM-x32\...\uTorrent) (Version: 2.2.1 - )
3nity CD DVD Burner version 3.1 (HKLM-x32\...\{49310D8B-AF88-4212-B745-4A05BA4B3988}_is1) (Version: 3.1 - 3nity Softwares)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
Abakan 5.0 (HKLM-x32\...\Abakan 5.0_is1) (Version: 5.0 - Mariusz Drobot)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Activation Assistant for the 2007 Microsoft Office suites (HKLM-x32\...\Activation Assistant for the 2007 Microsoft Office suites) (Version:  - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (x32 Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.2.0.2070 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 3.2.0.2070 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 11 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 11.3.300.265 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.3.300.262 - Adobe Systems Incorporated)
Adobe Reader 9.4.6 MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.4.6 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.5.635 - Adobe Systems, Inc.)
AhnLab Online Security (HKLM-x32\...\AhnLab Online Security) (Version:  - AhnLab, Inc)
Akamai NetSession Interface (HKCU\...\Akamai) (Version:  - Akamai Technologies, Inc)
Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{5A22D889-FBDD-4AE8-86EC-089D45FC133E}) (Version: 1.2.17.25001 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 1.2.17.25001 - Alcor Micro Corp.) Hidden
ALLMediaServer (HKLM-x32\...\{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1) (Version: 0.8 - ALLCinema, Inc.)
ALLPlayer V5.X (HKLM-x32\...\ALLPlayer_is1) (Version:  - ALLCinema Ltd.)
Android Studio (HKLM-x32\...\Android Studio) (Version: 1.0 - Google Inc.)
AP Tuner 3.08 (HKLM-x32\...\AP Tuner 3.08) (Version:  - )
Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version:  - )
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.10 - Michael Tippach)
Astroburn Lite (HKLM-x32\...\Astroburn Lite) (Version: 1.2.0.0087 - Disk Software Ltd)
ASUS AI Recovery (HKLM-x32\...\{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}) (Version: 1.0.6 - ASUS)
ASUS AP Bank (HKLM-x32\...\ASUS AP Bank_is1) (Version: 1.0.0.0 - ASUSTEK)
ASUS CopyProtect (HKLM-x32\...\{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}) (Version: 1.0.0015 - ASUS)
ASUS FancyStart (HKLM-x32\...\{60D6618B-153F-4353-8185-908E676E5888}) (Version: 1.0.5 - ASUSTeK Computer Inc.)
ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS)
ASUS Live Update (HKLM-x32\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.9 - ASUS)
ASUS MultiFrame (HKLM-x32\...\{9D48531D-2135-49FC-BC29-ACCDA5396A76}) (Version: 1.0.0019 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{1686C4D1-B1FD-42E8-B7A8-FB4C4DBA5BA8}) (Version: 1.1.19 - ASUS)
ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0007 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0028 - ASUS)
ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.17 - asus)
Asus WebStorage (HKLM\...\Asus WebStorage) (Version: 2.0.31.477 - eCareme Technologies, Inc.)
Asus_Camera_ScreenSaver (HKLM-x32\...\Asus_Camera_ScreenSaver) (Version: 2.0.0009 - ASUS)
Asystent rejestracji usługi Windows Live (HKLM-x32\...\{74CC5B4D-CBB5-46F1-82B0-3169977B1D36}) (Version: 5.000.818.6 - Microsoft Corporation)
Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.16 - Atheros Communications Inc.)
ATK Generic Function Service (HKLM-x32\...\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}) (Version: 1.00.0008 - ATK)
ATK Hotkey (HKLM-x32\...\{7C05592D-424B-46CB-B505-E0013E8E75C9}) (Version: 1.0.0051 - ASUS)
ATK Media (HKLM-x32\...\{D1E5870E-E3E5-4475-98A6-ADD614524ADF}) (Version: 2.0.0005 - ASUS)
ATKOSD2 (HKLM-x32\...\{3B05F2FB-745B-4012-ADF2-439F36B2E70B}) (Version: 7.0.0005 - ASUS)
Audacity 1.2.6 (HKLM-x32\...\Audacity_is1) (Version:  - )
AVIcodec (remove only) (HKLM-x32\...\AVIcodec) (Version:  - )
Bezpieczeństwo rodzinne usługi Windows Live (Version: 14.0.8052.1208 - Microsoft Corporation) Hidden
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version:  - )
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version:  - ‪Canon Inc.‬)
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version:  - ‪Canon Inc.‬)
Canon MG3200 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3200_series) (Version: 1.01 - Canon Inc.)
Canon MG3200 series On-screen Manual (HKLM-x32\...\Canon MG3200 series On-screen Manual) (Version: 7.5.0 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 1.0.0 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 1.0.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.0.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.0.0 - Canon Inc.)
Card Detector for Huawei E1752 and E1552 (HKLM-x32\...\CardDetectorHUAWEI1752_1552) (Version: 1.1.2.0 - )
CCleaner (HKLM\...\CCleaner) (Version: 3.00 - Piriform)
Choice Guard (x32 Version: 1.2.87.0 - Microsoft Corporation) Hidden
Cisco Packet Tracer 6.0.1 (HKLM-x32\...\Cisco Packet Tracer 6.0.1_is1) (Version:  - Cisco Systems, Inc.)
ControlDeck (HKLM-x32\...\{5B65EF64-1DFA-414A-8C94-7BB726158E21}) (Version: 1.0.3 - ASUS)
Crystal Reports for Visual Studio (x32 Version: 12.51.0.240 - SAP) Hidden
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1720 - CyberLink Corp.)
CyberLink LabelPrint (x32 Version: 2.5.1720 - CyberLink Corp.) Hidden
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.2713 - CyberLink Corp.)
CyberLink Power2Go (x32 Version: 6.1.2713 - CyberLink Corp.) Hidden
Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{AC53C6A4-1CC4-48A5-91F3-565BB7978B22}) (Version:  - Microsoft)
Definition Update for Microsoft Office 2013 (KB2760587) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{F68634D8-574F-42B2-B6D0-9B447EA9581E}) (Version:  - Microsoft)
Detektor Winampa (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Dev-C++ 5 beta 9 release (4.9.9.2) (HKLM-x32\...\Dev-C++) (Version:  - )
Dotfuscator Software Services - Community Edition (HKLM-x32\...\{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}) (Version: 5.0.2300.0 - PreEmptive Solutions)
Drumaxx (HKLM-x32\...\Drumaxx) (Version:  - Image-Line)
ETDWare PS/2-x64 7.0.5.5_WHQL (HKLM\...\Elantech) (Version:  - )
Europe MapleStory (HKLM-x32\...\Europe MapleStory_is1) (Version:  - Nexon)
Europe MapleStory for Vista (HKLM-x32\...\Europe MapleStory for Vista_is1) (Version:  - Nexon)
Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.3 - ASUS)
FL Studio 9 (HKLM-x32\...\FL Studio 9) (Version:  - Image-Line)
FoxTab (HKCU\...\FoxTab) (Version:  - FoxTab) <==== ATTENTION
Foxtab (HKLM-x32\...\foxtab) (Version:  - FoxTab) <==== ATTENTION
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
Galeria fotografii usługi Windows Live (x32 Version: 14.0.8051.1204 - Microsoft Corporation) Hidden
Game Park Console (HKLM-x32\...\{6C3496DF-CC4C-4CDE-87A1-8657619EE2D6}_is1) (Version: 5.2.1.4 - Oberon Media, Inc.)
GameMaker-Studio 1.2 (HKCU\...\GameMaker-Studio12) (Version:  - YoYo Games Ltd.)
GIMP 2.6.7 (HKLM-x32\...\WinGimp-2.0_is1) (Version:  - )
Google Chrome (HKCU\...\Google Chrome) (Version: 34.0.1847.116 - Google Inc.)
Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden
GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games)
GTK+ 2.10.13 runtime environment (HKLM-x32\...\WinGTK-2_is1) (Version:  - Tor Lillqvist)
Guitar Pro 5.0 (HKLM-x32\...\Guitar Pro 5_is1) (Version:  - Arobas Music)
Hardcore (HKLM-x32\...\Hardcore) (Version:  - Image-Line)
Harry Potter(TM) i więzień Azkabanu (HKLM-x32\...\{A4CBCF09-0C7E-40AA-0080-34B8A5CFE7FA}) (Version:  - )
HTC BMP USB Driver (HKLM-x32\...\{31A559C1-9E4D-423B-9DD3-34A6C5398752}) (Version: 1.0.5375 - HTC)
HTC Driver Installer (HKLM-x32\...\{6D6664A9-3342-4948-9B7E-034EFE366F0F}) (Version: 3.0.0.021 - HTC Corporation)
HTC Sync (HKLM-x32\...\{4A423411-E28A-4A13-BDB0-8E8BC42FFA29}) (Version: 3.2.10 - HTC Corporation)
HyperCam 2 (HKLM-x32\...\HyperCam 2) (Version: 2.27.00 - Hyperionics Technology LLC)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version:  - Intel Corporation)
Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416025FF}) (Version: 6.0.250 - Oracle)
Java(TM) 6 Update 29 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216020FF}) (Version: 6.0.290 - Sun Microsystems, Inc.)
Java(TM) SE Development Kit 6 Update 25 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0160250}) (Version: 1.6.0.250 - Oracle)
Junk Mail filter update (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden
KiCad 2013.03.19 (HKLM-x32\...\KiCad) (Version: 2013.03.19 - )
K-Lite Codec Pack 9.2.0 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.2.0 - )
Lame Front-End 1.7 (HKLM-x32\...\{0908334B-6065-48A1-BD91-EC7A03DF77CE}_is1) (Version: 1.7 - Jacek Pazera)
Last.fm Scrobbler 2.1.30 (HKLM-x32\...\LastFM_is1) (Version:  - Last.fm)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.1.0.166 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.1.0.166 - LogMeIn, Inc.) Hidden
Malwarebytes' Anti-Malware wersja 1.51.2.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.51.2.1300 - Malwarebytes Corporation)
MapleStory (HKLM-x32\...\MapleStory) (Version:  - )
Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322 - Microsoft) Hidden
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools (HKLM-x32\...\{40416836-56CC-4C0E-A6AF-5C34BADCE483}) (Version: 2.0.50217.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 2 (HKLM-x32\...\{1803A630-3C38-4D2B-9B9A-0CB37243539C}) (Version: 2.0.50217.0 - Microsoft Corporation)
Microsoft Flight Simulator 2004 A Century of Flight (HKLM-x32\...\Flight Simulator 9.0) (Version: 9.0 - Microsoft)
Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 1.0 (Version: 1.0.30319 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Office 32-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Polish) 2013 (Version: 15.0.4433.1507 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Polish) 2013 (Version: 15.0.4433.1507 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Polish) 2013 (Version: 15.0.4433.1507 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Polish) 2013 (Version: 15.0.4433.1507 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Polish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft Silverlight 3 SDK (HKLM-x32\...\{2012098D-EEE9-4769-8DD3-B038050854D4}) (Version: 3.0.40818.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 (64-bit) (HKLM\...\Microsoft SQL Server 10 Release) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 (64-bit) (Version:  - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Browser (HKLM-x32\...\{C688457E-03FD-4941-923B-A27F4D42A7DD}) (Version: 10.1.2531.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Common Files (Version: 10.0.1600.22 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Common Files (Version: 10.1.2531.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Database Engine Services (Version: 10.1.2531.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Database Engine Shared (Version: 10.1.2531.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Native Client (HKLM\...\{BBDE8A3D-64A2-43A6-95F3-C27B87DF7AC1}) (Version: 10.1.2531.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Data-Tier Application Framework (HKLM-x32\...\{0DDCEC37-369C-484B-B16D-B4413FD42FB9}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Data-Tier Application Project (HKLM-x32\...\{E5AE9031-79A5-4627-9641-BEFA82819B08}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{4E968D9C-21A7-4915-B698-F7AEB913541D}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (x64) (HKLM\...\{DA67488A-2689-4F10-B90F-D2F6977509D6}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Transact-SQL Language Service (HKLM-x32\...\{78C3657E-742C-40B1-9F53-E5A921D40F17}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server 2008 RsFx Driver (Version: 10.1.2531.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Database Publishing Wizard 1.4 (HKLM-x32\...\{ACE28263-76A4-4BF5-B6F4-8BD719595969}) (Version: 10.1.2512.8 - Microsoft Corporation)
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR) (HKLM-x32\...\{E09B48B5-E141-427A-AB0C-D3605127224A}) (Version: 8.00.761 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM-x32\...\{2A2F3AE8-246A-4252-BB26-1BEB45627074}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (x64) (HKLM\...\{4A8CE6D7-4D52-43B9-970B-03FC75FAD667}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{0826F9E4-787E-481D-83E0-BC6A57B056D5}) (Version: 10.1.2531.0 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Runtime v1.0 SP1 (x64) (HKLM\...\{8438EC02-B8A9-462D-AC72-1B521349C001}) (Version: 1.0.3010.0 - Microsoft Corporation)
Microsoft Sync Framework SDK v1.0 SP1 (HKLM-x32\...\{0E3DFC64-CC49-4BE2-8C9C-58EF129675DB}) (Version: 1.0.3010.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services v1.0 SP1 (x64) (HKLM\...\{034106B5-54B7-467F-B477-5B7DBB492624}) (Version: 1.0.3010.0 - Microsoft Corporation)
Microsoft Sync Services for ADO.NET v2.0 SP1 (x64) (HKLM\...\{1D1CEEF8-3741-45BD-8E77-963E1DEBDDD3}) (Version: 2.0.3010.0 - Microsoft Corporation)
Microsoft Team Foundation Server 2010 Object Model - ENU (HKLM\...\Microsoft Team Foundation Server 2010 Object Model - ENU) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Team Foundation Server 2010 Object Model - ENU (Version: 10.0.30319 - Microsoft Corporation) Hidden
Microsoft Visio MUI (Polish) 2013 (Version: 15.0.4433.1507 - Microsoft Corporation) Hidden
Microsoft Visio Professional 2013 (HKLM\...\Office15.VISPROR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Visio Professional 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Designtime - 10.0.30319 (HKLM\...\{F5079164-1DB9-3BDA-853B-F78AF67CE071}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{729A3000-BC8A-3B74-BA5D-5068FE12D70C}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM-x32\...\{14DD7530-CCD2-3798-B37D-3839ED6A441C}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010 Office Developer Tools (x64) (Version: 10.0.30319 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Professional - ENU (HKLM-x32\...\Microsoft Visual Studio 2010 Professional - ENU) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010 Professional - ENU (x32 Version: 10.0.30319 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Professional - PLK Language Pack (x32 Version: 10.0.30319 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 SharePoint Developer Tools (x32 Version: 10.0.30319 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.40303 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.40308 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK (Version: 10.0.40303 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 wersja Professional - PLK (HKLM-x32\...\Microsoft Visual Studio 2010 Professional - PLK Language Pack) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio Macro Tools (HKLM-x32\...\Microsoft Visual Studio Macro Tools) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Macro Tools (x32 Version: 9.0.30729 - Microsoft Corporation) Hidden
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version:  - )
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Might & Magic: Duel of Champions (HKLM-x32\...\Steam App 256410) (Version:  - Ubisoft Quebec)
mIRC (HKLM-x32\...\mIRC) (Version: 7.25 - mIRC Co. Ltd.)
Mozilla Firefox 28.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 28.0 (x86 pl)) (Version: 28.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 12.0 - Mozilla)
MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Multimedia Fusion 2 (HKLM-x32\...\Multimedia Fusion 2) (Version:  - )
MySQL Server 5.1 (HKLM\...\{390239C9-8AB0-4E81-9E74-2020988D5582}) (Version: 5.1.50 - MySQL AB)
Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Narzędzie do przekazywania usługi Windows Live (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version:  - Native Instruments)
Native Instruments Controller Editor (Version: 1.3.5.667 - Native Instruments) Hidden
Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version:  - Native Instruments)
Native Instruments Guitar Rig 5 (Version: 5.0.2.2476 - Native Instruments) Hidden
Native Instruments Guitar Rig Mobile I/O (HKLM-x32\...\Native Instruments Guitar Rig Mobile I/O) (Version:  - Native Instruments)
Native Instruments Guitar Rig Mobile I/O (Version: 3.0.0.625 - Native Instruments) Hidden
Native Instruments Guitar Rig Session I/O (HKLM-x32\...\Native Instruments Guitar Rig Session I/O) (Version:  - Native Instruments)
Native Instruments Guitar Rig Session I/O (Version: 3.0.0.625 - Native Instruments) Hidden
Native Instruments GuitarRig 2.01 RTAS VSTi DXi (HKLM-x32\...\Native Instruments GuitarRig 2.01 RTAS VSTi DXi) (Version:  - )
Native Instruments Rig Kontrol 3 (HKLM-x32\...\Native Instruments Rig Kontrol 3) (Version:  - Native Instruments)
Native Instruments Rig Kontrol 3 (Version: 3.0.0.625 - Native Instruments) Hidden
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version:  - Native Instruments)
Native Instruments Service Center (Version: 2.3.0.853 - Native Instruments) Hidden
NetBeans IDE 7.1.1 (HKLM\...\nbi-nb-base-7.1.1.0.0) (Version: 7.1.1 - NetBeans.org)
Nexon Game Manager (HKLM-x32\...\{415ADF7E-6DB8-4481-86C0-1CEC0163CC7B}) (Version:  - )
Nexon Game Manager (HKLM-x32\...\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}) (Version:  - )
Notepad++ (HKLM-x32\...\Notepad++) (Version: 5.9.3 - )
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
OCCT Perestroika 3.1.0 (HKLM-x32\...\OCCT_is1) (Version:  - Tetedeiench)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera 12.16 (HKLM-x32\...\Opera 12.16.1860) (Version: 12.16.1860 - Opera Software ASA)
Opera Stable 20.0.1387.91 (HKLM-x32\...\Opera 20.0.1387.91) (Version: 20.0.1387.91 - Opera Software ASA)
Orange Free (HKLM-x32\...\{BEWINTERNET-PL-IEW}.UninstallSuite) (Version:  - )
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.3.5.1 - Pando Networks Inc.)
Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden
Poczta usługi Windows Live (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8050.1202 - Microsoft Corporation)
Podstawowe programy Windows Live (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden
PoiZone (HKLM-x32\...\PoiZone) (Version:  - Image-Line)
Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.40303 - Microsoft Corporation)
PowerISO (HKLM-x32\...\PowerISO) (Version: 4.8 - PowerISO Computing, Inc.)
Rejestracja użytkownika drukarki Canon MG3200 series (HKLM-x32\...\Rejestracja użytkownika drukarki Canon MG3200 series) (Version:  - Canon Inc.‎)
Ruby 1.9.3-p545 (HKCU\...\{17E73B15-62D2-43FD-B851-ACF86A8C9D25}_is1) (Version: 1.9.3-p545 - RubyInstaller Team)
Sacred - Z쿽ta Edycja (HKLM-x32\...\{1AD6A797-E83F-4E1E-AF49-15CBA9AFE4E0}) (Version: 1.00.0000 - Ascaron Entertainment)
Sacred 2 - Fallen Angel (HKLM-x32\...\{1023383E-D9F6-478C-A965-23A4657B3C9A}) (Version: 2.43.0.0 - Deep Silver)
Sakura (HKLM-x32\...\Sakura) (Version:  - Image-Line)
Sawer (HKLM-x32\...\Sawer) (Version:  - Image-Line)
Service Pack 1 for SQL Server 2008 (KB968369) (64-bit) (HKLM\...\KB968369) (Version: 10.1.2531.0 - Microsoft Corporation)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version:  - Microsoft) Hidden
Sony Media Manager 2.0 (HKLM-x32\...\{B13F5727-F12F-4253-B6AD-26AFA880B709}) (Version: 2.0.84 - Sony)
Sony Vegas 6.0d (HKLM-x32\...\{4F68B605-2F2B-42A8-8689-0CA7E67797B0}) (Version: 6.0.210 - Sony)
Spotify (HKCU\...\Spotify) (Version: 0.9.6.72.ge389c074 - Spotify AB)
Sql Server Customer Experience Improvement Program (Version: 10.1.2531.0 - Microsoft Corporation) Hidden
Starbound (HKLM-x32\...\Steam App 211820) (Version:  - )
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
SuperTux 0.1.3 (HKLM-x32\...\SuperTux_is1) (Version:  - SuperTux Development Team)
SWI-Prolog (remove only) (HKLM\...\SWI-Prolog) (Version:  - )
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab CYRI (HKLM-x32\...\{943A8D28-80D6-41DC-AE94-81FEB42041BF}) (Version: 4.5.1.0 - Husdawg, LLC)
Tasker v4.110 (HKLM-x32\...\Tasker_is1) (Version:  - Vista Software, Inc.)
TeamSpeak 2 RC2 (HKLM-x32\...\Teamspeak 2 RC2_is1) (Version: 2.0.32.60 - Dominating Bytes Design)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version:  - TeamSpeak Systems GmbH)
Terraria (HKLM-x32\...\Steam App 105600) (Version:  - )
Tibia (HKLM-x32\...\Tibia_is1) (Version: 10.37 - CipSoft GmbH)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 7.56a - Ghisler Software GmbH)
Toxic Biohazard (HKLM-x32\...\Toxic Biohazard) (Version:  - Image-Line)
Ultra MMF2 (HKCU\...\Ultra MMF2) (Version:  - )
Unity Web Player (HKCU\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
UnLock Root 2.31 (HKLM-x32\...\UnLock Root) (Version: 2.31 - Unlcokroot)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2473228) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft Access 2010 (KB2553446) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{FEF4C57D-0975-4D3C-ACC7-DCD038C3788F}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2837594) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{99A0DB9A-71FC-4F98-BC1F-78A18195C677}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{DB0B0CDF-77EC-47B0-94E2-4738573A1E58}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817396) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{1AA82E2E-7DB7-4C70-910C-BBB657A6B3A5}) (Version:  - Microsoft)
Update for Microsoft Lync 2013 (KB2863908) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{259F7CA1-7A87-4E60-85A9-0A55E60FF254}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2494150) (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{428CB7A0-1068-4CE1-8835-39C7ECD297ED}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{79C725A1-3964-421C-A528-78C1C083C7C7}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{95BE5D45-A3DD-4CB1-8C35-D75DD7B4D862}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{95BE5D45-A3DD-4CB1-8C35-D75DD7B4D862}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{EBD18DE5-BC84-4B57-9A30-097044871F9A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{4AD36582-256B-433D-8593-F31773A15CA4}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{4AD36582-256B-433D-8593-F31773A15CA4}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F216169C-2B40-429B-8370-B5BA06EC5423}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F216169C-2B40-429B-8370-B5BA06EC5423}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{B6AD7E27-012A-4B63-82BA-AF62893E5435}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{07DC9C6C-E916-4F42-8677-716930ED0393}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825640) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{43F59F4D-7179-497E-BE99-BC6F7D1DDCBA}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825640) 64-Bit Edition (HKLM\...\{90140000-0044-0415-1000-0000000FF1CE}_Office14.PROPLUS_{43F59F4D-7179-497E-BE99-BC6F7D1DDCBA}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2850079) 64-Bit Edition (HKLM\...\{90140000-001F-0407-1000-0000000FF1CE}_Office14.PROPLUS_{64D96F30-CF4C-4CCE-AAF2-F8909348BF35}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2863818) 64-Bit Edition (HKLM\...\{90140000-001F-0409-1000-0000000FF1CE}_Office14.PROPLUS_{A9C4BE58-07E0-473D-AE68-ECBA13FBF77E}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2878225) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{8A6BDA63-4D23-4485-A466-8979E10BCF49}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2878225) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{8A6BDA63-4D23-4485-A466-8979E10BCF49}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2726954) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{43EB1F58-DAA0-4F61-A4EE-C5651F85A047}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2726954) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{43EB1F58-DAA0-4F61-A4EE-C5651F85A047}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2726996) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{76CACE05-7A19-4EAC-87D7-5BFF63AF7CDF}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2726996) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{76CACE05-7A19-4EAC-87D7-5BFF63AF7CDF}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2738038) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{FEFF9FF6-FF61-455E-A8CC-3A1311A657AD}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760224) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{3FF4EA9F-3505-4726-A974-6593A968FFCC}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760242) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{9406D70B-2D9C-4613-A75A-F35B66BA8AFA}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760267) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{CA390537-AA88-450F-A240-5FB4648A124A}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760344) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{EF77B4A6-DFEC-4010-A87D-9B6BF87FABEC}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760610) 64-Bit Edition (HKLM\...\{90150000-006E-0415-1000-0000000FF1CE}_Office15.VISPROR_{469B5E1E-9449-4FF7-881B-59FD13A3B38D}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2760610) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{D8B3D175-48B8-413F-8484-4D81E744B51C}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2768012) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{0814662C-FD28-4DE0-ACE5-EE50D1D6C8FB}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2768016) 64-Bit Edition (HKLM\...\{90150000-006E-0415-1000-0000000FF1CE}_Office15.VISPROR_{A8F2CDA5-26BD-4E21-893E-CD3B748C118C}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817490) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{CA0554C4-62FE-4F66-BC87-1EE1EAC675EF}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817490) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{CA0554C4-62FE-4F66-BC87-1EE1EAC675EF}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817626) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{F33ABF6A-3007-47E8-8E38-506A18E54641}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817636) 64-Bit Edition (HKLM\...\{90150000-006E-0415-1000-0000000FF1CE}_Office15.VISPROR_{D97AACA3-9AEA-43FF-8CBA-93BED0443FC2}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817636) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{D97AACA3-9AEA-43FF-8CBA-93BED0443FC2}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2817636) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{D97AACA3-9AEA-43FF-8CBA-93BED0443FC2}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2826004) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{B38036CB-BAF6-41D4-8810-FD016453ABB9}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2827225) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{2A286156-257B-4528-9DB5-B4D4D53211BC}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2827227) 64-Bit Edition (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}_Office15.VISPROR_{B5E3E636-7913-4775-BC9B-E4B56F4ED73B}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2827227) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.VISPROR_{92833C80-DC88-4A22-8630-407F810EF57B}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2827227) 64-Bit Edition (HKLM\...\{90150000-001F-0415-1000-0000000FF1CE}_Office15.VISPROR_{C50192E2-05D7-4974-924C-237D99E0F63C}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2827230) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{F2187E8D-C68A-4655-8551-1932878A5581}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2827239) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{9353CD85-4B19-45C4-8DBA-1391926351F6}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2827239) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{9353CD85-4B19-45C4-8DBA-1391926351F6}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863825) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{327EABFD-EDD3-44E7-AB47-7592DF33B719}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863843) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{290D80DE-03AB-47EC-9402-108AF4CE4F66}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863844) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{50F31E04-D56A-4159-BF36-CF3CE27DB30C}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863860) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{6D170CB5-8D22-4D1B-A811-B899FE588946}) (Version:  - Microsoft)
Update for Microsoft Office 2013 (KB2863860) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{6D170CB5-8D22-4D1B-A811-B899FE588946}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2863864) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{AFB7E303-C8CA-4A08-AD3F-44A562B3C809}) (Version:  - Microsoft)
Update for Microsoft OneDrive for Business (KB2863864) 64-Bit Edition (HKLM\...\{90150000-00C1-0415-1000-0000000FF1CE}_Office15.VISPROR_{AFB7E303-C8CA-4A08-AD3F-44A562B3C809}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{3029C408-1DD1-4273-8E58-87CB1B638FC8}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{3029C408-1DD1-4273-8E58-87CB1B638FC8}) (Version:  - Microsoft)
Update for Microsoft OneNote 2013 (KB2817628) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{9367C385-2EF9-4BE3-8351-7D2AB0798A57}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{DDDC32A5-9528-4771-B91A-97A8E1D7957B}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 64-Bit Edition (HKLM\...\{90140000-001A-0415-1000-0000000FF1CE}_Office14.PROPLUS_{914FE0E1-D442-4CD9-8FF3-C2984101EE2C}) (Version:  - Microsoft)
Update for Microsoft Outlook 2013 (KB2863911) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{DF3798F3-F45C-44DA-83B7-229A9EBC9654}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A20A650C-F820-4CE4-AEA5-EC140192FAFB}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 64-Bit Edition (HKLM\...\{90140000-0018-0415-1000-0000000FF1CE}_Office14.PROPLUS_{CB77918E-0607-49BB-9945-786CBA74A6AF}) (Version:  - Microsoft)
Update for Microsoft Project 2013 (KB2727085) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{BBD4F4CE-65D4-4CEB-AE19-E5296A57AA6C}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{77374F16-2DC6-4EEF-AFAD-C59FDA2E010D}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{77374F16-2DC6-4EEF-AFAD-C59FDA2E010D}) (Version:  - Microsoft)
Update for Microsoft Visio 2010 (KB2553444) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{8E076AE6-4E29-4056-A13F-70CC8F433FB5}) (Version:  - Microsoft)
Update for Microsoft Visio 2013 (KB2817306) 64-Bit Edition (HKLM\...\{90150000-0054-0415-1000-0000000FF1CE}_Office15.VISPROR_{C772E2F2-0675-4B26-89C8-BE438C6FC6D3}) (Version:  - Microsoft)
Update for Microsoft Visio 2013 (KB2817306) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{F16E7B82-23FE-4054-AB73-EAE53965251C}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2810066) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{DF33B92A-5381-4F03-AB54-2D67086B357E}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition (HKLM\...\{90150000-006E-0415-1000-0000000FF1CE}_Office15.VISPROR_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2817301) 64-Bit Edition (HKLM\...\{91150000-0051-0000-1000-0000000FF1CE}_Office15.VISPROR_{8E5CD68A-CDF8-4930-88DF-B7778B1871A9}) (Version:  - Microsoft)
USB 2.0 1.3M UVC WebCam (HKLM\...\USB 2.0 1.3M UVC WebCam) (Version:  - )
VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.)
Visual Studio 2010 Prerequisites - English (HKLM\...\{662014D2-0450-37ED-ABAE-157C88127BEB}) (Version: 10.0.30319 - Microsoft Corporation)
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{112C23F2-C036-4D40-BED4-0CB47BF5555C}) (Version: 4.0.8080.0 - Microsoft Corporation)
WampServer 2.4 (HKLM-x32\...\WampServer 2_is1) (Version:  - Hervé Leclerc (HeL))
WapSter AQQ (HKLM-x32\...\AQQ) (Version: 2.4.5.50 - Creative Team S.A.)
Web Deployment Tool (HKLM\...\{0F37D969-1260-419E-B308-EF7D29ABDE20}) (Version: 1.1.0618 - Microsoft Corporation)
WebServ 2.0 (HKLM-x32\...\WebServ_is1) (Version:  - WebsSrv.PL)
Winamp (HKLM-x32\...\Winamp) (Version: 5.63  - Nullsoft, Inc)
Windows Live Communications Platform (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM-x32\...\{C3335EFB-008F-44DB-A87A-9EC8EE53D045}) (Version: 14.0.8050.1202 - Microsoft Corporation)
Windows Live Writer (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden
Windows Vista Battery Sidebar Gadget (HKLM-x32\...\{F2996FC2-47B9-409E-9442-C89390D49D8E}) (Version: 1.0.0 - Ross Luengen)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.26.0 - ASUS)
WinSCP 5.5.1 (HKLM-x32\...\winscp3_is1) (Version: 5.5.1 - Martin Prikryl)
Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.10 - ASUS)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: 4.0.3.13329 - Blizzard Entertainment)
Xfire (remove only) (HKLM-x32\...\Xfire) (Version:  - )
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)

==================== Restore Points  =========================


==================== Hosts content: ==========================

2009-07-14 04:34 - 2014-03-30 21:35 - 00000851 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {006BC50A-3098-43CA-B27B-6D3904D22C12} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000UA => C:\Users\Box\AppData\Local\Google\Update\GoogleUpdate.exe [2012-06-26] (Google Inc.)
Task: {09762694-7F5F-4184-A859-CC9CA82F6B5D} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {0EAB4CF8-A945-4140-8C88-8F04980553CB} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2009-07-29] (ATK)
Task: {1A0DC409-52EA-4405-B3E7-3CA02913C5DE} - System32\Tasks\{90D25B14-74ED-4284-BD97-59C89A63E31F} => C:\Users\Box\Desktop\Maple\MapleStory.exe
Task: {22D65EDB-2289-4128-BC53-0E3DF365ADC9} - System32\Tasks\FoxTab => C:\Users\Box\AppData\Roaming\FoxTab\UpdateProc\UpdateTask.exe [2013-04-12] () <==== ATTENTION
Task: {256BB5DE-FADC-4B3F-801F-29055DB5E513} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {3DF1111F-25AD-4762-B69D-275F2ED0C96C} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [2007-11-30] ()
Task: {4350A0EF-22AF-461F-86BE-B07A0C7FA031} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-02] (Google Inc.)
Task: {4985A167-7F0C-4FED-9E13-E78CDBCBDAF7} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-05-19] (ASUS)
Task: {4C2593AA-4999-4D45-A5E4-4C8C64FD4B84} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2465420228-375340488-1497802240-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {4D19C3A8-5CF2-435F-9BB7-1C15C76EDC8A} - System32\Tasks\ASPG => C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe [2009-06-29] (ASUS)
Task: {5A1DCD07-9254-46BA-95EC-E786B4C3C35C} - System32\Tasks\{6762AC5E-C914-45D1-AA7E-1077B9B917E0} => C:\Users\Box\Desktop\Muzyka\ROCK METAL\Muse\TrineSetup.exe
Task: {5BF956BC-FEA9-4757-90AB-A56411030334} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-02] (Google Inc.)
Task: {60E0F5F1-C277-4D56-B6C4-307CB0E2AF84} - System32\Tasks\WC3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2009-07-24] ()
Task: {61F7F802-164A-40AA-9F50-E8E7560A8359} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2465420228-375340488-1497802240-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {64F742FE-628E-4786-AA12-8BF6B6AD56DE} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2012-04-01] ()
Task: {7DACB517-A7D4-4203-B2DD-F5111D2B7E46} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {8B9F8F98-1DAA-41DD-A023-FDA3F0776093} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000Core => C:\Users\Box\AppData\Local\Google\Update\GoogleUpdate.exe [2012-06-26] (Google Inc.)
Task: {94082059-DAC6-4AD6-9F24-5148896486F8} - System32\Tasks\ASUSControlDeck => C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe [2009-07-23] ()
Task: {9731F3CF-C097-4781-A2A4-3104329A32F8} - System32\Tasks\AIRecoveryRemind => C:\Program Files (x86)\ASUS\AI Recovery\AIRecoveryRemind.exe [2009-09-11] (ASUSTek Computer Inc.)
Task: {97C63FDF-3ACE-419B-A212-A6DDAD742699} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {9FF47A47-D60B-4C20-960C-FEC43030839D} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2009-07-23] (ATK)
Task: {A4875A8E-3B20-4896-8642-1082F42B98B2} - System32\Tasks\{3ABCF1D3-7522-47BB-A6E3-6295BD3C37EC} => C:\Users\Box\Desktop\Maple\MapleStory.exe
Task: {BB6BEE84-A8FB-447C-AC00-2F7824CFA95A} - System32\Tasks\P4G Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation)
Task: {CE5552BE-1672-4F8A-ACA1-F6363F86166C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-02] (Adobe Systems Incorporated)
Task: {E62F33EA-D173-4C62-B890-966F513998BC} - System32\Tasks\{0A3868FC-4B8F-49B1-809B-2F37D031FEFB} => C:\Users\Box\Desktop\Maple\MapleStory.exe
Task: {EE767858-797C-4C2B-91BA-5DC3CB169EAF} - System32\Tasks\{3D584990-56D1-4F34-9D11-278D7EC302CB} => C:\Users\Box\Desktop\Muzyka\ROCK METAL\Muse\TrineSetup.exe
Task: {FBB6374B-A5C1-44A4-B632-5927A8F7C2D5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {FD8099D8-7ECC-4D89-81E7-1EA9C426ADA7} - System32\Tasks\RunAsStdUser Task for VeohWebPlayer => C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe <==== ATTENTION
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FoxTab.job => C:\Users\Box\AppData\Roaming\FoxTab\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000Core.job => C:\Users\Box\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2465420228-375340488-1497802240-1000UA.job => C:\Users\Box\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2009-11-03 05:11 - 2007-08-08 10:08 - 00094208 _____ () C:\Program Files\ATKGFNEX\GFNEXSrv.exe
2009-05-05 20:00 - 2009-05-05 20:00 - 00041472 _____ () C:\Program Files\P4G\DevMng.dll
2009-07-27 20:12 - 2009-07-27 20:12 - 00026624 _____ () C:\Program Files\P4G\OvrClk.dll
2009-11-03 05:11 - 2007-03-10 04:58 - 00124416 _____ () C:\Program Files\ATKGFNEX\AGFNEX64.dll
2009-07-23 03:58 - 2009-07-23 03:58 - 00017976 _____ () C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
2009-07-24 20:32 - 2009-07-24 20:32 - 01593344 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
2008-10-01 09:02 - 2008-10-01 09:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll
2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2009-08-25 09:47 - 2009-08-25 09:47 - 00140560 _____ () C:\Program Files (x86)\ASUS\Asus WebStorage\EcaremeDLL.dll
2009-11-03 04:49 - 2009-11-03 04:49 - 00029968 _____ () C:\Windows\assembly\GAC_MSIL\SqliteShared\1.0.3524.15966__0d0f4b69e50e559b\SqliteShared.dll
2009-11-03 04:49 - 2009-11-03 04:49 - 00931840 _____ () C:\Windows\assembly\GAC_64\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.dll
2011-07-18 23:04 - 2011-07-18 23:04 - 00301568 _____ () C:\Program Files (x86)\Notepad++\NppShell_04.dll
2008-08-14 06:59 - 2008-08-14 06:59 - 00301624 _____ () C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe
2009-11-03 05:11 - 2009-05-07 10:51 - 00071680 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll
2009-11-03 05:11 - 2009-05-07 10:53 - 00379392 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll
2009-11-03 05:11 - 2008-01-18 08:49 - 00098816 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\VMicApi.dll
2009-11-03 05:11 - 2009-07-06 08:37 - 47601664 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Skin.dll
2009-11-03 05:14 - 2009-06-22 23:37 - 00212992 _____ () C:\Windows\SysWOW64\Fast Boot\GetBootTime.dll
2008-08-28 02:32 - 2008-08-28 02:32 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
2008-06-09 19:55 - 2008-06-09 19:55 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
2014-04-10 00:21 - 2014-04-02 03:57 - 00065352 _____ () C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\chrome_elf.dll
2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-04-10 00:21 - 2014-04-02 03:57 - 00674632 _____ () C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\libglesv2.dll
2014-04-10 00:21 - 2014-04-02 03:57 - 00093000 _____ () C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\libegl.dll
2014-04-10 00:21 - 2014-04-02 03:57 - 04081480 _____ () C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\pdf.dll
2014-04-10 00:21 - 2014-04-02 03:58 - 00390472 _____ () C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll
2014-04-10 00:21 - 2014-04-02 03:57 - 01647432 _____ () C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\ffmpegsumo.dll
2014-04-10 00:21 - 2014-04-02 03:58 - 13691720 _____ () C:\Users\Box\AppData\Local\Google\Chrome\Application\34.0.1847.116\PepperFlash\pepflashplayer.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00417280 _____ () C:\Program Files (x86)\Winamp\nsutil.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00078848 _____ () C:\Program Files (x86)\Winamp\nde.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00064512 _____ () C:\Program Files (x86)\Winamp\zlib.dll
2014-04-17 13:25 - 2014-04-17 13:25 - 00011264 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\auth.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00066560 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\burnlib.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00012800 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\dsp_sps.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00006656 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\enc_fhgaac.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00004096 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\enc_flac.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00005632 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\enc_lame.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00004096 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\enc_wav.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00006144 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\enc_wma.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00007168 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\gen_crasher.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00022016 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\gen_ff.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00011264 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\gen_hotkeys.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00040960 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\gen_jumpex.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00021504 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\gen_ml.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00007168 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\gen_orgler.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00007680 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\gen_tray.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00005120 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_avi.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00013312 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_cdda.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00007168 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_dshow.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00006144 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_flac.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00003584 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_flv.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00003584 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_linein.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00020992 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_midi.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00004608 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_mkv.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00018432 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_mod.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00022528 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_mp3.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00004608 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_mp4.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00011264 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_nsv.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00003584 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_swf.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00011264 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_vorbis.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00005632 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\in_wave.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00003584 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_addons.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00007168 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_autotag.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00005120 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_bookmarks.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00008192 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_devices.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00047616 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_disc.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00009216 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_downloads.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00008704 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_history.lng
2014-04-17 13:25 - 2014-04-17 13:25 - 00005120 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_impex.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00054272 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_local.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00003584 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_nowplaying.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00014336 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_online.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00004096 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_orb.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00013312 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_playlists.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00012800 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_plg.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00046592 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_pmp.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00005632 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_rg.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00008192 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_transcode.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00014336 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ml_wire.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00036864 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\ombrowser.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00006144 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\out_disk.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00016896 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\out_ds.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00007168 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\out_wave.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00003072 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\playlist.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00004608 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\pmp_activesync.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00010752 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\pmp_android.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00006656 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\pmp_ipod.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00003584 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\pmp_njb.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00004096 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\pmp_p4s.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00010752 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\pmp_usb.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00045056 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\pmp_wifi.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00006144 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\tagz.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00087552 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\vis_avs.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00161792 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\vis_milk2.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00007680 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\vis_nsfs.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00324608 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\winamp.lng
2014-04-17 13:26 - 2014-04-17 13:26 - 00003584 _____ () C:\Users\Box\AppData\Local\Temp\WLZEE15.tmp\winampa.lng
2012-06-28 17:42 - 2013-01-20 02:07 - 00023552 _____ () C:\Program Files (x86)\Winamp\System\albumart.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00174080 _____ () C:\Program Files (x86)\Winamp\System\auth.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00019456 _____ () C:\Program Files (x86)\Winamp\System\bmp.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00044544 _____ () C:\Program Files (x86)\Winamp\System\devices.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00016896 _____ () C:\Program Files (x86)\Winamp\System\dlmgr.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00014336 _____ () C:\Program Files (x86)\Winamp\System\filereader.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00019456 _____ () C:\Program Files (x86)\Winamp\System\gif.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00016384 _____ () C:\Program Files (x86)\Winamp\System\gracenote.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00623616 _____ () C:\Program Files (x86)\Winamp\System\jnetlib.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00154624 _____ () C:\Program Files (x86)\Winamp\System\jpeg.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00084480 _____ () C:\Program Files (x86)\Winamp\System\playlist.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00087552 _____ () C:\Program Files (x86)\Winamp\System\png.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00013824 _____ () C:\Program Files (x86)\Winamp\System\primo.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00021504 _____ () C:\Program Files (x86)\Winamp\System\tagz.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00035328 _____ () C:\Program Files (x86)\Winamp\System\timer.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00091136 _____ () C:\Program Files (x86)\Winamp\System\xml.w5s
2012-06-28 17:42 - 2013-01-20 02:07 - 00068608 _____ () C:\Program Files (x86)\Winamp\Plugins\in_avi.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00102400 _____ () C:\Program Files (x86)\Winamp\Plugins\in_cdda.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00072192 _____ () C:\Program Files (x86)\Winamp\Plugins\in_dshow.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00061440 _____ () C:\Program Files (x86)\Winamp\Plugins\in_flac.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00043008 _____ () C:\Program Files (x86)\Winamp\Plugins\in_flv.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00007168 _____ () C:\Program Files (x86)\Winamp\Plugins\in_linein.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00109568 _____ () C:\Program Files (x86)\Winamp\Plugins\in_midi.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00049152 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mkv.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00164864 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mod.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00290816 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mp3.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00052736 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mp4.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00075264 _____ () C:\Program Files (x86)\Winamp\Plugins\in_nsv.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00023552 _____ () C:\Program Files (x86)\Winamp\Plugins\in_swf.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00253440 _____ () C:\Program Files (x86)\Winamp\Plugins\in_vorbis.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00016896 _____ () C:\Program Files (x86)\Winamp\Plugins\in_wave.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00253440 _____ () C:\Program Files (x86)\Winamp\libsndfile.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00313344 _____ () C:\Program Files (x86)\Winamp\Plugins\in_wm.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00022528 _____ () C:\Program Files (x86)\Winamp\Plugins\out_disk.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00052224 _____ () C:\Program Files (x86)\Winamp\Plugins\out_ds.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00018432 _____ () C:\Program Files (x86)\Winamp\Plugins\out_wave.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 01737728 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_ff.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00083968 _____ () C:\Program Files (x86)\Winamp\tataki.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00340992 _____ () C:\Program Files (x86)\Winamp\Plugins\freeform\wacs\freetype\freetype.wac
2012-06-28 17:42 - 2013-01-20 02:07 - 00028160 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_hotkeys.dll
2011-11-11 00:10 - 2013-01-20 02:07 - 00185344 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_jumpex.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00318976 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_ml.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00294912 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_local.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00084480 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_playlists.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00124928 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_online.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00249856 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_devices.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00201728 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_disc.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00240640 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_pmp.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00060928 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_android.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00170496 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_ipod.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00020480 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_njb.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00118272 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_p4s.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00053760 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_usb.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00113664 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_wifi.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00028672 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_bookmarks.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00052224 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_history.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00028672 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_autotag.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00057344 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_impex.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00083456 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_plg.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00033792 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_rg.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00032256 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_transcode.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00057344 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_orgler.dll
2012-06-28 17:42 - 2013-01-20 02:07 - 00025600 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_tray.dll
2013-01-18 11:58 - 2013-01-14 17:33 - 00592896 _____ () C:\Program Files (x86)\Last.fm\unicorn.dll
2013-01-18 11:58 - 2013-01-14 17:33 - 00015872 _____ () C:\Program Files (x86)\Last.fm\logger.dll
2013-01-18 11:58 - 2013-01-14 17:30 - 00351744 _____ () C:\Program Files (x86)\Last.fm\lastfm.dll
2013-01-18 11:58 - 2013-01-14 17:33 - 00104960 _____ () C:\Program Files (x86)\Last.fm\listener.dll
2013-01-18 11:58 - 2013-01-14 17:30 - 00083968 _____ () C:\Program Files (x86)\Last.fm\lastfm_fingerprint.dll
2013-01-18 11:59 - 2012-08-16 15:34 - 01478144 _____ () C:\Program Files (x86)\Last.fm\libsamplerate-0.dll
2011-08-08 15:59 - 2012-04-28 11:15 - 02320776 _____ () C:\Program Files (x86)\Last.fm\libfftw3f-3.dll
2013-01-18 11:59 - 2013-01-06 22:15 - 03054592 _____ () C:\Program Files (x86)\Last.fm\avformat-54.dll
2013-01-18 11:59 - 2013-01-06 22:15 - 15212032 _____ () C:\Program Files (x86)\Last.fm\avcodec-54.dll
2013-01-18 11:59 - 2013-01-06 22:15 - 00221696 _____ () C:\Program Files (x86)\Last.fm\avutil-52.dll
2013-01-18 11:59 - 2013-01-06 22:15 - 00112128 _____ () C:\Program Files (x86)\Last.fm\swresample-0.dll
2013-01-18 11:59 - 2012-10-11 12:09 - 00300544 _____ () C:\Program Files (x86)\Last.fm\phonon.dll
2010-06-23 02:05 - 2007-07-06 22:16 - 00063496 _____ () C:\Program Files (x86)\Common Files\GTK\2.0\bin\ZLIB1.dll
2013-01-18 11:59 - 2012-10-25 13:09 - 00181248 _____ () C:\Program Files (x86)\Last.fm\plugins\phonon_backend\phonon_vlc.dll
2013-01-18 11:59 - 2012-10-15 21:27 - 00111616 _____ () C:\Program Files (x86)\Last.fm\libvlc.dll
2013-01-18 11:59 - 2012-10-15 21:28 - 02286592 _____ () C:\Program Files (x86)\Last.fm\libvlccore.dll
2013-01-18 11:59 - 2012-10-15 21:28 - 00049664 _____ () C:\Program Files (x86)\Last.fm\plugins\audio_output\libaout_directx_plugin.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\Temp:05EE1EEF
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Disabled items from MSCONFIG ==============

MSCONFIG\Services: Adobe LM Service => 3
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: bthserv => 3
MSCONFIG\Services: clr_optimization_v4.0.30319_32 => 2
MSCONFIG\Services: clr_optimization_v4.0.30319_64 => 2
MSCONFIG\Services: EhttpSrv => 3
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: fsssvc => 3
MSCONFIG\Services: FTRTSVC => 2
MSCONFIG\Services: GFI LANguard N.S.S. 5.0 attendant service => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: Hamachi2Svc => 2
MSCONFIG\Services: HiPatchService => 2
MSCONFIG\Services: IEEtwCollectorService => 3
MSCONFIG\Services: iphlpsvc => 2
MSCONFIG\Services: lmhosts => 2
MSCONFIG\Services: Modem Device Helper => 2
MSCONFIG\Services: MySQL => 2
MSCONFIG\Services: NIHardwareService => 2
MSCONFIG\Services: OberonGameConsoleService => 2
MSCONFIG\Services: PassThru Service => 2
MSCONFIG\Services: SfCtlCom => 2
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: swprv => 3
MSCONFIG\Services: TMBMServer => 3
MSCONFIG\Services: TmProxy => 3
MSCONFIG\Services: wcncsvc => 3
MSCONFIG\Services: wercplsupport => 3
MSCONFIG\Services: WPCSvc => 3
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk => C:\Windows\pss\FancyStart daemon.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^tmchlang.lnk => C:\Windows\pss\tmchlang.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Box^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma.lnk => C:\Windows\pss\Adobe Gamma.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Box^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Box^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk => C:\Windows\pss\OpenOffice.org 3.2.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Box^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Xfire.lnk => C:\Windows\pss\Xfire.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Box\AppData\Local\Akamai\netsession_win.exe"
MSCONFIG\startupreg: ALLUpdate => "C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe" "sleep"
MSCONFIG\startupreg: BCSSync => "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
MSCONFIG\startupreg: BEWINTERNET-PL-IEWSessionManager => "C:\Program Files (x86)\OrangeBS\BEWInternet-PL-IEW\SessionManager\SessionManager.exe"
MSCONFIG\startupreg: CanonQuickMenu => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon
MSCONFIG\startupreg: CardDetectorHUAWEI1752_1552 => C:\Program Files (x86)\CardDetector\HUAWEI1752_1552\CardDetector.exe
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: EeeStorageBackup => C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe
MSCONFIG\startupreg: egui => "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
MSCONFIG\startupreg: ERA_SEPANG ModemListener => C:\Program Files (x86)\blueconnect\BackgroundService\ModemListener.exe start
MSCONFIG\startupreg: eSnips_Downloader => "C:\Program Files (x86)\Logia\eSnipsDownloader\eSnips_Downloader.exe" -startup
MSCONFIG\startupreg: Facebook Update => "C:\Users\Box\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
MSCONFIG\startupreg: Google Update => "C:\Users\Box\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: HTC Sync Loader => "C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup
MSCONFIG\startupreg: HW_OPENEYE_OUC_blueconnect => "C:\Program Files (x86)\blueconnect\UpdateDog\ouc.exe"
MSCONFIG\startupreg: KPeerNexonEU => C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe
MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
MSCONFIG\startupreg: Malwarebytes' Anti-Malware (reboot) => "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
MSCONFIG\startupreg: rtyuoo => c:\fvr32.com
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\Steam.exe" -silent
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: TkBellExe => "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe"  -osboot
MSCONFIG\startupreg: Twoje TVN24 => "C:\Program Files (x86)\Pasek TVN24\pasektvn24.exe"
MSCONFIG\startupreg: UfSeAgnt.exe => "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
MSCONFIG\startupreg: VeohPlugin => "C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe"

==================== Faulty Device Manager Devices =============

Name: Hamachi Network Interface
Description: Hamachi Network Interface
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: LogMeIn, Inc.
Service: hamachi
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Karta Microsoft Loopback
Description: Karta Microsoft Loopback
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: msloop
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/17/2014 01:28:12 PM) (Source: VSS) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: błąd tworzenia klasy COM dostawcy kopii w tle z identyfikatorem CLSID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.
].


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Wyświetl listę interfejsów dla wszystkich dostawców obsługujących ten kontekst
   Badaj kopie w tle

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Kontekst migawki: 13
   Kontekst migawki: 13
   Kontekst wykonywania: Coordinator

Error: (04/17/2014 01:28:12 PM) (Source: VSS) (User: )
Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} i nazwą SW_PROV. [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.
]


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Wyświetl listę interfejsów dla wszystkich dostawców obsługujących ten kontekst
   Badaj kopie w tle

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Kontekst migawki: 13
   Kontekst migawki: 13
   Kontekst wykonywania: Coordinator

Error: (04/17/2014 01:23:00 PM) (Source: Application Hang) (User: )
Description: Program UNINSTAL.EXE w wersji 1.1.0.428 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji.

Identyfikator procesu: cac

Godzina rozpoczęcia: 01cf5a2f0a00626d

Godzina zakończenia: 15

Ścieżka aplikacji: C:\Program Files (x86)\Microsoft Games\Flight Simulator 9\UNINSTAL.EXE

Identyfikator raportu: 9fbd27a0-c622-11e3-af54-90e6ba9e3968

Error: (04/17/2014 01:19:35 PM) (Source: System Restore) (User: )
Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Usunięto League of Legends; Błąd = 0x80042302).

Error: (04/17/2014 01:19:35 PM) (Source: VSS) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury GetProviderMgmtInterface.  hr = 0x8004230f, Dostawca kopii w tle napotkał nieoczekiwany błąd podczas próby przetwarzania określonej operacji.
.

Error: (04/17/2014 01:19:35 PM) (Source: VSS) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: błąd tworzenia klasy COM dostawcy kopii w tle z identyfikatorem CLSID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.
].


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Uzyskiwanie interfejsu zarządzania dostawcy

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {00000000-0000-0000-0000-000000000000}
   Kontekst migawki: -1
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (04/17/2014 01:19:35 PM) (Source: VSS) (User: )
Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} i nazwą SW_PROV. [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.
]


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Uzyskiwanie interfejsu zarządzania dostawcy

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {00000000-0000-0000-0000-000000000000}
   Kontekst migawki: -1
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (04/17/2014 01:19:33 PM) (Source: System Restore) (User: )
Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Removed League of Legends; Błąd = 0x80042302).

Error: (04/17/2014 01:19:33 PM) (Source: VSS) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury GetProviderMgmtInterface.  hr = 0x8004230f, Dostawca kopii w tle napotkał nieoczekiwany błąd podczas próby przetwarzania określonej operacji.
.

Error: (04/17/2014 01:19:33 PM) (Source: VSS) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: błąd tworzenia klasy COM dostawcy kopii w tle z identyfikatorem CLSID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.
].


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Uzyskiwanie interfejsu zarządzania dostawcy

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {00000000-0000-0000-0000-000000000000}
   Kontekst migawki: -1
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}


System errors:
=============
Error: (04/17/2014 03:05:54 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: ZARZĄDZANIE NT)
Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft .NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64 (KB2858725).

Error: (04/16/2014 10:05:10 PM) (Source: bowser) (User: )
Description: Przeglądarka główna odebrała anons serwera z komputera ELA-KOMPUTER.
Komputer ten zachowuje się tak, jakby był przeglądarką główną dla domeny w transporcie NetBT_Tcpip_{2B466487-FFF9-467A-AB69-7A0E79CF7BD8}.
Przeglądarka główna właśnie jest zatrzymywana albo wymuszany jest wybór.

Error: (04/16/2014 05:31:50 PM) (Source: NetBT) (User: )
Description: Nie można zarejestrować nazwy „SIECDOMOWA     :1d” w interfejsie o adresie IP 192.168.1.10.
Komputer o adresie IP 192.168.1.12 nie zezwolił na przejęcie tej nazwy
przez ten komputer.

Error: (04/16/2014 02:34:57 PM) (Source: NetBT) (User: )
Description: Nie można zarejestrować nazwy „SIECDOMOWA     :1d” w interfejsie o adresie IP 192.168.1.10.
Komputer o adresie IP 192.168.1.12 nie zezwolił na przejęcie tej nazwy
przez ten komputer.

Error: (04/16/2014 03:05:34 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: ZARZĄDZANIE NT)
Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft .NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64 (KB2858725).

Error: (04/15/2014 07:15:01 PM) (Source: BROWSER) (User: )
Description: Usługa przeglądarki zbyt wiele razy nie zdołała pobrać listy kopii zapasowych w transporcie \Device\NetBT_Tcpip_{2B466487-FFF9-467A-AB69-7A0E79CF7BD8}.
Przeglądarka zapasowa jest zatrzymywana.

Error: (04/15/2014 06:44:25 PM) (Source: DCOM) (User: ZARZĄDZANIE NT)
Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC)

Error: (04/15/2014 06:36:09 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: ZARZĄDZANIE NT)
Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft .NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64 (KB2858725).

Error: (04/15/2014 03:04:22 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: ZARZĄDZANIE NT)
Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Program Microsoft .NET Framework 4.5.1 w systemie Windows 7 dla systemów opartych na procesorach x64 (KB2858725).

Error: (04/15/2014 03:00:28 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: ZARZĄDZANIE NT)
Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070070: Aktualizacja dla produktu Microsoft Office 2013 (KB2825631) Wersja 64-bitowa.


Microsoft Office Sessions:
=========================
Error: (04/17/2014 01:28:12 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Wyświetl listę interfejsów dla wszystkich dostawców obsługujących ten kontekst
   Badaj kopie w tle

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Kontekst migawki: 13
   Kontekst migawki: 13
   Kontekst wykonywania: Coordinator

Error: (04/17/2014 01:28:12 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Wyświetl listę interfejsów dla wszystkich dostawców obsługujących ten kontekst
   Badaj kopie w tle

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Kontekst migawki: 13
   Kontekst migawki: 13
   Kontekst wykonywania: Coordinator

Error: (04/17/2014 01:23:00 PM) (Source: Application Hang)(User: )
Description: UNINSTAL.EXE1.1.0.428cac01cf5a2f0a00626d15C:\Program Files (x86)\Microsoft Games\Flight Simulator 9\UNINSTAL.EXE9fbd27a0-c622-11e3-af54-90e6ba9e3968

Error: (04/17/2014 01:19:35 PM) (Source: System Restore)(User: )
Description: C:\Windows\system32\msiexec.exe /VUsunięto League of Legends0x80042302

Error: (04/17/2014 01:19:35 PM) (Source: VSS)(User: )
Description: GetProviderMgmtInterface0x8004230f, Dostawca kopii w tle napotkał nieoczekiwany błąd podczas próby przetwarzania określonej operacji.

Error: (04/17/2014 01:19:35 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Uzyskiwanie interfejsu zarządzania dostawcy

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {00000000-0000-0000-0000-000000000000}
   Kontekst migawki: -1
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (04/17/2014 01:19:35 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Uzyskiwanie interfejsu zarządzania dostawcy

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {00000000-0000-0000-0000-000000000000}
   Kontekst migawki: -1
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (04/17/2014 01:19:33 PM) (Source: System Restore)(User: )
Description: C:\Windows\system32\msiexec.exe /VRemoved League of Legends0x80042302

Error: (04/17/2014 01:19:33 PM) (Source: VSS)(User: )
Description: GetProviderMgmtInterface0x8004230f, Dostawca kopii w tle napotkał nieoczekiwany błąd podczas próby przetwarzania określonej operacji.

Error: (04/17/2014 01:19:33 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.


Operacja:
   Uzyskaj możliwy do wywołania interfejs dla tego dostawcy
   Uzyskiwanie interfejsu zarządzania dostawcy

Kontekst:
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Identyfikator klasy: {00000000-0000-0000-0000-000000000000}
   Kontekst migawki: -1
   Identyfikator dostawcy: {b5946137-7b9f-4925-af80-51abd60b20d5}


==================== Memory info ===========================

Percentage of memory in use: 76%
Total physical RAM: 4061.09 MB
Available physical RAM: 938.07 MB
Total Pagefile: 8120.35 MB
Available Pagefile: 3841.87 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:116.44 GB) (Free:4.03 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (DATA) (Fixed) (Total:334.67 GB) (Free:122.66 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: 12F9525A)
Partition 1: (Not Active) - (Size=15 GB) - (Type=1C)
Partition 2: (Active) - (Size=116 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=335 GB) - (Type=OF Extended)

==================== End Of Log ============================


Dodano 19.04.2014 18:05:39:
Podbijam, bo chyba zapomnieliście, a komp nie daje spokoju :(
:O ffs.
Box
~user
 
Posty: 54
Dołączenie: 03 Cze 2008, 18:35



Systemowy explorer wariuje

Postprzez Łowca Androidów 22 Kwi 2014, 10:32

Pobierz Combofix
Prawy przycisk myszy i Uruchom jako administrator
Daj loga po skanowaniu.
Kobiety nie zmienisz, możesz zmienić kobietę, ale to nic nie zmieni.

nie potrafie znaleźć darmowego programu który byłby za darmo
---------------------------------------------------------------------------------------
sprawdź czy na systemie jest system
Awatar użytkownika
Łowca Androidów
»ekspert
»ekspert
 
Posty: 2138
Dołączenie: 11 Kwi 2014, 13:03
Pochwały: 105




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 13 gości