• Ogłoszenie:

Ktore programy moge usunac

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 19:29

reklama
Witam!!
chcialem sie zapytac ktore z tych programow bez zadnych przeszkod moge usunac by nie zagrozily systemowi Image
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 19:58

Na pewno Strong Signal - to szkodliwy program, ściągnięty przez Ciebie z "DobrychProgramów", podpięty do jakiegoś innego programu.
Nie wiem, czy Revo Uninstaller potrafi usunąć rozszerzenia Strong Signal z Twoich przeglądarek.

----------------------------
Możesz też odinstalować Advanced System Care.
.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 20:16

a jak sprawdzic czy zostaly usuniete te rozszerzenia
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 20:20

Zrób logi z FRST > http://forum.programosy.pl/frst-otl-zoek-vt139692.html
Przed skanem zaznacz "Additional"
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 20:35

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 04-03-2015
Ran by Home (administrator) on HOME-77D2C99578 on 04-03-2015 19:28:01
Running from C:\Documents and Settings\Home\Moje dokumenty
Loaded Profiles: Home (Available profiles: Home)
Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polski
Internet Explorer Version 8 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(Fuyu LIMITED) C:\Documents and Settings\All Users\Dane aplikacji\WindowsMangerProtect\ProtectWindowsManager.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\SoundMAX\SMax4.exe
() C:\WINDOWS\FixCamera.exe
() C:\WINDOWS\vsnpstd3.exe
() C:\WINDOWS\tsnpstd3.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(ASUSTek Computer Inc.) C:\Program Files\ASUS WiFi-AP Solo\RtWLan.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Dropbox, Inc.) C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\Dropbox.exe
(ASUSTeK COMPUTER INC.) C:\WINDOWS\ATKKBService.exe
(Apache Software Foundation) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe
(XTab system) C:\Program Files\XTab\ProtectService.exe
(SearchProtect) C:\Program Files\XTab\CmdShell.exe
() C:\WINDOWS\system32\srvany.exe
() C:\WINDOWS\KMService.exe
() C:\Documents and Settings\All Users\Dane aplikacji\aea8cc93-2213-47cf-a265-0391e3461dbb\maintainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
(HP) C:\WINDOWS\system32\HPZipm12.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
(Apache Software Foundation) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(XTab system) C:\Program Files\XTab\HPNotify.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
() C:\Program Files\Opera\27.0.1689.76_0\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
(Opera Software) C:\Program Files\Opera\27.0.1689.76_0\opera.exe
() C:\3D Rad\3DRad.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [847872 2006-07-20] (Analog Devices, Inc.)
HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [729088 2006-07-13] (Analog Devices, Inc.)
HKLM\...\Run: [ATICCC] => C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe [90112 2006-09-25] ()
HKLM\...\Run: [FixCamera] => C:\WINDOWS\FixCamera.exe [20480 2007-07-11] ()
HKLM\...\Run: [snpstd3] => C:\WINDOWS\vsnpstd3.exe [835584 2007-05-10] ()
HKLM\...\Run: [tsnpstd3] => C:\WINDOWS\tsnpstd3.exe [360448 2009-04-24] ()
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.)
HKU\S-1-5-21-1659004503-1580436667-682003330-1003\...\Run: [Advanced SystemCare 8] => C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe [2426144 2014-11-25] (IObit)
HKU\S-1-5-21-1659004503-1580436667-682003330-1003\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-1580436667-682003330-1003\...\Run: [DANT] => [X]
Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\ASUS WiFi-AP Solo.lnk
ShortcutTarget: ASUS WiFi-AP Solo.lnk -> C:\Program Files\ASUS WiFi-AP Solo\RtWLan.exe (ASUSTek Computer Inc.)
Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Documents and Settings\Home\Menu Start\Programy\Autostart\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Documents and Settings\Home\Dane aplikacji\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hppp&ts=1421076401&from=cor&uid=WDCXWD2500JS-55NCB1_WD-WCANKF97750777507
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=dspp&ts=1421076401&from=cor&uid=WDCXWD2500JS-55NCB1_WD-WCANKF97750777507&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hppp&ts=1421076401&from=cor&uid=WDCXWD2500JS-55NCB1_WD-WCANKF97750777507
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=dspp&ts=1421076401&from=cor&uid=WDCXWD2500JS-55NCB1_WD-WCANKF97750777507&q={searchTerms}
HKU\S-1-5-21-1659004503-1580436667-682003330-1003\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wp.pl/
HKU\S-1-5-21-1659004503-1580436667-682003330-1003\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp
HKU\S-1-5-21-1659004503-1580436667-682003330-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hppp&ts=1421076401&from=cor&uid=WDCXWD2500JS-55NCB1_WD-WCANKF97750777507
URLSearchHook: HKU\S-1-5-21-1659004503-1580436667-682003330-1003 - The Game Creators Ltd Toolbar - {eae1e35c-bdd4-49aa-adc9-e82496f88370} - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd\prxtbThe0.dll (ClientConnect Ltd.)
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=dspp&ts=1421076401&from=cor&uid=WDCXWD2500JS-55NCB1_WD-WCANKF97750777507&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=dspp&ts=1421076401&from=cor&uid=WDCXWD2500JS-55NCB1_WD-WCANKF97750777507&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-1659004503-1580436667-682003330-1003 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=dspp&ts=1421076401&from=cor&uid=WDCXWD2500JS-55NCB1_WD-WCANKF97750777507&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1659004503-1580436667-682003330-1003 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2476351
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO: safErweb -> {102185da-0721-432e-b7b5-7015e1d6d3d8} -> C:\Program Files\safErweb\j0mIROBILXhzLR.dll ()
BHO: Dealpeak -> {29582e24-8ad5-4514-a569-38aa2238421a} -> C:\Program Files\Dealpeak\NGr9tJcoFdE4P7.dll ()
BHO: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files\XTab\SupTab.dll (Thinknice Co. Limited)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: websavver -> {7798156c-8915-42b6-9c70-89ad4fc55564} -> C:\Program Files\websavver\dJ4XuWlddJThl8.dll ()
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: PriceFountain -> {b608cc98-54de-4775-96c9-097de398500c} -> C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\PriceFountain\PriceFountainIE.dll ()
BHO: Advanced SystemCare Browser Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO: The Game Creators Ltd Toolbar -> {eae1e35c-bdd4-49aa-adc9-e82496f88370} -> C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd\prxtbThe0.dll (ClientConnect Ltd.)
Toolbar: HKLM - The Game Creators Ltd Toolbar - {eae1e35c-bdd4-49aa-adc9-e82496f88370} - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd\prxtbThe0.dll (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-1659004503-1580436667-682003330-1003 -> The Game Creators Ltd Toolbar - {EAE1E35C-BDD4-49AA-ADC9-E82496F88370} - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd\prxtbThe0.dll (ClientConnect Ltd.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1659004503-1580436667-682003330-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\Temp(2) [2015-02-25]
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - http://clients2.google.com/service/update2/crx

Opera:
=======
OPR Extension: (No Name) - C:\Documents and Settings\Home\Dane aplikacji\Opera Software\Opera Stable\Extensions\cnbpedcoekjafichoehopgaaldogogch [2015-02-25]
OPR Extension: (No Name) - C:\Documents and Settings\Home\Dane aplikacji\Opera Software\Opera Stable\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2015-02-25]
OPR Extension: (Tłumacz) - C:\Documents and Settings\Home\Dane aplikacji\Opera Software\Opera Stable\Extensions\ibnombjmjocaccigcefonnipcnlaeaed [2015-02-25]
OPR Extension: (µBlock) - C:\Documents and Settings\Home\Dane aplikacji\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2015-02-25]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 282a2cc2; c:\Program Files\SnapShopper\SnapShopper.dll [1646080 2015-02-01] () [File not signed]
R2 AdvancedSystemCareService8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [815392 2014-11-04] (IObit)
R2 Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [430080 2006-11-09] (ATI Technologies Inc.) [File not signed]
R2 ATKKeyboardService; C:\WINDOWS\ATKKBService.exe [258560 2006-09-29] (ASUSTeK COMPUTER INC.) [File not signed]
R2 ForcewareWebInterface; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe [20543 2006-04-03] (Apache Software Foundation) [File not signed]
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IHProtect Service; C:\Program Files\XTab\ProtectService.exe [158864 2014-12-29] (XTab system)
R2 KMService; C:\WINDOWS\system32\srvany.exe [8192 2014-12-21] () [File not signed]
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2631456 2014-11-26] (IObit)
R2 MaintainerSvc2.14.9041534; C:\Documents and Settings\All Users\Dane aplikacji\aea8cc93-2213-47cf-a265-0391e3461dbb\maintainer.exe [123632 2015-03-04] ()
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe [131131 2006-07-13] (NVIDIA Corporation) [File not signed]
R2 nSvcLog; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe [65599 2006-07-13] (NVIDIA Corporation) [File not signed]
R2 WindowsMangerProtect; C:\Documents and Settings\All Users\Dane aplikacji\WindowsMangerProtect\ProtectWindowsManager.exe [473088 2015-01-12] (Fuyu LIMITED) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 ADIHdAudAddService; C:\WINDOWS\System32\drivers\ADIHdAud.sys [247808 2006-07-26] (Analog Devices, Inc.) [File not signed]
R3 AEAudio; C:\WINDOWS\System32\drivers\AEAudio.sys [93824 2006-04-27] (Andrea Electronics Corporation) [File not signed]
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2014-12-21] (Meetinghouse Data Communications) [File not signed]
R1 AmdK8; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [43520 2006-07-01] (Advanced Micro Devices)
R1 asuskbnt; C:\WINDOWS\System32\drivers\atkkbnt.sys [11008 2006-10-31] (ASUSTeK COMPUTER INC.) [File not signed]
R3 ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2827776 2006-11-09] (ATI Technologies Inc.) [File not signed]
R4 atidgllk; C:\WINDOWS\atidgllk.sys [5376 2005-10-20] (Overclocking Tool) [File not signed]
R2 bdfsfltr; C:\WINDOWS\system32\Drivers\bdfsfltr.sys [356368 2013-11-21] (BitDefender)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
R2 EIO; C:\WINDOWS\system32\drivers\EIO.sys [12288 2006-10-25] (ASUSTeK Computer Inc.) [File not signed]
R3 HCF_MSFT; C:\WINDOWS\System32\DRIVERS\HCF_MSFT.sys [907584 2001-10-26] (Conexant)
S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49664 2006-04-13] (HP)
S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2006-04-13] (HP)
S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2006-04-13] (HP)
R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO32.SYS [23840 2015-01-05] (REALiX(tm))
R3 MTsensor; C:\WINDOWS\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R0 nvatabus; C:\WINDOWS\system32\Drivers\nvatabus.sys [100736 2009-09-10] (NVIDIA Corporation) [File not signed]
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [57856 2006-07-12] (NVIDIA Corporation)
R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [145952 2009-09-10] (NVIDIA Corporation)
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [20480 2006-07-12] (NVIDIA Corporation)
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [176128 2006-06-17] (Realtek Semiconductor Corporation )
R3 SenFiltService; C:\WINDOWS\System32\drivers\Senfilt.sys [392960 2006-03-18] (Sensaura) [File not signed]
R0 Si3112; C:\WINDOWS\system32\Drivers\Si3112.sys [62336 2009-09-10] (Silicon Image, Inc.) [File not signed]
S0 Si3114r5; C:\WINDOWS\system32\Drivers\Si3114r5.sys [195072 2009-09-10] (Silicon Image, Inc)
R0 Si3124; C:\WINDOWS\system32\Drivers\Si3124.sys [69248 2009-09-10] (Silicon Image, Inc.) [File not signed]
R0 Si3132; C:\WINDOWS\system32\Drivers\Si3132.sys [74672 2009-09-10] (Silicon Image, Inc.)
R0 Si3132r5; C:\WINDOWS\system32\Drivers\Si3132r5.sys [215856 2009-09-10] (Silicon Image, Inc)
R0 Si3531; C:\WINDOWS\system32\Drivers\Si3531.sys [212520 2009-09-10] (Silicon Image, Inc)
R3 SjyPkt; C:\WINDOWS\System32\Drivers\SjyPkt.sys [13532 2006-03-31] (Windows (R) 2000 DDK provider) [File not signed]
R3 SNPSTD3; C:\WINDOWS\System32\DRIVERS\snpstd3.sys [10472960 2009-04-24] (Sonix Co. Ltd.) [File not signed]
R3 Video3D; C:\WINDOWS\System32\Drivers\Video3D32.sys [10752 2006-09-29] (ASUSTeK COMPUTER INC.) [File not signed]
R1 {1d7d694e-604c-4da2-9100-b2601d3a1c57}Gt; C:\WINDOWS\System32\drivers\{1d7d694e-604c-4da2-9100-b2601d3a1c57}Gt.sys [55832 2015-01-25] (StdLib)
R1 {371bcf01-e691-44bf-9345-60788e5d16a5}Gt; C:\WINDOWS\System32\drivers\{371bcf01-e691-44bf-9345-60788e5d16a5}Gt.sys [55832 2015-01-28] (StdLib)
R1 {4cff408a-d9e7-47c3-a711-95133fcf7f45}Gt; C:\WINDOWS\System32\drivers\{4cff408a-d9e7-47c3-a711-95133fcf7f45}Gt.sys [55832 2015-01-19] (StdLib)
R1 {5c281c6e-0132-4ac6-ad9d-d1d95d218412}Gt; C:\WINDOWS\System32\drivers\{5c281c6e-0132-4ac6-ad9d-d1d95d218412}Gt.sys [55832 2015-01-23] (StdLib)
R1 {624928ef-5dfa-4c3f-a4d8-7dddec6d32f0}t; C:\WINDOWS\System32\drivers\{624928ef-5dfa-4c3f-a4d8-7dddec6d32f0}t.sys [55824 2015-02-03] (StdLib)
R1 {693a0a5b-aa08-4a3c-b7e8-398a93e02cf2}Gt; C:\WINDOWS\System32\drivers\{693a0a5b-aa08-4a3c-b7e8-398a93e02cf2}Gt.sys [55832 2015-01-14] (StdLib)
R1 {6e9af5d3-a8f9-4461-ad38-1433888f55dc}Gt; C:\WINDOWS\System32\drivers\{6e9af5d3-a8f9-4461-ad38-1433888f55dc}Gt.sys [55832 2015-01-16] (StdLib)
R1 {76eaa25f-d535-414d-8a8b-4bce0a94d247}Gt; C:\WINDOWS\System32\drivers\{76eaa25f-d535-414d-8a8b-4bce0a94d247}Gt.sys [55832 2015-01-12] (StdLib)
R1 {7eca9cfa-8eb0-4cc4-b008-3419a1b1582a}t; C:\WINDOWS\System32\drivers\{7eca9cfa-8eb0-4cc4-b008-3419a1b1582a}t.sys [55824 2015-02-16] (StdLib)
R1 {81711fd0-60e8-45bb-a4ff-3004058b32b4}t; C:\WINDOWS\System32\drivers\{81711fd0-60e8-45bb-a4ff-3004058b32b4}t.sys [55824 2015-02-07] (StdLib)
R1 {9449d7f6-6f2b-4280-9a4d-eb2b42a31f67}t; C:\WINDOWS\System32\drivers\{9449d7f6-6f2b-4280-9a4d-eb2b42a31f67}t.sys [55824 2015-02-13] (StdLib)
R1 {d0194130-21b3-4618-b5c8-b6dfe1e0bb88}t; C:\WINDOWS\System32\drivers\{d0194130-21b3-4618-b5c8-b6dfe1e0bb88}t.sys [55824 2015-02-10] (StdLib)
R1 {df8eec40-f909-439c-9ffe-3fee212f71b9}Gt; C:\WINDOWS\System32\drivers\{df8eec40-f909-439c-9ffe-3fee212f71b9}Gt.sys [55824 2015-01-31] (StdLib)
R1 {e5189cab-3112-4bd9-9e32-85524e9e9322}t; C:\WINDOWS\System32\drivers\{e5189cab-3112-4bd9-9e32-85524e9e9322}t.sys [55824 2015-02-04] (StdLib)
S3 cpuz137; \??\C:\DOCUME~1\Home\USTAWI~1\Temp\cpuz137\cpuz137_x32.sys [X]
S4 IntelIde; No ImagePath
U1 WS2IFSL; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-04 19:28 - 2015-03-04 19:28 - 00021350 _____ () C:\Documents and Settings\Home\Moje dokumenty\FRST.txt
2015-03-04 19:26 - 2015-03-04 19:28 - 00000000 ____D () C:\FRST
2015-03-04 19:26 - 2015-03-04 19:26 - 01132544 _____ (Farbar) C:\Documents and Settings\Home\Moje dokumenty\FRST (1).exe
2015-03-04 19:25 - 2015-03-04 19:25 - 01132544 _____ (Farbar) C:\Documents and Settings\Home\Moje dokumenty\FRST.exe
2015-03-04 18:53 - 2015-03-04 18:53 - 00001858 _____ () C:\Documents and Settings\All Users\Pulpit\Need For Speed World.lnk
2015-03-04 18:53 - 2015-03-04 18:53 - 00000000 ____D () C:\Program Files\Electronic Arts
2015-03-04 18:53 - 2015-03-04 18:53 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Electronic Arts
2015-03-04 18:53 - 2015-03-04 18:53 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts
2015-03-04 18:50 - 2015-03-04 18:51 - 06400680 _____ (Electronic Arts ) C:\Documents and Settings\Home\Moje dokumenty\setup_nfsw.exe
2015-03-04 18:05 - 2015-03-04 19:13 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2015-03-04 18:05 - 2015-03-04 19:13 - 00000050 _____ () C:\WINDOWS\wiaservc.log
2015-03-04 18:05 - 2015-03-04 18:05 - 00000000 _____ () C:\WINDOWS\Sti_Trace.log
2015-03-03 17:01 - 2015-03-03 17:01 - 00000917 _____ () C:\Documents and Settings\Home\Pulpit\Revo Uninstaller.lnk
2015-03-03 17:00 - 2015-03-03 17:00 - 02623656 _____ (VS Revo Group Ltd.) C:\Documents and Settings\Home\Moje dokumenty\revosetup.exe
2015-03-03 15:37 - 2015-03-03 15:37 - 00000016 _____ () C:\Documents and Settings\All Users\Dane aplikacji\mntemp
2015-03-02 18:50 - 2015-03-02 18:50 - 06126172 _____ () C:\Documents and Settings\Home\Moje dokumenty\google-play-4-4-21.apk
2015-03-01 18:01 - 2015-03-01 18:01 - 00000000 ____H () C:\Documents and Settings\Home\Moje dokumenty\Default.rdp
2015-03-01 17:59 - 2015-03-01 17:59 - 00010512 _____ () C:\Documents and Settings\Home\Moje dokumenty\gra nowa.gm81
2015-02-27 18:36 - 2015-02-27 18:36 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\DriverToolkit
2015-02-27 14:51 - 2015-02-27 14:57 - 00000000 ____D () C:\3D Rad
2015-02-25 17:21 - 2015-02-25 17:49 - 1054867456 _____ () C:\Documents and Settings\Home\Moje dokumenty\Przyjazny-Puchacz-12.04.4PL-DVD-i386.iso
2015-02-25 15:26 - 2015-03-04 19:13 - 00000438 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1424874398.job
2015-02-25 15:26 - 2015-02-25 15:26 - 00000675 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk
2015-02-24 17:32 - 2015-03-04 19:12 - 00001028 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-24 17:32 - 2015-03-04 18:37 - 00001032 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-23 20:04 - 2015-02-23 20:04 - 01267493 _____ () C:\Documents and Settings\Home\Moje dokumenty\opera-mini-7-6-4-multi-android.apk
2015-02-21 21:37 - 2015-02-21 21:37 - 00000000 ____D () C:\Program Files\websavver
2015-02-21 21:37 - 2015-02-21 21:37 - 00000000 ____D () C:\Program Files\DealsoFindeurPro
2015-02-21 21:36 - 2015-02-21 21:36 - 00000000 ____D () C:\Program Files\SEO Site Tools Site Analysis
2015-02-21 21:15 - 2015-03-03 17:07 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\The Game Creators
2015-02-21 21:15 - 2015-02-25 15:20 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd
2015-02-21 21:15 - 2015-02-25 15:19 - 00000000 ____D () C:\Program Files\The_Game_Creators_Ltd
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Program Files\SofTCoup
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Program Files\SnapShopper
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Program Files\safErweb
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Program Files\Justin Bieber
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Program Files\Greatsaving
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Program Files\Dealpeak
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Program Files\CPUID
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\PriceFountain
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Documents and Settings\Home\Menu Start\Programy\PriceFountain
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\CPUID
2015-02-21 21:15 - 2015-02-21 21:15 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\LowPricesApp
2015-02-21 18:33 - 2015-02-21 18:33 - 00000000 ____D () C:\Documents and Settings\Home\Moje dokumenty\EXE
2015-02-21 18:33 - 2013-11-26 16:26 - 02652160 _____ (MiTeC) C:\Documents and Settings\Home\Moje dokumenty\EXE.exe
2015-02-21 18:32 - 2015-02-21 18:32 - 01139295 _____ () C:\Documents and Settings\Home\Moje dokumenty\EXE.zip
2015-02-21 16:13 - 2015-02-21 21:16 - 00000000 ____D () C:\Program Files\PixelReader
2015-02-20 21:48 - 2015-02-20 21:48 - 00000000 ___DC () C:\WINDOWS\$NtUninstallXPSEPSCLP$
2015-02-20 21:47 - 2015-02-21 21:14 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer
2015-02-20 21:47 - 2015-02-20 21:47 - 00161080 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
2015-02-20 21:47 - 2015-02-20 21:47 - 00000000 ____D () C:\Program Files\Reference Assemblies
2015-02-20 21:47 - 2015-02-20 21:47 - 00000000 ____D () C:\Program Files\MSBuild
2015-02-20 21:28 - 2015-02-20 21:28 - 00000000 ____D () C:\Program Files\Unity
2015-02-20 19:53 - 2015-02-20 19:53 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-02-20 18:44 - 2015-02-20 18:44 - 00000000 ____D () C:\sh4ldr
2015-02-20 16:04 - 2015-02-20 20:34 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\9f0ffec935475030
2015-02-20 15:26 - 2015-02-25 15:20 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Conduit
2015-02-20 15:26 - 2015-02-20 15:26 - 00000000 ____D () C:\Program Files\Conduit
2015-02-18 19:39 - 2015-02-18 19:39 - 00000000 _____ () C:\WINDOWS\synteza_DDE_klient.INI
2015-02-18 19:38 - 2015-02-18 19:38 - 00000000 ____D () C:\Documents and Settings\Home\Menu Start\Programy\Wirtualna Polska
2015-02-17 15:24 - 2015-02-17 15:24 - 00000000 ___RD () C:\Documents and Settings\Home\Menu Start\Programy\Narzędzia administracyjne
2015-02-16 19:14 - 2015-02-20 21:23 - 00000000 ____D () C:\Documents and Settings\Home\Pulpit\na pendrivera
2015-02-16 16:02 - 2015-02-16 16:02 - 00000000 ____D () C:\Documents and Settings\Home\Dane aplikacji\GameMaker-Studio
2015-02-16 16:01 - 2015-02-17 14:48 - 00000000 ____D () C:\Documents and Settings\Home\Menu Start\Programy\GameMaker-Studio 1.4
2015-02-16 14:46 - 2015-02-16 05:28 - 00055824 _____ (StdLib) C:\WINDOWS\system32\Drivers\{7eca9cfa-8eb0-4cc4-b008-3419a1b1582a}t.sys
2015-02-14 14:02 - 2015-02-14 14:02 - 00000000 ____D () C:\Documents and Settings\Home\Dane aplikacji\Unity
2015-02-14 08:16 - 2015-02-13 12:28 - 00055824 _____ (StdLib) C:\WINDOWS\system32\Drivers\{9449d7f6-6f2b-4280-9a4d-eb2b42a31f67}t.sys
2015-02-14 08:14 - 2015-03-04 19:12 - 00005134 _____ () C:\WINDOWS\SchedLgU.Txt
2015-02-11 20:27 - 2015-02-11 20:27 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\RadonLabs
2015-02-11 20:26 - 2015-02-16 16:04 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Play
2015-02-11 20:26 - 2015-02-11 20:26 - 00000000 ____D () C:\Program Files\Play
2015-02-10 19:52 - 2015-02-10 09:52 - 00055824 _____ (StdLib) C:\WINDOWS\system32\Drivers\{d0194130-21b3-4618-b5c8-b6dfe1e0bb88}t.sys
2015-02-07 15:22 - 2015-02-07 03:06 - 00055824 _____ (StdLib) C:\WINDOWS\system32\Drivers\{81711fd0-60e8-45bb-a4ff-3004058b32b4}t.sys
2015-02-05 09:08 - 2015-02-04 23:03 - 00055824 _____ (StdLib) C:\WINDOWS\system32\Drivers\{e5189cab-3112-4bd9-9e32-85524e9e9322}t.sys
2015-02-04 18:21 - 2015-02-03 21:14 - 00055824 _____ (StdLib) C:\WINDOWS\system32\Drivers\{624928ef-5dfa-4c3f-a4d8-7dddec6d32f0}t.sys
2015-02-03 13:21 - 2015-03-04 18:06 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\aea8cc93-2213-47cf-a265-0391e3461dbb
2015-02-02 18:48 - 2015-02-02 18:48 - 00000000 ____D () C:\Program Files\Microsoft XNA

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-04 19:28 - 2014-12-21 21:05 - 00000000 ___RD () C:\Documents and Settings\Home\Moje dokumenty
2015-03-04 19:28 - 2014-12-21 21:05 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Temp
2015-03-04 19:20 - 2014-12-21 21:05 - 00000000 ____D () C:\Documents and Settings\Home\Pulpit
2015-03-04 19:18 - 2014-12-21 20:59 - 00387831 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-04 19:13 - 2015-01-18 19:42 - 00000000 ___RD () C:\Documents and Settings\Home\Moje dokumenty\Dropbox
2015-03-04 19:13 - 2015-01-18 19:38 - 00000000 ____D () C:\Documents and Settings\Home\Dane aplikacji\Dropbox
2015-03-04 19:13 - 2014-12-21 21:17 - 00007638 _____ () C:\WINDOWS\RTacDbg.txt
2015-03-04 19:13 - 2014-12-21 21:09 - 00000000 _____ () C:\WINDOWS\system32\nmp.log
2015-03-04 19:12 - 2015-01-12 16:25 - 00000000 ____D () C:\Program Files\Opera
2015-03-04 19:12 - 2014-12-22 15:52 - 00000278 _____ () C:\WINDOWS\Tasks\ASC8_PerformanceMonitor.job
2015-03-04 19:12 - 2014-12-21 21:51 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji
2015-03-04 19:12 - 2014-12-21 21:05 - 00000188 ___SH () C:\Documents and Settings\Home\ntuser.ini
2015-03-04 19:12 - 2014-12-21 21:05 - 00000000 ____D () C:\Documents and Settings\Home
2015-03-04 19:12 - 2014-12-21 21:04 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-04 18:53 - 2014-12-21 21:51 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy
2015-03-04 18:53 - 2014-12-21 21:51 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit
2015-03-04 18:52 - 2014-12-23 10:06 - 00000000 ____D () C:\Documents and Settings\Home\Dane aplikacji\Need for Speed World
2015-03-04 18:34 - 2015-01-17 10:11 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-04 18:05 - 2009-09-10 14:45 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2015-03-03 17:30 - 2014-12-21 21:05 - 00000000 ___RD () C:\Documents and Settings\Home\Moje dokumenty\Moje obrazy
2015-03-03 17:01 - 2014-12-21 21:05 - 00000000 ___RD () C:\Documents and Settings\Home\Menu Start\Programy
2015-03-03 16:48 - 2014-12-21 21:05 - 00000000 __RHD () C:\Documents and Settings\Home\Dane aplikacji
2015-03-03 15:37 - 2014-12-21 21:46 - 00000000 ____D () C:\WINDOWS\system
2015-03-03 15:21 - 2014-12-22 15:52 - 00001822 _____ () C:\Documents and Settings\All Users\Pulpit\Advanced SystemCare 8.lnk
2015-03-03 15:17 - 2014-12-23 15:35 - 26603520 _____ () C:\WINDOWS\system32\config\software.iobit
2015-03-03 15:17 - 2014-12-23 15:35 - 00286720 _____ () C:\WINDOWS\system32\config\default.iobit
2015-03-03 15:17 - 2014-12-23 15:35 - 00057344 _____ () C:\WINDOWS\system32\config\SECURITY.iobit
2015-03-03 15:17 - 2014-12-23 15:35 - 00028672 _____ () C:\WINDOWS\system32\config\SAM.iobit
2015-03-03 15:17 - 2014-12-21 21:04 - 00000000 __SHD () C:\Documents and Settings\LocalService
2015-03-03 15:17 - 2014-12-21 21:03 - 00000000 __SHD () C:\Documents and Settings\NetworkService
2015-03-01 18:48 - 2014-12-21 22:22 - 00065536 _____ () C:\WINDOWS\system32\config\OAlerts.evt
2015-02-28 18:37 - 2015-01-17 10:09 - 00000892 _____ () C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-02-27 21:10 - 2014-12-22 16:10 - 00000000 ____D () C:\Documents and Settings\Home\Dane aplikacji\Skype
2015-02-27 21:09 - 2014-12-22 16:10 - 00002267 _____ () C:\Documents and Settings\All Users\Pulpit\Skype.lnk
2015-02-27 18:39 - 2015-01-31 09:38 - 00000000 ____D () C:\Documents and Settings\Home\Moje dokumenty\gry
2015-02-27 18:36 - 2014-12-21 21:05 - 00000000 ___HD () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji
2015-02-27 14:52 - 2014-12-21 20:56 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy\Gry
2015-02-27 07:36 - 2014-12-22 15:52 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\ProductData
2015-02-26 19:08 - 2015-01-26 17:20 - 00084992 ___SH () C:\Documents and Settings\Home\Pulpit\Thumbs.db
2015-02-25 15:26 - 2015-01-12 16:26 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Opera Software
2015-02-25 15:13 - 2015-01-12 16:26 - 00000000 ____D () C:\Documents and Settings\Home\Dane aplikacji\Opera Software
2015-02-25 15:13 - 2014-12-21 20:56 - 00000000 ____D () C:\WINDOWS\Registration
2015-02-24 17:34 - 2014-12-22 15:38 - 00000000 ____D () C:\Program Files\Google
2015-02-24 17:34 - 2014-12-22 15:38 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Google
2015-02-23 14:30 - 2009-09-10 14:45 - 00000883 _____ () C:\WINDOWS\win.ini
2015-02-22 14:12 - 2014-12-22 16:10 - 00000000 ___RD () C:\Program Files\Skype
2015-02-22 14:12 - 2014-12-22 16:10 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Skype
2015-02-21 21:37 - 2015-02-01 12:57 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\11461659716816949296
2015-02-21 21:16 - 2014-12-21 21:51 - 00267008 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-02-21 21:16 - 2014-12-21 21:28 - 00069200 _____ () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
2015-02-21 21:15 - 2015-01-13 16:05 - 00000000 ____D () C:\Documents and Settings\Home\Dane aplikacji\PriceFountain
2015-02-21 21:15 - 2014-12-21 21:51 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy\Autostart
2015-02-21 21:15 - 2014-12-21 21:09 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-02-21 21:15 - 2014-12-21 21:05 - 00000000 ___RD () C:\Documents and Settings\Home\Menu Start\Programy\Autostart
2015-02-21 21:14 - 2014-12-22 15:52 - 00000000 ____D () C:\Documents and Settings\Home\Dane aplikacji\Apple Computer
2015-02-21 21:14 - 2014-12-21 21:46 - 00000000 ____D () C:\WINDOWS\system32\spool
2015-02-21 21:14 - 2014-12-21 20:57 - 00000000 ____D () C:\WINDOWS\system32\Restore
2015-02-21 18:04 - 2014-12-21 21:22 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-02-20 21:48 - 2014-12-21 21:46 - 00000000 ____D () C:\WINDOWS\system32\pl-pl
2015-02-20 21:48 - 2014-12-21 21:46 - 00000000 ____D () C:\WINDOWS\system32\mui
2015-02-20 21:47 - 2014-12-21 21:04 - 00000000 ___HD () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji
2015-02-20 21:47 - 2009-09-10 14:45 - 00555462 _____ () C:\WINDOWS\system32\perfh015.dat
2015-02-20 21:47 - 2009-09-10 14:45 - 00104494 _____ () C:\WINDOWS\system32\perfc015.dat
2015-02-20 21:46 - 2015-01-09 18:29 - 00000000 ____D () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Unity
2015-02-20 21:39 - 2014-12-21 21:51 - 00000000 ___RD () C:\Documents and Settings\All Users\Dokumenty
2015-02-20 19:30 - 2015-01-21 15:00 - 00000000 ____D () C:\WINDOWS\Minidump
2015-02-20 14:30 - 2015-01-19 00:05 - 00000084 _____ () C:\Documents and Settings\Home\Dane aplikacji\WB.CFG
2015-02-19 20:48 - 2014-12-23 10:45 - 00393216 _____ () C:\WINDOWS\system32\config\ACEEvent.evt
2015-02-19 18:40 - 2015-01-15 15:05 - 00000089 _____ () C:\Documents and Settings\NetworkService\Dane aplikacji\WB.CFG
2015-02-18 19:12 - 2015-01-12 16:52 - 00000000 ____D () C:\WINDOWS\system32\appmgmt
2015-02-17 15:24 - 2015-01-15 14:34 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy
2015-02-17 14:48 - 2015-01-22 16:53 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\GameMaker Player
2015-02-17 14:35 - 2015-01-11 15:17 - 00006144 _____ () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-16 16:02 - 2014-12-21 20:58 - 00000000 ____D () C:\WINDOWS\system32\DirectX
2015-02-16 16:00 - 2015-01-22 16:53 - 00000000 ____D () C:\Documents and Settings\Home\GameMaker-Studio 1.4
2015-02-13 09:20 - 2015-01-18 19:42 - 00000989 _____ () C:\Documents and Settings\Home\Pulpit\Dropbox.lnk
2015-02-13 09:20 - 2015-01-18 19:38 - 00000000 ____D () C:\Documents and Settings\Home\Menu Start\Programy\Dropbox
2015-02-12 11:12 - 2014-12-21 21:26 - 00196608 _____ () C:\WINDOWS\system32\Drivers\aStandard.bin
2015-02-07 19:34 - 2014-12-24 13:47 - 00460824 _____ () C:\img2-001.raw
2015-02-06 11:34 - 2015-01-17 10:09 - 00701616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-02-06 11:34 - 2015-01-17 10:09 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-02-02 18:48 - 2014-12-21 21:52 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-02-02 18:37 - 2015-01-12 16:25 - 00000000 ____D () C:\Program Files\Solution Real

==================== Files in the root of some directories =======

2015-01-19 00:05 - 2015-02-20 14:30 - 0000084 _____ () C:\Documents and Settings\Home\Dane aplikacji\WB.CFG
2015-01-11 15:17 - 2015-02-17 14:35 - 0006144 _____ () C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

Some content of TEMP:
====================
C:\Documents and Settings\Home\Ustawienia lokalne\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp2dwlzj.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================

Dodano Dzisiaj, 20:36:
to to
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 20:43

""Stronga" nie widze w rozszerzeniach przeglądarek.
Ale masz dużo innych szkodliwych śmieci!

1) Użyj Adw-Cleaner http://www.programosy.pl/program,adwcleaner.html
najpierw kliknij na SZUKAJ, a dopiero po zakończeniu skanowania, gdy uaktywni się przycisk USUŃ, to kliknij na niego.
Daj z tego raport C:\AdwCleaner\AdwCleaner[S].txt.

2) Zrób nowe logi z FRST.
Logi wklejaj na http://wklejto.pl/, a w poście daj tylko linki.(czyli skopiuj adres z paska adresów)
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 20:49

a nie potrzeba jeszcze tego drugiego loga czy cos takiego :wink:
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 20:53

zrobisz go po użyciu Adw-Cleaner'a
nawet gdybyś go teraz dał, to i tak zalecenie użycia Adw-Cleanera byłoby aktualne.
a co dalej, to zobaczymy ...
.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 21:02

cleaning logfile czy uninstall :lol:
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 21:06

nie rozumiem ...
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 21:10

ktoro ma kliknac po przeskanowaniu adw cleaner
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 21:15

clean
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 21:34

ok to chyba ten raport z adw cleaner http://www.wklejto.pl/223270
albo ten http://www.wklejto.pl/223271

Dodano Dzisiaj, 21:41:
a to nowe logi z frst http://www.wklejto.pl/223272 i http://www.wklejto.pl/223274
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 21:43

1)
The_Game_Creators_Ltd Toolbar (HKLM\...\The_Game_Creators_Ltd Toolbar) (Version: - ) <==== ATTENTION
Update for PriceFountain (HKU\S-1-5-21-1659004503-1580436667-682003330-1003\...\Price Fountain) (Version: - Update for PriceFountain) <==== ATTENTION

Odinstaluj je.

2)
C:\Program Files\Justin Bieber

Znasz ten program?

3) Otwórz Notatnik i wklej w nim:
C:\Documents and Settings\All Users\Dane aplikacji\aea8cc93-2213-47cf-a265-0391e3461dbb
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
HKU\S-1-5-21-1659004503-1580436667-682003330-1003\...\Run: [DANT] => [X]
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
URLSearchHook: HKU\S-1-5-21-1659004503-1580436667-682003330-1003 - The Game Creators Ltd Toolbar - {eae1e35c-bdd4-49aa-adc9-e82496f88370} - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd\prxtbThe0.dll (ClientConnect Ltd.)
BHO: The Game Creators Ltd Toolbar -> {eae1e35c-bdd4-49aa-adc9-e82496f88370} -> C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd\prxtbThe0.dll (ClientConnect Ltd.)
Toolbar: HKLM - The Game Creators Ltd Toolbar - {eae1e35c-bdd4-49aa-adc9-e82496f88370} - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd\prxtbThe0.dll (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-1659004503-1580436667-682003330-1003 -> The Game Creators Ltd Toolbar - {EAE1E35C-BDD4-49AA-ADC9-E82496F88370} - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\The_Game_Creators_Ltd\prxtbThe0.dll (ClientConnect Ltd.)
CHR Extension: (No Name) - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\Temp(2)
S2 282a2cc2; c:\Program Files\SnapShopper\SnapShopper.dll [1646080 2015-02-01] () [File not signed]
c:\Program Files\SnapShopper
R2 MaintainerSvc2.14.9041534; C:\Documents and Settings\All Users\Dane aplikacji\aea8cc93-2213-47cf-a265-0391e3461dbb\maintainer.exe [123632 2015-03-04] ()
S3 cpuz137; \??\C:\DOCUME~1\Home\USTAWI~1\Temp\cpuz137\cpuz137_x32.sys [X]
S4 IntelIde; No ImagePath
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij przycisk Fix.
Powstanie plik fixlog.txt.
Daj ten log.

4) Zrób nowe logi FRST.

5) Napisz, czy problem znikł?
.
Ostatnio edytowany przez ordynat, 04 Mar 2015, 21:51, edytowano w sumie 1 raz
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 21:45

The_Game_Creators_Ltd Toolbar normalnie przez revo uninstaller
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 21:52

za szybko działasz, jak na moje mozliwości.
wróć do mojego poprzedniego postu
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 04 Mar 2015, 22:08

jak kliknalem to fix to pozniej blad wyskoczyl ze jest problem z aplikacja FRST.exe a to ten log pewnie http://www.wklejto.pl/223281
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 04 Mar 2015, 22:57

4) Zrób nowe logi FRST.

5) Napisz, czy problem znikł?
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Ktore programy moge usunac

Postprzez grzechupl 05 Mar 2015, 16:46

http://www.wklejto.pl/223318

Dodano Dzisiaj, 16:50:
i njie ktore programy znikly ale chyba nie wszystkie ktore sa niepotrzebne
Kiedyś się ogarnę.... ale jeszcze nie czas na takie wybryki :)
grzechupl
~user
 
Posty: 76
Dołączenie: 04 Mar 2015, 19:13



Ktore programy moge usunac

Postprzez ordynat 05 Mar 2015, 17:57

njie ktore programy znikly ale chyba nie wszystkie ktore sa niepotrzebne

to znaczy?

Otwórz Notatnik i wklej w nim:
BHO: No Name -> {eae1e35c-bdd4-49aa-adc9-e82496f88370} -> No File
Toolbar: HKLM - No Name - {eae1e35c-bdd4-49aa-adc9-e82496f88370} - No File
Toolbar: HKU\S-1-5-21-1659004503-1580436667-682003330-1003 -> No Name - {EAE1E35C-BDD4-49AA-ADC9-E82496F88370} - No File
CHR Extension: (No Name) - C:\Documents and Settings\Home\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\Temp(2) [2015-02-25]
S2 282a2cc2; c:\Program Files\SnapShopper\SnapShopper.dll [1646080 2015-02-01] () [File not signed]
S2 MaintainerSvc2.14.9041534; "C:\Documents and Settings\All Users\Dane aplikacji\aea8cc93-2213-47cf-a265-0391e3461dbb\maintainer.exe" [X]
C:\Documents and Settings\All Users\Dane aplikacji\aea8cc93-2213-47cf-a265-0391e3461dbb
S3 cpuz137; \??\C:\DOCUME~1\Home\USTAWI~1\Temp\cpuz137\cpuz137_x32.sys [X]
C:\Program Files\SnapShopper
C:\sh4ldr
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij przycisk Fix.
Powstanie plik fixlog.txt.
Daj ten log.
.
[color="#FF0000"]CHR dev: Chrome dev build detected! <======= ATTENTION[/color]

Odinstaluj tę dziurawą wersję Google Chrome.
Zainstaluj stąd > http://www.google.com/chrome/
.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Następna

Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 20 gości