wklejto.pl

Dodane przez: ~Anonim (2012-06-05 15:46) -> text
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
307.
308.
309.
310.
311.
312.
313.
314.
315.
316.
317.
318.
319.
320.
321.
322.
323.
324.
325.
326.
327.
328.
329.
330.
331.
332.
333.
334.
335.
336.
337.
338.
339.
340.
341.
342.
343.
344.
345.
346.
347.
348.
349.
350.
351.
352.
353.
354.
355.
356.
357.
358.
359.
360.
361.
362.
363.
364.
365.
366.
367.
368.
369.
370.
371.
372.
373.
374.
375.
376.
377.
378.
379.
380.
381.
382.
383.
384.
385.
386.
387.
388.
389.
390.
391.
392.
393.
394.
395.
396.
397.
398.
399.
400.
401.
402.
403.
404.
405.
406.
407.
408.
409.
410.
411.
412.
413.
414.
415.
416.
417.
418.
419.
420.
421.
422.
423.
424.
425.
426.
427.
428.
429.
430.
431.
432.
433.
434.
435.
436.
437.
438.
439.
440.
441.
442.
443.
444.
445.
446.
447.
448.
449.
450.
451.
452.
453.
454.
455.
456.
457.
458.
459.
460.
461.
462.
463.
464.
465.
466.
467.
468.
469.
470.
471.
472.
473.
474.
475.
476.
477.
478.
479.
480.
481.
482.
483.
484.
485.
486.
487.
488.
489.
490.
491.
492.
493.
494.
495.
496.
497.
498.
499.
500.
501.
502.
503.
504.
505.
506.
507.
508.
509.
510.
511.
512.
513.
514.
515.
516.
517.
518.
519.
520.
521.
522.
523.
524.
525.
526.
527.
528.
529.
530.
531.
532.
533.
534.
535.
536.
537.
538.
539.
540.
541.
542.
543.
544.
545.
546.
547.
548.
549.
550.
551.
552.
553.
554.
555.
556.
557.
558.
559.
560.
561.
562.
563.
564.
565.
566.
567.
568.
569.
570.
571.
572.
573.
574.
575.
576.
577.
578.
579.
580.
581.
582.
583.
584.
585.
586.
587.
588.
589.
590.
591.
592.
593.
594.
595.
596.
597.
598.
599.
600.
601.
602.
603.
604.
605.
606.
607.
608.
609.
610.
611.
612.
613.
614.
615.
616.
617.
618.
619.
620.
621.
622.
623.
624.
625.
626.
627.
628.
629.
630.
631.
632.
633.
634.
635.
636.
637.
638.
639.
640.
641.
642.
643.
644.
645.
646.
647.
648.
649.
650.
651.
652.
653.
654.
655.
656.
657.
658.
659.
660.
661.
662.
663.
664.
665.
666.
667.
668.
669.
670.
671.
672.
673.
674.
675.
676.
677.
678.
679.
680.
681.
682.
683.
684.
685.
686.
687.
688.
689.
690.
691.
692.
693.
694.
695.
696.
697.
698.
699.
700.
701.
702.
703.
704.
705.
706.
707.
708.
709.
710.
711.
712.
713.
714.
715.
716.
717.
718.
719.
720.
721.
722.
723.
724.
725.
726.
727.
728.
729.
730.
731.
732.
733.
734.
735.
736.
737.
738.
739.
740.
741.
742.
743.
744.
745.
746.
747.
748.
749.
750.
751.
752.
753.
754.
755.
756.
757.
758.
759.
760.
761.
762.
763.
764.
765.
OTL logfile created on: 05-06-12 15:24:28 - Run 2
 
OTL by OldTimer - Version 3.2.46.0     Folder = C:\Users\Ja\Downloads
 
 Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
 
Internet Explorer (Version = 9.0.8112.16421)
 
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: dd-MM-yy
 
 
 
2,98 Gb Total Physical Memory | 1,57 Gb Available Physical Memory | 52,55% Memory free
 
5,96 Gb Paging File | 4,43 Gb Available in Paging File | 74,28% Paging File free
 
Paging file location(s): ?:\pagefile.sys [binary data]
 
 
 
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
 
Drive C: | 273,40 Gb Total Space | 56,12 Gb Free Space | 20,53% Space Free | Partition Type: NTFS
 
Drive D: | 182,26 Gb Total Space | 60,63 Gb Free Space | 33,26% Space Free | Partition Type: NTFS
 
Drive W: | 10,00 Gb Total Space | 5,04 Gb Free Space | 50,42% Space Free | Partition Type: NTFS
 
 
 
Computer Name: JA-MSI | User Name: Ja | Logged in as Administrator.
 
Boot Mode: Normal | Scan Mode: All users
 
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
 
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
 
 
PRC - [2012-06-04 22:47:47 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Ja\Downloads\OTL.exe
 
PRC - [2012-05-15 12:26:00 | 001,262,400 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
 
PRC - [2012-05-15 11:28:16 | 001,820,480 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
 
PRC - [2012-05-15 11:27:34 | 000,857,920 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
 
PRC - [2012-05-06 02:26:32 | 000,351,904 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_11_2_202_235_ActiveX.exe
 
PRC - [2012-03-26 17:08:12 | 000,931,200 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
 
PRC - [2012-03-26 17:03:40 | 000,011,552 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\MsMpEng.exe
 
PRC - [2012-03-11 16:51:05 | 000,307,824 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
 
PRC - [2011-02-25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE
 
PRC - [2011-02-25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
 
PRC - [2011-02-18 07:39:44 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\prevhost.exe
 
PRC - [2010-11-20 14:17:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
 
PRC - [2010-10-27 20:17:52 | 000,207,424 | ---- | M] (ArcSoft Inc.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
 
PRC - [2010-06-08 17:42:18 | 000,581,632 | ---- | M] (THOMSON Telecom Belgium) -- C:\Program Files\Thomson\ST330\service\st330service.exe
 
PRC - [2010-04-13 09:57:58 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
 
PRC - [2010-04-13 09:57:56 | 000,284,696 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
 
PRC - [2010-04-01 11:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
 
PRC - [2010-03-18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
 
PRC - [2010-01-29 14:31:48 | 000,080,384 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files\ArcSoft\MediaImpression 2\ArcMonitor.exe
 
PRC - [2009-11-10 02:02:16 | 000,647,680 | ---- | M] (Macrovision Europe Ltd.) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
 
PRC - [2009-07-23 04:56:24 | 000,474,888 | ---- | M] (Motorola, Inc.) -- C:\Program Files\Motorola\Bluetooth\obexsrv.exe
 
PRC - [2009-07-23 04:55:46 | 003,473,672 | ---- | M] (Motorola, Inc.) -- C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
 
PRC - [2009-07-23 04:54:30 | 000,709,384 | ---- | M] (Motorola, Inc.) -- C:\Program Files\Motorola\Bluetooth\audiosrv.exe
 
PRC - [2009-03-27 13:10:56 | 000,014,336 | ---- | M] (LSI Corporation) -- C:\Program Files\LSI SoftModem\agrsmsvc.exe
 
PRC - [2007-02-13 16:22:06 | 001,205,840 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
 
 
 
 
 
[color=#E56717]========== Modules (No Company Name) ==========[/color]
 
 
 
MOD - [2012-05-12 00:34:34 | 000,452,608 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\701baa4d78031ac5130eadea085bbebf\IAStorUtil.ni.dll
 
MOD - [2012-05-09 21:29:42 | 011,833,344 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\1a690902e9a6293de228c16fab21e2f7\System.Web.ni.dll
 
MOD - [2012-05-09 21:29:35 | 000,771,584 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\03dee80574f4ec770b6f77ca030ded6c\System.Runtime.Remoting.ni.dll
 
MOD - [2012-05-09 21:29:00 | 012,433,408 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\90555968565afd59bce4b0974e9903bd\System.Windows.Forms.ni.dll
 
MOD - [2012-05-09 21:28:52 | 001,590,784 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\69f6e582cb79f107c61308b468c1a215\System.Drawing.ni.dll
 
MOD - [2012-05-09 21:28:35 | 003,347,968 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\46fce56db7685a586d3eeb7c373e3c1c\WindowsBase.ni.dll
 
MOD - [2012-05-09 21:28:29 | 005,452,800 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ba3d70b651454c7d49b407b93663bfed\System.Xml.ni.dll
 
MOD - [2012-05-09 21:28:25 | 000,971,264 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cfa9c506bfb9254c89dace7b83bc9f9d\System.Configuration.ni.dll
 
MOD - [2012-05-09 21:28:24 | 007,967,232 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\ce9ff6baf9053ed2ed673d948179195c\System.ni.dll
 
MOD - [2012-05-09 21:28:06 | 011,492,864 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\acfc1391e45fedd2a359778ea57d914c\mscorlib.ni.dll
 
MOD - [2010-11-13 03:57:46 | 000,311,296 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll
 
MOD - [2009-11-10 02:35:41 | 000,032,768 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_pl_b77a5c561934e089\System.Runtime.Remoting.resources.dll
 
MOD - [2007-02-13 16:22:06 | 001,205,840 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
 
MOD - [2006-11-27 14:20:36 | 000,094,208 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\Languages\polish.dll
 
 
 
 
 
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
 
 
 
SRV - [2012-05-15 12:26:00 | 001,262,400 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
 
SRV - [2012-05-08 22:26:32 | 000,257,696 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
 
SRV - [2012-05-03 08:31:10 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
 
SRV - [2012-03-26 17:03:40 | 000,214,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
 
SRV - [2012-03-26 17:03:40 | 000,011,552 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
 
SRV - [2011-02-28 19:44:14 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
 
SRV - [2011-02-25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
 
SRV - [2010-11-20 14:19:33 | 000,068,096 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\System32\Mcx2Svc.dll -- (Mcx2Svc)
 
SRV - [2010-11-05 03:52:39 | 000,128,848 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing)
 
SRV - [2010-09-22 16:33:04 | 000,051,040 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
 
SRV - [2010-06-08 17:42:18 | 000,581,632 | ---- | M] () [Auto | Running] -- C:\Program Files/Thomson/ST330/service/st330service.exe -- (st330service)
 
SRV - [2010-05-20 18:56:26 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
 
SRV - [2010-04-13 09:57:58 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) Intel(R)
 
SRV - [2010-03-18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
 
SRV - [2009-11-10 02:02:16 | 000,647,680 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Running] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
 
SRV - [2009-08-07 00:17:40 | 000,094,096 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe -- (TurboBoost)
 
SRV - [2009-07-23 04:56:24 | 000,474,888 | ---- | M] (Motorola, Inc.) [Auto | Running] -- C:\Program Files\Motorola\Bluetooth\obexsrv.exe -- (Bluetooth OBEX Service)
 
SRV - [2009-07-23 04:55:46 | 003,473,672 | ---- | M] (Motorola, Inc.) [On_Demand | Running] -- C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe -- (Bluetooth Device Manager)
 
SRV - [2009-07-23 04:54:30 | 000,709,384 | ---- | M] (Motorola, Inc.) [On_Demand | Running] -- C:\Program Files\Motorola\Bluetooth\audiosrv.exe -- (Bluetooth Media Service)
 
SRV - [2009-07-14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
 
SRV - [2009-07-14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
 
SRV - [2009-07-14 03:15:41 | 000,075,264 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\System32\mprdim.dll -- (RemoteAccess)
 
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
SRV - [2009-03-27 13:10:56 | 000,014,336 | ---- | M] (LSI Corporation) [Auto | Running] -- C:\Program Files\LSI SoftModem\agrsmsvc.exe -- (AgereModemAudio)
 
 
 
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
 
 
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbmdm.sys -- (hwdatacard)
 
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Ja\AppData\Local\Temp\cpuz132\cpuz132_x32.sys -- (cpuz132)
 
DRV - File not found [Kernel | On_Demand | Unknown] --  -- (axntx0wz)
 
DRV - [2012-06-05 08:19:28 | 000,029,904 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0073439D-96FB-4E8E-A068-D11810631EF3}\MpKsl73201d65.sys -- (MpKsl73201d65)
 
DRV - [2012-05-15 12:26:00 | 011,354,944 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
 
DRV - [2012-04-18 19:08:04 | 000,148,800 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA)
 
DRV - [2012-03-20 20:44:12 | 000,074,112 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
 
DRV - [2010-11-20 12:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
 
DRV - [2010-11-20 11:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
 
DRV - [2010-11-20 10:42:28 | 000,246,784 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\System32\drivers\udfs.sys -- (udfs)
 
DRV - [2010-06-29 20:17:42 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sptd.sys -- (sptd)
 
DRV - [2010-05-26 17:59:52 | 000,136,304 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\jmcr.sys -- (JMCR)
 
DRV - [2010-05-19 15:07:41 | 000,032,000 | ---- | M] (THOMSON Telecom Belgium) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\stppp.sys -- (stppp)
 
DRV - [2010-05-19 14:07:37 | 000,040,320 | ---- | M] (THOMSON Telecom Belgium) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\steth.sys -- (STETH)
 
DRV - [2010-05-19 14:07:37 | 000,030,464 | ---- | M] (THOMSON Telecom Belgium) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\st330.sys -- (ST330)
 
DRV - [2010-05-19 14:07:37 | 000,012,672 | ---- | M] (THOMSON Telecom Belgium) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\stbus.sys -- (STBUS)
 
DRV - [2010-05-10 10:44:48 | 000,022,328 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\MSI\MSIWDev\DVDSYS32_100507.sys -- (MSI_DVD_010507)
 
DRV - [2010-05-10 10:44:42 | 000,025,912 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\MSI\MSIWDev\msibios32_100507.sys -- (MSI_MSIBIOS_010507)
 
DRV - [2010-05-10 10:44:36 | 000,016,696 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\MSI\MSIWDev\VGASYS32_100507.sys -- (MSI_VGASYS_010507)
 
DRV - [2009-09-21 10:20:46 | 000,017,320 | ---- | M] (JMicron ) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\johci.sys -- (johci)
 
DRV - [2009-09-15 06:40:18 | 006,114,816 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw5s32.sys -- (NETw5s32) Intel(R)
 
DRV - [2009-08-07 00:16:18 | 000,014,808 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\TurboB.sys -- (TurboB)
 
DRV - [2009-07-14 03:20:28 | 000,022,096 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\crcdisk.sys -- (crcdisk)
 
DRV - [2009-07-14 01:55:02 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\ws2ifsl.sys -- (ws2ifsl)
 
DRV - [2009-07-14 01:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
 
DRV - [2009-07-14 01:11:15 | 000,070,656 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\System32\drivers\cdfs.sys -- (cdfs)
 
DRV - [2009-07-14 00:13:45 | 001,068,032 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\smserial.sys -- (smserial)
 
DRV - [2009-07-14 00:01:42 | 000,516,608 | ---- | M] (Motorola, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btmusb.sys -- (BTMUSB)
 
DRV - [2009-07-10 03:13:30 | 000,040,448 | ---- | M] (Motorola, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btmcom.sys -- (BTMCOM)
 
DRV - [2009-06-30 00:30:50 | 000,027,008 | ---- | M] (Motorola, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btmhid.sys -- (btmhid)
 
DRV - [2009-05-20 09:08:40 | 000,059,904 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\enecir.sys -- (enecir)
 
DRV - [2009-05-19 16:59:26 | 000,011,776 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\enecirhid.sys -- (enecirhid)
 
DRV - [2009-04-06 12:12:44 | 001,161,664 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AGRSM.sys -- (AgereSoftModem)
 
DRV - [2008-04-25 16:06:40 | 000,017,920 | ---- | M] (ArcSoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ArcSoftKsUFilter.sys -- (ArcSoftKsUFilter)
 
DRV - [2008-04-24 13:16:00 | 000,005,632 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\enecirhidma.sys -- (enecirhidma)
 
DRV - [2007-02-07 16:50:32 | 000,118,552 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\adiusbaw.sys -- (adiusbaw)
 
DRV - [2007-02-07 16:50:14 | 000,056,088 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\adildr.sys -- (ELOADER) General Purpose USB Driver (adildr.sys)
 
DRV - [2006-11-10 15:05:00 | 000,018,688 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\afc.sys -- (Afc)
 
DRV - [2005-11-02 16:47:26 | 000,010,368 | R--- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\pfc.sys -- (pfc)
 
DRV - [2003-12-08 11:53:48 | 000,053,600 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\alcan5wn.sys -- (alcan5wn) SpeedTouch USB ADSL PPP Networking Driver (NDISWAN)
 
DRV - [2003-12-08 11:53:46 | 000,070,688 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\alcaudsl.sys -- (alcaudsl)
 
 
 
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
 
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
 
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.myheritage.com
 
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
 
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
 
 
 
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
 
 
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msi.com
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - No CLSID value found
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\URLSearchHook: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - No CLSID value found
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\SearchScopes\{05BA1A35-BF65-4A17-9528-3516CB4AB047}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1060933
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\SearchScopes\{5EDB8259-D1AE-47B8-A099-CE8B85875DE3}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=9M&apn_dtid=OSJ000&apn_uid=30C74886-F856-42E9-BBFF-E9C60B9614C6&apn_sauid=E5D9BDEB-19CD-470C-8922-2F6F41E8AA43
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7GZAZ_plPL390
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\SearchScopes\{8BA2ED9F-3C18-4E2C-919B-6BAE9A2FE9E8}: "URL" = http://www.google.com/search?hl=pl&q={searchTerms}&rlz=1I7GZAZ_plPL390
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\SearchScopes\{9249EF7B-7685-469D-9DD7-3B3E4918B3E5}: "URL" = http://start.funmoods.com/results.php?f=4&a=ironto&q={searchTerms}
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search/web?q={searchTerms}
 
IE - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
 
 
 
 
[color=#E56717]========== FireFox ==========[/color]
 
 
 
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
 
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
 
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
 
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
 
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
 
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
 
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
 
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
 
 
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}: C:\Program Files\PriceGong\2.6.4\FF [2012-04-06 00:17:32 | 000,000,000 | ---D | M]
 
 
 
[2012-04-05 23:09:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
 
 
 
[color=#E56717]========== Chrome  ==========[/color]
 
 
 
CHR - default_search_provider:  ()
 
CHR - default_search_provider: search_url = 
 
CHR - default_search_provider: suggest_url = 
 
CHR - Extension: No name found = C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2_0\
 
CHR - Extension: No name found = C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.14_0\
 
CHR - Extension: No name found = C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_0\
 
CHR - Extension: No name found = C:\Users\Ja\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\6.1.3_0\
 
 
 
O1 HOSTS File: ([2009-06-10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
 
O2 - BHO: (Complitly) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\Ja\AppData\Roaming\Complitly\Complitly.dll (SimplyGen)
 
O2 - BHO: (Shopping Assistant Plugin) - {1631550F-191D-4826-B069-D9439253D926} - C:\Program Files\PriceGong\2.6.4\PriceGongIE.dll (PriceGong)
 
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
 
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
 
O2 - BHO: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
 
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
 
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
 
O3 - HKLM\..\Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
 
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
 
O3 - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\Toolbar\WebBrowser: (no name) - {1392B8D2-5C05-419F-A8F6-B9F15A596612} - No CLSID value found.
 
O3 - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
 
O3 - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
 
O4 - HKLM..\Run: []  File not found
 
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
 
O4 - HKLM..\Run: [ArcSoft MediaImpression Monitor] C:\Program Files\ArcSoft\MediaImpression 2\ArcMonitor.exe (ArcSoft, Inc.)
 
O4 - HKLM..\Run: [BTMTrayAgent] C:\Program Files\Motorola\Bluetooth\btmshell.dll (Motorola, Inc.)
 
O4 - HKLM..\Run: [diagnostics] C:\Program Files\Thomson\ST330\diagnostics\diagnostics.exe (THOMSON Telecom Belgium)
 
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
 
O4 - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
 
O4 - HKLM..\Run: [UpdatePDRShortCut] C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
 
O4 - HKU\S-1-5-21-170643856-2187143731-4158878059-1000..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
 
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
 
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
 
O4 - HKU\S-1-5-21-170643856-2187143731-4158878059-1007..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
 
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
 
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\windows\System32\GPhotos.scr (Google Inc.)
 
O13 - gopher Prefix: missing
 
O15 - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..Trusted Domains: com ([www.msi] http in Zaufane witryny)
 
O15 - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..Trusted Domains: com.tw ([asia.msi] http in Zaufane witryny)
 
O15 - HKU\S-1-5-21-170643856-2187143731-4158878059-1000\..Trusted Domains: com.tw ([global.msi] http in Zaufane witryny)
 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{071EE267-837F-48E0-AF6E-3C5AC9460580}: NameServer = 194.204.152.34 194.204.159.1
 
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D76DFB51-D657-4A11-8380-91C9B4E381E4}: DhcpNameServer = 192.168.0.1
 
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
 
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
 
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
 
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
 
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
 
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
 
O32 - HKLM CDRom: AutoRun - 1
 
O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
 
O33 - MountPoints2\{bd77be18-85c0-11df-89ea-4061861bc052}\Shell - "" = AutoRun
 
O33 - MountPoints2\{bd77be1c-85c0-11df-89ea-4061861bc052}\Shell - "" = AutoRun
 
O33 - MountPoints2\G\Shell - "" = AutoRun
 
O34 - HKLM BootExecute: (autocheck autochk *)
 
O35 - HKLM\..comfile [open] -- "%1" %*
 
O35 - HKLM\..exefile [open] -- "%1" %*
 
O37 - HKLM\...com [@ = comfile] -- "%1" %*
 
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
 
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
 
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
 
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
 
 
[2012-06-04 22:17:34 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{7D2DBD30-D07F-41BD-B625-C0B3475FADCF}
 
[2012-06-04 22:17:31 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{31767215-BBB4-4EBD-AF70-C6188B806C9E}
 
[2012-06-04 21:13:58 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{8966151C-7067-4C9B-94F1-F83F679878E2}
 
[2012-06-04 10:47:13 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{B5F4EB97-9C2F-47C0-9C4A-5E6CADB45511}
 
[2012-06-03 20:45:55 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
 
[2012-06-03 20:45:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
 
[2012-06-03 20:45:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
 
[2012-06-03 19:24:26 | 019,607,872 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvoglv32.dll
 
[2012-06-03 19:24:26 | 017,551,680 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvcompiler.dll
 
[2012-06-03 19:24:26 | 011,354,944 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\drivers\nvlddmkm.sys
 
[2012-06-03 19:24:26 | 005,982,528 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvcuda.dll
 
[2012-06-03 19:24:26 | 002,524,992 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvcuvid.dll
 
[2012-06-03 19:24:26 | 002,445,120 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvcuvenc.dll
 
[2012-06-03 19:24:26 | 000,148,800 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\drivers\nvhda32v.sys
 
[2012-06-03 19:24:26 | 000,027,968 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvhdap32.dll
 
[2012-06-03 18:57:29 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{D0B5FABF-832D-4622-B254-28F7DFECEC3A}
 
[2012-06-03 18:56:47 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{858922A4-4FDC-4A28-8A71-D798B91D5625}
 
[2012-05-29 00:16:59 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{2F39B6EE-DD4A-4AC8-8ECE-67A8377BCA7B}
 
[2012-05-29 00:16:56 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{5D788F3A-F1BF-4D7B-9288-8BF976AEB3DD}
 
[2012-05-26 17:59:23 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{C80165A4-DD0B-4A0D-B174-FE53C9E6B721}
 
[2012-05-26 17:59:19 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{9067390A-2A46-4942-818F-749677147B11}
 
[2012-05-26 00:21:37 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{4FBB83B2-D75B-44A3-982A-761FA9C616F8}
 
[2012-05-26 00:21:35 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{734F33C4-D079-4B56-9E61-E27FECAAA0BA}
 
[2012-05-22 23:04:20 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{783086EE-ECF2-441D-BFE2-EF2D10B86FE9}
 
[2012-05-22 23:04:18 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{F1987857-AB92-48C8-B627-9BA827056D6C}
 
[2012-05-20 13:25:48 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{1AACBBB3-FECD-4347-983E-717B215EFB41}
 
[2012-05-20 13:19:36 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{4BC304C3-3A4C-4C93-A444-8A76B21C190B}
 
[2012-05-20 02:16:42 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{A9EBE731-A4DF-43DE-B380-3D4B6A9186B6}
 
[2012-05-19 22:59:04 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{6D4829FC-D925-4481-841A-50C48075FA2D}
 
[2012-05-19 22:59:01 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{55E3E9EA-EBA1-4D40-BA63-C6870CD277C4}
 
[2012-05-13 22:15:26 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{C48C70D2-3897-4602-B233-A78625910090}
 
[2012-05-13 22:15:20 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{BCC9E2CD-BAAE-4173-B28B-875F7994858E}
 
[2012-05-12 21:51:35 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\{433A4C52-2402-4D10-A526-201E5FFC4644}
 
[2012-05-08 21:40:11 | 003,968,368 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntkrnlpa.exe
 
[2012-05-08 21:40:10 | 003,913,072 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntoskrnl.exe
 
[2012-05-08 21:40:10 | 002,343,424 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\win32k.sys
 
[2012-05-08 21:39:47 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\DWrite.dll
 
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
 
 
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
 
 
[2012-06-05 15:26:00 | 000,000,930 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
 
[2012-06-05 14:55:00 | 000,001,028 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
 
[2012-06-05 12:40:49 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
 
[2012-06-05 08:26:59 | 000,017,600 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
 
[2012-06-05 08:26:59 | 000,017,600 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
 
[2012-06-05 08:19:01 | 000,001,024 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
 
[2012-06-05 08:18:56 | 000,065,536 | ---- | M] () -- C:\windows\System32\Ikeext.etl
 
[2012-06-05 08:18:43 | 2401,800,192 | -HS- | M] () -- C:\hiberfil.sys
 
[2012-06-04 00:46:59 | 000,114,849 | ---- | M] () -- C:\Users\Ja\Desktop\Skype.jpg
 
[2012-06-03 20:45:55 | 000,002,505 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
 
[2012-06-02 01:18:36 | 000,716,572 | ---- | M] () -- C:\windows\System32\perfh015.dat
 
[2012-06-02 01:18:36 | 000,625,758 | ---- | M] () -- C:\windows\System32\perfh009.dat
 
[2012-06-02 01:18:36 | 000,142,018 | ---- | M] () -- C:\windows\System32\perfc015.dat
 
[2012-06-02 01:18:36 | 000,112,786 | ---- | M] () -- C:\windows\System32\perfc009.dat
 
[2012-05-28 19:18:18 | 000,212,002 | ---- | M] () -- C:\Users\Ja\Desktop\historia_110201956010_20110527_20120528.pdf
 
[2012-05-23 02:16:17 | 000,018,432 | ---- | M] () -- C:\Users\Ja\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 
[2012-05-15 12:26:00 | 019,607,872 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvoglv32.dll
 
[2012-05-15 12:26:00 | 017,551,680 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcompiler.dll
 
[2012-05-15 12:26:00 | 015,322,432 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvd3dum.dll
 
[2012-05-15 12:26:00 | 011,354,944 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\drivers\nvlddmkm.sys
 
[2012-05-15 12:26:00 | 008,105,280 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvwgf2um.dll
 
[2012-05-15 12:26:00 | 005,982,528 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcuda.dll
 
[2012-05-15 12:26:00 | 002,524,992 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcuvid.dll
 
[2012-05-15 12:26:00 | 002,445,120 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcuvenc.dll
 
[2012-05-15 12:26:00 | 002,368,832 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvapi.dll
 
[2012-05-15 12:26:00 | 001,000,768 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvdispco32.dll
 
[2012-05-15 12:26:00 | 000,883,008 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvgenco32.dll
 
[2012-05-15 12:26:00 | 000,061,248 | ---- | M] (Khronos Group) -- C:\windows\System32\OpenCL.dll
 
[2012-05-15 12:26:00 | 000,011,190 | ---- | M] () -- C:\windows\System32\nvinfo.pb
 
[2012-05-15 11:28:50 | 002,561,344 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvsvcr.dll
 
[2012-05-15 11:28:49 | 000,108,352 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvmctray.dll
 
[2012-05-15 11:28:49 | 000,062,272 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvshext.dll
 
[2012-05-15 11:28:48 | 003,931,456 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcpl.dll
 
[2012-05-15 11:27:28 | 002,759,488 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvsvc.dll
 
[2012-05-13 01:03:53 | 000,008,288 | -HS- | M] () -- C:\Users\Ja\Documents\Spis tre[ci programu OneNote.onetoc2
 
[2012-05-09 21:26:59 | 000,438,240 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
 
[2012-05-08 22:26:32 | 000,419,488 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerApp.exe
 
[2012-05-08 22:26:31 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerCPLApp.cpl
 
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
 
 
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
 
 
[2012-06-04 00:40:14 | 000,114,849 | ---- | C] () -- C:\Users\Ja\Desktop\Skype.jpg
 
[2012-06-03 20:45:55 | 000,002,505 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
 
[2012-05-28 19:18:18 | 000,212,002 | ---- | C] () -- C:\Users\Ja\Desktop\historia_110201956010_20110527_20120528.pdf
 
[2012-01-25 22:09:50 | 000,430,080 | ---- | C] () -- C:\windows\System32\ZSHP1018.EXE
 
[2011-06-10 06:34:52 | 000,080,416 | ---- | C] () -- C:\windows\System32\RtNicProp32.dll
 
[2011-04-06 22:34:51 | 000,006,688 | ---- | C] () -- C:\windows\System32\Digita.sys
 
[2011-04-06 22:34:48 | 000,335,872 | ---- | C] () -- C:\windows\System32\ldf252.dll
 
[2010-10-29 13:46:25 | 000,000,176 | ---- | C] () -- C:\windows\System32\drivers\RTHDAEQ0.dat
 
[2010-07-29 13:29:21 | 000,018,432 | ---- | C] () -- C:\Users\Ja\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
 
[2010-06-29 12:34:33 | 000,000,069 | ---- | C] () -- C:\windows\NeroDigital.ini
 
 
 
[color=#E56717]========== LOP Check ==========[/color]
 
 
 
[2011-04-06 23:19:56 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\ACD Systems
 
[2011-02-24 02:26:33 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Blender Foundation
 
[2011-02-24 02:27:33 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\CadSoft
 
[2011-12-16 01:53:12 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Complitly
 
[2010-06-29 20:24:14 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\DAEMON Tools Lite
 
[2010-06-02 22:21:58 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Error Fix
 
[2011-02-16 22:54:16 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Opera
 
[2010-05-30 16:38:42 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Template
 
[2010-07-02 12:45:21 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\TextPad
 
[2012-01-24 00:34:04 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Thinstall
 
[2010-12-06 00:20:27 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Uniblue
 
[2010-11-07 22:02:00 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Windows Live Writer
 
[2012-04-30 19:28:06 | 000,032,604 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT
 
 
 
[color=#E56717]========== Purity Check ==========[/color]
 
 
 
 
 
 
 
< End of report >
 
 
Wygenerowano w 0.484s, przy pomocy GeSHi 1.0.8
'
Podziel się na Facebook Podziel się na BLIP Podziel się na Twitter Podziel się na Buzz Podziel się na Flaker Dodaj zakładkę Google Podziel się na Delicious Wykop to!

Nowy Komentarz:

Komentarze:

Brak Komentarzy!