wklejto.pl

Dodane przez: ~Anonim (2014-01-26 18:44) -> text
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
307.
308.
309.
310.
311.
312.
313.
314.
315.
316.
317.
318.
319.
320.
321.
322.
323.
324.
325.
326.
327.
328.
329.
330.
331.
332.
333.
334.
335.
336.
337.
338.
339.
340.
341.
342.
343.
344.
345.
346.
347.
348.
349.
350.
351.
352.
353.
354.
355.
356.
357.
358.
359.
360.
361.
362.
363.
364.
365.
366.
367.
368.
369.
370.
371.
372.
373.
374.
375.
376.
OTL logfile created on: 2014-01-26 18:34:20 - Run 3
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Marcin\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
2,92 Gb Total Physical Memory | 1,85 Gb Available Physical Memory | 63,30% Memory free
5,84 Gb Paging File | 3,85 Gb Available in Paging File | 65,97% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 71,74 Gb Total Space | 7,95 Gb Free Space | 11,09% Space Free | Partition Type: NTFS
Drive D: | 204,87 Gb Total Space | 118,57 Gb Free Space | 57,88% Space Free | Partition Type: NTFS
Drive F: | 319,64 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive R: | 21,47 Gb Total Space | 11,95 Gb Free Space | 55,65% Space Free | Partition Type: FAT32
 
Computer Name: PCHLA | User Name: Marcin | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
PRC - [2014-01-03 01:46:10 | 030,714,328 | ---- | M] (Dropbox, Inc.) -- C:\Users\Marcin\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2013-12-10 22:09:30 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013-06-26 18:21:50 | 000,207,528 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2013-06-26 18:21:46 | 000,523,944 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2013-05-14 21:47:14 | 001,855,880 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_202.exe
PRC - [2013-04-26 13:57:22 | 001,177,224 | ---- | M] (WiseCleaner.com) -- C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe
PRC - [2013-03-08 09:00:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Marcin\Downloads\OTL.exe
PRC - [2013-01-29 14:29:00 | 000,188,760 | ---- | M] () -- C:\Program Files\IB Updater\ExtensionUpdaterService.exe
PRC - [2012-12-07 17:26:56 | 000,167,424 | ---- | M] () -- C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
PRC - [2011-10-20 21:04:26 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2011-03-06 02:39:25 | 003,054,136 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe
PRC - [2010-08-17 23:55:42 | 005,732,992 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
PRC - [2010-05-03 23:41:46 | 000,170,624 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
PRC - [2010-02-28 01:33:14 | 000,077,664 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\OFFICEVIRT.EXE
PRC - [2010-02-01 16:51:07 | 000,759,048 | ---- | M] (ABBYY) -- C:\Program Files (x86)\ABBYY PDF Transformer 3.0\NetworkLicenseServer.exe
PRC - [2009-12-15 19:39:38 | 000,096,896 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
PRC - [2009-10-01 04:34:22 | 002,314,240 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2009-10-01 04:33:08 | 000,262,144 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2009-06-24 21:30:18 | 000,272,952 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe
PRC - [2009-06-19 19:29:42 | 000,105,016 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
PRC - [2009-06-16 02:30:42 | 000,084,536 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
PRC - [2008-03-31 11:55:48 | 000,225,280 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
PRC - [2007-11-30 20:20:44 | 000,051,768 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
 
 
[color=#E56717]========== Modules (No Company Name) ==========[/color]
 
MOD - [2014-01-03 01:45:04 | 003,558,400 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2013-12-10 22:09:30 | 003,559,024 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013-10-19 00:55:02 | 025,100,288 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Dropbox\bin\libcef.dll
MOD - [2013-05-14 21:47:14 | 016,033,160 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll
MOD - [2010-02-28 01:33:14 | 000,077,664 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\OFFICEVIRT.EXE
MOD - [2007-11-30 20:20:44 | 000,051,768 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
MOD - [2007-06-15 19:28:36 | 000,147,456 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll
MOD - [2007-06-02 02:08:18 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll
 
 
[color=#E56717]========== Services (SafeList) ==========[/color]
 
SRV - [2013-12-10 22:09:30 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013-06-26 18:21:50 | 000,207,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2013-06-26 18:21:46 | 000,523,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2013-05-14 21:47:14 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013-04-25 17:12:00 | 000,580,232 | ---- | M] (WiseCleaner.com) [Auto | Stopped] -- C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe -- (WiseBootAssistant)
SRV - [2013-03-29 20:53:56 | 000,543,656 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2012-12-07 17:26:56 | 000,167,424 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service)
SRV - [2012-07-13 12:28:36 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012-01-04 13:32:36 | 000,718,888 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011-10-20 21:04:26 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2010-03-18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010-02-01 16:51:07 | 000,759,048 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files (x86)\ABBYY PDF Transformer 3.0\NetworkLicenseServer.exe -- (ABBYY.Licensing.PDFTransformer.Classic.3.0)
SRV - [2009-12-15 19:39:38 | 000,096,896 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv)
SRV - [2009-10-01 04:34:22 | 002,314,240 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2009-10-01 04:33:08 | 000,262,144 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2009-06-16 02:30:42 | 000,084,536 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe -- (ASLDRService)
SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008-03-31 11:55:48 | 000,225,280 | ---- | M] (ASUSTek Computer Inc.) [Auto | Running] -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe -- (ADSMService)
SRV - [2007-05-31 16:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007-05-31 16:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009-07-03 02:36:14 | 000,015,416 | ---- | M] (ASUS) [Kernel | Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com
IE - HKLM\..\URLSearchHook:  - No CLSID value found
IE - HKLM\..\URLSearchHook: {FE69C007-C452-4d3e-86D2-1730DF8BC871} - SOFTWARE\Classes\CLSID\{FE69C007-C452-4d3e-86D2-1730DF8BC871}\InprocServer32 File not found
IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\..\SearchScopes\{CD02666A-6E6E-4E7B-8D14-F3D37513AAA9}: "URL" = http://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
IE - HKU\S-1-5-21-2420711294-2208204609-851301438-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = C8 6D E1 1A 97 F6 CE 01  [binary data]
IE - HKU\S-1-5-21-2420711294-2208204609-851301438-1000\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKU\S-1-5-21-2420711294-2208204609-851301438-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
[color=#E56717]========== FireFox ==========[/color]
 
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
 
 
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\ZEON/PDF,version=2.0: C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Marcin\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}: C:\Program Files\IB Updater\Firefox [2013-03-11 23:12:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013-12-10 22:09:25 | 000,000,000 | ---D | M]
 
[2011-06-08 20:48:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Marcin\AppData\Roaming\mozilla\Extensions
[2013-09-26 21:08:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Marcin\AppData\Roaming\mozilla\Firefox\Profiles\bat3l6i0.default\extensions
[2013-06-02 20:53:00 | 000,006,503 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\mozilla\firefox\profiles\bat3l6i0.default\searchplugins\babylon.xml
[2013-01-03 13:51:36 | 000,002,432 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\mozilla\firefox\profiles\bat3l6i0.default\searchplugins\babylon1.xml
[2013-06-02 20:53:15 | 000,001,294 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\mozilla\firefox\profiles\bat3l6i0.default\searchplugins\delta.xml
[2013-12-10 22:09:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\Extensions
[2013-12-10 22:09:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013-12-10 22:09:30 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
 
[color=#E56717]========== Chrome  ==========[/color]
 
CHR - homepage: http://www.google.com/
CHR - default_search_provider:  ()
CHR - default_search_provider: search_url = 
CHR - default_search_provider: suggest_url = 
CHR - homepage: http://www.google.com/
CHR - Extension: No name found = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok\1.1_0\
CHR - Extension: No name found = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd\2.0.0.574_0\
CHR - Extension: No name found = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nohfdhapjjlndfgjnmdlcabloeembdkj\1.0\
CHR - Extension: No name found = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.4_0\
 
O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (no name) - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - No CLSID value found.
O3 - HKLM\..\Toolbar: (SimilarSites) - {FE69C007-C452-4d3e-86D2-1730DF8BC871} - C:\Program Files (x86)\SimilarSites\similarsites.dll File not found
O4 - HKLM..\Run: [ADSMTray] C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [ASUS Screen Saver Protector] C:\Windows\AsScrPro.exe (ASUS)
O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS)
O4 - HKLM..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKLM..\Run: [Nuance PDF Reader-reminder] C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2420711294-2208204609-851301438-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKU\S-1-5-21-2420711294-2208204609-851301438-1000..\Run: [Facebook Update] C:\Users\Marcin\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKU\S-1-5-21-2420711294-2208204609-851301438-1000..\Run: [lollipop_01222050] c:\users\marcin\appdata\local\lollipop\lollipop_01222050.exe ()
O4 - HKU\S-1-5-21-2420711294-2208204609-851301438-1000..\Run: [NextLive] C:\Users\Marcin\AppData\Roaming\newnext.me\nengine.dll (NewNextDotMe)
O4 - Startup: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Marcin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-2420711294-2208204609-851301438-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 0
O7 - HKU\S-1-5-21-2420711294-2208204609-851301438-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 221
O7 - HKU\S-1-5-21-2420711294-2208204609-851301438-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: SimilarSites - {807DF5E0-4EF7-48a8-A405-239F3E29FFA9} - C:\Program Files (x86)\SimilarSites\similarsites.dll File not found
O9 - Extra Button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0017-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_07-windows-i586.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{00312FDA-5D98-4148-9E5D-8FF38A63EB4C}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4956465C-B140-49B4-A82E-F2E47149FAB5}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D5455270-2BDC-4105-B5CA-81626DE31013}: DhcpNameServer = 95.160.170.92 88.156.222.92 82.139.8.40
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012-07-14 18:26:19 | 000,031,408 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O32 - AutoRun File - [1999-02-17 14:35:56 | 000,173,878 | R--- | M] () - F:\Autoplay.bmp -- [ CDFS ]
O32 - AutoRun File - [1999-02-16 10:14:00 | 000,040,960 | R--- | M] () - F:\Autoplay.exe -- [ CDFS ]
O32 - AutoRun File - [1999-05-11 09:49:26 | 000,000,384 | R--- | M] () - F:\Autoplay.ini -- [ CDFS ]
O32 - AutoRun File - [1999-02-22 18:39:44 | 000,000,053 | R--- | M] () - F:\Autorun.inf -- [ CDFS ]
O33 - MountPoints2\{1eaa0fbb-701a-11e3-98bf-f46d048044b0}\Shell - "" = AutoRun
O33 - MountPoints2\{1eaa0fbb-701a-11e3-98bf-f46d048044b0}\Shell\AutoRun\command - "" = F:\Autoplay.exe -- [1999-02-16 10:14:00 | 000,040,960 | R--- | M] ()
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2014-01-19 13:49:38 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\EeeStorageUploader
[2014-01-12 16:42:02 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Desktop\Corsairs PL (BIN)
[2014-01-12 16:38:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\directx
[2014-01-12 16:38:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids
[2014-01-12 16:38:01 | 000,304,640 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUn0415.exe
[2014-01-12 16:35:37 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop
[2014-01-12 16:35:36 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\Lollipop
[2014-01-12 16:34:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2014-01-12 16:34:08 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\DAEMON Tools Lite
[2014-01-12 16:34:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2014-01-12 16:33:40 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2014-01-12 16:26:41 | 000,000,000 | ---D | C] -- C:\Users\Marcin\.android
[2014-01-12 16:26:40 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\cache
[2014-01-12 16:26:39 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\newnext.me
[2014-01-12 16:26:39 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Documents\Mobogenie
[2014-01-12 16:26:39 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\Mobogenie
[2014-01-12 16:26:39 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\genienext
[2014-01-12 16:26:00 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
[2014-01-10 14:56:30 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\{B99E038C-67CF-4A0D-B8CC-5EA5925E0444}
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2014-01-26 18:28:10 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014-01-26 17:47:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014-01-26 17:45:00 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2420711294-2208204609-851301438-1000UA.job
[2014-01-25 20:44:03 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2420711294-2208204609-851301438-1000Core.job
[2014-01-25 08:47:25 | 000,012,579 | ---- | M] () -- C:\Users\Marcin\Desktop\schemat żywienia.odt
[2014-01-23 23:06:03 | 000,006,319 | ---- | M] () -- C:\Users\Marcin\Desktop\Maraton.odt
[2014-01-23 21:08:10 | 000,000,424 | ---- | M] () -- C:\Windows\tasks\Wise Care 365.job
[2014-01-21 23:03:57 | 000,000,404 | ---- | M] () -- C:\Windows\tasks\Wise Turbo Checker.job
[2014-01-20 22:20:25 | 004,195,697 | ---- | M] () -- C:\Users\Marcin\Desktop\lqfk7qzWUd6m_GuJK-gbICByMm6FqeVzi5TbxnQJAmw.rar
[2014-01-20 21:09:55 | 000,001,051 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014-01-20 21:09:47 | 000,001,021 | ---- | M] () -- C:\Users\Marcin\Desktop\Dropbox.lnk
[2014-01-20 21:07:53 | 2350,284,800 | -HS- | M] () -- C:\hiberfil.sys
[2014-01-19 16:50:36 | 000,010,035 | ---- | M] () -- C:\Users\Marcin\Desktop\B.I. Schemat żywienia.odt
[2014-01-19 16:48:57 | 000,010,045 | ---- | M] () -- C:\Users\Marcin\Desktop\Schemta żywieniowy Olga.odt
[2014-01-18 20:52:01 | 000,000,678 | ---- | M] () -- C:\Users\Marcin\Desktop\4368 × 2912 - pl.gdefon.com.URL
[2014-01-18 20:50:03 | 000,032,892 | ---- | M] () -- C:\Users\Marcin\Desktop\nowy-jork-brooklyn-bridge-night-plakat-91-5x61cm-3708179937.jpg
[2014-01-12 20:49:15 | 000,010,652 | ---- | M] () -- C:\Users\Marcin\Desktop\Justynka dieta.odt
[2014-01-12 16:54:33 | 000,001,678 | ---- | M] () -- C:\Windows\Corsairs.isu
[2014-01-12 16:41:34 | 202,931,330 | ---- | M] () -- C:\Users\Marcin\Desktop\Corsairs PL (BIN).rar
[2014-01-12 16:35:08 | 000,001,912 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2014-01-06 20:55:58 | 000,010,091 | ---- | M] () -- C:\Users\Marcin\Desktop\Karolina.odt
[2014-01-06 20:31:54 | 000,010,117 | ---- | M] () -- C:\Users\Marcin\Desktop\Adalos.odt
[2014-01-06 17:37:34 | 000,010,171 | ---- | M] () -- C:\Users\Marcin\Desktop\Schemat żywieniowy M.Z..odt
[2014-01-03 19:12:39 | 000,165,683 | ---- | M] () -- C:\Users\Marcin\Desktop\pefrumy łojek.jpg
[2013-12-30 10:36:24 | 000,052,828 | ---- | M] () -- C:\Users\Marcin\Desktop\Szczegoly_operacji_2013-12-30_10-36-22.pdf
[2013-12-29 00:48:14 | 004,195,590 | ---- | M] () -- C:\Users\Marcin\Desktop\7e3O-an7MQtfrXpDr1g_Tmi3u_VT22sdAZ9YLl9BScY
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2014-01-25 08:45:14 | 000,012,579 | ---- | C] () -- C:\Users\Marcin\Desktop\schemat żywienia.odt
[2014-01-23 22:59:04 | 000,006,319 | ---- | C] () -- C:\Users\Marcin\Desktop\Maraton.odt
[2014-01-20 22:20:25 | 004,195,697 | ---- | C] () -- C:\Users\Marcin\Desktop\lqfk7qzWUd6m_GuJK-gbICByMm6FqeVzi5TbxnQJAmw.rar
[2014-01-19 16:50:35 | 000,010,035 | ---- | C] () -- C:\Users\Marcin\Desktop\B.I. Schemat żywienia.odt
[2014-01-19 16:46:50 | 000,010,045 | ---- | C] () -- C:\Users\Marcin\Desktop\Schemta żywieniowy Olga.odt
[2014-01-18 20:52:01 | 000,000,678 | ---- | C] () -- C:\Users\Marcin\Desktop\4368 × 2912 - pl.gdefon.com.URL
[2014-01-18 20:50:03 | 000,032,892 | ---- | C] () -- C:\Users\Marcin\Desktop\nowy-jork-brooklyn-bridge-night-plakat-91-5x61cm-3708179937.jpg
[2014-01-12 20:47:54 | 000,010,652 | ---- | C] () -- C:\Users\Marcin\Desktop\Justynka dieta.odt
[2014-01-12 16:38:06 | 000,001,678 | ---- | C] () -- C:\Windows\Corsairs.isu
[2014-01-12 16:35:08 | 000,001,912 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2014-01-12 10:55:32 | 202,931,330 | ---- | C] () -- C:\Users\Marcin\Desktop\Corsairs PL (BIN).rar
[2014-01-06 20:50:42 | 000,010,091 | ---- | C] () -- C:\Users\Marcin\Desktop\Karolina.odt
[2014-01-06 20:40:00 | 000,000,932 | ---- | C] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2420711294-2208204609-851301438-1000UA.job
[2014-01-06 20:39:57 | 000,000,910 | ---- | C] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2420711294-2208204609-851301438-1000Core.job
[2014-01-06 20:31:54 | 000,010,117 | ---- | C] () -- C:\Users\Marcin\Desktop\Adalos.odt
[2014-01-06 17:34:20 | 000,010,171 | ---- | C] () -- C:\Users\Marcin\Desktop\Schemat żywieniowy M.Z..odt
[2014-01-03 19:12:38 | 000,165,683 | ---- | C] () -- C:\Users\Marcin\Desktop\pefrumy łojek.jpg
[2013-12-30 10:36:24 | 000,052,828 | ---- | C] () -- C:\Users\Marcin\Desktop\Szczegoly_operacji_2013-12-30_10-36-22.pdf
[2013-12-29 00:48:10 | 004,195,590 | ---- | C] () -- C:\Users\Marcin\Desktop\7e3O-an7MQtfrXpDr1g_Tmi3u_VT22sdAZ9YLl9BScY
[2013-02-06 22:32:26 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012-09-25 21:24:28 | 000,007,605 | ---- | C] () -- C:\Users\Marcin\AppData\Local\Resmon.ResmonCfg
[2012-02-02 08:42:01 | 000,005,120 | ---- | C] () -- C:\Users\Marcin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-06-26 11:34:32 | 000,000,000 | ---- | C] () -- C:\Users\Marcin\AppData\Local\{F59F63E5-CA84-4848-8F5B-685D59302E07}
[2011-03-06 02:15:33 | 000,131,472 | ---- | C] () -- C:\ProgramData\FullRemove.exe
 
[color=#E56717]========== ZeroAccess Check ==========[/color]
 
[2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013-07-26 03:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013-07-26 02:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
[color=#E56717]========== LOP Check ==========[/color]
 
[2014-01-19 13:49:35 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Asus WebStorage
[2013-01-03 13:51:07 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Babylon
[2012-09-05 22:28:10 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\blueconnect
[2014-01-12 16:37:14 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\DAEMON Tools Lite
[2014-01-26 12:36:45 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Dropbox
[2013-04-28 18:42:27 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\DSite
[2014-01-19 13:49:38 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\EeeStorageUploader
[2013-08-11 07:10:53 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\GG
[2013-03-19 22:10:42 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\HTC
[2013-02-06 23:25:46 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\IObit
[2012-07-17 21:41:54 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\ipla
[2012-09-16 09:34:49 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\KC Softwares
[2013-04-28 18:43:31 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Mipony Download Manager Packages
[2011-06-12 18:42:11 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Mount&Blade
[2014-01-26 18:35:28 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\newnext.me
[2012-02-02 09:59:16 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Nokia
[2011-06-05 22:03:51 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Nowe Gadu-Gadu
[2011-06-05 23:17:07 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Nuance
[2013-02-06 21:52:22 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\OpenCandy
[2012-02-02 10:07:56 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\PC Suite
[2013-01-03 13:51:11 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\SimilarSites
[2014-01-20 16:44:14 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\SoftGrid Client
[2012-08-24 23:58:32 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\The Creative Assembly
[2011-06-11 18:56:00 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\TP
[2012-12-15 19:05:38 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\TuneUp Software
[2012-09-16 08:14:08 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\uTorrent
[2012-11-01 13:58:42 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\wargaming.net
[2012-01-08 22:32:26 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Win7codecs
[2014-01-20 22:15:25 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Wise Care 365
[2011-06-05 23:17:02 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Zeon
 
[color=#E56717]========== Purity Check ==========[/color]
 
 
 
[color=#E56717]========== Alternate Data Streams ==========[/color]
 
@Alternate Data Stream - 151 bytes -> C:\ProgramData\Temp:0B4227B4
 
< End of report >
 
Wygenerowano w 0.073s, przy pomocy GeSHi 1.0.8
'
Podziel się na Facebook Podziel się na BLIP Podziel się na Twitter Podziel się na Buzz Podziel się na Flaker Dodaj zakładkę Google Podziel się na Delicious Wykop to!

Nowy Komentarz:

Komentarze:

Brak Komentarzy!