• Ogłoszenie:

Reklamy w nowym oknie przeglądarki

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Reklamy w nowym oknie przeglądarki

Postprzez Aeneus 18 Lip 2013, 23:26

reklama
Cześć,
średnio co godzinę (jest to czas na oko), podczas zwykłego przeglądania Internetu, niechciana reklama wyskakuje mi w nowym oknie Chrome. Reklamy są różnego rodzaju- tzn. dotyczą różnych produktów. Przeskanowałem swoim AVG. Serdecznie proszę o wskazówki.

Logi:
GMER
Kod: Zaznacz wszystko
GMER 2.1.19163 - http://www.gmer.net
Rootkit scan 2013-07-18 22:24:48
Windows 5.1.2600 Dodatek Service Pack 2 \Device\Harddisk0\DR0 -> \Device\Scsi\nvgts1Port2Path1Target1Lun0 WDC_WD25 rev.10.0 232,89GB
Running: blm35o5t.exe; Driver: C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\kxldipob.sys


---- Registry - GMER 2.1 ----

Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04                                     
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0                                  1
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew                               0x0A 0x65 0x5C 0xA5 ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC                                     
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0                                  C:\Program Files\DAEMON Tools Lite\
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                                  2
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                               0x14 0x5F 0x8A 0x06 ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001                           
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0                         0x20 0x01 0x00 0x00 ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12                      0x5C 0x46 0xDF 0xCC ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0                       
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12                 0xE6 0x3E 0xC1 0xFB ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1                       
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1@hdf12                 0x77 0x90 0xFE 0x89 ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4                                     
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0                                  0
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh                               0xD4 0x20 0x18 0xAC ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001                           
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh                      0xEF 0x4F 0x9B 0xC1 ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40                     
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh                0xB2 0xAB 0x19 0x4C ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41                     
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh                0xA2 0x62 0xBC 0x8D ...
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf42                     
Reg  HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf42@khjeh                0x29 0xFF 0x3D 0x15 ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)                 
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0                                      1
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew                                   0x0A 0x65 0x5C 0xA5 ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)                 
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0                                      C:\Program Files\DAEMON Tools Lite\
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                                      2
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                                   0x14 0x5F 0x8A 0x06 ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)       
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0                             0x20 0x01 0x00 0x00 ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12                          0x5C 0x46 0xDF 0xCC ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)   
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12                     0xE6 0x3E 0xC1 0xFB ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1 (not active ControlSet)   
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1@hdf12                     0x77 0x90 0xFE 0x89 ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet)                 
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0                                      0
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh                                   0xD4 0x20 0x18 0xAC ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001 (not active ControlSet)       
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh                          0xEF 0x4F 0x9B 0xC1 ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40 (not active ControlSet) 
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh                    0xB2 0xAB 0x19 0x4C ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41 (not active ControlSet) 
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh                    0xA2 0x62 0xBC 0x8D ...
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf42 (not active ControlSet) 
Reg  HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf42@khjeh                    0x29 0xFF 0x3D 0x15 ...

---- EOF - GMER 2.1 ----


OLT.tXt
Kod: Zaznacz wszystko
OTL logfile created on: 2013-07-18 22:45:35 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = D:\Piotrek\Programy i Tapety\OLT
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,50 Gb Total Physical Memory | 2,77 Gb Available Physical Memory | 79,16% Memory free
4,84 Gb Paging File | 4,14 Gb Available in Paging File | 85,47% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,82 Gb Total Space | 6,78 Gb Free Space | 13,88% Space Free | Partition Type: FAT32
Drive D: | 184,05 Gb Total Space | 10,83 Gb Free Space | 5,89% Space Free | Partition Type: NTFS

Computer Name: STACJONARNY | User Name: Administrator | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2013-07-18 22:44:08 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Piotrek\Programy i Tapety\OLT\OTL.exe
PRC - [2013-07-12 20:49:48 | 000,846,288 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
PRC - [2013-07-09 16:31:24 | 002,544,640 | ---- | M] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Lollipop\lollipop_07091431.exe
PRC - [2012-12-11 03:52:44 | 003,147,384 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2013\avgui.exe
PRC - [2012-11-15 23:34:30 | 005,814,904 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2013\avgidsagent.exe
PRC - [2012-10-30 04:59:56 | 000,726,648 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2013\avgrsx.exe
PRC - [2012-10-22 13:05:08 | 000,196,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2013\avgwdsvc.exe
PRC - [2012-10-22 13:04:32 | 001,116,792 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2013\avgnsx.exe
PRC - [2012-10-22 13:03:46 | 000,440,440 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2013\avgcsrvx.exe
PRC - [2012-10-12 20:33:36 | 000,959,944 | ---- | M] () -- C:\Program Files\AVG Secure Search\vprot.exe
PRC - [2012-10-12 20:33:36 | 000,711,112 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.0.0\ToolbarUpdater.exe
PRC - [2010-06-04 13:22:42 | 000,618,496 | ---- | M] () -- C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
PRC - [2010-05-18 08:46:02 | 001,989,120 | ---- | M] () -- C:\WINDOWS\twain_32\Samsung\SCX3200\Scan2Pc.exe
PRC - [2010-03-24 15:42:10 | 000,599,328 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
PRC - [2009-10-24 03:18:54 | 000,360,224 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
PRC - [2009-10-09 15:18:14 | 000,238,952 | ---- | M] (Teruten) -- C:\WINDOWS\system32\FsUsbExService.Exe
PRC - [2009-10-09 15:17:58 | 000,107,864 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
PRC - [2009-06-05 17:16:20 | 000,438,381 | ---- | M] (Creative Technology Ltd.) -- C:\Program Files\Creative\Creative Live! Cam\Live! Central\CTLVCentral.exe
PRC - [2009-05-12 15:43:36 | 002,181,672 | ---- | M] (Gainward Co.) -- C:\Program Files\EXPERTool\TBPANEL.exe
PRC - [2008-08-07 03:00:00 | 000,028,672 | R--- | M] (Creative Technology Ltd.) -- C:\WINDOWS\V0415Mon.exe
PRC - [2008-04-07 09:17:30 | 000,430,592 | ---- | M] (Nokia.) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2008-03-10 09:58:18 | 000,130,560 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2008-02-22 09:11:02 | 000,120,320 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2007-12-10 10:12:22 | 000,695,808 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe
PRC - [2007-06-13 15:23:50 | 001,034,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007-01-30 12:02:00 | 000,303,104 | ---- | M] (FUJIFILM Corporation) -- C:\Program Files\FinePixViewer\QuickDCF2.exe
PRC - [2007-01-25 03:52:26 | 000,065,536 | ---- | M] () -- C:\Program Files\Common Files\NMSAccessU.exe
PRC - [2002-07-02 17:56:00 | 000,024,576 | ---- | M] (Creative Technology Ltd) -- C:\WINDOWS\system32\CTHELPER.EXE
PRC - [2000-03-08 15:02:40 | 000,354,816 | ---- | M] (Young Digital Poland) -- C:\Program Files\YDP\YdpDict\Watch.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2013-07-12 20:49:46 | 000,396,240 | ---- | M] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\28.0.1500.72\ppgooglenaclpluginchrome.dll
MOD - [2013-07-12 20:49:44 | 004,052,944 | ---- | M] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\28.0.1500.72\pdf.dll
MOD - [2013-07-12 20:48:50 | 001,597,392 | ---- | M] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\28.0.1500.72\ffmpegsumo.dll
MOD - [2013-07-09 16:31:24 | 002,544,640 | ---- | M] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Lollipop\lollipop_07091431.exe
MOD - [2012-10-12 20:33:36 | 000,959,944 | ---- | M] () -- C:\Program Files\AVG Secure Search\vprot.exe
MOD - [2012-10-12 20:33:36 | 000,711,112 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.0.0\ToolbarUpdater.exe
MOD - [2012-10-12 20:33:36 | 000,566,728 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\DNTInstaller\13.0.0\avgdttbx.dll
MOD - [2012-10-12 20:33:36 | 000,134,600 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\13.0.0\SiteSafety.dll
MOD - [2010-06-04 13:22:42 | 000,618,496 | ---- | M] () -- C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
MOD - [2010-05-18 08:46:02 | 001,989,120 | ---- | M] () -- C:\WINDOWS\twain_32\Samsung\SCX3200\Scan2Pc.exe
MOD - [2009-11-19 14:10:26 | 001,384,520 | ---- | M] () -- C:\WINDOWS\twain_32\Samsung\SCX3200\SSOle.dll
MOD - [2009-11-19 11:18:00 | 000,026,624 | ---- | M] () -- C:\WINDOWS\system32\ssb3ml3.dll
MOD - [2009-06-10 08:29:34 | 000,466,944 | ---- | M] () -- C:\WINDOWS\system32\nvshell.dll
MOD - [2009-02-27 20:04:20 | 000,311,296 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.POL
MOD - [2008-03-27 11:43:20 | 000,032,768 | ---- | M] () -- C:\Program Files\LG Soft India\forteManager\bin\ContextMenu.dll
MOD - [2008-03-10 09:58:18 | 000,130,560 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
MOD - [2008-02-22 09:11:02 | 000,120,320 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
MOD - [2007-12-10 10:12:22 | 000,695,808 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe
MOD - [2007-09-20 18:34:58 | 000,129,024 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2007-08-27 12:35:54 | 001,581,056 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 6\QtCore4.dll
MOD - [2007-08-02 17:16:58 | 000,131,072 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 6\Imageformats\qjpeg4.dll
MOD - [2007-08-02 17:05:42 | 006,402,048 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 6\QtGui4.dll
MOD - [2007-08-02 16:51:54 | 000,356,352 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 6\QtXml4.dll
MOD - [2007-02-16 20:01:00 | 000,081,920 | ---- | M] () -- C:\Program Files\FinePixViewer\wia_register_event.dll
MOD - [2007-01-31 10:56:56 | 000,032,768 | ---- | M] () -- C:\Program Files\EXPERTool\TBPanelExt.dll
MOD - [2007-01-25 03:52:26 | 000,065,536 | ---- | M] () -- C:\Program Files\Common Files\NMSAccessU.exe
MOD - [2005-03-28 11:13:32 | 000,077,824 | ---- | M] () -- C:\WINDOWS\system32\csdlocalmon.dll
MOD - [2004-08-04 00:44:04 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [1998-10-31 10:55:56 | 000,005,120 | ---- | M] () -- C:\Program Files\EXPERTool\TBMANAGE.DLL


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV - File not found [Auto | Stopped] -- C:\Program Files\VuuPC\Connectivity.exe -- (VuuPCConnectivity)
SRV - File not found [Auto | Stopped] -- C:\Program Files\VuuPC\remoteengine.exe -- (RemoteEngineService)
SRV - [2012-11-15 23:34:30 | 005,814,904 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2013\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2012-11-09 11:21:24 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012-10-22 13:05:08 | 000,196,664 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2013\avgwdsvc.exe -- (avgwd)
SRV - [2012-10-12 20:33:36 | 000,711,112 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.0.0\ToolbarUpdater.exe -- (vToolbarUpdater13.0.0)
SRV - [2009-10-24 03:18:54 | 000,360,224 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
SRV - [2009-10-09 15:18:14 | 000,238,952 | ---- | M] (Teruten) [Auto | Running] -- C:\WINDOWS\system32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2008-04-07 09:17:30 | 000,430,592 | ---- | M] (Nokia.) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2007-01-25 03:52:26 | 000,065,536 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\NMSAccessU.exe -- (NMSAccessU)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Stopped] --  -- (WDICA)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\Drivers\SSPORT.sys -- (SSPORT)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - File not found [Kernel | On_Demand | Stopped] -- F:\NTGLM7X.sys -- (SetupNTGLM7X)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] --  -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Stopped] -- F:\NTACCESS.sys -- (NTACCESS)
DRV - File not found [Kernel | System | Stopped] --  -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] --  -- (i2omgmt)
DRV - File not found [Kernel | On_Demand | Stopped] -- F:\INSTALL\GMSIPCI.SYS -- (GMSIPCI)
DRV - File not found [Kernel | On_Demand | Stopped] --  -- (GAGPDrv)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\cpuz135\cpuz135_x32.sys -- (cpuz135)
DRV - File not found [Kernel | System | Stopped] --  -- (Changer)
DRV - File not found [Kernel | Boot | Stopped] -- System32\drivers\CFRMD.sys -- (CFRMD)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPANEL.SYS -- (Cardex)
DRV - [2012-12-29 22:59:38 | 000,024,184 | ---- | M] (Almico Software) [Kernel | Boot | Running] -- C:\WINDOWS\system32\speedfan.sys -- (speedfan)
DRV - [2012-11-15 23:33:26 | 000,094,048 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2012-10-22 13:02:46 | 000,179,936 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgidsdriverx.sys -- (AVGIDSDriver)
DRV - [2012-10-15 03:48:52 | 000,055,776 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\avgidshx.sys -- (AVGIDSHX)
DRV - [2012-10-12 20:33:36 | 000,026,984 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtpx86.sys -- (avgtp)
DRV - [2012-10-02 03:30:38 | 000,159,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2012-09-21 03:46:06 | 000,164,832 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2012-09-21 03:46:00 | 000,177,376 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\avglogx.sys -- (Avglogx)
DRV - [2012-09-21 03:45:54 | 000,019,936 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgidsshimx.sys -- (AVGIDSShim)
DRV - [2012-09-14 03:05:20 | 000,035,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\avgrkx86.sys -- (Avgrkx86)
DRV - [2010-11-26 05:17:40 | 005,555,712 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2010-08-18 23:09:32 | 000,014,656 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2010-04-08 20:30:10 | 000,168,040 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nvgts.sys -- (nvgts)
DRV - [2010-03-04 12:02:10 | 000,013,824 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2010-03-04 12:02:08 | 000,070,912 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2009-10-05 09:29:46 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009-09-11 10:40:06 | 000,121,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadmdm.sys -- (ssadmdm)
DRV - [2009-09-11 10:40:06 | 000,090,240 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadbus.sys -- (ssadbus)
DRV - [2009-09-11 10:40:06 | 000,014,976 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadmdfl.sys -- (ssadmdfl)
DRV - [2009-09-04 11:12:50 | 000,030,240 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadadb.sys -- (androidusb)
DRV - [2009-08-04 01:01:00 | 000,286,208 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\V0415Vid.sys -- (V0415Vid)
DRV - [2009-03-19 14:48:18 | 000,136,704 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu)
DRV - [2009-03-19 14:48:12 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc)
DRV - [2009-02-09 08:37:56 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2009-02-09 08:37:48 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2009-02-09 08:37:46 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2009-02-09 08:37:46 | 000,017,664 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2008-10-13 18:26:10 | 004,879,360 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2008-08-12 15:50:36 | 000,135,616 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CtClsFlt.sys -- (CtClsFlt)
DRV - [2008-04-30 15:43:42 | 000,160,768 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\V0415Afx.sys -- (V0415Afx)
DRV - [2008-03-27 11:42:46 | 000,014,336 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\LG Soft India\forteManager\bin\I2CDriver.sys -- (LGDDCDevice)
DRV - [2008-03-27 11:42:46 | 000,013,312 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\LG Soft India\forteManager\bin\PII2CDriver.sys -- (LGII2CDevice)
DRV - [2007-11-20 17:09:14 | 000,278,984 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2007-09-17 15:53:26 | 000,021,632 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2007-08-17 22:24:42 | 000,025,416 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2007-06-29 14:47:34 | 000,034,304 | ---- | M] (AMD, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AmdLLD.sys -- (AmdLLD)
DRV - [2007-04-16 16:46:34 | 000,033,792 | ---- | M] (Advanced Micro Devices) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\AmdPPM.sys -- (AmdPPM)
DRV - [2007-03-27 07:27:02 | 000,543,712 | R--- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ar5211.sys -- (AR5211)
DRV - [2007-02-16 02:57:06 | 000,034,760 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys -- (ElbyCDFL)
DRV - [2007-01-15 17:57:08 | 000,031,616 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\livecamv.sys -- (RLDesignVirtualAudioCableWdm)
DRV - [2006-07-01 23:32:26 | 000,043,520 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
DRV - [2005-02-11 10:21:10 | 000,089,872 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\k750mdm.sys -- (k750mdm)
DRV - [2005-02-11 10:21:02 | 000,006,576 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\k750mdfl.sys -- (k750mdfl)
DRV - [2005-02-11 10:19:20 | 000,055,216 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\k750bus.sys -- (k750bus)
DRV - [2005-01-07 17:07:16 | 000,145,920 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService)
DRV - [2004-12-22 11:07:12 | 002,304,320 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM)
DRV - [2004-08-03 23:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2004-08-03 23:03:36 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2004-08-03 22:59:52 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2004-05-02 09:47:08 | 000,023,040 | R--- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\GVCplDrv.sys -- (GVCplDrv)
DRV - [2004-02-24 04:08:52 | 000,400,384 | ---- | M] (Sensaura) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS)
DRV - [2003-10-08 13:14:38 | 000,051,712 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RT2400.sys -- (RT2400)
DRV - [2003-07-29 09:57:20 | 000,040,448 | ---- | M] (DeviceGuys, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Dgivecp.Sys -- (DgiVecp)
DRV - [2002-07-24 13:52:26 | 000,998,004 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k)
DRV - [2002-07-19 10:48:32 | 000,156,604 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\emupia2k.sys -- (emupia)
DRV - [2002-07-19 10:48:22 | 000,213,860 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2002-07-19 10:48:08 | 000,011,068 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctprxy2k.sys -- (ctprxy2k)
DRV - [2002-07-19 10:48:04 | 000,195,432 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2002-07-19 10:47:52 | 000,837,548 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k)
DRV - [2002-07-19 10:46:28 | 000,127,948 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctac32k.sys -- (ctac32k)
DRV - [2001-10-26 17:02:28 | 000,907,584 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HCF_MSFT.sys -- (HCF_MSFT)
DRV - [2001-08-17 22:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001-08-17 21:54:18 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2001-08-17 21:54:18 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
DRV - [2001-08-17 20:19:34 | 000,036,480 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sfmanm.sys -- (sfman)
DRV - [2001-08-17 20:19:28 | 000,006,912 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctlfacem.sys -- (emu10k1)
DRV - [2001-08-17 20:19:26 | 000,283,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\emu10k1m.sys -- (emu10k)
DRV - [2001-08-17 20:19:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk)
DRV - [2000-03-29 17:11:20 | 000,008,096 | ---- | M] (MicroStaff Co.,Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\MASPINT.SYS -- (MASPINT)
DRV - [1999-12-17 01:00:00 | 000,006,752 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\PFMODNT.SYS -- (PfModNT)
DRV - [1996-04-03 21:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\giveio.sys -- (giveio)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.wyborcza.pl/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 192.168.0.1:8080

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 192.168.0.1:8080

IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://isearch.avg.com/?cid={27EAF7DE-3CC9-4D63-AA65-4FC4994DE8C7}&mid=83eca5620aa647d0b640d1530b64d534-9aae660d0149a38d4b2f78542a6bc37e2e59cab8&lang=pl&ds=xn011&pr=sa&d=2012-10-12 20:33:47&v=13.0.0.7&sap=hp
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\..\SearchScopes\{7080A07A-7F3B-4096-A200-BA4EE4AE8352}: "URL" = http://pl.wikipedia.org/w/index.php?title=Specjalna:Szukaj&search={searchTerms}
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = https://isearch.avg.com/search?cid={27EAF7DE-3CC9-4D63-AA65-4FC4994DE8C7}&mid=83eca5620aa647d0b640d1530b64d534-9aae660d0149a38d4b2f78542a6bc37e2e59cab8&lang=pl&ds=xn011&pr=sa&d=2012-10-12 20:33:47&v=13.0.0.7&sap=dsp&q={searchTerms}
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\..\SearchScopes\{EED3C29C-1193-43D8-A5A9-2DA9BDC6A362}: "URL" = http://www.google.pl/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1482476501-1078081533-839522115-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 192.168.0.1:8080

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "AVG Secure Search"
FF - prefs.js..browser.startup.homepage: "https://isearch.avg.com?cid=%7Bf572182f-c2f4-4c92-ae2f-3f2296e3d4f5%7D&mid=83eca5620aa647d0b640d1530b64d534-9aae660d0149a38d4b2f78542a6bc37e2e59cab8&ds=xn011&v=13.0.0.7&lang=pl&pr=sa&d=2012-10-12%2020%3A33%3A47&sap=hp"
FF - prefs.js..extensions.enabledItems: IplextoALL@ALLPlayer.org:0.1.0
FF - prefs.js..extensions.enabledItems: addon@dealplyshopping.com:2.0
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: avg@toolbar:13.0.0.7
FF - prefs.js..extensions.enabledItems: lyrmix@lyrmix.net:1.111
FF - prefs.js..keyword.URL: "https://isearch.avg.com/search?cid=%7Bf572182f-c2f4-4c92-ae2f-3f2296e3d4f5%7D&mid=83eca5620aa647d0b640d1530b64d534-9aae660d0149a38d4b2f78542a6bc37e2e59cab8&ds=xn011&v=13.0.0.7&lang=pl&pr=sa&d=2012-10-12%2020%3A33%3A47&sap=ku&q="
FF - prefs.js..network.proxy.http: "192.168.0.1"
FF - prefs.js..network.proxy.http_port: 8080


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\13.0.0\\npsitesafety.dll ()
FF - HKLM\Software\MozillaPlugins\@ganymede/GanymedeNetPlugin,version=1.0: C:\Program Files\Ganymede\Plugins\npganymedenet.dll ( )
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2321: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2571: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1483: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1739: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=:  File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Update\1.2.183.29\npGoogleOneClick8.dll File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\FireFoxExt\13.0.0.7 [2012-10-12 20:33:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.28\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2008-02-14 20:11:10 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.28\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2008-02-14 20:11:10 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\lyrmix@lyrmix.net: C:\Program Files\Lyrmix\FF\ [2013-04-29 19:21:08 | 000,000,000 | ---D | M]

[2008-09-19 15:07:34 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Extensions
[2011-04-21 11:32:10 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\v87xfkck.default\extensions
[2013-04-29 19:21:22 | 000,000,000 | ---D | M] (DealPly  Shopping) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\v87xfkck.default\extensions\addon@dealplyshopping.com
[2012-01-20 19:57:16 | 000,000,000 | ---D | M] (Iplex to ALLPlayer) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\v87xfkck.default\extensions\IplextoALL@ALLPlayer.org
[2008-02-14 20:11:10 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012-10-12 20:33:52 | 000,000,000 | ---D | M] (AVG Security Toolbar) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\AVG SECURE SEARCH\FIREFOXEXT\13.0.0.7
[2010-04-25 21:15:00 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2013-04-29 19:21:08 | 000,000,000 | ---D | M] ("Lyrmix") -- C:\PROGRAM FILES\LYRMIX\FF
[2008-07-24 17:02:40 | 000,120,296 | ---- | M] ( ) -- C:\Program Files\mozilla firefox\plugins\npganymedenet.dll
[2010-02-15 10:56:54 | 000,636,408 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPBILLARD8.dll
[2008-06-24 19:05:12 | 000,620,040 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPBILLARDT.dll
[2008-06-24 19:04:48 | 000,636,408 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPBILLARD9.dll
[2008-06-24 19:04:54 | 000,636,400 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPSNOOKER.dll
[2008-06-24 18:07:32 | 000,927,224 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPBOARDS.dll
[2010-02-15 10:59:14 | 000,873,976 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPCARDS.dll
[2009-07-16 18:23:34 | 000,685,552 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPMAKAOV2.dll
[2008-06-24 19:06:16 | 000,509,432 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPSOLITAIRE.dll
[2008-06-24 19:06:50 | 000,460,272 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPMAHJONG.dll
[2008-06-24 19:06:10 | 000,554,480 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPMAKAO.dll
[2008-06-24 19:07:54 | 000,497,136 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPSUDOKU.dll
[2008-06-24 19:06:56 | 000,665,096 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPMARBLES.dll
[2010-02-15 10:57:18 | 000,484,864 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPHUNTER.dll
[2012-03-18 14:51:14 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2012-03-18 14:51:14 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2012-03-18 14:51:14 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2012-03-18 14:51:14 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2012-03-18 14:51:14 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2012-03-18 14:51:14 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml
[2012-10-12 20:33:42 | 000,003,743 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml

[color=#E56717]========== Chrome  ==========[/color]

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\28.0.1500.72\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\28.0.1500.72\pdf.dll
CHR - plugin: GanymedeNet.Detector (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\plugins\npganymedenet.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java(TM) Platform SE 6 U18 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Java Deployment Toolkit 6.0.180.7 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeploytk.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPBILLARD8.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPBILLARDT.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPBILLARD9.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPSNOOKER.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPBOARDS.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPCARDS.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPMAKAOV2.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPSOLITAIRE.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPMAHJONG.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPMAKAO.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPSUDOKU.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPMARBLES.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPHUNTER.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.153\npGoogleUpdate3.dll
CHR - plugin: AVG SiteSafety plugin (Enabled) = C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\13.0.0\\npsitesafety.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Picasa (Enabled) = C:\Program Files\Google\Picasa3\npPicasa3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)  (Enabled) = C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw_1166636.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - Extension: Docs = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: Dysk Google = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: YouTube = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Szukaj w Google = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Lyrmix = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jofdlbdmefjogcipddjnblinigmpagoj\1.111_0\
CHR - Extension: AVG Secure Search = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\13.0.0.7_0\
CHR - Extension: Gmail = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2010-10-30 13:28:18 | 000,000,752 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       static.gadu-gadu.pl
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (DealPly Shopping) - {4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7} - C:\Program Files\DealPly\DealPlyIE.dll (DealPly)
O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\13.0.0.7\AVG Secure Search_toolbar.dll ()
O2 - BHO: (Lyrmix) - {A8E06666-F1AE-4436-80C1-A1A1A865F236} - C:\Program Files\Lyrmix\lyrmix.dll (Lyrix Engineering)
O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Documents and Settings\Administrator\Dane aplikacji\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.)
O3 - HKLM\..\Toolbar: (no name) -  - No CLSID value found.
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\13.0.0.7\AVG Secure Search_toolbar.dll ()
O3 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O4 - HKLM..\Run: [3200 Scan2PC] C:\WINDOWS\Twain_32\Samsung\SCX3200\Scan2pc.exe ()
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2013\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [High Definition Audio Property Page Shortcut] C:\WINDOWS\System32\HdAShCut.exe (Windows (R) Server 2003 DDK provider)
O4 - HKLM..\Run: [Jet Detection] C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe ()
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [Live! Central] C:\Program Files\Creative\Creative Live! Cam\Live! Central\CTLVCentral.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)
O4 - HKLM..\Run: [ROC_ROC_NT] C:\Program Files\AVG Secure Search\ROC_ROC_NT.exe ()
O4 - HKLM..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe ()
O4 - HKLM..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u File not found
O4 - HKLM..\Run: [V0415Mon.exe] C:\WINDOWS\V0415Mon.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [vProt] C:\Program Files\AVG Secure Search\vprot.exe ()
O4 - HKLM..\Run: [WINDVDPatch] C:\WINDOWS\System32\CTHELPER.EXE (Creative Technology Ltd)
O4 - HKU\.DEFAULT..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-18..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-21-1482476501-1078081533-839522115-500..\Run: [ALLUpdate] C:\Program Files\ALLPlayer\ALLUpdate.exe ()
O4 - HKU\S-1-5-21-1482476501-1078081533-839522115-500..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKU\S-1-5-21-1482476501-1078081533-839522115-500..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 File not found
O4 - HKU\S-1-5-21-1482476501-1078081533-839522115-500..\Run: [GAINWARD] C:\Program Files\EXPERTool\TBPanel.exe (Gainward Co.)
O4 - HKU\S-1-5-21-1482476501-1078081533-839522115-500..\Run: [lollipop_07091431] c:\documents and settings\administrator\ustawienia lokalne\dane aplikacji\lollipop\lollipop_07091431.exe ()
O4 - HKU\S-1-5-21-1482476501-1078081533-839522115-500..\Run: [MSConfig] "C:\Documents and Settings\Administrator\nafsxkdl.exe" File not found
O4 - HKU\S-1-5-21-1482476501-1078081533-839522115-500..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe ()
O4 - HKU\.DEFAULT..\RunOnce: [VF0415Inst] C:\WINDOWS\System32\V0415Pin.DLL (Creative Technology Ltd.)
O4 - HKU\S-1-5-18..\RunOnce: [VF0415Inst] C:\WINDOWS\System32\V0415Pin.DLL (Creative Technology Ltd.)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Aktywacja Testera.lnk = C:\Program Files\YDP\YdpDict\Watch.exe (Young Digital Poland)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\ExifLauncher2.lnk = C:\Program Files\FinePixViewer\QuickDCF2.exe (FUJIFILM Corporation)
O4 - Startup: C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\Xfire.lnk =  File not found
O4 - Startup: C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\lollipop_07091431.lnk = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Lollipop\lollipop_07091431.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 165
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0
O7 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0
O7 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0
O7 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1
O7 - HKU\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 File not found
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {00000055-9980-0010-8000-00AA00389B71} http://codecs.microsoft.com/codecs/i386/fhg.CAB (Reg Error: Key error.)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {41ACD49D-1974-791A-0981-AA9872721044} http://download.gamedesire.com/g_bin/pl/boards_2_0_0_35.cab (Ganymede Board Games)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://go.divx.com/plugin/DivXBrowserPlugin.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {92ECE6FA-AC2E-4042-BFAE-0C8608E52A43} https://www.bph.pl/pi/components/SignActivX.cab (SignActivX Control)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15109/CTPID.cab (Creative Software AutoUpdate Support Package)
O16 - DPF: {FC11A119-C2F7-46F4-9E32-937ABA26816E} file:///E:/CDVIEWER/CdViewer.cab (AMI DicomDir TreeView Control 2.1)
O16 - DPF: {FDDBE2B8-4AD8-6602-946D-94C5A32FA6C1} http://cached.gamedesire.com/g_bin/pl/billard8_2_0_0_40.cab (GameDesire Pool 8)
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C1} http://67.15.101.33/g_bin/pl/billard8_2_0_0_35.cab (GameDesire Pool 8)
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C3} http://67.15.101.33/g_bin/pl/billard14_2_0_0_35.cab (GameDesire Pool 14)
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C4} http://67.15.101.33/g_bin/pl/billardt_2_0_0_35.cab (GameDesire Pool Training)
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C5} http://67.15.101.33/g_bin/pl/snooker_2_0_0_35.cab (GameDesire Snooker)
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C6} http://67.15.101.33/g_bin/pl/billard8UK_2_0_0_35.cab (GameDesire Pool 8UK)
O16 - DPF: DirectAnimation Java Classes Reg Error: Value error. (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java Reg Error: Value error. (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4596AC51-B992-420E-B66F-63F5289C2DB4}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\13.0.0\ViProtocol.dll ()
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: TaskMan - (G:\zmijsko\tjelo.exe) -  File not found
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\cryptnet32: DllName - (cryptnet32.dll) -  File not found
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: D:\Piotrek\Obrazki i malunki\tapeta 3.bmp
O24 - Desktop BackupWallPaper: D:\Piotrek\Obrazki i malunki\tapeta 3.bmp
O29 - HKLM SecurityProviders - (digiwet.dll) -  File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004-04-15 15:02:50 | 000,000,000 | -H-- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O33 - MountPoints2\{14f81e22-6364-11df-9145-0080c6e9e391}\Shell - "" = AutoRun
O33 - MountPoints2\{14f81e22-6364-11df-9145-0080c6e9e391}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{1604846a-4f2e-11d9-9711-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{1604846a-4f2e-11d9-9711-806d6172696f}\Shell\AutoRun\command - "" = E:\Bin\Assetup.exe
O33 - MountPoints2\{3d23e2ce-990e-11e0-938f-001a4d803cc7}\Shell - "" = AutoRun
O33 - MountPoints2\{3d23e2ce-990e-11e0-938f-001a4d803cc7}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RECYCLER\S-9-9-87-842239724-4943506317-793421052-401\lvqbory.exe
O33 - MountPoints2\{52137357-74cb-11df-916f-0080c6e9e391}\Shell\AutoRun\command - "" = zmijsko//tjelo.exe
O33 - MountPoints2\{52137357-74cb-11df-916f-0080c6e9e391}\Shell\Explore\command - "" = zmijsko//tjelo.exe
O33 - MountPoints2\{52137357-74cb-11df-916f-0080c6e9e391}\Shell\Open\command - "" = zmijsko//tjelo.exe
O33 - MountPoints2\{6fa77720-5c96-11df-912c-0080c6e9e391}\Shell\AutoRun\command - "" = F:\1thes92p.exe
O33 - MountPoints2\{6fa77720-5c96-11df-912c-0080c6e9e391}\Shell\open\Command - "" = F:\1thes92p.exe
O33 - MountPoints2\{9b240cbb-8eaf-11df-919c-0080c6e9e391}\Shell - "" = AutoRun
O33 - MountPoints2\{9b240cbb-8eaf-11df-919c-0080c6e9e391}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RECYCLER\S-1-3-26-639778273-2775429311-516027281-117\mqmvr.exe
O33 - MountPoints2\{a90a924a-437b-11e1-9493-001a4d803cc7}\Shell - "" = AutoRun
O33 - MountPoints2\{a90a924a-437b-11e1-9493-001a4d803cc7}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RECYCLER\S-9-4-75-266814799-4078087955-687649898-522\pidann.exe
O33 - MountPoints2\{ac648642-b477-11df-91f6-0080c6e9e391}\Shell - "" = AutoRun
O33 - MountPoints2\{ac648642-b477-11df-91f6-0080c6e9e391}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RECYCLER\S-6-2-61-302303586-3090558921-579382440-620\hrfrg.exe
O33 - MountPoints2\{e57536fe-11e6-11df-906b-0080c6e9e391}\Shell\AutoRun\command - "" = F:\ca.exe
O33 - MountPoints2\{e57536fe-11e6-11df-906b-0080c6e9e391}\Shell\open\Command - "" = F:\ca.exe
O33 - MountPoints2\{e7a7e416-e4c1-11dd-8d9a-0080c6e9e391}\Shell\AutoRun\command - "" = 3.com
O33 - MountPoints2\{e7a7e416-e4c1-11dd-8d9a-0080c6e9e391}\Shell\explore\Command - "" = 3.com
O33 - MountPoints2\{e7a7e416-e4c1-11dd-8d9a-0080c6e9e391}\Shell\open\Command - "" = 3.com
O33 - MountPoints2\{fe572ec4-06b7-11df-9054-0080c6e9e391}\Shell - "" = AutoRun
O33 - MountPoints2\{fe572ec4-06b7-11df-9054-0080c6e9e391}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2013\avgrsx.exe /sync /restart)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2013-07-18 22:04:50 | 000,000,000 | -HSD | C] -- C:\FOUND.086
[2013-07-18 21:45:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\CSC
[2013-07-18 21:44:58 | 000,000,000 | -HSD | C] -- C:\FOUND.085
[2013-07-18 17:26:15 | 000,000,000 | ---D | C] -- C:\Program Files\SpeedFan
[2013-07-18 17:26:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Menu Start\Programy\SpeedFan
[2013-07-18 15:50:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Dane aplikacji\AVG2013
[2013-07-18 15:44:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Avg2013
[2013-07-18 15:43:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Dane aplikacji\TuneUp Software
[2013-07-18 15:43:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\AVG
[2013-07-18 15:43:20 | 000,000,000 | -H-D | C] -- C:\$AVG
[2013-07-18 15:43:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG2013
[2013-07-18 15:42:56 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2013-07-18 15:37:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData
[2013-07-18 15:37:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\MFAData
[2013-07-18 15:37:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Avg2013
[2013-07-15 10:39:14 | 000,000,000 | -HSD | C] -- C:\FOUND.084
[2013-07-13 13:52:48 | 000,000,000 | -HSD | C] -- C:\FOUND.083
[2013-07-05 16:42:36 | 000,000,000 | -HSD | C] -- C:\FOUND.082
[2013-07-03 21:55:54 | 000,000,000 | -HSD | C] -- C:\FOUND.081
[2013-07-03 18:16:20 | 000,000,000 | -HSD | C] -- C:\FOUND.080
[2013-06-28 18:40:18 | 000,000,000 | -HSD | C] -- C:\FOUND.079
[2013-06-27 13:46:30 | 000,000,000 | -HSD | C] -- C:\FOUND.078
[2013-06-21 13:24:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Kolekcja Klasyki
[2013-06-19 18:58:46 | 000,000,000 | -HSD | C] -- C:\FOUND.077
[2013-06-19 18:45:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe
[2013-06-19 18:23:00 | 000,000,000 | -HSD | C] -- C:\FOUND.076
[2013-06-17 22:28:56 | 037,507,584 | ---- | C] (Корпорация  Майкрософт) -- C:\Documents and Settings\Administrator\botglyrz.VIR
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2013-07-18 22:49:48 | 000,001,125 | ---- | M] () -- C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\lollipop_07091431.lnk
[2013-07-18 22:49:02 | 000,001,050 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013-07-18 22:26:30 | 000,195,352 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2013-07-18 22:26:16 | 000,001,046 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013-07-18 22:26:14 | 000,000,372 | ---- | M] () -- C:\WINDOWS\tasks\Lyrmix Update.job
[2013-07-18 22:26:02 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013-07-18 22:25:56 | 3757,625,344 | -HS- | M] () -- C:\hiberfil.sys
[2013-07-18 17:53:30 | 000,000,447 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Skrót do Programy i Tapety.lnk
[2013-07-18 17:26:16 | 000,000,595 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\SpeedFan.lnk
[2013-07-18 17:26:16 | 000,000,045 | ---- | M] () -- C:\WINDOWS\System32\initdebug.nfo
[2013-07-18 15:43:44 | 000,000,645 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\AVG 2013.lnk
[2013-07-17 19:05:28 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2013-07-16 13:43:00 | 000,001,112 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1482476501-1078081533-839522115-500Core1ce8218f5c10cfe.job
[2013-07-15 23:21:00 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2013-07-15 11:12:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\tasks\COMODO System Cleaner Update.job
[2013-07-13 13:59:26 | 000,002,275 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Google Chrome.lnk
[2013-07-12 22:16:16 | 000,000,049 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2013-07-12 22:16:10 | 000,158,720 | ---- | M] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013-07-12 13:42:44 | 000,053,697 | ---- | M] () -- C:\WINDOWS\Run32A50.mch
[2013-07-12 13:33:20 | 000,000,035 | ---- | M] () -- C:\WINDOWS\A5W.INI
[2013-07-11 07:33:38 | 000,211,089 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Droga do Wageningen.pdf
[2013-07-11 07:33:34 | 000,161,215 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\RyanairBoardingPass.pdf
[2013-07-11 07:33:26 | 000,168,167 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\RyanairBoardingPass (1).pdf
[2013-07-04 20:08:08 | 000,002,513 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Microsoft Office Word 2007.lnk
[2013-06-23 16:56:32 | 033,969,646 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\muzyka.wav
[2013-06-21 13:24:20 | 000,000,678 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Bard's Tale.lnk
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2013-07-18 22:25:55 | 3757,625,344 | -HS- | C] () -- C:\hiberfil.sys
[2013-07-18 17:53:28 | 000,000,447 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Skrót do Programy i Tapety.lnk
[2013-07-18 17:26:15 | 000,000,595 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\SpeedFan.lnk
[2013-07-18 17:26:14 | 000,000,045 | ---- | C] () -- C:\WINDOWS\System32\initdebug.nfo
[2013-07-18 15:45:09 | 000,001,125 | ---- | C] () -- C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\lollipop_07091431.lnk
[2013-07-18 15:43:42 | 000,000,645 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\AVG 2013.lnk
[2013-07-16 13:38:15 | 000,001,112 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1482476501-1078081533-839522115-500Core1ce8218f5c10cfe.job
[2013-07-11 07:33:38 | 000,211,089 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Droga do Wageningen.pdf
[2013-07-11 07:33:34 | 000,161,215 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\RyanairBoardingPass.pdf
[2013-07-11 07:33:30 | 000,168,167 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\RyanairBoardingPass (1).pdf
[2013-06-24 17:30:59 | 033,969,646 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\muzyka.wav
[2013-06-21 13:24:18 | 000,000,678 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Bard's Tale.lnk
[2013-01-17 18:17:41 | 000,063,488 | ---- | C] () -- C:\WINDOWS\xobglu16.dll
[2013-01-17 18:17:41 | 000,023,552 | ---- | C] () -- C:\WINDOWS\xobglu32.dll
[2011-12-26 01:57:46 | 000,388,096 | ---- | C] () -- C:\WINDOWS\System32\mss32.dll
[2011-12-26 01:57:30 | 000,167,424 | ---- | C] () -- C:\WINDOWS\System32\binkw32.dll
[2011-12-26 01:54:39 | 000,347,136 | ---- | C] () -- C:\WINDOWS\System32\1.6b-binkw32.dll
[2011-12-26 01:54:39 | 000,339,456 | R--- | C] () -- C:\WINDOWS\System32\1.8b-binkw32.dll
[2011-12-26 01:54:39 | 000,339,456 | ---- | C] () -- C:\WINDOWS\System32\1.7b-binkw32.dll
[2011-12-26 01:54:39 | 000,338,944 | R--- | C] () -- C:\WINDOWS\System32\1.6e-binkw32.dll
[2011-12-26 01:54:39 | 000,338,944 | ---- | C] () -- C:\WINDOWS\System32\1.7d-binkw32.dll
[2011-12-26 01:54:39 | 000,338,944 | ---- | C] () -- C:\WINDOWS\System32\1.6g-binkw32.dll
[2011-12-26 01:54:39 | 000,338,944 | ---- | C] () -- C:\WINDOWS\System32\1.6d-binkw32.dll
[2011-12-26 01:54:39 | 000,338,944 | ---- | C] () -- C:\WINDOWS\System32\1.6c-binkw32.dll
[2011-12-26 01:54:39 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\1.8d-binkw32.dll
[2011-12-26 01:54:39 | 000,111,616 | ---- | C] () -- C:\WINDOWS\System32\1.8g-binkw32.dll
[2011-12-26 01:54:39 | 000,073,216 | ---- | C] () -- C:\WINDOWS\System32\1.8r-bink32.dll
[2011-12-26 01:54:38 | 000,377,856 | ---- | C] () -- C:\WINDOWS\System32\1.5u-binkw32.dll
[2011-12-26 01:54:38 | 000,377,856 | ---- | C] () -- C:\WINDOWS\System32\1.5s-binkw32.dll
[2011-12-26 01:54:38 | 000,377,856 | ---- | C] () -- C:\WINDOWS\System32\1.5r-binkw32.dll
[2011-12-26 01:54:38 | 000,377,856 | ---- | C] () -- C:\WINDOWS\System32\1.5p-binkw32.dll
[2011-12-26 01:54:38 | 000,377,856 | ---- | C] () -- C:\WINDOWS\System32\1.5k-binkw32.dll
[2011-12-26 01:54:38 | 000,375,808 | ---- | C] () -- C:\WINDOWS\System32\1.5v-binkw32.dll
[2011-12-26 01:54:38 | 000,358,963 | ---- | C] () -- C:\WINDOWS\System32\1.5j-binkw32.dll
[2011-12-26 01:54:38 | 000,357,939 | ---- | C] () -- C:\WINDOWS\System32\1.5g-binkw32.dll
[2011-12-26 01:54:38 | 000,357,939 | ---- | C] () -- C:\WINDOWS\System32\1.5e-binkw32.dll
[2011-12-26 01:54:38 | 000,350,720 | ---- | C] () -- C:\WINDOWS\System32\1.5y-binkw32.dll
[2011-12-26 01:54:38 | 000,349,184 | ---- | C] () -- C:\WINDOWS\System32\1.5x-binkw32.dll
[2011-12-26 01:54:38 | 000,314,931 | ---- | C] () -- C:\WINDOWS\System32\1.2c-binkw32.dll
[2011-12-26 01:54:38 | 000,312,371 | ---- | C] () -- C:\WINDOWS\System32\1.5a-binkw32.dll
[2011-12-26 01:54:38 | 000,310,835 | ---- | C] () -- C:\WINDOWS\System32\1.2i-binkw32.dll
[2011-12-26 01:54:38 | 000,310,835 | ---- | C] () -- C:\WINDOWS\System32\1.2h-binkw32.dll
[2011-12-26 01:54:38 | 000,308,275 | ---- | C] () -- C:\WINDOWS\System32\1.2d-binkw32.dll
[2011-12-26 01:54:38 | 000,305,715 | ---- | C] () -- C:\WINDOWS\System32\1.2a-binkw32.dll
[2011-12-26 01:54:38 | 000,299,571 | ---- | C] () -- C:\WINDOWS\System32\1.1c-binkw32.dll
[2011-12-26 01:54:38 | 000,291,840 | ---- | C] () -- C:\WINDOWS\System32\1.1b-binkw32.dll
[2011-12-26 01:54:38 | 000,291,840 | ---- | C] () -- C:\WINDOWS\System32\1.0t-binkw32.dll
[2011-12-26 01:54:38 | 000,291,328 | ---- | C] () -- C:\WINDOWS\System32\1.0w-binkw32.dll
[2011-12-26 01:54:38 | 000,291,328 | ---- | C] () -- C:\WINDOWS\System32\1.0v-binkw32.dll
[2011-12-26 01:54:38 | 000,290,816 | ---- | C] () -- C:\WINDOWS\System32\1.0x-binkw32.dll
[2011-12-26 01:54:38 | 000,286,208 | ---- | C] () -- C:\WINDOWS\System32\1.0q-binkw32.dll
[2011-12-26 01:54:38 | 000,285,696 | ---- | C] () -- C:\WINDOWS\System32\1.0s-binkw32.dll
[2011-12-26 01:54:38 | 000,273,408 | ---- | C] () -- C:\WINDOWS\System32\1.0p-binkw32.dll
[2011-12-26 01:54:38 | 000,272,896 | ---- | C] () -- C:\WINDOWS\System32\1.0n-binkw32.dll
[2011-12-26 01:54:38 | 000,272,384 | ---- | C] () -- C:\WINDOWS\System32\1.0m-binkw32.dll
[2011-12-26 01:54:38 | 000,263,168 | ---- | C] () -- C:\WINDOWS\System32\1.0k-binkw32.dll
[2011-12-26 01:54:38 | 000,263,168 | ---- | C] () -- C:\WINDOWS\System32\1.0i-binkw32.dll
[2011-12-26 01:54:38 | 000,262,656 | ---- | C] () -- C:\WINDOWS\System32\1.0h-binkw32.dll
[2011-12-26 01:54:38 | 000,261,120 | ---- | C] () -- C:\WINDOWS\System32\1.0j-binkw32.dll
[2011-12-26 01:54:38 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\1.0f-binkw32.dll
[2011-12-26 01:54:38 | 000,200,192 | ---- | C] () -- C:\WINDOWS\System32\1.0d-binkw32.dll
[2011-12-26 01:54:38 | 000,199,680 | ---- | C] () -- C:\WINDOWS\System32\1.0c-binkw32.dll
[2011-12-26 01:54:38 | 000,184,320 | ---- | C] () -- C:\WINDOWS\System32\0.9n-binkw32.dll
[2011-12-26 01:54:38 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\0.9m-binkw32.dll
[2011-12-26 01:54:38 | 000,176,128 | R--- | C] () -- C:\WINDOWS\System32\0.9k-binkw32.dll
[2011-12-26 01:54:38 | 000,176,128 | ---- | C] () -- C:\WINDOWS\System32\0.9j-bink32.dll
[2011-12-26 01:54:38 | 000,176,128 | ---- | C] () -- C:\WINDOWS\System32\0.9i-binkw32.dll
[2011-12-26 01:54:38 | 000,172,032 | R--- | C] () -- C:\WINDOWS\System32\0.9g-binkw32.dll
[2011-12-26 01:54:38 | 000,172,032 | R--- | C] () -- C:\WINDOWS\System32\0.8a-Binkw32.dll
[2011-12-26 01:54:38 | 000,172,032 | ---- | C] () -- C:\WINDOWS\System32\0.9f-binkw32.dll
[2011-12-26 01:54:38 | 000,172,032 | ---- | C] () -- C:\WINDOWS\System32\0.9d-binkw32.dll
[2011-12-26 01:54:38 | 000,167,936 | ---- | C] () -- C:\WINDOWS\System32\0.8i-binkw32.dll
[2011-12-26 01:54:38 | 000,167,936 | ---- | C] () -- C:\WINDOWS\System32\0.8h-binkw32.dll
[2011-12-26 01:54:38 | 000,167,936 | ---- | C] () -- C:\WINDOWS\System32\0.8f-binkw32.dll
[2011-12-26 01:54:38 | 000,167,936 | ---- | C] () -- C:\WINDOWS\System32\0.8e-binkw32.dll
[2011-12-26 01:54:38 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\0.5a-binkw32.DLL
[2010-09-28 19:35:15 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Zdjęcie0199.jpg
[2010-09-28 19:35:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Zdjęcie0202.jpg
[2010-09-28 19:35:03 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Zdjęcie0201.jpg
[2010-09-28 19:34:44 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Zdjęcie0200.jpg
[2010-09-24 20:29:33 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\DSCF7901.JPG
[2010-09-07 22:55:55 | 000,138,056 | ---- | C] () -- C:\Documents and Settings\Administrator\Dane aplikacji\PnkBstrK.sys
[2010-08-25 22:48:54 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Administrator\Dane aplikacji\$_hpcst$.hpc
[2010-07-05 22:42:39 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Śmierdziochy skarpeciochy.AVI
[2010-05-25 15:54:24 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Obraz 029.jpg
[2010-05-25 15:46:37 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Obraz 033.jpg
[2010-05-25 15:44:38 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Obraz 026.jpg
[2010-05-25 15:43:35 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Obraz 027.jpg
[2010-05-25 15:42:48 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Obraz 034.jpg
[2010-05-25 15:41:43 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Obraz 016.jpg
[2010-05-25 15:41:12 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Obraz 008.jpg
[2010-05-25 15:39:22 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\Obraz 036.jpg
[2010-04-30 17:20:02 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\DSCF7843.JPG
[2010-04-29 16:59:44 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\DSC07740.JPG
[2010-03-08 16:33:54 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\A1.jpg
[2010-02-10 18:05:10 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Administrator\DSC07471.JPG
[2009-11-09 23:50:16 | 000,000,878 | ---- | C] () -- C:\Documents and Settings\Administrator\.recently-used.xbel
[2009-01-18 23:20:31 | 000,001,095 | ---- | C] () -- C:\Documents and Settings\Administrator\.zir.cfg
[2009-01-05 23:17:52 | 000,000,460 | RHS- | C] () -- C:\Documents and Settings\Administrator\ntuser.pol
[2009-01-05 22:51:00 | 000,000,460 | RHS- | C] () -- C:\Documents and Settings\All Users\ntuser.pol
[2008-07-22 10:43:55 | 000,000,041 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\.zreglib
[2008-06-18 20:28:24 | 000,000,008 | ---- | C] () -- C:\Documents and Settings\Administrator\Dane aplikacji\NMM-MetaData.db
[2007-08-24 21:34:43 | 000,000,305 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\addr_file.html
[2007-08-23 16:30:57 | 000,158,720 | ---- | C] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007-01-25 03:52:26 | 000,065,536 | ---- | C] () -- C:\Program Files\Common Files\NMSAccessU.exe

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2010-05-27 11:58:40 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\System32\shdocvw.dll -- [2007-06-14 20:11:18 | 001,494,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\System32\wbem\fastprox.dll -- [2004-08-04 00:43:58 | 000,472,064 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\System32\wbem\wbemess.dll -- [2004-08-04 00:44:14 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[color=#E56717]========== LOP Check ==========[/color]

[2008-03-06 18:55:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2008-03-06 19:22:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2008-06-01 13:35:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts
[2008-07-22 11:37:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\The Learning Company
[2009-01-10 20:18:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Karen's Power Tools
[2009-09-27 21:44:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2009-10-01 17:52:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nokia
[2009-12-14 17:04:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM
[2010-02-05 17:09:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Buena Vista Games
[2010-05-27 13:38:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BioWare
[2010-06-21 22:34:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ubisoft
[2010-07-07 13:26:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-09-12 14:06:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2011-05-02 23:10:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Mirillis
[2012-10-12 20:33:38 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files
[2012-10-12 20:33:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search
[2013-07-18 15:37:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData
[2013-07-18 15:43:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG2013
[2007-08-17 22:08:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\MusicIP
[2007-08-23 00:02:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Gadu-Gadu
[2007-08-23 23:10:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Jello
[2007-10-22 20:15:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Silver Style Entertainment
[2007-11-15 17:44:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\AidemMedia
[2007-12-30 14:59:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\uTorrent
[2008-01-31 16:54:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\GanymedeNet
[2008-02-17 15:49:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\XnView
[2008-03-06 19:21:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\PC Suite
[2008-03-06 19:21:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Nokia
[2008-03-24 11:44:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Disney Interactive
[2008-05-26 23:18:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Mobipocket
[2008-06-16 14:49:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Opera
[2008-06-18 20:28:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Nokia Multimedia Player
[2008-07-08 13:40:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\CoSoSys
[2008-12-14 11:33:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\HEXelon
[2009-03-28 16:47:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\gtk-2.0
[2009-08-01 20:06:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Intermedia Software
[2009-09-27 21:44:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\ipla
[2009-10-23 15:14:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Aidem Media
[2009-12-14 16:40:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Nowe Gadu-Gadu
[2009-12-14 17:04:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\OpenFM
[2010-05-11 20:36:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\FUJIFILM
[2010-06-21 22:34:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Ubisoft
[2010-07-07 13:26:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Gadu-Gadu 10
[2010-07-13 19:20:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Leadertech
[2010-08-25 22:48:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Samsung
[2010-09-12 14:06:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\DAEMON Tools Lite
[2011-02-12 18:20:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\HamsterSoft
[2011-05-02 23:10:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Mirillis
[2011-05-24 17:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Disney Interactive Studios
[2012-01-21 23:23:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\NapiProjekt
[2012-02-10 11:14:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\PITy2011
[2012-10-12 20:33:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\AVG Secure Search
[2013-03-16 11:11:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\PITy2012
[2013-03-30 10:04:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1
[2013-04-29 19:21:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\DealPly
[2013-07-18 15:43:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\TuneUp Software
[2013-07-18 15:50:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\AVG2013

[color=#E56717]========== Purity Check ==========[/color]



< End of report >


Extras.Txt
Kod: Zaznacz wszystko
OTL Extras logfile created on: 2013-07-18 22:45:35 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = D:\Piotrek\Programy i Tapety\OLT
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,50 Gb Total Physical Memory | 2,77 Gb Available Physical Memory | 79,16% Memory free
4,84 Gb Paging File | 4,14 Gb Available in Paging File | 85,47% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,82 Gb Total Space | 6,78 Gb Free Space | 13,88% Space Free | Partition Type: FAT32
Drive D: | 184,05 Gb Total Space | 10,83 Gb Free Space | 5,89% Space Free | Partition Type: NTFS

Computer Name: STACJONARNY | User Name: Administrator | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
http [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [FinePix] -- "C:\Program Files\FinePixViewer\FinePixViewer.exe" "%1" (FUJIFILM Corporation)
Directory [napiprojekt] -- "C:\Program Files\NapiProjekt\napisy.exe" "%1" ()
Directory [napiprojekt0] -- "C:\Program Files\NapiProjekt\napisy.exe" "%1" -pobierz_ang ()
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[color=#E56717]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Program Files\Gadu-Gadu\gg.exe" = C:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny
"C:\Program Files\BearShare Applications\BearShare\BearShare.exe" = C:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare
"C:\Program Files\eMule\emule.exe" = C:\Program Files\eMule\emule.exe:*:Enabled:eMule
"C:\Program Files\Techland\Xpand Rally Xtreme\XRX.exe" = C:\Program Files\Techland\Xpand Rally Xtreme\XRX.exe:*:Enabled:XpandRallyXtreme -- (Techland)
"D:\Gry\Midway Home Entertainment\BlackSite Area 51\Binaries\Blacksite.exe" = D:\Gry\Midway Home Entertainment\BlackSite Area 51\Binaries\Blacksite.exe:*:Enabled:Blacksite
"C:\WINDOWS\System32\dpvsetup.exe" = C:\WINDOWS\System32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test -- (Microsoft Corporation)
"C:\Program Files\Microsoft Games\Zoo Tycoon 2\zt.exe" = C:\Program Files\Microsoft Games\Zoo Tycoon 2\zt.exe:*:Enabled:Zoo Tycoon 2 Executable -- (Microsoft Corporation)
"D:\Gry\Innonics\Wiggles\Wiggles.exe" = D:\Gry\Innonics\Wiggles\Wiggles.exe:*:Enabled:Wiggles -- (SEK-Ost)
"D:\Gry\Medal of Honor\MOHAA.exe" = D:\Gry\Medal of Honor\MOHAA.exe:*:Enabled:Medal of Honor Allied Assault
"D:\Gry\Fifa 08\FIFA08.exe" = D:\Gry\Fifa 08\FIFA08.exe:*:Enabled:FIFA08
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe" = C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:Nokia Software Updater
"C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe" = C:\Program Files\Common Files\Nokia\Service Layer\A\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process
"C:\Program Files\Nowe Gadu-Gadu\gg.exe" = C:\Program Files\Nowe Gadu-Gadu\gg.exe:*:Enabled:Nowe Gadu-Gadu -- (GG Network S.A.)
"D:\Gry\Dragon Age\bin_ship\EACoreServer.exe" = D:\Gry\Dragon Age\bin_ship\EACoreServer.exe:*:Enabled:EA Core Server Application
"C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe" = C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher -- (Ubisoft)
"C:\Program Files\Gadu-Gadu 10\gg.exe" = C:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10
"C:\Program Files\GameSpy Arcade\Aphex.exe" = C:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade
"C:\Program Files\EA Sports\FIFA 10\FIFA10.exe" = C:\Program Files\EA Sports\FIFA 10\FIFA10.exe:*:Enabled:FIFA10
"C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server -- (PeeringPortal)
"C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe" = C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server -- (PeeringPortal)
"C:\WINDOWS\System32\PnkBstrA.exe" = C:\WINDOWS\System32\PnkBstrA.exe:*:Enabled:PnkBstrA -- ()
"C:\WINDOWS\System32\PnkBstrB.exe" = C:\WINDOWS\System32\PnkBstrB.exe:*:Enabled:PnkBstrB -- ()
"D:\Gry\Fifa 10\Game\fifa.exe" = D:\Gry\Fifa 10\Game\fifa.exe:*:Enabled:FIFA 11
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\WINDOWS\Twain_32\Samsung\ScanMgr.exe" = C:\WINDOWS\Twain_32\Samsung\ScanMgr.exe:*:Enabled:Scan Manger -- (Samsung Electronics)
"C:\WINDOWS\Twain_32\Samsung\SCX3200\Scan2Pc.exe" = C:\WINDOWS\Twain_32\Samsung\SCX3200\Scan2Pc.exe:*:Enabled:ScanToPC -- ()
"C:\WINDOWS\Twain_32\Samsung\SCX3200\Sscan2io.exe" = C:\WINDOWS\Twain_32\Samsung\SCX3200\Sscan2io.exe:*:Enabled:SScanToIO -- ()
"D:\Gry\Battlefield 2\BFBC2Updater.exe" = D:\Gry\Battlefield 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2
"D:\Gry\Battlefield 2\BFBC2Game.exe" = D:\Gry\Battlefield 2\BFBC2Game.exe:*:Enabled:Battlefield: Bad Company™ 2
"D:\Gry\Fifa 11\Game\fifa.exe" = D:\Gry\Fifa 11\Game\fifa.exe:*:Enabled:FIFA 11 -- (Electronic Arts)
"D:\Gry\Wiedzmin 2\bin\witcher2.exe" = D:\Gry\Wiedzmin 2\bin\witcher2.exe:*:Enabled:The Witcher 2: Assasins of Kings
"D:\Gry\Fifa 13\FIFA 13\Game\fifa13.exe" = D:\Gry\Fifa 13\FIFA 13\Game\fifa13.exe:*:Enabled:FIFA 13 -- (Electronic Arts)
"C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)
"C:\Program Files\AVG\AVG2013\avgnsx.exe" = C:\Program Files\AVG\AVG2013\avgnsx.exe:*:Enabled:Ochrona Sieci -- (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG2013\avgdiagex.exe" = C:\Program Files\AVG\AVG2013\avgdiagex.exe:*:Enabled:Diagnostyka AVG 2013 -- (AVG Technologies CZ, s.r.o.)
"C:\Program Files\AVG\AVG2013\avgmfapx.exe" = C:\Program Files\AVG\AVG2013\avgmfapx.exe:*:Enabled:Instalator AVG -- (AVG Technologies CZ, s.r.o.)


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{025D4907-5D2E-4146-95F7-54E18BE087DA}" = Xpand Rally Xtreme
"{0397B1DD-1474-40AE-9A20-6EB5BB999E8B}" = Areo Kalkulator
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0AA4761C-CAE1-485D-8609-D8AF4B916F43}" = Reksio - Miasto Sekretów
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{1943A043-5C85-4A16-A0D0-D687B2C1A40F}" = VirtualCom driver
"{1B4AA674-F5CA-4BB5-831A-CD37B4021959}" = ImageMixer for Sony
"{1D6FB37A-CBCA-11D6-8940-0002A5E32BEF}" = Prosiaczek i Przyjaciele
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86
"{241DBC8D-14E3-4240-8EE5-3AC35086B638}" = AVG 2013
"{24ED4D80-8294-11D5-96CD-0040266301AD}" = FinePixViewer Ver.5.5
"{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java(TM) 6 Update 18
"{29466F9C-7C6A-419C-B301-F440FAF78760}" = Nokia PC Suite
"{2BE97610-5E4E-434F-9E84-01B0AB49EC92}" = Gilbert Goodmate
"{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5
"{342126E1-173C-4585-BFBE-3EBDD20E3E9E}" = Mobipocket Reader 6.2
"{34B32B70-8081-11E2-89AF-B8AC6F98CCE3}" = Google Earth Plug-in
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3FCAADB8-EB1B-11D6-AB2D-0090271A23A2}" = Sound Blaster Live! Web 2K/XP
"{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}" = FIFA 11
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{52D02A2B-03D2-4E34-A358-DC5D951FD296}" = Nokia Connectivity Cable Driver
"{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features
"{58B269E7-5D66-4425-89C8-7EA0FDCD70C2}" = Splash Lite
"{5AF4B3C4-C393-48D7-AC7E-8E7615579548}" = Adobe AIR
"{5B119660-1788-11D8-8EB8-0050BF643EE7}" = digestIT 2004
"{5C19E2DC-4CCF-3114-B40A-6E565987025F}" = Microsoft .NET Framework 4 Extended PLK Language Pack
"{5DB65884-C963-4454-AABA-4CA3089281FA}" = NVIDIA PhysX
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{654A4E00-D4E7-11D5-BA56-00C0CA129740}" = Wiggles
"{65EB09A3-993B-401E-8936-C9708CBFAB26}" = FinePixViewer YTUPL
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6EA78F57-89F2-4B2E-8ADB-3FA6865D32EF}" = AVG 2013
"{6ECBFA90-1160-474A-A3B5-42BEDCB76F5D}" = RJ Calculator
"{7184F382-8A6C-4B85-A3AC-B63734B1E241}" = SAMSUNG Mobile USB Driver
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7472B5B4-3FB7-446F-BC78-6BBA506EC473}" = Opera 9.50
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX
"{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver
"{7EF15AAF-42AC-4CF6-B4B4-C4F0D1D92122}" = Far Cry (Patch 1.4)
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{8DF9E5E5-CD7C-40F0-AEFF-37E4F6034BCE}" = The Bard's Tale
"{90120000-0010-0415-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders  (Polish) 12
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90280415-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional z programem FrontPage
"{9065DCA0-D089-11D6-9AF3-00A0C9B5D9AE}" = MEP2003
"{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1" = ALLConverter PRO 1.1
"{94056AE8-EF0F-45E4-A1B4-D754115F8A28}" = Numedia CD-DVD writing as non-admin user
"{94FB906A-CF42-4128-A509-D353026A607E}" = REALTEK Gigabit and Fast Ethernet NIC Driver
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}" = MSXML 6.0 Parser
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AB49B509-8FCA-45E6-9FB9-9E4AEEB8F148}" = System Requirements Lab CYRI
"{AC599724-5755-48C1-ABE7-ABB857652930}" = PC Connectivity Solution
"{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.2 - Polish
"{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer
"{B44529FF-501E-47CD-A06D-223C161BE058}" = FinePixViewer Resource
"{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}" = PMB
"{B7C79672-0CE8-4EA1-BEB5-1D9019B9DADB}_is1" = PIT-OPP 2012 wersja 1.0.3
"{BEB3AD23-250E-4BD2-BBC9-27D4BB42DE07}" = COMODO System - Cleaner
"{BF6CF460-40C3-49BA-800A-4B934B6498B1}" = Scan Assistant
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C151CE54-E7EA-4804-854B-F515368B0798}" = AMD Processor Driver
"{C573C350-C666-586C-B309-7C9BD4A44BBF}" = e-Deklaracje Desktop
"{D8CE69B0-9274-4b8c-BA49-0FF6A20A3C65}" = SAMSUNG SYMBIAN USB Download Driver
"{DA6FAB8D-E87A-4E8E-A3D3-B7B9F479C725}" = forteManager
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder Seria 9
"{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}" = Wiedźmin Edycja Rozszerzona
"{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"{FF3D660E-E5CC-47FD-8050-1B4DE3BA81A9}" = Dual-Core Optimizer
"3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F" = Pakiet sterowników systemu Windows - Nokia pccsmcfd  (10/12/2007 6.85.4.0)
"6194C28A8F62DD817EA1B918E6E46E806A21B452" = Pakiet sterowników systemu Windows - MobileTop (sshpmdm) Modem  (02/23/2007 2.5.0.0)
"65B6FE5418CE28F4D72543FB2D964C3CEC83F161" = Pakiet sterowników systemu Windows - MobileTop (sshpusb) USB  (02/23/2007 2.5.0.0)
"6A630DCEC5EEC912115F2FF59D8C2C769798D930" = Pakiet sterowników systemu Windows - Nokia Modem  (10/12/2007 3.6)
"819D45A9F73817F5B6D7C71A33ADAB88C5DA1765" = Pakiet sterowników systemu Windows - Nokia Modem  (08/03/2007 6.84.0.2)
"Ace Ventura" = Ace Ventura
"Ad-aware 6 Personal" = Ad-aware 6 Personal
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Advanced Audio FX Engine" = Advanced Audio FX Engine
"ALLPlayer_is1" = ALLPlayer V5.X
"ArmageddonChess" = ArmageddonChess
"Audacity_is1" = Audacity 1.2.6
"AVG" = AVG 2013
"AVG Secure Search" = AVG Security Toolbar
"BiL_Olimpiada_Polish" = Bolek i Lolek - Olimpiada letnia
"C.a.R._is1" = C.a.R. Version 8.84
"CloneCD" = CloneCD
"Creative Live! Central" = Creative Live! Central
"Creative VF0415" = Creative Live! Cam Video IM Ultra (VF0415) (1.01.03.00)
"DealPly" = DealPly (remove only)
"Deluxe Ski Jump 3_is1" = Deluxe Ski Jump 3 v1.7.0 Komputer Świat Twój Niezbędnik 1/2010
"Digital Image Recovery_is1" = Digital Image Recovery 1.47
"E24870CB6AA1C3511635FF9020A3E9471287FBE7" = Pakiet sterowników systemu Windows - MobileTop (sshpmdm) Modem  (01/26/2008 2.6.0.0)
"EA Installer.-367263747" = EA Installer
"e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1" = e-Deklaracje Desktop
"Electronic Arts Game Updater" = Electronic Arts Game Updater
"ENCYKLOPEDIA PRAKTYCZNA PWN" = ENCYKLOPEDIA PRAKTYCZNA PWN
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EXPERTool_is1" = EXPERTool 7.5
"ffdshow_is1" = ffdshow v1.1.4206 [2011-12-27]
"GameDesire-Boards" = GameDesire-Boards
"GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker
"Gimnazjum klasa 1 - Puls życia" = Gimnazjum klasa 1 - Puls życia
"GraphCalc v4.0.1_is1" = GraphCalc v4.0.1
"Hamster Free Video Converter_is1" = HamsterFreeVideoConverter
"Hello" = Deinstalacja: Hello - angielski dla dzieci
"Hermes_ponadgim_2009" = Hermes_ponadgim_2009
"Heroes III (Wersja Polska)" = Heroes III (Wersja Polska)
"HEXelon MAX_is1" = HEXelon MAX 6.07
"HijackThis" = HijackThis 2.0.2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"InstallShield_{025D4907-5D2E-4146-95F7-54E18BE087DA}" = Xpand Rally Xtreme
"InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}" = Samsung New PC Studio USB Driver Installer
"InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio
"IrfanView" = IrfanView (remove only)
"iriver Firmware Updater" = iriver Firmware Updater (remove only)
"iriver plus 3" = iriver plus 3 (remove only)
"jv16 PowerTools_is1" = jv16 PowerTools 1.3
"Karen's Calculator" = Karen's Calculator
"LANGMaster 4.0 Beginner" = LANGMaster 4.0 - Beginner Level
"LANGMaster 4.0 Elementary" = LANGMaster 4.0 - Elementary Level
"LANGMaster 4.0 Intermediate" = LANGMaster 4.0 - Intermediate Level
"LANGMaster 4.0 LM_DIC" = LANGMaster 4.0 - Collins COBUILD Student's Dictionary
"Liceum zakres podstawowy - Biologia na czasie" = Liceum zakres podstawowy - Biologia na czasie
"Liceum zakres podstawowy - Krok w przedsiębiorczość" = Liceum zakres podstawowy - Krok w przedsiębiorczość
"lyrmix@lyrmix.net" = Lyrmix
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended
"Movie Converter" = Movie Converter (remove only)
"Mozilla Firefox (3.6.28)" = Mozilla Firefox (3.6.28)
"MWASPI" = MicroStaff WINASPI
"NapiProjekt_is1" = NapiProjekt 2.0.0 (build 2151)
"Nero - Burning Rom!UninstallKey" = Nero OEM
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Nokia PC Suite" = Nokia PC Suite
"Nowe Gadu-Gadu" = Nowe Gadu-Gadu
"NSS" = Norton Security Scan
"NVIDIA Drivers" = NVIDIA Drivers
"Odkurzacz 12.2_is1" = Odkurzacz 12.2
"Picasa 3" = Picasa 3
"PIT 2011 z Gazetą Wyborczą_is1" = PIT 2011 z Gazetą Wyborczą ver. 8.0.1.1
"PIT 2012 z Gazetą Wyborczą_is1" = PIT 2012 z Gazetą Wyborczą ver. 9.0.1.7
"PITy 2009_is1" = PITy 2009 dla Windows kompilacja:1.1.0.1
"PowerPoint 2007 - praktyczny kurs obsługi (poziom zaawansowany)" = PowerPoint 2007 - praktyczny kurs obsługi (poziom zaawansowany)
"Program Pit 2007 - rozliczenie roczne podatku dochodowego_is1" = Program Pit 2007 - wersja 1.0.0.27
"PunkBusterSvc" = PunkBuster Services
"QuickTime" = QuickTime
"RealAlt_is1" = Real Alternative 1.48
"Reksio - Tajemnica Średniowiecza_is1" = Reksio - Tajemnica Średniowiecza 0.7
"Reksio_Czarodzieje_Polish" = Reksio i Czarodzieje
"Reksio_i_Kapitan_Nemo._Polish" = Reksio i Kapitan Nemo
"Reksio_i_Kretes_w_Akcji._Polish" = Reksio i Kretes w Akcji
"Reksio_Kretes_3D_Polish" = Reksio i Kretes - Tajemnica Trzeciego Wymiaru
"Reksio_Piraci" = Reksio i Skarb Piratów
"Reksio_Ufo_Polish" = Reksio i Ufo
"ReksioPrzedszkole" = Wesołe Przedszkole Reksia
"Rozliczenie Roczne Rzeczpospolitej 2010" = Rozliczenie Roczne Rzeczpospolitej 2010
"SAMSUNG Android USB Modem" = SAMSUNG Android USB Modem Software
"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software
"SAMSUNG Mobile Modem V2" = SAMSUNG Mobile Modem V2 Software
"Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software
"SAMSUNG Mobile USB Download Driver" = SAMSUNG Mobile USB Download Driver Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"Samsung Mobile USB Modem Device" = Samsung Mobile USB Modem Device Software
"Samsung SCX-3200 Series" = Samsung SCX-3200 Series
"SAMSUNG USB Mobile Device" = SAMSUNG USB Mobile Device Software
"Shockwave" = Shockwave
"SpeedFan" = SpeedFan (remove only)
"Szkoła podstawowa klasa 6 - Dzień dobry historio!" = Szkoła podstawowa klasa 6 - Dzień dobry historio!
"The Whispered World/PL-Polish_is1" = The Whispered World
"To jest chemia – zakres podstawowy" = To jest chemia – zakres podstawowy
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Wesoła Szkoła 1_is1" = Wesoła Szkoła 1
"Wesoła Szkoła 2_is1" = Wesoła Szkoła 2
"WIC" = Windows Imaging Component
"Winamp" = Winamp
"Winamp PL" = Winamp 5.34 PL
"Windows Media Encoder 9" = Windows Media Encoder Seria 9
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows XP Service Pack" = Windows XP Service Pack 2
"WinRAR archiver" = Archiwizator WinRAR
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01005" = Microsoft User-Mode Driver Framework Feature Pack 1.5
"Xerox Phaser 3117" = Xerox Phaser 3117
"Xfire" = Xfire (remove only)
"XnView_is1" = XnView 1.82.4
"XP Codec Pack" = XP Codec Pack
"YdpDict100" = YDP Dictionary (English-Polish, Polish-English)
"Zoo Tycoon 2" = Zoo Tycoon 2

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-1482476501-1078081533-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"DealPly" = DealPly
"Google Chrome" = Google Chrome
"lollipop_07091431" = Lollipop

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2013-07-13 07:55:27 | Computer Name = STACJONARNY | Source = crypt32 | ID = 131080
Description = Nie można automatycznie pobrać aktualizacji numeru sekwencji głównej
listy innych firm z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>,
wystąpił błąd: Operacja została zwrócona, ponieważ przekroczono limit czasu. 

[ System Events ]
Error - 2013-07-18 16:24:46 | Computer Name = STACJONARNY | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
StiSvc z argumentami „”  w celu uruchomienia serwera:  {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 2013-07-18 16:24:58 | Computer Name = STACJONARNY | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
netman z argumentami „”  w celu uruchomienia serwera:  {BA126AE5-2166-11D1-B1D0-00805FC1270E}

Error - 2013-07-18 16:25:03 | Computer Name = STACJONARNY | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „”  w celu uruchomienia serwera:  {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2013-07-18 16:27:40 | Computer Name = STACJONARNY | Source = Service Control Manager | ID = 7006
Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił
następujący błąd:   %%5.

Error - 2013-07-18 16:27:40 | Computer Name = STACJONARNY | Source = Service Control Manager | ID = 7006
Description = Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił
następujący błąd:   %%5.

Error - 2013-07-18 16:27:40 | Computer Name = STACJONARNY | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi SSPORT z powodu następującego błędu:   %%2

Error - 2013-07-18 16:27:40 | Computer Name = STACJONARNY | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi VuuPC Connectivity z powodu następującego
błędu:   %%2

Error - 2013-07-18 16:27:40 | Computer Name = STACJONARNY | Source = Service Control Manager | ID = 7001
Description = Usługa VuuPC RemoteEngine Service zależy od usługi VuuPC Connectivity,
której nie można uruchomić z powodu następującego błędu:   %%2

Error - 2013-07-18 16:27:41 | Computer Name = STACJONARNY | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu:   %%2

Error - 2013-07-18 16:27:45 | Computer Name = STACJONARNY | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu:   %%2


< End of report >
Aeneus
~user
 
Posty: 1
Dołączenie: 18 Lip 2013, 23:17



Reklamy w nowym oknie przeglądarki

Postprzez Marco™ 14 Sie 2013, 15:19

Jeśli chcesz żeby znikły wszystkie reklamy to zrób tak jak podałem. Ściągamy dodatek do przeglądarki AdBlock , instalujemy i mamy po reklamach , żadna reklama nie dokuczy.

Myśle, że proste i jak zarazem skuteczne rozwiązanie, problemu z wyskakującymi reklamami ! :ok:
Wtedy nawet, szybkość neta się zwiększa więc polecam ! :ok:

Pozdrawiam.
Marco™

Pomagam w pytaniach NO-PW !
Awatar użytkownika
Marco™
~user
 
Posty: 4
Dołączenie: 13 Sie 2013, 16:23




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 11 gości