Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3900: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3902: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3903: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3904: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
Komp strasznie zamula i internet • programosy.pl

  • Ogłoszenie:

Komp strasznie zamula i internet

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Komp strasznie zamula i internet

Postprzez Nintendo 08 Kwi 2012, 18:19

reklama
Witam!! Komp mi strasznie muli i dotego internet . Skanowal mi go automatycznie avast przy wlaczeniu kompa i znalazl 491 zagrozonych plikow. Nie wiem czy je usunal ale odinstalowalem avasta bo jescze bardziej zamulal kompa . I daje tylko loga z HJ bo nie da rady wiecej bo zamula strasznie

Hj :


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:16:31, on 2012-04-08
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredibar.com/mb119?a=6R8nZjpwnH&i=26
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
F2 - REG:system.ini: UserInit=userinit.exe,EXPLORER.EXE
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll
O2 - BHO: TheBflix - {54903300-ECF7-4DBD-B9DB-D1CF928328D4} - C:\Documents and Settings\All Users\Dane aplikacji\TheBflix\bhoclass.dll
O2 - BHO: Incredibar.com Helper Object - {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll
O2 - BHO: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files\Softonic\softonic\1.5.11.5\bh\softonic.dll
O3 - Toolbar: Babylon Toolbar - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll
O3 - Toolbar: Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files\Softonic\softonic\1.5.11.5\softonicTlbr.dll
O3 - Toolbar: Incredibar Toolbar - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [PowerStrip] c:\program files\powerstrip\pstrip.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [wsctf.exe] wsctf.exe
O4 - HKCU\..\Run: [EXPLORER.EXE] EXPLORER.EXE
O4 - HKCU\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /q /I "C:\Program Files\Common Files\Wise Installation Wizard\WIS1C4551A64743409391E41477CD655043_9_09_0203.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WIS1C4551A64743409391E41477CD655043_9_09_0203.MST" WISE_SETUP_EXE_PATH="E:\software\PhysX_9.09.0408_SystemSoftware.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: CNET TechTracker.lnk = C:\Documents and Settings\Ja\Dane aplikacji\CBS Interactive\CNET TechTracker\TechTracker.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\xfire.exe
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Dragon Age: Początek - Aktualizator zawartości (DAUpdaterSvc) - Unknown owner - C:\Program Files\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - Unknown owner - C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 6673 bytes
Awatar użytkownika
Nintendo
~user
 
Posty: 185
Dołączenie: 03 Sty 2007, 22:19



Komp strasznie zamula i internet

Postprzez wojtas 08 Kwi 2012, 18:25

Hijack niestety to za mało w dzisiejszych czasach

wejdz w tryb awaryjny ( F8 przy starcie kompa) i w nim stwórz logi, jak nie możesz w normalnym

wymagane przy Twoim systemie to log z Gmera i dwa logi z OTL'a

dodatkowo : Przy podpiętym urządzeniu przenośnym (pendrive, telefon - to co jest podłączane do komputera) , uruchom USBFIX z opcji Listing i pokaż raport na forum.

logi daj w załączniki na forum lub w tagi code
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656



Komp strasznie zamula i internet

Postprzez Nintendo 08 Kwi 2012, 19:48

Kod: Zaznacz wszystko
[code]OTL :

OTL logfile created on: 2012-04-08 18:24:21 - Run 1
OTL by OldTimer - Version 3.2.39.2     Folder = C:\Documents and Settings\Ja\Moje dokumenty\Downloads
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

255,48 Mb Total Physical Memory | 76,25 Mb Available Physical Memory | 29,85% Memory free
618,02 Mb Paging File | 335,86 Mb Available in Paging File | 54,35% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 105,82 Gb Free Space | 71,00% Space Free | Partition Type: NTFS
Drive D: | 74,55 Gb Total Space | 74,12 Gb Free Space | 99,42% Space Free | Partition Type: NTFS

Computer Name: A-C2BB6EFD50354 | User Name: Ja | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2012-04-08 18:22:29 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Ja\Moje dokumenty\Downloads\OTL.exe
PRC - [2012-02-03 14:34:58 | 000,793,048 | ---- | M] (PC Tools) -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
PRC - [2012-01-20 07:35:36 | 001,047,024 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
PRC - [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2012-01-20 07:35:35 | 000,411,120 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\ppgooglenaclpluginchrome.dll
MOD - [2012-01-20 07:35:34 | 003,767,792 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\pdf.dll
MOD - [2012-01-20 07:34:10 | 000,122,880 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\avutil-51.dll
MOD - [2012-01-20 07:34:09 | 000,222,208 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\avformat-53.dll
MOD - [2012-01-20 07:34:07 | 001,746,432 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\avcodec-53.dll
MOD - [2012-01-20 04:14:40 | 008,593,056 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\gcswf32.dll
MOD - [2012-01-03 15:10:54 | 000,300,544 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL
MOD - [2004-08-04 00:44:04 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe -- (DAUpdaterSvc)
SRV - [2012-02-03 14:34:58 | 000,793,048 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe -- (PCToolsSSDMonitorSvc)
SRV - [2011-03-16 11:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2007-11-06 22:22:26 | 000,092,792 | ---- | M] (CACE Technologies) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Stopped] --  -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] --  -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] --  -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] --  -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] --  -- (Changer)
DRV - [2007-11-06 22:22:06 | 000,034,064 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF)
DRV - [2007-07-15 03:37:04 | 000,027,992 | ---- | M] (EnTech Taiwan) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\pstrip.sys -- (PStrip)
DRV - [2005-10-13 15:46:08 | 000,035,328 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfsync03.sys -- (sfsync03) StarForce Protection Synchronization Driver (version 3.x)
DRV - [2005-08-10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
DRV - [2005-05-16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
DRV - [2004-11-25 18:36:06 | 000,077,248 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\prohlp02.sys -- (prohlp02)
DRV - [2004-11-25 18:32:01 | 000,054,368 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\prodrv06.sys -- (prodrv06)
DRV - [2004-10-26 20:35:38 | 000,820,224 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2004-08-04 01:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004-08-04 00:31:36 | 000,032,768 | ---- | M] (SiS Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sisnic.sys -- (SISNIC)
DRV - [2004-08-03 22:59:52 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2004-06-28 09:49:38 | 000,031,744 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Documents and Settings\Ja\Ustawienia lokalne\Temp\hSONYPVh.sys -- (hSONYPVh)
DRV - [2003-12-01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp01.sys -- (sfhlp01)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredibar.com/mb119?a=6R8nZjpwnH&i=26
IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\..\SearchScopes,DefaultScope = {EEE6C360-6118-11DC-9C72-001320C79847}
IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}
IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
FF - prefs.js..browser.search.selectedEngine: "MyStart Search"
FF - prefs.js..browser.startup.homepage: "http://mystart.incredibar.com/mb119?a=6R8nZjpwnH&i=26"
FF - prefs.js..keyword.URL: "http://mystart.incredibar.com/mb119/?loc=IB_DS&a=6R8nZjpwnH&&i=26&search="
FF - prefs.js..network.proxy.type: 0
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: ""
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaulturl: ""
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Search the web (Babylon)"
FF - prefs.js..browser.startup.homepage: "http://search.babylon.com/?AF=100482&babsrc=HP_ss&mntrId=a87e4f9c000000000000000b6a638ff6"


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-01-23 13:48:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins

[2012-01-23 13:48:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Extensions
[2012-04-02 11:43:21 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions
[2012-01-28 12:26:52 | 000,000,000 | ---D | M] (Babylon) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions\ffxtlbr@babylon.com
[2012-02-24 20:22:46 | 000,000,000 | ---D | M] (Softonic Toolbar) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions\ffxtlbra@softonic.com
[2012-04-02 11:43:20 | 000,000,000 | ---D | M] (TheBflix) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions\info@bflix.info
[2012-03-26 13:06:56 | 000,002,203 | ---- | M] () -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\searchplugins\MyStart Search.xml
[2012-02-24 15:47:33 | 000,002,060 | ---- | M] () -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\searchplugins\softonic.xml
[2012-02-14 20:51:27 | 000,003,915 | ---- | M] () -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\searchplugins\SweetIM Search.xml
[2012-01-23 13:48:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011-12-21 10:04:06 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011-12-21 07:04:32 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2012-01-28 12:00:25 | 000,002,310 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
[2011-12-21 07:04:32 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2011-12-21 07:04:32 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2011-12-21 07:04:32 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2011-12-21 07:04:32 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2011-12-21 07:04:32 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml

[color=#E56717]========== Chrome  ==========[/color]

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Szukaj w Google = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Battlefield Heroes = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gpdfjahpadlpfnfheehpddpcllihfkmm\5.0.127.0_0\
CHR - Extension: TheBflix = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hjakmojkcnhgipgkkbiempkfdndcnlah\5.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2001-10-26 19:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Babylon toolbar helper) - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (Babylon BHO)
O2 - BHO: (TheBflix Class) - {54903300-ECF7-4DBD-B9DB-D1CF928328D4} - C:\Documents and Settings\All Users\Dane aplikacji\TheBflix\bhoclass.dll (Injector)
O2 - BHO: (Incredibar.com Helper Object) - {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll (Montera Technologeis LTD)
O2 - BHO: (Softonic Helper Object) - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files\Softonic\softonic\1.5.11.5\bh\softonic.dll (Softonic.com)
O3 - HKLM\..\Toolbar: (Softonic Toolbar) - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files\Softonic\softonic\1.5.11.5\softonicTlbr.dll (Softonic.com)
O3 - HKLM\..\Toolbar: (Babylon Toolbar) - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll (Babylon Ltd.)
O3 - HKLM\..\Toolbar: (Incredibar Toolbar) - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll (Montera Technologeis LTD)
O4 - HKLM..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd File not found
O4 - HKLM..\Run: [PowerStrip] c:\Program Files\PowerStrip\PStrip.exe (EnTech Taiwan)
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [EXPLORER.EXE] C:\WINDOWS\explorer.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [Steam] C:\Program Files\Steam\Steam.exe (Valve Corporation)
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [wsctf.exe] wsctf.exe File not found
O4 - Startup: C:\Documents and Settings\Ja\Menu Start\Programy\Autostart\CNET TechTracker.lnk = C:\Documents and Settings\Ja\Dane aplikacji\CBS Interactive\CNET TechTracker\TechTracker.exe ()
O4 - Startup: C:\Documents and Settings\Ja\Menu Start\Programy\Autostart\Xfire.lnk = C:\Program Files\Xfire\xfire.exe (Xfire Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (InterTrust Technologies Corporation, Inc.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B3A37743-8C66-4DBC-9024-C4099EE2BB69}: DhcpNameServer = 192.168.2.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\WINDOWS\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (EXPLORER.EXE) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011-06-09 07:39:57 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{458e5fc9-4774-11e1-9996-000b6a638ff6}\Shell\AutoRun\command - "" = G:\2.com
O33 - MountPoints2\{458e5fc9-4774-11e1-9996-000b6a638ff6}\Shell\open\Command - "" = G:\2.com
O33 - MountPoints2\{508a1d52-a58f-11e0-9623-000b6a638ff6}\Shell\AutoRun\command - "" = G:\2.com
O33 - MountPoints2\{508a1d52-a58f-11e0-9623-000b6a638ff6}\Shell\open\Command - "" = G:\2.com
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\AutoRun\command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\explore\Command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\open\Command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2012-04-08 18:13:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\HiJackThis
[2012-04-08 18:13:30 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2012-04-08 16:39:13 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2012-04-06 18:58:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Lucasarts
[2012-04-06 18:57:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\LucasArts
[2012-04-03 20:46:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\SzybszyPC
[2012-04-03 20:46:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Dane aplikacji\SzybszyPC
[2012-04-03 20:43:24 | 010,930,996 | ---- | C] (Szybszypc.com                                               ) -- C:\Documents and Settings\Ja\Moje dokumenty\SzybszyPC_XV5WWVpYVg==.exe
[2012-03-30 18:11:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\microsoft
[2012-03-30 18:10:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\SWTCWRH
[2012-03-30 18:10:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\LucasArts
[2012-03-30 18:09:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Games for Windows - LIVE
[2012-03-30 18:09:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xlive
[2012-03-30 18:09:29 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games for Windows - LIVE
[2012-03-30 18:08:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\NVIDIA Corporation
[2012-03-30 17:13:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Dane aplikacji\InstallShield Installation Information
[2012-03-27 13:52:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Moje dokumenty\cs
[2012-03-26 16:28:25 | 000,000,000 | ---D | C] -- C:\Program Files\CounterStrikev47
[2012-03-26 16:26:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Downloaded Installations
[2012-03-26 14:30:34 | 261,308,720 | ---- | C] (Valve) -- C:\Documents and Settings\Ja\Pulpit\cs16full-v7.exe
[2012-03-26 13:07:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Premium
[2012-03-26 13:07:07 | 000,000,000 | ---D | C] -- C:\Program Files\Incredibar.com
[2012-03-26 13:06:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\TheBflix
[2012-03-26 13:06:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TheBflix
[2012-03-26 13:05:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallMate
[2012-03-26 11:49:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\Counter-Strike
[2012-03-26 11:46:25 | 000,000,000 | ---D | C] -- C:\Program Files\Counter-Strike
[2012-03-19 15:33:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\PowerStrip
[2012-03-19 15:32:47 | 000,000,000 | ---D | C] -- C:\Program Files\PowerStrip
[2012-03-16 20:22:21 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012-03-16 19:19:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Komputerowa Gratka
[2012-03-16 19:18:59 | 000,000,000 | ---D | C] -- C:\Gratka
[2012-03-16 19:17:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\Mysz Teodor Serminator
[2012-03-16 19:17:01 | 000,000,000 | ---D | C] -- C:\Program Files\Mysz Teodor Serminator
[2012-03-14 22:47:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Moje dokumenty\Nowy folder
[2012-03-14 15:06:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Pulpit\Nowy folder
[2012-03-11 20:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Dane aplikacji\Registry Mechanic
[2012-03-11 14:40:45 | 000,274,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll
[2012-03-11 14:40:45 | 000,017,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll.mui
[2012-03-11 13:04:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\PC Tools Registry Mechanic
[2012-03-11 13:04:39 | 001,101,824 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBox210.ocx
[2012-03-11 13:04:39 | 000,880,640 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBox10.ocx
[2012-03-11 13:04:39 | 000,212,992 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBoxVB12.ocx
[2012-03-11 13:04:38 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCOMCT2.OCX
[2012-03-11 13:04:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools
[2012-03-11 13:04:15 | 000,000,000 | ---D | C] -- C:\Program Files\PC Tools Registry Mechanic
[2012-03-11 13:03:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2012-03-10 18:29:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Silverlight
[2012-03-10 18:29:08 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2012-01-28 14:00:07 | 002,368,760 | ---- | C] (DownVision                                                  ) -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\setup.exe
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2012-04-08 18:15:29 | 000,002,437 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\HiJackThis.lnk
[2012-04-08 18:06:34 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012-04-08 18:06:33 | 267,964,416 | -HS- | M] () -- C:\hiberfil.sys
[2012-04-08 18:04:24 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2012-04-08 16:37:17 | 032,904,504 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\setuppol.exe
[2012-04-08 13:33:48 | 000,002,325 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike v47.lnk
[2012-04-07 14:33:06 | 005,842,177 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Dash Berlin - Till The Sky Falls Down Sub Español.mp3
[2012-04-07 01:10:35 | 003,306,969 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\John O'Callaghan feat. Sarah Howells - Find Yourself (Official Music Video) [High Quality].mp3
[2012-04-06 18:58:02 | 000,001,631 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\LEGO Star Wars 2 DEMO.lnk
[2012-04-06 17:58:32 | 000,000,430 | -H-- | M] () -- C:\WINDOWS\tasks\Norton Security Scan for Ja.job
[2012-04-03 20:46:59 | 000,002,102 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\SzybszyPC.lnk
[2012-04-03 20:45:35 | 010,930,996 | ---- | M] (Szybszypc.com                                               ) -- C:\Documents and Settings\Ja\Moje dokumenty\SzybszyPC_XV5WWVpYVg==.exe
[2012-03-30 18:10:25 | 000,001,750 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Republic Heroes.lnk
[2012-03-26 16:21:08 | 261,308,720 | ---- | M] (Valve) -- C:\Documents and Settings\Ja\Pulpit\cs16full-v7.exe
[2012-03-26 13:07:12 | 000,001,437 | ---- | M] () -- C:\user.js
[2012-03-26 11:49:15 | 000,001,603 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Counter-Strike 1.6.lnk
[2012-03-26 11:49:15 | 000,001,570 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Half-Life.lnk
[2012-03-26 11:35:11 | 000,002,539 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Microsoft Office Word 2003.lnk
[2012-03-25 11:24:16 | 000,490,284 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2012-03-25 11:24:16 | 000,083,660 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2012-03-25 11:24:15 | 000,432,356 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012-03-25 11:24:15 | 000,067,312 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012-03-20 11:09:47 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012-03-19 15:34:56 | 000,000,628 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\PowerStrip.lnk
[2012-03-19 00:42:03 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC00117.JPG
[2012-03-18 08:54:24 | 000,000,626 | ---- | M] () -- C:\WINDOWS\papatka.cfg
[2012-03-17 20:12:00 | 000,000,011 | ---- | M] () -- C:\WINDOWS\papatka_ustawienia.cfg
[2012-03-17 00:11:35 | 000,201,736 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012-03-16 19:19:06 | 000,001,550 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Angielska Czarownica.lnk
[2012-03-16 19:17:15 | 000,001,642 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Mysz Teodor Serminator.lnk
[2012-03-16 19:14:24 | 000,000,824 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Szalony Królik Demo.lnk
[2012-03-16 19:12:46 | 000,001,673 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Kolory i Kształty.lnk
[2012-03-15 11:54:44 | 000,001,870 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Continue SweetIM Installation.lnk
[2012-03-14 21:26:32 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05685.JPG
[2012-03-14 21:25:27 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05668.JPG
[2012-03-14 21:24:31 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05644.JPG
[2012-03-14 21:23:07 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05656.JPG
[2012-03-14 21:21:42 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05693 - Kopia.JPG
[2012-03-12 00:15:05 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\ZDR - Zyje dalej tak jak ft. Bonus RPK.mp3
[2012-03-12 00:10:27 | 005,715,625 | ---- | M] () -- C:\Documents and Settings\Ja\Moje dokumenty\Nie Dla Wszystkich - Nie zawsze cos za cos feat. Dobo TPS ZDR (www.djoles.pl).mp3
[2012-03-12 00:07:39 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\Nie Dla Wszystkich - Nie zawsze cos za cos feat. Dobo TPS ZDR (www.djoles.pl).mp3
[2012-03-11 20:43:25 | 000,340,992 | ---- | M] () -- C:\Documents and Settings\Ja\Moje dokumenty\Michel Tel- - Balada Sertaneja.mp3
[2012-03-11 13:04:46 | 000,000,871 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\PC Tools Registry Mechanic.lnk
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2012-04-08 18:13:38 | 000,002,437 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\HiJackThis.lnk
[2012-04-08 16:34:12 | 032,904,504 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\setuppol.exe
[2012-04-07 13:53:29 | 005,842,177 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Dash Berlin - Till The Sky Falls Down Sub Español.mp3
[2012-04-07 00:32:12 | 003,306,969 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\John O'Callaghan feat. Sarah Howells - Find Yourself (Official Music Video) [High Quality].mp3
[2012-04-06 18:58:02 | 000,001,631 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\LEGO Star Wars 2 DEMO.lnk
[2012-04-03 20:46:59 | 000,002,102 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\SzybszyPC.lnk
[2012-04-03 20:46:58 | 000,002,108 | ---- | C] () -- C:\Documents and Settings\Ja\Menu Start\Programy\SzybszyPC.lnk
[2012-03-30 18:10:25 | 000,001,750 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Republic Heroes.lnk
[2012-03-26 16:31:05 | 000,001,677 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Counter-Strike v47.lnk
[2012-03-26 16:31:03 | 000,002,325 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike v47.lnk
[2012-03-26 11:49:15 | 000,001,603 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Counter-Strike 1.6.lnk
[2012-03-19 15:34:56 | 000,000,628 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\PowerStrip.lnk
[2012-03-19 00:42:03 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC00117.JPG
[2012-03-16 19:19:06 | 000,001,550 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Angielska Czarownica.lnk
[2012-03-16 19:17:15 | 000,001,642 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Mysz Teodor Serminator.lnk
[2012-03-16 19:14:24 | 000,000,824 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Szalony Królik Demo.lnk
[2012-03-16 19:12:46 | 000,001,673 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Kolory i Kształty.lnk
[2012-03-15 11:54:31 | 000,001,870 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Continue SweetIM Installation.lnk
[2012-03-14 21:26:32 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05685.JPG
[2012-03-14 21:25:27 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05668.JPG
[2012-03-14 21:24:31 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05644.JPG
[2012-03-14 21:23:07 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05656.JPG
[2012-03-14 21:21:42 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05693 - Kopia.JPG
[2012-03-12 00:15:05 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\ZDR - Zyje dalej tak jak ft. Bonus RPK.mp3
[2012-03-12 00:07:46 | 005,715,625 | ---- | C] () -- C:\Documents and Settings\Ja\Moje dokumenty\Nie Dla Wszystkich - Nie zawsze cos za cos feat. Dobo TPS ZDR (www.djoles.pl).mp3
[2012-03-12 00:07:39 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\Nie Dla Wszystkich - Nie zawsze cos za cos feat. Dobo TPS ZDR (www.djoles.pl).mp3
[2012-03-11 14:39:42 | 000,340,992 | ---- | C] () -- C:\Documents and Settings\Ja\Moje dokumenty\Michel Tel- - Balada Sertaneja.mp3
[2012-03-11 13:04:46 | 000,000,871 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\PC Tools Registry Mechanic.lnk
[2012-03-11 13:04:38 | 000,037,336 | ---- | C] () -- C:\WINDOWS\System32\CleanMFT32.exe
[2012-01-28 13:59:27 | 000,460,624 | ---- | C] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\promo.exe
[2012-01-27 19:12:28 | 000,000,206 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2012-01-26 09:06:29 | 000,000,030 | ---- | C] () -- C:\WINDOWS\TextSpy.ini
[2011-11-06 13:34:44 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
[2011-09-01 14:45:25 | 000,516,096 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2011-08-30 14:54:52 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011-08-18 18:22:45 | 000,112,640 | ---- | C] () -- C:\WINDOWS\lsb_un20.exe
[2011-08-03 17:28:09 | 000,003,240 | ---- | C] () -- C:\WINDOWS\disney.ini
[2011-08-03 17:27:58 | 000,000,200 | ---- | C] () -- C:\WINDOWS\disneysy.ini
[2011-07-22 16:12:29 | 000,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2011-07-22 16:12:29 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Ja\Dane aplikacji\PnkBstrK.sys
[2011-07-22 16:12:12 | 000,107,832 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2011-07-22 16:12:11 | 000,066,872 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2011-07-22 16:12:10 | 002,250,024 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe
[2011-07-20 20:48:41 | 000,000,167 | ---- | C] () -- C:\WINDOWS\game.ini
[2011-07-17 15:09:46 | 000,000,027 | ---- | C] () -- C:\WINDOWS\Rally.INI
[2011-07-03 20:52:51 | 000,009,728 | ---- | C] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-06-09 09:24:01 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2011-06-09 09:23:03 | 000,201,736 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-06-09 08:08:25 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2011-06-09 07:56:08 | 000,000,092 | ---- | C] () -- C:\WINDOWS\CMISETUP.INI
[2011-06-09 07:56:08 | 000,000,026 | ---- | C] () -- C:\WINDOWS\CMCDPLAY.INI
[2011-06-09 07:56:07 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Wininit.ini
[2011-06-09 07:56:06 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.exe
[2011-06-09 07:56:06 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
[2011-06-09 07:56:05 | 000,266,240 | ---- | C] () -- C:\WINDOWS\CMIUninstall.exe
[2011-06-09 07:56:05 | 000,225,280 | ---- | C] () -- C:\WINDOWS\CmiRmRedundDir.exe
[2011-06-09 07:56:05 | 000,028,672 | ---- | C] () -- C:\WINDOWS\CMIRmDriver.dll
[2011-06-09 07:42:46 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2011-06-09 07:36:52 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat

[color=#E56717]========== LOP Check ==========[/color]

[2011-11-08 17:52:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Activision
[2011-07-03 18:34:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alawar Stargaze
[2012-01-25 18:47:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon
[2011-12-04 10:58:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Buena Vista Games
[2012-01-25 20:50:01 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files
[2011-09-01 11:02:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Firefly Studios
[2012-01-23 13:06:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2012-03-26 13:08:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallMate
[2012-04-06 18:58:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Lucasarts
[2012-01-27 20:43:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData
[2012-04-06 22:07:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM
[2012-03-26 13:07:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Premium
[2012-03-30 18:11:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SWTCWRH
[2012-04-07 19:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2012-03-26 13:06:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TheBflix
[2012-03-01 19:55:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Wizard101(PL)
[2011-11-08 17:52:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Activision
[2012-01-25 18:47:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Babylon
[2012-01-28 16:51:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\BabylonToolbar
[2012-01-25 18:56:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\CBS Interactive
[2011-08-03 17:33:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Disney Interactive Studios
[2012-03-04 18:29:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Gadu-Gadu 10
[2011-08-30 15:03:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Gearbox Software
[2011-08-30 15:25:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\InterTrust
[2012-01-24 11:50:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\OpenFM
[2012-03-11 20:21:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Registry Mechanic
[2012-02-24 15:47:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Softonic
[2012-04-03 20:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\SzybszyPC
[2012-03-01 20:06:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Unity

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:D1B5B4F1

< End of report >


OTL Extras logfile created on: 2012-04-08 18:24:21 - Run 1
OTL by OldTimer - Version 3.2.39.2     Folder = C:\Documents and Settings\Ja\Moje dokumenty\Downloads
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

255,48 Mb Total Physical Memory | 76,25 Mb Available Physical Memory | 29,85% Memory free
618,02 Mb Paging File | 335,86 Mb Available in Paging File | 54,35% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 105,82 Gb Free Space | 71,00% Space Free | Partition Type: NTFS
Drive D: | 74,55 Gb Total Space | 74,12 Gb Free Space | 99,42% Space Free | Partition Type: NTFS

Computer Name: A-C2BB6EFD50354 | User Name: Ja | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe shdocvw.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
InternetShortcut [open] -- rundll32.exe shdocvw.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[color=#E56717]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Dragon Age\bin_ship\daorigins.exe" = C:\Program Files\Dragon Age\bin_ship\daorigins.exe:*:Enabled:Dragon Age Początek Gra
"C:\Program Files\Dragon Age\DAOriginsLauncher.exe" = C:\Program Files\Dragon Age\DAOriginsLauncher.exe:*:Enabled:Dragon Age Początek Program startowy
"C:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe" = C:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe:*:Enabled:Dragon Age Początek Aktualizator
"C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe:*:Enabled:Far Cry 2
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe:*:Enabled:Far Cry 2 Updater
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe:*:Enabled:Editor
"C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe" = C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe:*:Enabled:Symulator Farmy 2011
"C:\Program Files\Symulator Farmy 2011\game.exe" = C:\Program Files\Symulator Farmy 2011\game.exe:*:Enabled:Symulator Farmy 2011
"C:\Program Files\Counter-Strike\hl.exe" = C:\Program Files\Counter-Strike\hl.exe:*:Enabled:Half-Life Launcher -- (Valve)
"C:\Program Files\Ubisoft\Brothers in Arms Road to Hill 30\System\bia.exe" = C:\Program Files\Ubisoft\Brothers in Arms Road to Hill 30\System\bia.exe:*:Disabled:Brothers In Arms: Road to Hill 30
"C:\Program Files\GameSpy Arcade\Aphex.exe" = C:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade -- (IGN Entertainment, Inc.)
"C:\Program Files\Activision Value\THPS2\THawk2.exe" = C:\Program Files\Activision Value\THPS2\THawk2.exe:*:Disabled:THawk2 -- ()
"C:\WINDOWS\system32\dplaysvr.exe" = C:\WINDOWS\system32\dplaysvr.exe:*:Disabled:Microsoft DirectPlay Helper -- (Microsoft Corporation)
"C:\Program Files\Gadu-Gadu 10\gg.exe" = C:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10 -- (GG Network S.A.)
"C:\Program Files\Steam\Steam.exe" = C:\Program Files\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
"C:\Documents and Settings\Ja\Moje dokumenty\Downloads\SweetImSetup.exe" = C:\Documents and Settings\Ja\Moje dokumenty\Downloads\SweetImSetup.exe:*:Enabled:SweetIM Installer -- (SweetIM Technologies, Ltd.)
"C:\Program Files\LucasArts\Republic Heroes\Republic Heroes.exe" = C:\Program Files\LucasArts\Republic Heroes\Republic Heroes.exe:*:Enabled:Republic Heroes -- (LucasArts)
"C:\Program Files\CounterStrikev47\cstrike.exe" = C:\Program Files\CounterStrikev47\cstrike.exe:*:Enabled:Counter-Strike Launcher -- (Non Steam Powered)


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01CBFCE7-95AD-40F3-BC63-C46EFB2FC9C4}" = Piraci z Karaibów - Na krańcu świata
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{066ED8C4-8C66-4824-ACF4-8F622E88E074}" = LEGO® Indiana Jones™ Demo
"{109D28DA-E555-4896-BF22-E312F764562C}_is1" = Lowrider Extreme
"{11AE6807-50D2-4F59-82B3-2C3E695E94C2}" = NVIDIA PhysX v8.05.26
"{150FEA49-4039-4458-B9D0-F19CC17229FE}" = LEGO Star Wars 2 DEMO
"{19B72AA9-985A-11D4-9C8A-00D0B75D1498}" = Colin McRae Rally 2.0
"{1D769438-429C-4309-931D-A643DF9C57D9}" = Rayman Raving Rabbids 2 Orange
"{2499550E-A9B4-4090-00A8-D2552258C58F}" = NHL® 2003 Demo
"{2C9BF728-DFE5-4A12-A34D-6059E42AE4C3}" = No One Lives Forever 2 (Official Demo)
"{31CB0D80-1866-462A-9455-88614410971F}" = Driver: Parallel Lines
"{32272C99-9A54-4195-95A2-1BECA55C252B}" = Max Payne 2
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{37476589-E48E-439E-A706-56189E2ED4C4}" = TheBflix
"{38171128-662E-4CE0-A2C8-23B3FCBA73B3}" = Conflict Global Storm
"{3CB71E1E-F887-4EED-A106-74DBFF5F0280}_is1" = CSI: Kryminalne zagadki Las Vegas – 3 wymiary zbrodni
"{4089461B-8B8C-47A6-A055-A7E5EFADA26F}_is1" = SzybszyPC 1.0
"{42C68F9E-2F77-4C6D-BFA8-DDC7567662FF}_is1" = Arctic Stud Poker Run v 2.4.1
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{46BF57D5-AFBE-4BB5-B392-B7CCBE35ACBA}" = Tennis Masters Series
"{4A064424-4EBD-4B70-B67D-71771F80769F}" = Clifford w mieście
"{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}" = Microsoft Games for Windows - LIVE
"{4B35F00C-E63D-40DC-9839-DF15A33EAC46}" = Grand Theft Auto Vice City
"{526DFE99-240B-403C-A671-EAC58B442EC5}" = Kung Fu Panda(TM) Demo
"{56780980-C930-4775-88B8-85301EDBEBE6}_is1" = Hard Truck Tycoon
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{6249A1C0-57B8-11D6-851F-00C0CA129740}" = Warrior Kings
"{6D4C79B1-2BFF-4AD2-AE11-90401F0B36F4}" = Iniemamocni
"{70073F81-7201-1F4B-8111-2686B8A60F85}" = Tomb Raider: Underworld
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86F5A73E-BFA0-4AA9-BF6C-4DC134D71D88}" = Uruchom Narnię
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{909F8EBC-EC7F-48FF-0085-475D818F0F31}" = Need for Speed Underground 2
"{92B94569-6683-4617-8C54-EB27A1B51B30}" = GTA III
"{9799BD05-5F89-484C-008E-F5059297FB6A}" = Harry Potter und der Feuerkelch™ Demo
"{985F7ACE-C7C7-432D-8FA1-022E7A61C9D5}_is1" = Crazy Cooking
"{9CB3F842-DAF1-414A-B65B-AE8A7EDE4985}_is1" = TubeMaster++ 1.5
"{9F8ECAEB-C0A6-488D-BB6F-81F393F06D57}" = Moorhuhn Kart XXL (PL)
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A66C1C60-A589-4210-87D7-3F758EFE51B2}" = Ogniem i Mieczem - Dzikie Pola
"{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.2) - Polish
"{AEC81925-9C76-4707-84A9-40696C613ED3}" = Dragon Age: Początek
"{B1D681C5-EBCB-4A43-AC34-7639C2D04977}_is1" = Nitro Racers 1.0 PL
"{B3144CB5-3532-405C-B9B7-0484D250A94B}" = Just Cause 1.00.0000
"{BC1664AB-77A4-425B-9739-4E68C9EF1D3C}" = Brothers in Arms Road to Hill 30
"{BF4EFBD3-57F1-4C4F-9484-6FCC18F735A7}" = Max Payne
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D7DE93E1-A0B3-40FE-907E-F89BB0A2AA31}_is1" = Pearl Harbor II Drugie Uderzenie
"{DEFD1031-3A80-4259-85BC-E66B36366A19}" = Air-Rush
"{E24DCAFE-AAB7-40E4-9FB1-2650A71409AE}" = Król Lew: Powrót do Lwiej Ziemi
"{E270A0FD-2DC0-4BFA-8EEE-2AB8B963F0F5}" = Max Payne
"{E33E1321-E74C-499D-B443-2B1AD3A6C4C9}" = CounterStrikev47
"{F27F8DFA-E714-46DE-927B-4A22EE507B75}" = Baldur's Gate II Gold
"{F2835483-37F2-4123-B4FE-0E77D58447F2}" = Far Cry 2
"{FC1C2427-5954-451C-9ED8-A92D48ED7E07}" = CSI-Hard Evidence Demo
"{FD052FB9-FE90-4438-B355-15EDC89D8FB1}" = Microsoft Games for Windows - LIVE Redistributable
"Activision_THPS2UninstallKey" = Tony Hawk's Pro Skater 2
"Adobe Acrobat 5.0" = Adobe Acrobat 5.0 CE
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"ATI Display Driver" = ATI Display Driver
"Attack on Pearl Harbor Demo" = Attack on Pearl Harbor Demo
"ATV GP_is1" = ATV GP
"AuranTS2009_is1" = Trainz Simulator 2009: World Builder Edition
"Avencast™ - Rise of The Mage_is1" = Avencast™
"BabylonToolbar" = Babylon toolbar on IE
"Ballistics" = Ballistics
"Barrow Hill_is1" = Barrow Hill
"Black out Saigon_is1" = Black out Saigon 1.4
"Bus Driver_is1" = Bus Driver
"Casino Master" = Remove Casino Master
"CivCityRome" = CivCity Rome
"Clifford - Zabawy z muzyką" = Clifford - Zabawy z muzyką
"Clifford Adventure" = Clifford Thinking Adventures
"Clifford na wyspie" = Clifford na wyspie
"C-Media Audio" = C-Media 3D Audio
"Counter-Strike 1.6 v32" = Counter-Strike 1.6 v32
"Crash Time III/PL-Polish_is1" = Crash Time III
"Dracula Twins" = Dracula Twins
"Dziobas Rar Player_is1" = Dziobas Rar Player 0.009.52
"Euro Truck Simulator" = Euro Truck Simulator 1.00
"Euro Truck Simulator_is1" = Euro Truck Simulator
"ExMachina Arcade_is1" = ExMachina Arcade
"FarmingSimulator2011PL_is1" = Symulator Farmy 2011
"FruttiLand_demo_is1" = FruttiLand_demo 1.0
"Gadu-Gadu 10" = Gadu-Gadu 10
"GameSpy Arcade" = GameSpy Arcade
"gratkaBD" = Komputerowa Gratka - Budujemy Nowy Dom
"gratkaCA" = Komputerowa Gratka - Angielska Czarownica
"GROM" = GROM
"Hitman 2 Silent Assassin_is1" = Hitman 2 Silent Assassin wersja 1.01
"incredibar" = Incredibar Toolbar  on IE
"InstallShield_{066ED8C4-8C66-4824-ACF4-8F622E88E074}" = LEGO® Indiana Jones™ Demo
"InstallShield_{150FEA49-4039-4458-B9D0-F19CC17229FE}" = LEGO Star Wars 2 DEMO
"InstallShield_{526DFE99-240B-403C-A671-EAC58B442EC5}" = Kung Fu Panda(TM) Demo
"InstallShield_{DEFD1031-3A80-4259-85BC-E66B36366A19}" = Air-Rush
"Intelli-studio" = SAMSUNG Intelli-studio
"Kolory i Kształty_is1" = Kolory i Kształty
"Micro Madness_is1" = Micro Madness
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 9.0.1 (x86 pl)" = Mozilla Firefox 9.0.1 (x86 pl)
"Mysz Teodor Serminator 2.0n" = Mysz Teodor Serminator 2.0n
"NSS" = Norton Security Scan
"Offroad" = Offroad
"OpenAL" = OpenAL
"Paintball eXtreme DEMO_is1" = Paintball eXtreme DEMO
"PowerStrip 3 (remove only)" = PowerStrip 3 (remove only)
"Project IGI" = Project IGI
"PunkBusterSvc" = PunkBuster Services
"QuickTime" = QuickTime
"Razem w szkole klasa 3" = Razem w szkole klasa 3
"Registry Mechanic_is1" = PC Tools Registry Mechanic 11.0
"Silent Hunter III_is1" = Silent Hunter III
"Singles2" = Singles2
"Ski Alpin 2006 (Demo)_0001" = Ski Alpin 2006 (Demo)
"softonic" = Softonic toolbar  on IE and Chrome
"SPEEDBUSTERS" = SPEEDBUSTERS
"SPIDI LICZY" = SPIDI LICZY
"Szalony Królik Demo_is1" = Szalony Królik Demo 1.0
"Tunele Stalina 2_is1" = Tunele Stalina 2
"UK Truck Simulator" = UK Truck Simulator 1.06
"Usbfix" = UsbFix By El Desaparecido
"WIC" = Windows Imaging Component
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"WinPcapInst" = WinPcap 4.0.2
"WinRAR archiver" = Archiwizator WinRAR
"WMFDist11" = Windows Media Format 11 runtime
"wwii_pl" = Rajd na Berlin
"Xfire" = Xfire (remove only)

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{5612C844-55BC-4B77-82C2-A2E28962418E}" = Republic Heroes
"CNET TechTracker" = CNET TechTracker
"FoxTab FLV Player" = FoxTab FLV Player
"Google Chrome" = Google Chrome
"UnityWebPlayer" = Unity Web Player
"Wizard101(PL)_is1" = Wizard101(PL)

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2012-02-24 09:53:23 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca DZIOBAS.exe, wersja 0.0.9.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-02-26 11:39:34 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca hl.exe, wersja 1.1.1.1, moduł zawieszenia hungapp,
wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-02-26 11:39:34 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca hl.exe, wersja 1.1.1.1, moduł zawieszenia hungapp,
wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-02-26 11:39:35 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca hl.exe, wersja 1.1.1.1, moduł zawieszenia hungapp,
wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-02-28 13:39:07 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca gg.exe, wersja 10.5.2.13164, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-05 09:39:53 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca gg.exe, wersja 10.5.2.13164, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-05 09:39:53 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca gg.exe, wersja 10.5.2.13164, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-05 14:49:55 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca gg.exe, wersja 10.5.2.13164, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-06 05:28:28 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca chrome.exe, wersja 16.0.912.77, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-06 05:28:31 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca chrome.exe, wersja 16.0.912.77, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

[ System Events ]
Error - 2012-03-25 08:31:34 | Computer Name = A-C2BB6EFD50354 | Source = Dhcp | ID = 1008
Description = Komputer nie może zainicjować interfejsu sieciowego dołączonego  do
systemu. Kod błędu: %%1450.

Error - 2012-03-25 08:32:02 | Computer Name = A-C2BB6EFD50354 | Source = Dhcp | ID = 1008
Description = Komputer nie może zainicjować interfejsu sieciowego dołączonego  do
systemu. Kod błędu: %%1450.

Error - 2012-03-28 06:37:31 | Computer Name = A-C2BB6EFD50354 | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk2\D wystąpił zły blok.

Error - 2012-04-08 11:35:04 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7009
Description = Limit czasu (30000 milisekund) podczas oczekiwania na połączenie się
z usługą avast! Web Scanner.

Error - 2012-04-08 11:35:04 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi avast! Web Scanner z powodu następującego
błędu:   %%1053

Error - 2012-04-08 11:35:52 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7009
Description = Limit czasu (30000 milisekund) podczas oczekiwania na połączenie się
z usługą avast! Web Scanner.

Error - 2012-04-08 11:35:53 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi avast! Web Scanner z powodu następującego
błędu:   %%1053

Error - 2012-04-08 11:40:40 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7034
Description = Usługa avast! Web Scanner niespodziewanie zakończyła pracę. Wystąpiło
to razy: 1.

Error - 2012-04-08 11:53:38 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7009
Description = Limit czasu (30000 milisekund) podczas oczekiwania na połączenie się
z usługą avast! Web Scanner.

Error - 2012-04-08 11:53:38 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7000

GEMER :

GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2012-04-08 19:47:11
Windows 5.1.2600 Dodatek Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-4 ST3160815A rev.3.AAD
Running: c8fnycjo.exe; Driver: C:\DOCUME~1\Ja\USTAWI~1\Temp\ufncyfob.sys


---- Kernel code sections - GMER 1.0.15 ----

.sfreloc˙˙˙˙sfsync03unknown last section [0xF9A5F000, 0xA20, 0x40000040]  C:\WINDOWS\system32\drivers\sfsync03.sys                                                                                                                                    unknown last section [0xF9A5F000, 0xA20, 0x40000040]
pnidata                                                                   C:\WINDOWS\system32\DRIVERS\secdrv.sys                                                                                                                                      unknown last section [0xF08C9F00, 0x24000, 0x48000000]

---- User code sections - GMER 1.0.15 ----

.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtCreateFile + 6                                        7C90D0B4 4 Bytes  [28, 00, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtCreateFile + B                                        7C90D0B9 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtMapViewOfSection + 6                                  7C90D524 1 Byte  [28]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtMapViewOfSection + 6                                  7C90D524 4 Bytes  [28, 03, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtMapViewOfSection + B                                  7C90D529 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenFile + 6                                          7C90D5A4 4 Bytes  [68, 00, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenFile + B                                          7C90D5A9 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenProcess + 6                                       7C90D604 4 Bytes  [A8, 01, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenProcess + B                                       7C90D609 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenProcessToken + 6                                  7C90D614 4 Bytes  CALL 7B90EC1A
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenProcessToken + B                                  7C90D619 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenProcessTokenEx + 6                                7C90D624 4 Bytes  [A8, 02, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenProcessTokenEx + B                                7C90D629 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenThread + 6                                        7C90D664 4 Bytes  [68, 01, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenThread + B                                        7C90D669 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenThreadToken + 6                                   7C90D674 4 Bytes  [68, 02, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenThreadToken + B                                   7C90D679 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenThreadTokenEx + 6                                 7C90D684 4 Bytes  CALL 7B90EC8B
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtOpenThreadTokenEx + B                                 7C90D689 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtQueryAttributesFile + 6                               7C90D714 4 Bytes  [A8, 00, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtQueryAttributesFile + B                               7C90D719 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtQueryFullAttributesFile + 6                           7C90D7B4 4 Bytes  CALL 7B90EDB9
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtQueryFullAttributesFile + B                           7C90D7B9 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtSetInformationFile + 6                                7C90DC64 4 Bytes  [28, 01, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtSetInformationFile + B                                7C90DC69 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtSetInformationThread + 6                              7C90DCB4 4 Bytes  [28, 02, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtSetInformationThread + B                              7C90DCB9 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtUnmapViewOfSection + 6                                7C90DF14 1 Byte  [68]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtUnmapViewOfSection + 6                                7C90DF14 4 Bytes  [68, 03, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] ntdll.dll!NtUnmapViewOfSection + B                                7C90DF19 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtCreateFile + 6                                        7C90D0B4 4 Bytes  [28, 00, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtCreateFile + B                                        7C90D0B9 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtMapViewOfSection + 6                                  7C90D524 1 Byte  [28]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtMapViewOfSection + 6                                  7C90D524 4 Bytes  [28, 03, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtMapViewOfSection + B                                  7C90D529 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenFile + 6                                          7C90D5A4 4 Bytes  [68, 00, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenFile + B                                          7C90D5A9 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenProcess + 6                                       7C90D604 4 Bytes  [A8, 01, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenProcess + B                                       7C90D609 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenProcessToken + 6                                  7C90D614 4 Bytes  CALL 7B90EC1A
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenProcessToken + B                                  7C90D619 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenProcessTokenEx + 6                                7C90D624 4 Bytes  [A8, 02, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenProcessTokenEx + B                                7C90D629 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenThread + 6                                        7C90D664 4 Bytes  [68, 01, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenThread + B                                        7C90D669 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenThreadToken + 6                                   7C90D674 4 Bytes  [68, 02, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenThreadToken + B                                   7C90D679 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenThreadTokenEx + 6                                 7C90D684 4 Bytes  CALL 7B90EC8B
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtOpenThreadTokenEx + B                                 7C90D689 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtQueryAttributesFile + 6                               7C90D714 4 Bytes  [A8, 00, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtQueryAttributesFile + B                               7C90D719 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtQueryFullAttributesFile + 6                           7C90D7B4 4 Bytes  CALL 7B90EDB9
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtQueryFullAttributesFile + B                           7C90D7B9 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtSetInformationFile + 6                                7C90DC64 4 Bytes  [28, 01, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtSetInformationFile + B                                7C90DC69 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtSetInformationThread + 6                              7C90DCB4 4 Bytes  [28, 02, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtSetInformationThread + B                              7C90DCB9 1 Byte  [E2]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtUnmapViewOfSection + 6                                7C90DF14 1 Byte  [68]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtUnmapViewOfSection + 6                                7C90DF14 4 Bytes  [68, 03, 16, 00]
.text                                                                     C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] ntdll.dll!NtUnmapViewOfSection + B                                7C90DF19 1 Byte  [E2]

---- User IAT/EAT - GMER 1.0.15 ----

IAT                                                                       C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3732] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!CreateNamedPipeW]  002D0010
IAT                                                                       C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe[3772] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!CreateNamedPipeW]  002D0010

---- Devices - GMER 1.0.15 ----

Device                                                                    \Driver\prodrv06 \Device\ProDrv06                                                                                                                                           E17F5768
Device                                                                    \Driver\atapi \Device\Ide\IdePort0                                                                                                                                          sfsync03.sys (StarForce Protection Synchronization Driver/Protection Technology)
Device                                                                    \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4                                                                                                                                 sfsync03.sys (StarForce Protection Synchronization Driver/Protection Technology)
Device                                                                    \Driver\atapi \Device\Ide\IdePort1                                                                                                                                          sfsync03.sys (StarForce Protection Synchronization Driver/Protection Technology)
Device                                                                    \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c                                                                                                                                 sfsync03.sys (StarForce Protection Synchronization Driver/Protection Technology)
Device                                                                    \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18                                                                                                                                sfsync03.sys (StarForce Protection Synchronization Driver/Protection Technology)
Device                                                                    \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20                                                                                                                                sfsync03.sys (StarForce Protection Synchronization Driver/Protection Technology)
Device                                                                    \Driver\prohlp02 \Device\ProHlp02                                                                                                                                           E13D01D0

AttachedDevice                                                            \FileSystem\Fastfat \Fat                                                                                                                                                    fltMgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----

Description = Nie można uruchomić usługi avast! Web Scanner z powodu następującego
błędu:   %%1053


< End of report >
[/code]


Dodano 08.04.2012 20:47:42:
Pomoże ktos wstawilem wszystkie LOGI
Awatar użytkownika
Nintendo
~user
 
Posty: 185
Dołączenie: 03 Sty 2007, 22:19



Komp strasznie zamula i internet

Postprzez wojtas 09 Kwi 2012, 10:44

odinstaluj w dodaj usuń programy: SzybszyPC 1.0,Babylon toolbar on IE,Incredibar Toolbar on IE,Softonic toolbar on IE and Chrome i jak nie znasz to jeszcze TheBflix

Jakiego używasz antywirusa ? bo widzę w logu że jest Norton ? czy on chroni Twego kompa ?

Uruchom OTL i w sekcji własne opcje skanowania / skrypt wklej:

:OTL
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe -- (DAUpdaterSvc)
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}
IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredibar.com/mb119?a=6R8nZjpwnH&i=26
IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}
FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
FF - prefs.js..browser.search.selectedEngine: "MyStart Search"
FF - prefs.js..browser.startup.homepage: "http://mystart.incredibar.com/mb119?a=6R8nZjpwnH&i=26"
FF - prefs.js..keyword.URL: "http://mystart.incredibar.com/mb119/?loc=IB_DS&a=6R8nZjpwnH&&i=26&search="
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Search the web (Babylon)"
FF - prefs.js..browser.startup.homepage: "http://search.babylon.com/?AF=100482&babsrc=HP_ss&mntrId=a87e4f9c000000000000000b6a638ff6"
[2012-01-28 12:26:52 | 000,000,000 | ---D | M] (Babylon) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions\ffxtlbr@babylon.com
[2012-02-24 20:22:46 | 000,000,000 | ---D | M] (Softonic Toolbar) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions\ffxtlbra@softonic.com
[2012-04-02 11:43:20 | 000,000,000 | ---D | M] (TheBflix) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions\info@bflix.info
[2012-03-26 13:06:56 | 000,002,203 | ---- | M] () -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\searchplugins\MyStart Search.xml
[2012-02-24 15:47:33 | 000,002,060 | ---- | M] () -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\searchplugins\softonic.xml
[2012-02-14 20:51:27 | 000,003,915 | ---- | M] () -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\searchplugins\SweetIM Search.xml
[2012-01-28 12:00:25 | 000,002,310 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
O4 - HKLM..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd File not found
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [wsctf.exe] wsctf.exe File not found
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [EXPLORER.EXE] C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (EXPLORER.EXE) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O33 - MountPoints2\{458e5fc9-4774-11e1-9996-000b6a638ff6}\Shell\AutoRun\command - "" = G:\2.com
O33 - MountPoints2\{458e5fc9-4774-11e1-9996-000b6a638ff6}\Shell\open\Command - "" = G:\2.com
O33 - MountPoints2\{508a1d52-a58f-11e0-9623-000b6a638ff6}\Shell\AutoRun\command - "" = G:\2.com
O33 - MountPoints2\{508a1d52-a58f-11e0-9623-000b6a638ff6}\Shell\open\Command - "" = G:\2.com
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\AutoRun\command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\explore\Command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\open\Command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
[2012-04-03 20:46:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\SzybszyPC
[2012-04-03 20:46:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Dane aplikacji\SzybszyPC
[2012-04-03 20:43:24 | 010,930,996 | ---- | C] (Szybszypc.com ) -- C:\Documents and Settings\Ja\Moje dokumenty\SzybszyPC_XV5WWVpYVg==.exe
[2012-04-03 20:46:59 | 000,002,102 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\SzybszyPC.lnk
[2012-04-03 20:46:58 | 000,002,108 | ---- | C] () -- C:\Documents and Settings\Ja\Menu Start\Programy\SzybszyPC.lnk
[2012-03-15 11:54:31 | 000,001,870 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Continue SweetIM Installation.lnk
[2012-01-28 13:59:27 | 000,460,624 | ---- | C] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\promo.exe
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:D1B5B4F1
[2012-04-03 20:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\SzybszyPC

:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\WINDOWS\system32\userinit.exe,"


:Commands
[emptytemp]


Kliknij wykonaj skrypt. I potwierdź reset komputera

Użyj AdwCleaner i kliknij w nim Delete (w przypadku Visty/Windows7 uruchom z prawokliku jako Administrator)
Pokaż raport z niego

Następnie uruchamiasz OTL z opcją skanuj. Pokazujesz nowy log OTL.txt oraz raport z czyszczenia (zawartość notatnika, która otworzy się po restarcie). Przy podpiętym urządzeniu przenośnym (pendrive, telefon - to co jest podłączane do komputera) , uruchom USBFIX z opcji Listing i pokaż raport na forum.
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656



Komp strasznie zamula i internet

Postprzez Nintendo 09 Kwi 2012, 11:06

Kod: Zaznacz wszystko
[code]adw :


# AdwCleaner v1.505 - Logfile created 04/09/2012 at 10:50:58
# Updated 07/04/2012 by Xplode
# Operating system : Microsoft Windows XP Dodatek Service Pack 2 (32 bits)
# User : Ja - A-C2BB6EFD50354
# Running from : C:\Documents and Settings\Ja\Moje dokumenty\Downloads\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

OTL :

OTL logfile created on: 2012-04-09 11:00:02 - Run 2
OTL by OldTimer - Version 3.2.39.2     Folder = C:\Documents and Settings\Ja\Moje dokumenty\Downloads
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

255,48 Mb Total Physical Memory | 116,24 Mb Available Physical Memory | 45,50% Memory free
618,02 Mb Paging File | 352,11 Mb Available in Paging File | 56,97% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 105,96 Gb Free Space | 71,09% Space Free | Partition Type: NTFS
Drive D: | 74,55 Gb Total Space | 74,12 Gb Free Space | 99,42% Space Free | Partition Type: NTFS

Computer Name: A-C2BB6EFD50354 | User Name: Ja | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2012-04-08 18:22:29 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Ja\Moje dokumenty\Downloads\OTL.exe
PRC - [2012-02-03 14:34:58 | 000,793,048 | ---- | M] (PC Tools) -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
PRC - [2012-01-20 07:35:36 | 001,047,024 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
PRC - [2011-12-01 22:24:20 | 002,624,512 | ---- | M] () -- C:\Documents and Settings\Ja\Dane aplikacji\CBS Interactive\CNET TechTracker\TechTracker.exe
PRC - [2011-04-27 14:53:38 | 000,742,944 | ---- | M] (EnTech Taiwan) -- C:\Program Files\PowerStrip\PStrip.exe
PRC - [2007-07-11 03:06:10 | 002,687,824 | ---- | M] (Xfire Inc.) -- C:\Program Files\Xfire\xfire.exe
PRC - [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2012-01-20 07:35:35 | 000,411,120 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\ppgooglenaclpluginchrome.dll
MOD - [2012-01-20 07:35:34 | 003,767,792 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\pdf.dll
MOD - [2012-01-20 07:34:10 | 000,122,880 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\avutil-51.dll
MOD - [2012-01-20 07:34:09 | 000,222,208 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\avformat-53.dll
MOD - [2012-01-20 07:34:07 | 001,746,432 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\avcodec-53.dll
MOD - [2012-01-20 04:14:40 | 008,593,056 | ---- | M] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\gcswf32.dll
MOD - [2012-01-03 15:10:54 | 000,300,544 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL
MOD - [2011-12-01 22:24:20 | 002,624,512 | ---- | M] () -- C:\Documents and Settings\Ja\Dane aplikacji\CBS Interactive\CNET TechTracker\TechTracker.exe


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe -- (DAUpdaterSvc)
SRV - [2012-02-03 14:34:58 | 000,793,048 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe -- (PCToolsSSDMonitorSvc)
SRV - [2011-03-16 11:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2007-11-06 22:22:26 | 000,092,792 | ---- | M] (CACE Technologies) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Stopped] --  -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] --  -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] --  -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] --  -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] --  -- (Changer)
DRV - [2007-11-06 22:22:06 | 000,034,064 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF)
DRV - [2007-07-15 03:37:04 | 000,027,992 | ---- | M] (EnTech Taiwan) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\pstrip.sys -- (PStrip)
DRV - [2005-10-13 15:46:08 | 000,035,328 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfsync03.sys -- (sfsync03) StarForce Protection Synchronization Driver (version 3.x)
DRV - [2005-08-10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
DRV - [2005-05-16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
DRV - [2004-11-25 18:36:06 | 000,077,248 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\prohlp02.sys -- (prohlp02)
DRV - [2004-11-25 18:32:01 | 000,054,368 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\prodrv06.sys -- (prodrv06)
DRV - [2004-10-26 20:35:38 | 000,820,224 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2004-08-04 01:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004-08-04 00:31:36 | 000,032,768 | ---- | M] (SiS Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sisnic.sys -- (SISNIC)
DRV - [2004-08-03 22:59:52 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2004-06-28 09:49:38 | 000,031,744 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Documents and Settings\Ja\Ustawienia lokalne\Temp\hSONYPVh.sys -- (hSONYPVh)
DRV - [2003-12-01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp01.sys -- (sfhlp01)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredibar.com/mb119?a=6R8nZjpwnH&i=26
IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\..\SearchScopes,DefaultScope = {EEE6C360-6118-11DC-9C72-001320C79847}
IE - HKU\S-1-5-21-1993962763-152049171-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.selectedEngine: "MyStart Search"
FF - prefs.js..browser.startup.homepage: "http://mystart.incredibar.com/mb119?a=6R8nZjpwnH&i=26"
FF - prefs.js..keyword.URL: "http://mystart.incredibar.com/mb119/?loc=IB_DS&a=6R8nZjpwnH&&i=26&search="
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-01-23 13:48:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins

[2012-01-23 13:48:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Extensions
[2012-04-09 10:51:06 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions
[2012-04-02 11:43:20 | 000,000,000 | ---D | M] (TheBflix) -- C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\Firefox\Profiles\1wiwehtr.default\extensions\info@bflix.info
[2012-01-23 13:48:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\1WIWEHTR.DEFAULT\EXTENSIONS\FFXTLBR@BABYLON.COM
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\1WIWEHTR.DEFAULT\EXTENSIONS\FFXTLBRA@SOFTONIC.COM
[2011-12-21 10:04:06 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011-12-21 07:04:32 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2011-12-21 07:04:32 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2011-12-21 07:04:32 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2011-12-21 07:04:32 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2011-12-21 07:04:32 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2011-12-21 07:04:32 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml

[color=#E56717]========== Chrome  ==========[/color]

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.77\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Szukaj w Google = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Battlefield Heroes = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gpdfjahpadlpfnfheehpddpcllihfkmm\5.0.127.0_0\
CHR - Extension: TheBflix = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hjakmojkcnhgipgkkbiempkfdndcnlah\5.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2001-10-26 19:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (TheBflix Class) - {54903300-ECF7-4DBD-B9DB-D1CF928328D4} - C:\Documents and Settings\All Users\Dane aplikacji\TheBflix\bhoclass.dll (Injector)
O4 - HKLM..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd File not found
O4 - HKLM..\Run: [PowerStrip] c:\Program Files\PowerStrip\PStrip.exe (EnTech Taiwan)
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [EXPLORER.EXE] C:\WINDOWS\explorer.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [Steam] C:\Program Files\Steam\Steam.exe (Valve Corporation)
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [wsctf.exe] wsctf.exe File not found
O4 - Startup: C:\Documents and Settings\Ja\Menu Start\Programy\Autostart\CNET TechTracker.lnk = C:\Documents and Settings\Ja\Dane aplikacji\CBS Interactive\CNET TechTracker\TechTracker.exe ()
O4 - Startup: C:\Documents and Settings\Ja\Menu Start\Programy\Autostart\Xfire.lnk = C:\Program Files\Xfire\xfire.exe (Xfire Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (InterTrust Technologies Corporation, Inc.)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B3A37743-8C66-4DBC-9024-C4099EE2BB69}: DhcpNameServer = 192.168.2.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\WINDOWS\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (EXPLORER.EXE) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011-06-09 07:39:57 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{458e5fc9-4774-11e1-9996-000b6a638ff6}\Shell\AutoRun\command - "" = G:\2.com
O33 - MountPoints2\{458e5fc9-4774-11e1-9996-000b6a638ff6}\Shell\open\Command - "" = G:\2.com
O33 - MountPoints2\{508a1d52-a58f-11e0-9623-000b6a638ff6}\Shell\AutoRun\command - "" = G:\2.com
O33 - MountPoints2\{508a1d52-a58f-11e0-9623-000b6a638ff6}\Shell\open\Command - "" = G:\2.com
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\AutoRun\command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\explore\Command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\open\Command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2012-04-08 18:27:54 | 000,000,000 | ---D | C] -- C:\UsbFix
[2012-04-08 18:13:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\HiJackThis
[2012-04-08 18:13:30 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2012-04-08 16:39:13 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2012-04-06 18:58:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Lucasarts
[2012-04-06 18:57:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\LucasArts
[2012-04-03 20:46:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\SzybszyPC
[2012-04-03 20:46:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Dane aplikacji\SzybszyPC
[2012-04-03 20:43:24 | 010,930,996 | ---- | C] (Szybszypc.com                                               ) -- C:\Documents and Settings\Ja\Moje dokumenty\SzybszyPC_XV5WWVpYVg==.exe
[2012-03-30 18:11:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\microsoft
[2012-03-30 18:10:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\SWTCWRH
[2012-03-30 18:10:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\LucasArts
[2012-03-30 18:09:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Games for Windows - LIVE
[2012-03-30 18:09:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xlive
[2012-03-30 18:09:29 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games for Windows - LIVE
[2012-03-30 18:08:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\NVIDIA Corporation
[2012-03-30 17:13:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Dane aplikacji\InstallShield Installation Information
[2012-03-27 13:52:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Moje dokumenty\cs
[2012-03-26 16:28:25 | 000,000,000 | ---D | C] -- C:\Program Files\CounterStrikev47
[2012-03-26 16:26:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\Downloaded Installations
[2012-03-26 14:30:34 | 261,308,720 | ---- | C] (Valve) -- C:\Documents and Settings\Ja\Pulpit\cs16full-v7.exe
[2012-03-26 13:07:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Premium
[2012-03-26 13:06:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\TheBflix
[2012-03-26 13:06:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TheBflix
[2012-03-26 13:05:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallMate
[2012-03-26 11:49:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\Counter-Strike
[2012-03-26 11:46:25 | 000,000,000 | ---D | C] -- C:\Program Files\Counter-Strike
[2012-03-19 15:33:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\PowerStrip
[2012-03-19 15:32:47 | 000,000,000 | ---D | C] -- C:\Program Files\PowerStrip
[2012-03-16 20:22:21 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012-03-16 19:19:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Komputerowa Gratka
[2012-03-16 19:18:59 | 000,000,000 | ---D | C] -- C:\Gratka
[2012-03-16 19:17:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Menu Start\Programy\Mysz Teodor Serminator
[2012-03-16 19:17:01 | 000,000,000 | ---D | C] -- C:\Program Files\Mysz Teodor Serminator
[2012-03-14 22:47:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Moje dokumenty\Nowy folder
[2012-03-14 15:06:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Pulpit\Nowy folder
[2012-03-11 20:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Ja\Dane aplikacji\Registry Mechanic
[2012-03-11 14:40:45 | 000,274,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll
[2012-03-11 14:40:45 | 000,017,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll.mui
[2012-03-11 13:04:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\PC Tools Registry Mechanic
[2012-03-11 13:04:39 | 001,101,824 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBox210.ocx
[2012-03-11 13:04:39 | 000,880,640 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBox10.ocx
[2012-03-11 13:04:39 | 000,212,992 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBoxVB12.ocx
[2012-03-11 13:04:38 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCOMCT2.OCX
[2012-03-11 13:04:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools
[2012-03-11 13:04:15 | 000,000,000 | ---D | C] -- C:\Program Files\PC Tools Registry Mechanic
[2012-03-11 13:03:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2012-03-10 18:29:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Silverlight
[2012-03-10 18:29:08 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2012-01-28 14:00:07 | 002,368,760 | ---- | C] (DownVision                                                  ) -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\setup.exe
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2012-04-09 10:52:08 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012-04-09 10:52:06 | 267,964,416 | -HS- | M] () -- C:\hiberfil.sys
[2012-04-08 21:41:06 | 000,002,437 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\HiJackThis.lnk
[2012-04-08 18:04:24 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2012-04-08 16:37:17 | 032,904,504 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\setuppol.exe
[2012-04-08 13:33:48 | 000,002,325 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike v47.lnk
[2012-04-07 14:33:06 | 005,842,177 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Dash Berlin - Till The Sky Falls Down Sub Español.mp3
[2012-04-07 01:10:35 | 003,306,969 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\John O'Callaghan feat. Sarah Howells - Find Yourself (Official Music Video) [High Quality].mp3
[2012-04-06 18:58:02 | 000,001,631 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\LEGO Star Wars 2 DEMO.lnk
[2012-04-06 17:58:32 | 000,000,430 | -H-- | M] () -- C:\WINDOWS\tasks\Norton Security Scan for Ja.job
[2012-04-03 20:46:59 | 000,002,102 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\SzybszyPC.lnk
[2012-04-03 20:45:35 | 010,930,996 | ---- | M] (Szybszypc.com                                               ) -- C:\Documents and Settings\Ja\Moje dokumenty\SzybszyPC_XV5WWVpYVg==.exe
[2012-03-30 18:10:25 | 000,001,750 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Republic Heroes.lnk
[2012-03-26 16:21:08 | 261,308,720 | ---- | M] (Valve) -- C:\Documents and Settings\Ja\Pulpit\cs16full-v7.exe
[2012-03-26 13:07:12 | 000,001,437 | ---- | M] () -- C:\user.js
[2012-03-26 11:49:15 | 000,001,603 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Counter-Strike 1.6.lnk
[2012-03-26 11:49:15 | 000,001,570 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Half-Life.lnk
[2012-03-26 11:35:11 | 000,002,539 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Microsoft Office Word 2003.lnk
[2012-03-25 11:24:16 | 000,490,284 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2012-03-25 11:24:16 | 000,083,660 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2012-03-25 11:24:15 | 000,432,356 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012-03-25 11:24:15 | 000,067,312 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012-03-20 11:09:47 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012-03-19 15:34:56 | 000,000,628 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\PowerStrip.lnk
[2012-03-19 00:42:03 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC00117.JPG
[2012-03-18 08:54:24 | 000,000,626 | ---- | M] () -- C:\WINDOWS\papatka.cfg
[2012-03-17 20:12:00 | 000,000,011 | ---- | M] () -- C:\WINDOWS\papatka_ustawienia.cfg
[2012-03-17 00:11:35 | 000,201,736 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012-03-16 19:19:06 | 000,001,550 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Angielska Czarownica.lnk
[2012-03-16 19:17:15 | 000,001,642 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Mysz Teodor Serminator.lnk
[2012-03-16 19:14:24 | 000,000,824 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Szalony Królik Demo.lnk
[2012-03-16 19:12:46 | 000,001,673 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Kolory i Kształty.lnk
[2012-03-15 11:54:44 | 000,001,870 | ---- | M] () -- C:\Documents and Settings\Ja\Pulpit\Continue SweetIM Installation.lnk
[2012-03-14 21:26:32 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05685.JPG
[2012-03-14 21:25:27 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05668.JPG
[2012-03-14 21:24:31 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05644.JPG
[2012-03-14 21:23:07 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05656.JPG
[2012-03-14 21:21:42 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\DSC05693 - Kopia.JPG
[2012-03-12 00:15:05 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\ZDR - Zyje dalej tak jak ft. Bonus RPK.mp3
[2012-03-12 00:10:27 | 005,715,625 | ---- | M] () -- C:\Documents and Settings\Ja\Moje dokumenty\Nie Dla Wszystkich - Nie zawsze cos za cos feat. Dobo TPS ZDR (www.djoles.pl).mp3
[2012-03-12 00:07:39 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Ja\Nie Dla Wszystkich - Nie zawsze cos za cos feat. Dobo TPS ZDR (www.djoles.pl).mp3
[2012-03-11 20:43:25 | 000,340,992 | ---- | M] () -- C:\Documents and Settings\Ja\Moje dokumenty\Michel Tel- - Balada Sertaneja.mp3
[2012-03-11 13:04:46 | 000,000,871 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\PC Tools Registry Mechanic.lnk
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2012-04-08 18:13:38 | 000,002,437 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\HiJackThis.lnk
[2012-04-08 16:34:12 | 032,904,504 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\setuppol.exe
[2012-04-07 13:53:29 | 005,842,177 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Dash Berlin - Till The Sky Falls Down Sub Español.mp3
[2012-04-07 00:32:12 | 003,306,969 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\John O'Callaghan feat. Sarah Howells - Find Yourself (Official Music Video) [High Quality].mp3
[2012-04-06 18:58:02 | 000,001,631 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\LEGO Star Wars 2 DEMO.lnk
[2012-04-03 20:46:59 | 000,002,102 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\SzybszyPC.lnk
[2012-04-03 20:46:58 | 000,002,108 | ---- | C] () -- C:\Documents and Settings\Ja\Menu Start\Programy\SzybszyPC.lnk
[2012-03-30 18:10:25 | 000,001,750 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Republic Heroes.lnk
[2012-03-26 16:31:05 | 000,001,677 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Counter-Strike v47.lnk
[2012-03-26 16:31:03 | 000,002,325 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike v47.lnk
[2012-03-26 11:49:15 | 000,001,603 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Counter-Strike 1.6.lnk
[2012-03-19 15:34:56 | 000,000,628 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\PowerStrip.lnk
[2012-03-19 00:42:03 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC00117.JPG
[2012-03-16 19:19:06 | 000,001,550 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Angielska Czarownica.lnk
[2012-03-16 19:17:15 | 000,001,642 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Mysz Teodor Serminator.lnk
[2012-03-16 19:14:24 | 000,000,824 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Szalony Królik Demo.lnk
[2012-03-16 19:12:46 | 000,001,673 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Kolory i Kształty.lnk
[2012-03-15 11:54:31 | 000,001,870 | ---- | C] () -- C:\Documents and Settings\Ja\Pulpit\Continue SweetIM Installation.lnk
[2012-03-14 21:26:32 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05685.JPG
[2012-03-14 21:25:27 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05668.JPG
[2012-03-14 21:24:31 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05644.JPG
[2012-03-14 21:23:07 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05656.JPG
[2012-03-14 21:21:42 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\DSC05693 - Kopia.JPG
[2012-03-12 00:15:05 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\ZDR - Zyje dalej tak jak ft. Bonus RPK.mp3
[2012-03-12 00:07:46 | 005,715,625 | ---- | C] () -- C:\Documents and Settings\Ja\Moje dokumenty\Nie Dla Wszystkich - Nie zawsze cos za cos feat. Dobo TPS ZDR (www.djoles.pl).mp3
[2012-03-12 00:07:39 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Ja\Nie Dla Wszystkich - Nie zawsze cos za cos feat. Dobo TPS ZDR (www.djoles.pl).mp3
[2012-03-11 14:39:42 | 000,340,992 | ---- | C] () -- C:\Documents and Settings\Ja\Moje dokumenty\Michel Tel- - Balada Sertaneja.mp3
[2012-03-11 13:04:46 | 000,000,871 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\PC Tools Registry Mechanic.lnk
[2012-03-11 13:04:38 | 000,037,336 | ---- | C] () -- C:\WINDOWS\System32\CleanMFT32.exe
[2012-01-28 13:59:27 | 000,460,624 | ---- | C] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\promo.exe
[2012-01-27 19:12:28 | 000,000,206 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2012-01-26 09:06:29 | 000,000,030 | ---- | C] () -- C:\WINDOWS\TextSpy.ini
[2011-11-06 13:34:44 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
[2011-09-01 14:45:25 | 000,516,096 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2011-08-30 14:54:52 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011-08-18 18:22:45 | 000,112,640 | ---- | C] () -- C:\WINDOWS\lsb_un20.exe
[2011-08-03 17:28:09 | 000,003,240 | ---- | C] () -- C:\WINDOWS\disney.ini
[2011-08-03 17:27:58 | 000,000,200 | ---- | C] () -- C:\WINDOWS\disneysy.ini
[2011-07-22 16:12:29 | 000,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2011-07-22 16:12:29 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Ja\Dane aplikacji\PnkBstrK.sys
[2011-07-22 16:12:12 | 000,107,832 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2011-07-22 16:12:11 | 000,066,872 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2011-07-22 16:12:10 | 002,250,024 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe
[2011-07-20 20:48:41 | 000,000,167 | ---- | C] () -- C:\WINDOWS\game.ini
[2011-07-17 15:09:46 | 000,000,027 | ---- | C] () -- C:\WINDOWS\Rally.INI
[2011-07-03 20:52:51 | 000,009,728 | ---- | C] () -- C:\Documents and Settings\Ja\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-06-09 09:24:01 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2011-06-09 09:23:03 | 000,201,736 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-06-09 08:08:25 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2011-06-09 07:56:08 | 000,000,092 | ---- | C] () -- C:\WINDOWS\CMISETUP.INI
[2011-06-09 07:56:08 | 000,000,026 | ---- | C] () -- C:\WINDOWS\CMCDPLAY.INI
[2011-06-09 07:56:07 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Wininit.ini
[2011-06-09 07:56:06 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.exe
[2011-06-09 07:56:06 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
[2011-06-09 07:56:05 | 000,266,240 | ---- | C] () -- C:\WINDOWS\CMIUninstall.exe
[2011-06-09 07:56:05 | 000,225,280 | ---- | C] () -- C:\WINDOWS\CmiRmRedundDir.exe
[2011-06-09 07:56:05 | 000,028,672 | ---- | C] () -- C:\WINDOWS\CMIRmDriver.dll
[2011-06-09 07:42:46 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2011-06-09 07:36:52 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat

[color=#E56717]========== LOP Check ==========[/color]

[2011-11-08 17:52:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Activision
[2011-07-03 18:34:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alawar Stargaze
[2011-12-04 10:58:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Buena Vista Games
[2012-01-25 20:50:01 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files
[2011-09-01 11:02:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Firefly Studios
[2012-01-23 13:06:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2012-03-26 13:08:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallMate
[2012-04-06 18:58:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Lucasarts
[2012-01-27 20:43:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData
[2012-04-06 22:07:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM
[2012-03-26 13:07:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Premium
[2012-03-30 18:11:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SWTCWRH
[2012-04-07 19:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2012-03-26 13:06:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TheBflix
[2012-03-01 19:55:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Wizard101(PL)
[2011-11-08 17:52:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Activision
[2012-01-25 18:56:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\CBS Interactive
[2011-08-03 17:33:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Disney Interactive Studios
[2012-03-04 18:29:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Gadu-Gadu 10
[2011-08-30 15:03:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Gearbox Software
[2011-08-30 15:25:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\InterTrust
[2012-01-24 11:50:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\OpenFM
[2012-03-11 20:21:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Registry Mechanic
[2012-04-03 20:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\SzybszyPC
[2012-03-01 20:06:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Ja\Dane aplikacji\Unity

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:D1B5B4F1

< End of report >
OTL Extras logfile created on: 2012-04-09 11:00:02 - Run 2
OTL by OldTimer - Version 3.2.39.2     Folder = C:\Documents and Settings\Ja\Moje dokumenty\Downloads
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

255,48 Mb Total Physical Memory | 116,24 Mb Available Physical Memory | 45,50% Memory free
618,02 Mb Paging File | 352,11 Mb Available in Paging File | 56,97% Paging File free
Paging file location(s): C:\pagefile.sys 384 768 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 105,96 Gb Free Space | 71,09% Space Free | Partition Type: NTFS
Drive D: | 74,55 Gb Total Space | 74,12 Gb Free Space | 99,42% Space Free | Partition Type: NTFS

Computer Name: A-C2BB6EFD50354 | User Name: Ja | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe shdocvw.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
InternetShortcut [open] -- rundll32.exe shdocvw.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[color=#E56717]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Dragon Age\bin_ship\daorigins.exe" = C:\Program Files\Dragon Age\bin_ship\daorigins.exe:*:Enabled:Dragon Age Początek Gra
"C:\Program Files\Dragon Age\DAOriginsLauncher.exe" = C:\Program Files\Dragon Age\DAOriginsLauncher.exe:*:Enabled:Dragon Age Początek Program startowy
"C:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe" = C:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe:*:Enabled:Dragon Age Początek Aktualizator
"C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe:*:Enabled:Far Cry 2
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe:*:Enabled:Far Cry 2 Updater
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe:*:Enabled:Editor
"C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe" = C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe:*:Enabled:Symulator Farmy 2011
"C:\Program Files\Symulator Farmy 2011\game.exe" = C:\Program Files\Symulator Farmy 2011\game.exe:*:Enabled:Symulator Farmy 2011
"C:\Program Files\Counter-Strike\hl.exe" = C:\Program Files\Counter-Strike\hl.exe:*:Enabled:Half-Life Launcher -- (Valve)
"C:\Program Files\Ubisoft\Brothers in Arms Road to Hill 30\System\bia.exe" = C:\Program Files\Ubisoft\Brothers in Arms Road to Hill 30\System\bia.exe:*:Disabled:Brothers In Arms: Road to Hill 30
"C:\Program Files\GameSpy Arcade\Aphex.exe" = C:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade -- (IGN Entertainment, Inc.)
"C:\Program Files\Activision Value\THPS2\THawk2.exe" = C:\Program Files\Activision Value\THPS2\THawk2.exe:*:Disabled:THawk2 -- ()
"C:\WINDOWS\system32\dplaysvr.exe" = C:\WINDOWS\system32\dplaysvr.exe:*:Disabled:Microsoft DirectPlay Helper -- (Microsoft Corporation)
"C:\Program Files\Gadu-Gadu 10\gg.exe" = C:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10 -- (GG Network S.A.)
"C:\Program Files\Steam\Steam.exe" = C:\Program Files\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
"C:\Documents and Settings\Ja\Moje dokumenty\Downloads\SweetImSetup.exe" = C:\Documents and Settings\Ja\Moje dokumenty\Downloads\SweetImSetup.exe:*:Enabled:SweetIM Installer -- (SweetIM Technologies, Ltd.)
"C:\Program Files\LucasArts\Republic Heroes\Republic Heroes.exe" = C:\Program Files\LucasArts\Republic Heroes\Republic Heroes.exe:*:Enabled:Republic Heroes -- (LucasArts)
"C:\Program Files\CounterStrikev47\cstrike.exe" = C:\Program Files\CounterStrikev47\cstrike.exe:*:Enabled:Counter-Strike Launcher -- (Non Steam Powered)


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01CBFCE7-95AD-40F3-BC63-C46EFB2FC9C4}" = Piraci z Karaibów - Na krańcu świata
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{066ED8C4-8C66-4824-ACF4-8F622E88E074}" = LEGO® Indiana Jones™ Demo
"{109D28DA-E555-4896-BF22-E312F764562C}_is1" = Lowrider Extreme
"{11AE6807-50D2-4F59-82B3-2C3E695E94C2}" = NVIDIA PhysX v8.05.26
"{150FEA49-4039-4458-B9D0-F19CC17229FE}" = LEGO Star Wars 2 DEMO
"{19B72AA9-985A-11D4-9C8A-00D0B75D1498}" = Colin McRae Rally 2.0
"{1D769438-429C-4309-931D-A643DF9C57D9}" = Rayman Raving Rabbids 2 Orange
"{2499550E-A9B4-4090-00A8-D2552258C58F}" = NHL® 2003 Demo
"{2C9BF728-DFE5-4A12-A34D-6059E42AE4C3}" = No One Lives Forever 2 (Official Demo)
"{31CB0D80-1866-462A-9455-88614410971F}" = Driver: Parallel Lines
"{32272C99-9A54-4195-95A2-1BECA55C252B}" = Max Payne 2
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{37476589-E48E-439E-A706-56189E2ED4C4}" = TheBflix
"{38171128-662E-4CE0-A2C8-23B3FCBA73B3}" = Conflict Global Storm
"{3CB71E1E-F887-4EED-A106-74DBFF5F0280}_is1" = CSI: Kryminalne zagadki Las Vegas – 3 wymiary zbrodni
"{4089461B-8B8C-47A6-A055-A7E5EFADA26F}_is1" = SzybszyPC 1.0
"{42C68F9E-2F77-4C6D-BFA8-DDC7567662FF}_is1" = Arctic Stud Poker Run v 2.4.1
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{46BF57D5-AFBE-4BB5-B392-B7CCBE35ACBA}" = Tennis Masters Series
"{4A064424-4EBD-4B70-B67D-71771F80769F}" = Clifford w mieście
"{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}" = Microsoft Games for Windows - LIVE
"{4B35F00C-E63D-40DC-9839-DF15A33EAC46}" = Grand Theft Auto Vice City
"{526DFE99-240B-403C-A671-EAC58B442EC5}" = Kung Fu Panda(TM) Demo
"{56780980-C930-4775-88B8-85301EDBEBE6}_is1" = Hard Truck Tycoon
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{6249A1C0-57B8-11D6-851F-00C0CA129740}" = Warrior Kings
"{6D4C79B1-2BFF-4AD2-AE11-90401F0B36F4}" = Iniemamocni
"{70073F81-7201-1F4B-8111-2686B8A60F85}" = Tomb Raider: Underworld
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86F5A73E-BFA0-4AA9-BF6C-4DC134D71D88}" = Uruchom Narnię
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{909F8EBC-EC7F-48FF-0085-475D818F0F31}" = Need for Speed Underground 2
"{92B94569-6683-4617-8C54-EB27A1B51B30}" = GTA III
"{9799BD05-5F89-484C-008E-F5059297FB6A}" = Harry Potter und der Feuerkelch™ Demo
"{985F7ACE-C7C7-432D-8FA1-022E7A61C9D5}_is1" = Crazy Cooking
"{9CB3F842-DAF1-414A-B65B-AE8A7EDE4985}_is1" = TubeMaster++ 1.5
"{9F8ECAEB-C0A6-488D-BB6F-81F393F06D57}" = Moorhuhn Kart XXL (PL)
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A66C1C60-A589-4210-87D7-3F758EFE51B2}" = Ogniem i Mieczem - Dzikie Pola
"{AC76BA86-7AD7-1045-7B44-AA1000000001}" = Adobe Reader X (10.1.2) - Polish
"{AEC81925-9C76-4707-84A9-40696C613ED3}" = Dragon Age: Początek
"{B1D681C5-EBCB-4A43-AC34-7639C2D04977}_is1" = Nitro Racers 1.0 PL
"{B3144CB5-3532-405C-B9B7-0484D250A94B}" = Just Cause 1.00.0000
"{BC1664AB-77A4-425B-9739-4E68C9EF1D3C}" = Brothers in Arms Road to Hill 30
"{BF4EFBD3-57F1-4C4F-9484-6FCC18F735A7}" = Max Payne
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D7DE93E1-A0B3-40FE-907E-F89BB0A2AA31}_is1" = Pearl Harbor II Drugie Uderzenie
"{DEFD1031-3A80-4259-85BC-E66B36366A19}" = Air-Rush
"{E24DCAFE-AAB7-40E4-9FB1-2650A71409AE}" = Król Lew: Powrót do Lwiej Ziemi
"{E270A0FD-2DC0-4BFA-8EEE-2AB8B963F0F5}" = Max Payne
"{E33E1321-E74C-499D-B443-2B1AD3A6C4C9}" = CounterStrikev47
"{F27F8DFA-E714-46DE-927B-4A22EE507B75}" = Baldur's Gate II Gold
"{F2835483-37F2-4123-B4FE-0E77D58447F2}" = Far Cry 2
"{FC1C2427-5954-451C-9ED8-A92D48ED7E07}" = CSI-Hard Evidence Demo
"{FD052FB9-FE90-4438-B355-15EDC89D8FB1}" = Microsoft Games for Windows - LIVE Redistributable
"Activision_THPS2UninstallKey" = Tony Hawk's Pro Skater 2
"Adobe Acrobat 5.0" = Adobe Acrobat 5.0 CE
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"ATI Display Driver" = ATI Display Driver
"Attack on Pearl Harbor Demo" = Attack on Pearl Harbor Demo
"ATV GP_is1" = ATV GP
"AuranTS2009_is1" = Trainz Simulator 2009: World Builder Edition
"Avencast™ - Rise of The Mage_is1" = Avencast™
"Ballistics" = Ballistics
"Barrow Hill_is1" = Barrow Hill
"Black out Saigon_is1" = Black out Saigon 1.4
"Bus Driver_is1" = Bus Driver
"Casino Master" = Remove Casino Master
"CivCityRome" = CivCity Rome
"Clifford - Zabawy z muzyką" = Clifford - Zabawy z muzyką
"Clifford Adventure" = Clifford Thinking Adventures
"Clifford na wyspie" = Clifford na wyspie
"C-Media Audio" = C-Media 3D Audio
"Counter-Strike 1.6 v32" = Counter-Strike 1.6 v32
"Crash Time III/PL-Polish_is1" = Crash Time III
"Dracula Twins" = Dracula Twins
"Dziobas Rar Player_is1" = Dziobas Rar Player 0.009.52
"Euro Truck Simulator" = Euro Truck Simulator 1.00
"Euro Truck Simulator_is1" = Euro Truck Simulator
"ExMachina Arcade_is1" = ExMachina Arcade
"FarmingSimulator2011PL_is1" = Symulator Farmy 2011
"FruttiLand_demo_is1" = FruttiLand_demo 1.0
"Gadu-Gadu 10" = Gadu-Gadu 10
"GameSpy Arcade" = GameSpy Arcade
"gratkaBD" = Komputerowa Gratka - Budujemy Nowy Dom
"gratkaCA" = Komputerowa Gratka - Angielska Czarownica
"GROM" = GROM
"Hitman 2 Silent Assassin_is1" = Hitman 2 Silent Assassin wersja 1.01
"InstallShield_{066ED8C4-8C66-4824-ACF4-8F622E88E074}" = LEGO® Indiana Jones™ Demo
"InstallShield_{150FEA49-4039-4458-B9D0-F19CC17229FE}" = LEGO Star Wars 2 DEMO
"InstallShield_{526DFE99-240B-403C-A671-EAC58B442EC5}" = Kung Fu Panda(TM) Demo
"InstallShield_{DEFD1031-3A80-4259-85BC-E66B36366A19}" = Air-Rush
"Intelli-studio" = SAMSUNG Intelli-studio
"Kolory i Kształty_is1" = Kolory i Kształty
"Micro Madness_is1" = Micro Madness
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox 9.0.1 (x86 pl)" = Mozilla Firefox 9.0.1 (x86 pl)
"Mysz Teodor Serminator 2.0n" = Mysz Teodor Serminator 2.0n
"NSS" = Norton Security Scan
"Offroad" = Offroad
"OpenAL" = OpenAL
"Paintball eXtreme DEMO_is1" = Paintball eXtreme DEMO
"PowerStrip 3 (remove only)" = PowerStrip 3 (remove only)
"Project IGI" = Project IGI
"PunkBusterSvc" = PunkBuster Services
"QuickTime" = QuickTime
"Razem w szkole klasa 3" = Razem w szkole klasa 3
"Registry Mechanic_is1" = PC Tools Registry Mechanic 11.0
"Silent Hunter III_is1" = Silent Hunter III
"Singles2" = Singles2
"Ski Alpin 2006 (Demo)_0001" = Ski Alpin 2006 (Demo)
"softonic" = Softonic toolbar  on IE and Chrome
"SPEEDBUSTERS" = SPEEDBUSTERS
"SPIDI LICZY" = SPIDI LICZY
"Szalony Królik Demo_is1" = Szalony Królik Demo 1.0
"Tunele Stalina 2_is1" = Tunele Stalina 2
"UK Truck Simulator" = UK Truck Simulator 1.06
"Usbfix" = UsbFix By El Desaparecido
"WIC" = Windows Imaging Component
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"WinPcapInst" = WinPcap 4.0.2
"WinRAR archiver" = Archiwizator WinRAR
"WMFDist11" = Windows Media Format 11 runtime
"wwii_pl" = Rajd na Berlin
"Xfire" = Xfire (remove only)

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{5612C844-55BC-4B77-82C2-A2E28962418E}" = Republic Heroes
"CNET TechTracker" = CNET TechTracker
"FoxTab FLV Player" = FoxTab FLV Player
"Google Chrome" = Google Chrome
"UnityWebPlayer" = Unity Web Player
"Wizard101(PL)_is1" = Wizard101(PL)

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2012-02-24 09:53:23 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca DZIOBAS.exe, wersja 0.0.9.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-02-26 11:39:34 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca hl.exe, wersja 1.1.1.1, moduł zawieszenia hungapp,
wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-02-26 11:39:34 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca hl.exe, wersja 1.1.1.1, moduł zawieszenia hungapp,
wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-02-26 11:39:35 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca hl.exe, wersja 1.1.1.1, moduł zawieszenia hungapp,
wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-02-28 13:39:07 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca gg.exe, wersja 10.5.2.13164, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-05 09:39:53 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca gg.exe, wersja 10.5.2.13164, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-05 09:39:53 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca gg.exe, wersja 10.5.2.13164, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-05 14:49:55 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca gg.exe, wersja 10.5.2.13164, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-06 05:28:28 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca chrome.exe, wersja 16.0.912.77, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2012-03-06 05:28:31 | Computer Name = A-C2BB6EFD50354 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca chrome.exe, wersja 16.0.912.77, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

[ System Events ]
Error - 2012-03-25 08:31:34 | Computer Name = A-C2BB6EFD50354 | Source = Dhcp | ID = 1008
Description = Komputer nie może zainicjować interfejsu sieciowego dołączonego  do
systemu. Kod błędu: %%1450.

Error - 2012-03-25 08:32:02 | Computer Name = A-C2BB6EFD50354 | Source = Dhcp | ID = 1008
Description = Komputer nie może zainicjować interfejsu sieciowego dołączonego  do
systemu. Kod błędu: %%1450.

Error - 2012-03-28 06:37:31 | Computer Name = A-C2BB6EFD50354 | Source = Disk | ID = 262151
Description = W urządzeniu \Device\Harddisk2\D wystąpił zły blok.

Error - 2012-04-08 11:35:04 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7009
Description = Limit czasu (30000 milisekund) podczas oczekiwania na połączenie się
z usługą avast! Web Scanner.

Error - 2012-04-08 11:35:04 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi avast! Web Scanner z powodu następującego
błędu:   %%1053

Error - 2012-04-08 11:35:52 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7009
Description = Limit czasu (30000 milisekund) podczas oczekiwania na połączenie się
z usługą avast! Web Scanner.

Error - 2012-04-08 11:35:53 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi avast! Web Scanner z powodu następującego
błędu:   %%1053

Error - 2012-04-08 11:40:40 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7034
Description = Usługa avast! Web Scanner niespodziewanie zakończyła pracę. Wystąpiło
to razy: 1.

Error - 2012-04-08 11:53:38 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7009
Description = Limit czasu (30000 milisekund) podczas oczekiwania na połączenie się
z usługą avast! Web Scanner.

Error - 2012-04-08 11:53:38 | Computer Name = A-C2BB6EFD50354 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi avast! Web Scanner z powodu następującego
błędu:   %%1053


< End of report >




Folder Deleted : C:\Documents and Settings\All Users\Dane aplikacji\Babylon
Folder Deleted : C:\Documents and Settings\Ja\Dane aplikacji\Babylon
Folder Deleted : C:\Documents and Settings\Ja\Dane aplikacji\BabylonToolbar
Folder Deleted : C:\Documents and Settings\Ja\Dane aplikacji\Softonic
Folder Deleted : C:\Program Files\BabylonToolbar
Folder Deleted : C:\Program Files\Incredibar.com
Folder Deleted : C:\Program Files\Softonic
Folder Deleted : C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\FireFox\Profiles\1wiwehtr.default\extensions\ffxtlbr@babylon.com
Folder Deleted : C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\FireFox\Profiles\1wiwehtr.default\extensions\ffxtlbra@softonic.com
File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
File Deleted : C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\FireFox\Profiles\1wiwehtr.default\searchplugins\MyStart Search.xml
File Deleted : C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\FireFox\Profiles\1wiwehtr.default\searchplugins\softonic.xml
File Deleted : C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\FireFox\Profiles\1wiwehtr.default\searchplugins\SweetIM Search.xml

***** [H. Navipromo] *****


***** [Registry] *****

Key Deleted : HKCU\Software\BabylonToolbar
Key Deleted : HKCU\Software\Incredibar.com
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\SweetIm
Key Deleted : HKLM\SOFTWARE\Babylon
Key Deleted : HKLM\SOFTWARE\BabylonToolbar
Key Deleted : HKLM\SOFTWARE\Incredibar.com
Key Deleted : HKLM\SOFTWARE\Software
Key Deleted : HKLM\SOFTWARE\Classes\b
Key Deleted : HKLM\SOFTWARE\Classes\Babylon.dskBnd
Key Deleted : HKLM\SOFTWARE\Classes\Babylon.dskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\bbylnApp.appCore
Key Deleted : HKLM\SOFTWARE\Classes\bbylnApp.appCore.1
Key Deleted : HKLM\SOFTWARE\Classes\escort.escrtBtn.1
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Deleted : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc
Key Deleted : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\Softonic.dskBnd
Key Deleted : HKLM\SOFTWARE\Classes\Softonic.dskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\Softonic.SoftonicHlpr
Key Deleted : HKLM\SOFTWARE\Classes\Softonic.SoftonicHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\SoftonicApp.appCore
Key Deleted : HKLM\SOFTWARE\Classes\SoftonicApp.appCore.1
Key Deleted : HKLM\SOFTWARE\Classes\srv.SoftonicSrvc
Key Deleted : HKLM\SOFTWARE\Classes\srv.SoftonicSrvc.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B15F118E-AF21-45E8-A809-29FDD7362565}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{291BCCC1-6890-484A-89D3-318C928DAC1B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44B50C01-4993-48E2-ADEE-D812BAE2E9A2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A3E2F089-DDBB-4CBF-B06C-5D44DA316ED3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5679AB0-C59E-49E7-83C4-5289F844A6E0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B8276A94-891D-453C-9FF3-715C042A2575}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CA0167C2-6295-41B8-9BDA-704B2F5E4CD9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E87806B5-E908-45FD-AF5E-957D83E58E68}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F9639E4A-801B-4843-AEE3-03D9DA199E77}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FFB9ADCB-8C79-4C29-81D3-74D46A93D370}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{255E0B2A-D747-4EEF-B7CE-159D73A3656D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11D9E165-B8C1-4734-A56C-BC4FCACA966B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B15F118E-AF21-45E8-A809-29FDD7362565}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CF034EA-7B46-48D3-8895-8A14B32AE445}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E87806B5-E908-45FD-AF5E-957D83E58E68}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{5018CFD2-804D-4C99-9F81-25EAEA2769DE}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{98889811-442D-49DD-99D7-DC866BE87DBC}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{F9639E4A-801B-4843-AEE3-03D9DA199E77}]

***** [Internet Browsers] *****

-\\ Internet Explorer v6.0.2900.2180

Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://search.softonic.com/MON00084/tb_v1?SearchSource=15&cc= --> hxxp://www.google.fr

-\\ Mozilla Firefox v9.0.1 (pl)

Profile name : default
File : C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\FireFox\Profiles\1wiwehtr.default\prefs.js

C:\Documents and Settings\Ja\Dane aplikacji\Mozilla\FireFox\Profiles\1wiwehtr.default\user.js ... Deleted !

Deleted : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
Deleted : user_pref("browser.search.order.1", "Search the web (Babylon)");
Deleted : user_pref("extensions.3499ur3ur4hfsudfs.scode", "\n(function(){var bdomains={\"search.babylon.com\":[...]
Deleted : user_pref("extensions.BabylonToolbar.admin", false);
Deleted : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Deleted : user_pref("extensions.BabylonToolbar.babExt", "");
Deleted : user_pref("extensions.BabylonToolbar.babTrack", "affID=100482");
Deleted : user_pref("extensions.BabylonToolbar.bbDpng", 6);
Deleted : user_pref("extensions.BabylonToolbar.dfltSrch", true);
Deleted : user_pref("extensions.BabylonToolbar.hmpg", true);
Deleted : user_pref("extensions.BabylonToolbar.id", "a87e4f9c000000000000000b6a638ff6");
Deleted : user_pref("extensions.BabylonToolbar.instlDay", "15367");
Deleted : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Deleted : user_pref("extensions.BabylonToolbar.keyWordUrl", "hxxp://search.babylon.com/?AF=100482&babsrc=adbar[...]
Deleted : user_pref("extensions.BabylonToolbar.lastDP", 6);
Deleted : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.1711:00:35");
Deleted : user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "9.0");
Deleted : user_pref("extensions.BabylonToolbar.newTab", false);
Deleted : user_pref("extensions.BabylonToolbar.newTabUrl", "hxxp://search.babylon.com/?AF=100482&babsrc=NT_ss&[...]
Deleted : user_pref("extensions.BabylonToolbar.noFFXTlbr", false);
Deleted : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Deleted : user_pref("extensions.BabylonToolbar.propectorlck", 69604107);
Deleted : user_pref("extensions.BabylonToolbar.prtkDS", 1);
Deleted : user_pref("extensions.BabylonToolbar.prtkHmpg", 1);
Deleted : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Deleted : user_pref("extensions.BabylonToolbar.ptch_0717", true);
Deleted : user_pref("extensions.BabylonToolbar.smplGrp", "none");
Deleted : user_pref("extensions.BabylonToolbar.srcExt", "ss");
Deleted : user_pref("extensions.BabylonToolbar.tlbrId", "tb9");
Deleted : user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17");
Deleted : user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.1711:00:35");
Deleted : user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17");
Deleted : user_pref("extensions.BabylonToolbar_i.aflt", "babsst");
Deleted : user_pref("extensions.BabylonToolbar_i.babExt", "");
Deleted : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=100482");
Deleted : user_pref("extensions.BabylonToolbar_i.hardId", "a87e4f9c000000000000000b6a638ff6");
Deleted : user_pref("extensions.BabylonToolbar_i.id", "a87e4f9c000000000000000b6a638ff6");
Deleted : user_pref("extensions.BabylonToolbar_i.instlDay", "15367");
Deleted : user_pref("extensions.BabylonToolbar_i.instlRef", "sst");
Deleted : user_pref("extensions.BabylonToolbar_i.newTab", false);
Deleted : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");
Deleted : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");
Deleted : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Deleted : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
Deleted : user_pref("extensions.BabylonToolbar_i.tlbrId", "tb9");
Deleted : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");
Deleted : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1711:00:35");
Deleted : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");
Deleted : user_pref("extensions.enabledAddons", "ffxtlbr@babylon.com:1.1.9,ffxtlbra@softonic.com:1.5.0,info@bf[...]
Deleted : user_pref("extensions.softonic.admin", false);
Deleted : user_pref("extensions.softonic.aflt", "SD");
Deleted : user_pref("extensions.softonic.dfltLng", "PL");
Deleted : user_pref("extensions.softonic.dfltSrch", true);
Deleted : user_pref("extensions.softonic.excTlbr", false);
Deleted : user_pref("extensions.softonic.hmpg", true);
Deleted : user_pref("extensions.softonic.id", "a87e4f9c000000000000000b6a638ff6");
Deleted : user_pref("extensions.softonic.instlDay", "15394");
Deleted : user_pref("extensions.softonic.instlRef", "MON00084");
Deleted : user_pref("extensions.softonic.keyWordUrl", "hxxp://search.softonic.com/MON00084/tb_v1?SearchSource=[...]
Deleted : user_pref("extensions.softonic.lastVrsnTs", "1.5.11.514:47:38");
Deleted : user_pref("extensions.softonic.newTab", true);
Deleted : user_pref("extensions.softonic.newTabUrl", "hxxp://search.softonic.com/MON00084/tb_v1?SearchSource=1[...]
Deleted : user_pref("extensions.softonic.noFFXTlbr", false);
Deleted : user_pref("extensions.softonic.prdct", "softonic");
Deleted : user_pref("extensions.softonic.prtnrId", "softonic");
Deleted : user_pref("extensions.softonic.smplGrp", "eng7");
Deleted : user_pref("extensions.softonic.srchPrvdr", "Search the web (Softonic)");
Deleted : user_pref("extensions.softonic.tlbrId", "pl12JANdefault");
Deleted : user_pref("extensions.softonic.tlbrSrchUrl", "hxxp://search.softonic.com/MON00084/tb_v1?SearchSource[...]
Deleted : user_pref("extensions.softonic.vrsn", "1.5.11.5");
Deleted : user_pref("extensions.softonic.vrsnTs", "1.5.11.514:47:38");
Deleted : user_pref("extensions.softonic.vrsni", "1.5.11.5");
Deleted : user_pref("extensions.softonic_i.aflt", "SD");
Deleted : user_pref("extensions.softonic_i.dfltLng", "pl");
Deleted : user_pref("extensions.softonic_i.dfltSrch", true);
Deleted : user_pref("extensions.softonic_i.dnsErr", true);
Deleted : user_pref("extensions.softonic_i.excTlbr", false);
Deleted : user_pref("extensions.softonic_i.hmpg", true);
Deleted : user_pref("extensions.softonic_i.hmpgUrl", "hxxp://search.softonic.com/MON00084/tb_v1?SearchSource=1[...]
Deleted : user_pref("extensions.softonic_i.id", "a87e4f9c000000000000000b6a638ff6");
Deleted : user_pref("extensions.softonic_i.instlDay", "15394");
Deleted : user_pref("extensions.softonic_i.instlRef", "MON00084");
Deleted : user_pref("extensions.softonic_i.keyWordUrl", "hxxp://search.softonic.com/MON00084/tb_v1?SearchSourc[...]
Deleted : user_pref("extensions.softonic_i.newTab", true);
Deleted : user_pref("extensions.softonic_i.newTabUrl", "hxxp://search.softonic.com/MON00084/tb_v1?SearchSource[...]
Deleted : user_pref("extensions.softonic_i.prdct", "softonic");
Deleted : user_pref("extensions.softonic_i.prtnrId", "softonic");
Deleted : user_pref("extensions.softonic_i.smplGrp", "eng7");
Deleted : user_pref("extensions.softonic_i.srchPrvdr", "Search the web (Softonic)");
Deleted : user_pref("extensions.softonic_i.tlbrId", "pl12JANdefault");
Deleted : user_pref("extensions.softonic_i.tlbrSrchUrl", "hxxp://search.softonic.com/MON00084/tb_v1?SearchSour[...]
Deleted : user_pref("extensions.softonic_i.vrsn", "1.5.11.5");
Deleted : user_pref("extensions.softonic_i.vrsnTs", "1.5.11.514:47:38");
Deleted : user_pref("extensions.softonic_i.vrsni", "1.5.11.5");
Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaulturl", "");
Deleted : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "Search the web (Babylon)");
Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "hxxp://search.babylon.com/?AF=100482[...]
Deleted : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com");

*************************

AdwCleaner[S1].txt - [17950 octets] - [09/04/2012 10:50:58]

########## EOF - C:\AdwCleaner[S1].txt - [18079 octets] ##########
[/code]
Awatar użytkownika
Nintendo
~user
 
Posty: 185
Dołączenie: 03 Sty 2007, 22:19



Komp strasznie zamula i internet

Postprzez wojtas 09 Kwi 2012, 14:11

a gdzie log z USBFix? gdzie raport z usuwania ?

znasz aplikacje TheBflix ?

wojtas napisał(a):Jakiego używasz antywirusa ? bo widzę w logu że jest Norton ? czy on chroni Twego kompa ?



Uruchom OTL i w sekcji własne opcje skanowania / skrypt wklej:
:OTL
FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
FF - prefs.js..browser.search.selectedEngine: "MyStart Search"
FF - prefs.js..browser.startup.homepage: "http://mystart.incredibar.com/mb119?a=6R8nZjpwnH&i=26"
FF - prefs.js..keyword.URL: "http://mystart.incredibar.com/mb119/?loc=IB_DS&a=6R8nZjpwnH&&i=26&search="
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\1WIWEHTR.DEFAULT\EXTENSIONS\FFXTLBR@BABYLON.COM
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\1WIWEHTR.DEFAULT\EXTENSIONS\FFXTLBRA@SOFTONIC.COM
O4 - HKLM..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd File not found
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [EXPLORER.EXE] C:\WINDOWS\explorer.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1993962763-152049171-839522115-1003..\Run: [wsctf.exe] wsctf.exe File not found
O20 - HKLM Winlogon: UserInit - (EXPLORER.EXE) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O33 - MountPoints2\{458e5fc9-4774-11e1-9996-000b6a638ff6}\Shell\AutoRun\command - "" = G:\2.com
O33 - MountPoints2\{458e5fc9-4774-11e1-9996-000b6a638ff6}\Shell\open\Command - "" = G:\2.com
O33 - MountPoints2\{508a1d52-a58f-11e0-9623-000b6a638ff6}\Shell\AutoRun\command - "" = G:\2.com
O33 - MountPoints2\{508a1d52-a58f-11e0-9623-000b6a638ff6}\Shell\open\Command - "" = G:\2.com
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\AutoRun\command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\explore\Command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{f73c5dea-2a53-11e1-9910-000b6a638ff6}\Shell\open\Command - "" = C:\WINDOWS\explorer.exe -- [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation)
[2012-04-03 20:43:24 | 010,930,996 | ---- | C] (Szybszypc.com ) -- C:\Documents and Settings\Ja\Moje dokumenty\SzybszyPC_XV5WWVpYVg==.exe
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:D1B5B4F1

:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EXPLORER.EXE"=-
"wsctf.exe"=-
[HKEY_USERS\S-1-5-21-1993962763-152049171-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EXPLORER.EXE"=-

:Commands
[emptytemp]




Kliknij wykonaj skrypt. I potwierdź reset komputera .

Następnie uruchamiasz OTL z opcją skanuj. Pokazujesz nowy log OTL.txt oraz raport z czyszczenia (zawartość notatnika, która otworzy się po restarcie). oraz log z USBFixa
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 21 gości