1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
307.
308.
309.
310.
311.
312.
313.
314.
315.
316.
317.
318.
319.
320.
321.
322.
323.
324.
325.
326.
327.
328.
329.
330.
331.
332.
333.
334.
335.
336.
337.
338.
339.
340.
341.
342.
343.
344.
345.
346.
347.
348.
349.
350.
351.
352.
353.
354.
355.
356.
357.
358.
359.
360.
361.
362.
363.
364.
365.
366.
367.
368.
369.
370.
371.
372.
373.
374.
375.
376.
377.
378.
379.
380.
381.
382.
383.
384.
385.
386.
387.
388.
389.
390.
391.
392.
393.
394.
395.
396.
397.
398.
399.
400.
401.
402.
403.
404.
405.
406.
407.
408.
409.
410.
411.
412.
413.
414.
415.
416.
417.
418.
419.
420.
421.
422.
423.
424.
425.
426.
427.
428.
429.
430.
431.
432.
433.
434.
435.
436.
437.
438.
439.
440.
441.
442.
443.
444.
445.
446.
447.
448.
449.
450.
451.
452.
453.
454.
455.
456.
457.
458.
459.
460.
461.
462.
463.
464.
465.
466.
467.
468.
469.
470.
471.
472.
473.
474.
475.
476.
477.
478.
479.
480.
481.
482.
483.
484.
485.
486.
487.
488.
489.
490.
491.
492.
493.
494.
495.
496.
497.
498.
499.
500.
501.
502.
503.
504.
505.
506.
507.
508.
509.
510.
511.
512.
513.
514.
515.
516.
517.
518.
519.
520.
521.
522.
523.
524.
525.
526.
527.
528.
529.
530.
531.
532.
533.
534.
535.
536.
537.
538.
539.
540.
541.
542.
543.
544.
545.
546.
547.
548.
549.
550.
551.
552.
553.
554.
555.
556.
557.
558.
559.
560.
561.
562.
563.
564.
565.
566.
567.
568.
569.
570.
571.
572.
573.
574.
575.
576.
577.
578.
579.
580.
581.
582.
583.
584.
585.
586.
587.
588.
589.
590.
591.
592.
593.
594.
595.
596.
597.
598.
599.
600.
601.
602.
603.
604.
605.
606.
607.
608.
609.
610.
611.
612.
613.
614.
615.
616.
617.
618.
619.
620.
621.
622.
623.
624.
625.
626.
627.
628.
629.
630.
631.
632.
633.
634.
635.
636.
637.
638.
639.
640.
641.
642. | OTL logfile created on: 2009-12-21 21:41:24 - Run 1
OTL by OldTimer - Version 3.1.19.0 Folder = C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\Pobieranie
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
511,00 Mb Total Physical Memory | 253,00 Mb Available Physical Memory | 49,00% Memory free
6,00 Gb Paging File | 6,00 Gb Available in Paging File | 94,00% Paging File free
Paging file location(s): [Binary data over 100 bytes]
%SystemDrive% = C: | %SystemRoot% = C:\\WINDOWS | %ProgramFiles% = C:\\Program Files
Drive C: | 39,06 Gb Total Space | 10,46 Gb Free Space | 26,77% Space Free | Partition Type: NTFS
Drive D: | 88,93 Gb Total Space | 33,77 Gb Free Space | 37,97% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: BLASZAKIII
Current User Name: Cys
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
[color=#E56717]========== Processes (All) ==========[/color]
PRC - [2009-12-21 21:39:29 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\Pobieranie\\OTL.exe
PRC - [2009-12-16 19:27:06 | 00,908,248 | ---- | M] (Mozilla Corporation) -- C:\\Program Files\\Mozilla Firefox\\firefox.exe
PRC - [2009-11-17 15:18:22 | 06,807,552 | ---- | M] (Creative Team S.A.) -- C:\\Program Files\\WapSter\\WapSter AQQ\\AQQ.exe
PRC - [2009-11-12 17:31:25 | 00,190,160 | ---- | M] () -- C:\\WINDOWS\\system32\\PnkBstrB.exe
PRC - [2009-11-06 09:52:10 | 00,075,064 | ---- | M] () -- C:\\WINDOWS\\system32\\PnkBstrA.exe
PRC - [2009-10-15 11:41:33 | 00,323,392 | ---- | M] (BitTorrent, Inc.) -- C:\\Program Files\\DNA\\btdna.exe
PRC - [2009-09-21 18:35:07 | 00,520,024 | ---- | M] (Lavasoft) -- C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWTray.exe
PRC - [2009-09-21 18:35:02 | 01,028,432 | ---- | M] (Lavasoft) -- C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWService.exe
PRC - [2009-04-23 14:51:38 | 00,691,656 | ---- | M] (DT Soft Ltd) -- C:\\Program Files\\DAEMON Tools Lite\\daemon.exe
PRC - [2009-02-09 11:10:45 | 00,111,104 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\services.exe
PRC - [2009-02-06 17:39:29 | 00,227,840 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wbem\\wmiprvse.exe
PRC - [2007-04-23 18:21:46 | 02,158,592 | ---- | M] () -- C:\\Program Files\\Vtune\\TBPANEL.exe
PRC - [2007-04-19 05:26:00 | 00,159,810 | ---- | M] (NVIDIA Corporation) -- C:\\WINDOWS\\system32\\nvsvc32.exe
PRC - [2007-04-16 14:28:22 | 00,577,536 | ---- | M] (Realtek Semiconductor Corp.) -- C:\\WINDOWS\\soundman.exe
PRC - [2004-08-28 19:27:04 | 00,295,424 | ---- | M] (http://autoconnect.prv.pl) -- C:\\Program Files\\AutoConnect\\AutoConnect.exe
PRC - [2004-08-23 13:49:56 | 00,040,960 | ---- | M] (France Telecom) -- C:\\WINDOWS\\system32\\FTRTSVC.exe
PRC - [2004-08-11 01:45:04 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wdfmgr.exe
PRC - [2004-08-04 00:44:30 | 00,504,832 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\winlogon.exe
PRC - [2004-08-04 00:44:30 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wscntfy.exe
PRC - [2004-08-04 00:44:28 | 00,057,856 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\spoolsv.exe
PRC - [2004-08-04 00:44:28 | 00,050,688 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\smss.exe
PRC - [2004-08-04 00:44:28 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\rundll32.exe
PRC - [2004-08-04 00:44:28 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe [RPCSS]
PRC - [2004-08-04 00:44:28 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe [NETWORKSERVICE]
PRC - [2004-08-04 00:44:28 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe [NETSVCS]
PRC - [2004-08-04 00:44:28 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe [LOCALSERVICE]
PRC - [2004-08-04 00:44:28 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe [LOCALSERVICE]
PRC - [2004-08-04 00:44:28 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe [DCOMLAUNCH]
PRC - [2004-08-04 00:44:22 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\lsass.exe
PRC - [2004-08-04 00:44:20 | 01,033,728 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\explorer.exe
PRC - [2004-08-04 00:44:20 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ctfmon.exe
PRC - [2004-08-04 00:44:20 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\csrss.exe
PRC - [2004-08-04 00:44:18 | 00,044,544 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\alg.exe
PRC - [2004-01-26 11:38:38 | 00,866,816 | ---- | M] (THOMSON Telecom Belgium) -- C:\\Program Files\\Thomson\\SpeedTouch USB\\dragdiag.exe
PRC - [2001-10-26 18:30:04 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wbem\\unsecapp.exe
[color=#E56717]========== Modules (All) ==========[/color]
MOD - [2009-12-21 21:39:29 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\Pobieranie\\OTL.exe
MOD - [2009-12-21 15:19:38 | 00,218,716 | RHS- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Ustawienia lokalne\\Temp\\cvasds0.dll
MOD - [2009-12-16 15:30:57 | 00,061,440 | ---- | M] (msconfig) -- C:\\WINDOWS\\system32\\xml_inc.dll
MOD - [2009-09-12 20:39:39 | 00,057,344 | RHS- | M] () -- C:\\WINDOWS\\system32\\flashadgmn32.dll
MOD - [2009-03-21 15:21:24 | 01,014,784 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\kernel32.dll
MOD - [2009-02-20 09:32:52 | 00,662,016 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wininet.dll
MOD - [2009-02-20 09:32:52 | 00,474,112 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\shlwapi.dll
MOD - [2009-02-09 11:22:08 | 00,686,080 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\advapi32.dll
MOD - [2009-02-09 11:22:06 | 00,722,944 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ntdll.dll
MOD - [2009-02-03 21:11:07 | 00,055,808 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\secur32.dll
MOD - [2008-10-23 14:01:37 | 00,283,648 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\gdi32.dll
MOD - [2008-10-15 18:00:47 | 00,332,800 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\netapi32.dll
MOD - [2008-07-03 14:16:27 | 08,483,328 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\shell32.dll
MOD - [2004-08-04 00:44:32 | 00,146,432 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\winspool.drv
MOD - [2004-08-04 00:44:16 | 00,172,544 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wldap32.dll
MOD - [2004-08-04 00:44:16 | 00,082,944 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ws2_32.dll
MOD - [2004-08-04 00:44:16 | 00,019,968 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ws2help.dll
MOD - [2004-08-04 00:44:14 | 00,729,088 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\userenv.dll
MOD - [2004-08-04 00:44:14 | 00,578,560 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\user32.dll
MOD - [2004-08-04 00:44:14 | 00,219,648 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\uxtheme.dll
MOD - [2004-08-04 00:44:14 | 00,018,944 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\version.dll
MOD - [2004-08-04 00:44:12 | 00,067,584 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\srclient.dll
MOD - [2004-08-04 00:44:10 | 00,996,352 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\setupapi.dll
MOD - [2004-08-04 00:44:10 | 00,581,120 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\rpcrt4.dll
MOD - [2004-08-04 00:44:10 | 00,064,000 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\samlib.dll
MOD - [2004-08-04 00:44:10 | 00,023,040 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\psapi.dll
MOD - [2004-08-04 00:44:08 | 01,281,024 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ole32.dll
MOD - [2004-08-04 00:44:08 | 00,553,472 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\oleaut32.dll
MOD - [2004-08-04 00:44:08 | 00,119,808 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ntmarta.dll
MOD - [2004-08-04 00:44:08 | 00,083,456 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\olepro32.dll
MOD - [2004-08-04 00:44:06 | 00,343,040 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\msvcrt.dll
MOD - [2004-08-04 00:44:04 | 00,294,400 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\msctf.dll
MOD - [2004-08-04 00:44:04 | 00,057,344 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\msasn1.dll
MOD - [2004-08-04 00:44:02 | 00,095,744 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\iphlpapi.dll
MOD - [2004-08-04 00:43:58 | 00,185,856 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wbem\\framedyn.dll
MOD - [2004-08-04 00:43:56 | 00,601,088 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\crypt32.dll
MOD - [2004-08-04 00:43:56 | 00,266,240 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ddraw.dll
MOD - [2004-08-04 00:43:56 | 00,008,704 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\dciman32.dll
MOD - [2004-08-04 00:42:34 | 01,050,624 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\WinSxS\\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\\comctl32.dll
MOD - [2002-07-16 11:16:00 | 00,544,837 | ---- | M] (NVIDIA Corporation) -- C:\\WINDOWS\\system32\\nview.dll
MOD - [2002-07-16 11:16:00 | 00,094,208 | ---- | M] (NVIDIA Corporation) -- C:\\WINDOWS\\system32\\nvwrspl.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - File not found [On_Demand | Stopped] -- -- (NMIndexingService)
SRV - [2009-11-12 17:31:25 | 00,190,160 | ---- | M] () [Auto | Running] -- C:\\WINDOWS\\system32\\PnkBstrB.exe -- (PnkBstrB)
SRV - [2009-11-06 09:52:10 | 00,075,064 | ---- | M] () [Auto | Running] -- C:\\WINDOWS\\system32\\PnkBstrA.exe -- (PnkBstrA)
SRV - [2009-11-06 09:20:16 | 00,051,168 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\\Program Files\\NOS\\bin\\getPlus_Helper.dll -- (getPlusHelper) getPlus(R)
SRV - [2009-09-21 18:35:02 | 01,028,432 | ---- | M] (Lavasoft) [Auto | Running] -- C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2009-08-19 20:20:08 | 00,133,104 | ---- | M] (Google Inc.) [Auto | Stopped] -- C:\\Program Files\\Google\\Update\\GoogleUpdate.exe -- (gupdate1ca210217f035b0) Usługa Google Update (gupdate1ca210217f035b0)
SRV - [2009-08-19 20:16:45 | 00,190,448 | ---- | M] (Google) [Auto | Stopped] -- C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe -- (gusvc)
SRV - [2007-04-19 05:26:00 | 00,159,810 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\\WINDOWS\\system32\\nvsvc32.exe -- (NVSvc)
SRV - [2004-08-23 13:49:56 | 00,040,960 | ---- | M] (France Telecom) [Auto | Running] -- C:\\WINDOWS\\system32\\FTRTSVC.exe -- (FTRTSVC)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2009-11-12 17:31:42 | 00,139,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\\WINDOWS\\system32\\drivers\\PnkBstrK.sys -- (PnkBstrK)
DRV - [2009-10-14 13:54:03 | 00,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\\WINDOWS\\System32\\Drivers\\sptd.sys -- (sptd)
DRV - [2009-08-27 07:58:02 | 00,025,280 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\hamachi.sys -- (hamachi)
DRV - [2009-06-01 18:45:44 | 00,064,160 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\\WINDOWS\\system32\\DRIVERS\\Lbd.sys -- (Lbd)
DRV - [2009-02-25 18:55:00 | 00,009,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\\RivaTuner v2.24\\RivaTuner32.sys -- (RivaTuner32)
DRV - [2008-09-24 09:40:22 | 04,122,368 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2008-07-21 13:11:58 | 00,024,392 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\\WINDOWS\\system32\\drivers\\ElbyCDIO.sys -- (ElbyCDIO)
DRV - [2007-04-19 05:26:00 | 03,988,384 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\nv4_mini.sys -- (nv)
DRV - [2007-03-16 09:11:38 | 00,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\\WINDOWS\\system32\\drivers\\TBPanel.sys -- (TBPanel)
DRV - [2007-03-16 09:11:38 | 00,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\\WINDOWS\\system32\\drivers\\TBPanel.sys -- (Cardex)
DRV - [2006-09-24 14:28:46 | 00,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- C:\\WINDOWS\\system32\\speedfan.sys -- (speedfan)
DRV - [2004-08-03 22:08:22 | 00,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\gameenum.sys -- (gameenum)
DRV - [2003-12-08 11:53:48 | 00,053,600 | ---- | M] (THOMSON) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\alcan5wn.sys -- (alcan5wn) SpeedTouch USB ADSL PPP Networking Driver (NDISWAN)
DRV - [2003-12-08 11:53:46 | 00,070,688 | ---- | M] (THOMSON) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\alcaudsl.sys -- (alcaudsl)
DRV - [2003-08-04 13:22:44 | 00,016,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\\WINDOWS\\system32\\PCANDIS5.SYS -- (PCANDIS5)
DRV - [2002-06-27 13:02:00 | 00,014,048 | ---- | M] (NVIDIA Corporation) [Kernel | Auto | Stopped] -- C:\\WINDOWS\\system32\\drivers\\nvtvsnd.sys -- (nvtvSND)
DRV - [2002-06-27 13:02:00 | 00,010,398 | ---- | M] (NVIDIA Corporation) [Kernel | Auto | Stopped] -- C:\\WINDOWS\\system32\\drivers\\nvxbar.sys -- (NVXBAR)
DRV - [2001-10-26 17:02:28 | 00,907,584 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- C:\\WINDOWS\\system32\\drivers\\HCF_MSFT.sys -- (HCF_MSFT)
DRV - [2001-08-17 22:49:56 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\ptilink.sys -- (Ptilink)
DRV - [2001-07-22 03:41:32 | 00,027,440 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\\WINDOWS\\system32\\drivers\\secdrv.sys -- (Secdrv)
DRV - [1996-04-03 20:33:26 | 00,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\\WINDOWS\\system32\\giveio.sys -- (giveio)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Local Page = %SystemRoot%\\system32\\blank.htm
IE - HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Start Page = http://www.ask.com/?o=101764&l=dis
IE - HKCU\\..\\URLSearchHook: {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\\Program Files\\neostrada tp\\SearchPageURL.dll ()
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyEnable\" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.search.defaultenginename: \"Ask\"
FF - prefs.js..browser.search.order.1: \"Ask\"
FF - prefs.js..browser.search.selectedEngine: \"Google\"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: \"about:blank\"
FF - prefs.js..extensions.enabledItems: {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1
FF - prefs.js..extensions.enabledItems: 6
FF - prefs.js..extensions.enabledItems: 2
FF - prefs.js..extensions.enabledItems: 49
FF - prefs.js..extensions.enabledItems: {E9A1DEE0-C623-4439-8932-001E7D17607D}:2.1.0.5
FF - prefs.js..extensions.enabledItems: battlefieldheroespatcher@ea.com:4.0.27.0
FF - prefs.js..extensions.enabledItems: fastdial@telega.phpnet.us:2.23b1
FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.1.04
FF - prefs.js..keyword.URL: \"http://toolbar.ask.com/toolbarv/askRedirect?o=101761&gct=&gc=1&q=\"
FF - HKLM\\software\\mozilla\\Mozilla Firefox 3.5.6\\extensions\\\\Components: C:\\Program Files\\Mozilla Firefox\\components [2009-12-16 19:27:12 | 00,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Mozilla Firefox 3.5.6\\extensions\\\\Plugins: C:\\Program Files\\Mozilla Firefox\\plugins [2009-12-16 19:27:12 | 00,000,000 | ---D | M]
[2009-01-27 21:45:19 | 00,000,000 | ---D | M] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Extensions
[2009-12-18 21:43:10 | 00,000,000 | ---D | M] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions
[2009-12-17 19:59:45 | 00,000,000 | ---D | M] (FlashGot) -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
[2009-12-01 22:41:03 | 00,000,000 | ---D | M] (Adobe DLM (powered by getPlus(R))) -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}
[2009-08-25 17:43:12 | 00,000,000 | ---D | M] (No name found) -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E9A1DEE0-C623-4439-8932-001E7D17607D}
[2009-11-05 20:14:37 | 00,000,000 | ---D | M] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\battlefieldheroespatcher@ea.com
[2009-07-25 20:51:05 | 00,000,000 | ---D | M] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\fastdial@telega.phpnet.us
[2009-08-25 18:47:10 | 00,000,682 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\searchplugins\\ask.xml
[2009-10-14 13:59:33 | 00,002,399 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\searchplugins\\daemon-search.xml
[2009-01-27 12:52:53 | 00,000,000 | ---D | M] -- C:\\Program Files\\Mozilla Firefox\\extensions
[2008-09-04 01:11:24 | 00,054,600 | ---- | M] (BitTorrent, Inc.) -- C:\\Program Files\\Mozilla Firefox\\plugins\\npbittorrent.dll
[2009-12-12 18:20:19 | 00,002,767 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\allegro-pl.xml
[2009-12-12 18:20:19 | 00,001,406 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\fbc-pl.xml
[2009-12-12 18:20:19 | 00,000,917 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\merlin-pl.xml
[2009-12-12 18:20:19 | 00,000,858 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\pwn-pl.xml
[2009-12-12 18:20:19 | 00,001,183 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\wikipedia-pl.xml
[2009-12-12 18:20:19 | 00,001,683 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\wp-pl.xml
Hosts file not found
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\\Program Files\\Adobe\\Acrobat 7.0\\ActiveX\\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (GigagetIEHelper Class) - {111CAA23-6F4F-42AC-8555-B48C1D87BBAB} - C:\\WINDOWS\\system32\\gigagetbho_v10.dll (Giganology Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.1.1309.3572\\swg.dll (Google Inc.)
O4 - HKLM..\\Run: [Ad-Watch] C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWTray.exe (Lavasoft)
O4 - HKLM..\\Run: [Gainward] C:\\Program Files\\Vtune\\TBPanel.exe ()
O4 - HKLM..\\Run: [Gigaget] C:\\Program Files\\Giganology\\Gigaget\\GigagetShell.exe (Giganology Inc.)
O4 - HKLM..\\Run: [MS_MASTER] C:\\WINDOWS\\System32\\xml_inc.DLL (msconfig)
O4 - HKLM..\\Run: [NvCplDaemon] C:\\WINDOWS\\System32\\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\\Run: [NvMediaCenter] C:\\WINDOWS\\System32\\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\\Run: [nwiz] C:\\WINDOWS\\System32\\nwiz.exe (NVIDIA Corporation)
O4 - HKLM..\\Run: [RivaTunerStartupDaemon] C:\\RivaTuner v2.24\\RivaTuner.exe ()
O4 - HKLM..\\Run: [SoundMan] C:\\WINDOWS\\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\\Run: [SpeedTouch USB Diagnostics] C:\\Program Files\\Thomson\\SpeedTouch USB\\Dragdiag.exe (THOMSON Telecom Belgium)
O4 - HKLM..\\Run: [WOOWATCH] C:\\Program Files\\neostrada tp\\Watch.exe (France Télécom R&D)
O4 - HKCU..\\Run: [ALLUpdate] C:\\Program Files\\ALLPlayer\\ALLUpdate.exe ()
O4 - HKCU..\\Run: [AQQ] C:\\Program Files\\WapSter\\WapSter AQQ\\AQQ.exe (Creative Team S.A.)
O4 - HKCU..\\Run: [AutoConnect] C:\\Program Files\\AutoConnect\\AutoConnect.exe (http://autoconnect.prv.pl)
O4 - HKCU..\\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\\Program Files\\Common Files\\Ahead\\Lib\\NMBgMonitor.exe File not found
O4 - HKCU..\\Run: [BitTorrent DNA] C:\\Program Files\\DNA\\btdna.exe (BitTorrent, Inc.)
O4 - HKCU..\\Run: [DAEMON Tools Lite] C:\\Program Files\\DAEMON Tools Lite\\daemon.exe (DT Soft Ltd)
O4 - HKCU..\\Run: [swg] C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe (Google Inc.)
O4 - Startup: C:\\Documents and Settings\\All Users.WINDOWS\\Menu Start\\Programy\\Autostart\\Adobe Reader Speed Launch.lnk = C:\\Program Files\\Adobe\\Acrobat 7.0\\Reader\\reader_sl.exe (Adobe Systems Incorporated)
O4 - Startup: C:\\Documents and Settings\\All Users.WINDOWS\\Menu Start\\Programy\\Autostart\\Microsoft Office.lnk = C:\\Program Files\\Microsoft Office\\Office\\OSA9.EXE (Microsoft Corporation)
O4 - Startup: C:\\Documents and Settings\\Cys.BLASZAKIII\\Menu Start\\Programy\\Autostart\\OneWay.lnk = C:\\Program Files\\5Fantastic\\OneWay\\OneWay.exe ()
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: &Download All by Gigaget - C:\\Program Files\\Giganology\\Gigaget\\getAllurl.htm ()
O8 - Extra context menu item: &Download by Gigaget - C:\\Program Files\\Giganology\\Gigaget\\geturl.htm ()
O15 - HKLM\\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O18 - Protocol\\Handler\\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\Program Files\\Common Files\\Skype\\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\\WINDOWS\\explorer.exe (Microsoft Corporation)
O20 - Winlogon\\Notify\\AtiExtEvent: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O28 - HKLM ShellExecuteHooks: {68101905-D80F-4788-96F6-98618116178A} - C:\\WINDOWS\\system32\\flashadgmn32.dll ()
O28 - HKLM ShellExecuteHooks: {BB4C402F-882A-4526-8C08-51278EA437C1} - C:\\WINDOWS\\system32\\e8main1.dll ()
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-01-27 11:57:46 | 00,000,000 | ---- | M] () - C:\\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2009-12-21 21:38:54 | 00,000,055 | RHS- | M] () - C:\\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009-12-21 21:38:54 | 00,000,055 | RHS- | M] () - D:\\autorun.inf -- [ NTFS ]
O33 - MountPoints2\\{3779018d-2cd2-11de-bb33-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = F:\\ej10fkdo.bat -- File not found
O33 - MountPoints2\\{3779018d-2cd2-11de-bb33-000e50d95a49}\\Shell\\open\\Command - \"\" = F:\\ej10fkdo.bat -- File not found
O33 - MountPoints2\\{5dee78b2-b2af-11de-bd19-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = G:\\se12ydam.exe -- File not found
O33 - MountPoints2\\{5dee78b2-b2af-11de-bd19-000e50d95a49}\\Shell\\open\\Command - \"\" = G:\\se12ydam.exe -- File not found
O33 - MountPoints2\\{729fede4-bfe9-11de-bd42-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = G:\\wcgswa.exe -- File not found
O33 - MountPoints2\\{729fede4-bfe9-11de-bd42-000e50d95a49}\\Shell\\open\\Command - \"\" = G:\\wcgswa.exe -- File not found
O33 - MountPoints2\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = F:\\2fiji.com -- File not found
O33 - MountPoints2\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\Shell\\explore\\Command - \"\" = F:\\2fiji.com -- File not found
O33 - MountPoints2\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\Shell\\open\\Command - \"\" = F:\\2fiji.com -- File not found
O33 - MountPoints2\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = F:\\2fiji.com -- File not found
O33 - MountPoints2\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\Shell\\explore\\Command - \"\" = F:\\2fiji.com -- File not found
O33 - MountPoints2\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\Shell\\open\\Command - \"\" = F:\\2fiji.com -- File not found
O33 - MountPoints2\\{adcf2b3c-5905-11de-bbed-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = F:\\w.com -- File not found
O33 - MountPoints2\\{adcf2b3c-5905-11de-bbed-000e50d95a49}\\Shell\\open\\Command - \"\" = F:\\w.com -- File not found
O33 - MountPoints2\\{b3898f86-93cf-11de-bcb9-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = G:\\a2g21.exe -- File not found
O33 - MountPoints2\\{b3898f86-93cf-11de-bcb9-000e50d95a49}\\Shell\\open\\Command - \"\" = G:\\a2g21.exe -- File not found
O33 - MountPoints2\\{efface94-c700-11de-bd54-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = G:\\2fiji.com -- File not found
O33 - MountPoints2\\{efface94-c700-11de-bd54-000e50d95a49}\\Shell\\explore\\Command - \"\" = G:\\2fiji.com -- File not found
O33 - MountPoints2\\{efface94-c700-11de-bd54-000e50d95a49}\\Shell\\open\\Command - \"\" = G:\\2fiji.com -- File not found
O33 - MountPoints2\\{efface95-c700-11de-bd54-000e50d95a49}\\Shell\\AutoRun\\command - \"\" = H:\\2fiji.com -- File not found
O33 - MountPoints2\\{efface95-c700-11de-bd54-000e50d95a49}\\Shell\\explore\\Command - \"\" = H:\\2fiji.com -- File not found
O33 - MountPoints2\\{efface95-c700-11de-bd54-000e50d95a49}\\Shell\\open\\Command - \"\" = H:\\2fiji.com -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\\WINDOWS\\System32\\lsdelete.exe ()
O35 - comfile [open] -- \"%1\" %*
O35 - exefile [open] -- \"%1\" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\\WINDOWS\\system32\\ias [2009-01-27 21:29:47 | 00,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
MsConfig - State: \"system.ini\" - 0
MsConfig - State: \"win.ini\" - 0
MsConfig - State: \"bootini\" - 0
MsConfig - State: \"services\" - 0
MsConfig - State: \"startup\" - 0
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: Lavasoft Ad-Aware Service - C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWService.exe (Lavasoft)
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PEVSystemStart - Service
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: procexp90.Sys - Driver
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: Lavasoft Ad-Aware Service - C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWService.exe (Lavasoft)
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PEVSystemStart - Service
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: procexp90.Sys - Driver
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: UploadMgr - Service
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2009-12-21 18:48:48 | 00,000,000 | ---D | C] -- C:\\Program Files\\Trend Micro
[2009-12-20 15:03:07 | 00,000,000 | ---D | C] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Miranda
[2009-12-20 15:02:44 | 00,000,000 | ---D | C] -- C:\\Program Files\\Miranda IM
[2009-12-18 16:40:29 | 00,000,000 | ---D | C] -- C:\\Documents and Settings\\All Users.WINDOWS\\Dane aplikacji\\DVD Shrink
[2009-12-18 16:40:27 | 00,000,000 | ---D | C] -- C:\\Program Files\\DVD Shrink
[2009-12-16 15:30:57 | 00,061,440 | ---- | C] (msconfig) -- C:\\WINDOWS\\System32\\xml_inc.dll
[2009-12-16 14:52:45 | 00,000,000 | ---D | C] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\Pobieranie
[2009-12-01 22:41:14 | 00,000,000 | ---D | C] -- C:\\Program Files\\NOS
[2009-12-01 22:41:14 | 00,000,000 | ---D | C] -- C:\\Documents and Settings\\All Users.WINDOWS\\Dane aplikacji\\NOS
[2009-12-01 20:20:16 | 00,000,000 | ---D | C] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\pl.5fantastic.oneway.8566CE160176669D38AD6CA5DF2B8C8BE659144F.1
[2009-12-01 20:19:55 | 00,000,000 | ---D | C] -- C:\\Program Files\\Common Files\\Adobe AIR
[2009-12-01 20:19:35 | 00,000,000 | ---D | C] -- C:\\Program Files\\5Fantastic
[2009-11-30 21:38:37 | 00,000,000 | ---D | C] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Prezentacja makra
[2009-11-30 20:09:51 | 00,000,000 | ---D | C] -- C:\\Program Files\\Microsoft Visual Studio
[2009-11-30 20:09:50 | 00,000,000 | ---D | C] -- C:\\Program Files\\Common Files\\Designer
[2009-11-30 20:09:02 | 00,000,000 | ---D | C] -- C:\\WINDOWS\\ShellNew
[2009-11-30 20:08:18 | 00,000,000 | ---D | C] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Microsoft Web Folders
[2009-11-30 20:08:18 | 00,000,000 | ---D | C] -- C:\\Program Files\\Microsoft Office
[2009-11-29 20:23:17 | 00,304,640 | ---- | C] (InstallShield Software Corporation) -- C:\\WINDOWS\\IsUn0415.exe
[2009-11-29 20:23:13 | 00,000,000 | ---D | C] -- C:\\Documents and Settings\\Cys.BLASZAKIII\\WINDOWS
[2009-01-27 12:07:32 | 00,000,000 | ---D | M] -- C:\\Documents and Settings\\LocalService\\Ustawienia lokalne\\Dane aplikacji\\Microsoft
[2009-01-27 12:07:31 | 00,000,000 | ---D | M] -- C:\\Documents and Settings\\NetworkService\\Ustawienia lokalne\\Dane aplikacji\\Microsoft
[2009-01-27 11:57:27 | 00,000,000 | --SD | M] -- C:\\Documents and Settings\\NetworkService\\Dane aplikacji\\Microsoft
[2009-01-27 11:57:27 | 00,000,000 | --SD | M] -- C:\\Documents and Settings\\LocalService\\Dane aplikacji\\Microsoft
[8 C:\\WINDOWS\\System32\\*.tmp files -> C:\\WINDOWS\\System32\\*.tmp -> ]
[4 C:\\WINDOWS\\*.tmp files -> C:\\WINDOWS\\*.tmp -> ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2009-12-21 21:42:02 | 00,001,036 | ---- | M] () -- C:\\WINDOWS\\tasks\\GoogleUpdateTaskMachineUA.job
[2009-12-21 21:38:54 | 00,000,055 | RHS- | M] () -- C:\\autorun.inf
[2009-12-21 21:15:01 | 00,001,915 | ---- | M] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Pulpit\\Google Earth.lnk
[2009-12-21 19:33:01 | 00,000,472 | ---- | M] () -- C:\\WINDOWS\\tasks\\Ad-Aware Update (Weekly).job
[2009-12-21 18:48:48 | 00,001,734 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\HijackThis.lnk
[2009-12-21 15:20:13 | 00,000,719 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Menu Start\\Programy\\Autostart\\OneWay.lnk
[2009-12-21 15:19:30 | 00,088,723 | ---- | M] () -- C:\\WINDOWS\\System32\\nvapps.xml
[2009-12-21 15:19:18 | 00,000,006 | -H-- | M] () -- C:\\WINDOWS\\tasks\\SA.DAT
[2009-12-21 15:19:14 | 00,002,048 | --S- | M] () -- C:\\WINDOWS\\bootstat.dat
[2009-12-21 10:43:52 | 03,932,160 | -H-- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\NTUSER.DAT
[2009-12-21 10:43:38 | 00,000,188 | -HS- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\ntuser.ini
[2009-12-20 15:06:24 | 00,017,822 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\Kontakty_6759484.xml
[2009-12-20 15:02:47 | 00,000,701 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Miranda IM.lnk
[2009-12-18 16:40:27 | 00,000,670 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\DVD Shrink 3.2.lnk
[2009-12-17 13:49:38 | 00,000,202 | ---- | M] () -- C:\\WINDOWS\\Mouse_Boy.iix
[2009-12-17 13:45:06 | 00,001,916 | ---- | M] () -- C:\\WINDOWS\\Czerwony_Kapturek_v_3.iix
[2009-12-17 09:42:01 | 00,001,032 | ---- | M] () -- C:\\WINDOWS\\tasks\\GoogleUpdateTaskMachineCore.job
[2009-12-17 09:30:27 | 00,448,348 | ---- | M] () -- C:\\WINDOWS\\System32\\perfh015.dat
[2009-12-17 09:30:26 | 00,984,778 | ---- | M] () -- C:\\WINDOWS\\System32\\PerfStringBackup.INI
[2009-12-17 09:30:26 | 00,392,432 | ---- | M] () -- C:\\WINDOWS\\System32\\perfh009.dat
[2009-12-17 09:30:26 | 00,074,450 | ---- | M] () -- C:\\WINDOWS\\System32\\perfc015.dat
[2009-12-17 09:30:26 | 00,058,732 | ---- | M] () -- C:\\WINDOWS\\System32\\perfc009.dat
[2009-12-16 21:51:27 | 02,106,252 | -H-- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Ustawienia lokalne\\Dane aplikacji\\IconCache.db
[2009-12-16 15:30:57 | 00,061,440 | ---- | M] (msconfig) -- C:\\WINDOWS\\System32\\xml_inc.dll
[2009-12-14 14:25:34 | 00,000,761 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\.plugin140_03.trace
[2009-12-14 14:19:35 | 00,002,206 | ---- | M] () -- C:\\WINDOWS\\System32\\wpa.dbl
[2009-12-13 12:40:53 | 16,693,748 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\katalog_2010_mini.pdf
[2009-12-12 19:25:20 | 00,000,754 | ---- | M] () -- C:\\WINDOWS\\WORDPAD.INI
[2009-12-11 22:15:42 | 08,404,446 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Go__wno.rar
[2009-12-09 20:40:29 | 63,302,2620 | ---- | M] () -- C:\\Image.nrg
[2009-12-08 14:06:23 | 00,118,048 | RHS- | M] () -- C:\\xmor.exe
[2009-12-07 15:58:06 | 00,117,228 | RHS- | M] () -- C:\\ohd.exe
[2009-12-06 21:23:28 | 04,550,148 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\2009-12-06 21;23;24.JPG
[2009-12-06 21:22:22 | 03,885,525 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\2009-12-06 21;22;14.JPG
[2009-12-06 17:51:37 | 00,115,347 | RHS- | M] () -- C:\\2id9.exe
[2009-12-05 08:39:19 | 00,113,233 | RHS- | M] () -- C:\\k8jc.exe
[2009-12-03 15:53:37 | 00,113,792 | RHS- | M] () -- C:\\mbvd.exe
[2009-12-02 14:40:47 | 00,115,905 | RHS- | M] () -- C:\\mbdm.exe
[2009-12-01 22:41:30 | 00,000,754 | ---- | M] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Pulpit\\Resume Adobe Downloads.lnk
[2009-12-01 20:25:07 | 00,147,931 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Port Royale spolszczenie (www.pobieralnia.pl0.exe
[2009-12-01 20:20:08 | 00,000,707 | ---- | M] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Pulpit\\OneWay.lnk
[2009-12-01 16:52:49 | 50,863,9260 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Svetovy.pristav(2).rar
[2009-11-30 23:00:07 | 00,343,447 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Prezentacja makra.rar
[2009-11-30 22:56:02 | 00,020,280 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Ustawienia lokalne\\Dane aplikacji\\GDIPFONTCACHEV1.DAT
[2009-11-30 22:55:00 | 00,125,320 | ---- | M] () -- C:\\WINDOWS\\System32\\FNTCACHE.DAT
[2009-11-30 20:59:07 | 00,359,424 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\1.ppt
[2009-11-30 20:13:23 | 00,000,427 | ---- | M] () -- C:\\WINDOWS\\ODBC.INI
[2009-11-30 20:12:48 | 00,000,059 | ---- | M] () -- C:\\WINDOWS\\vbaddin.ini
[2009-11-30 20:11:08 | 00,000,615 | ---- | M] () -- C:\\WINDOWS\\win.ini
[2009-11-30 20:10:21 | 00,001,745 | ---- | M] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Menu Start\\Programy\\Autostart\\Microsoft Office.lnk
[2009-11-30 12:48:58 | 00,115,856 | RHS- | M] () -- C:\\q3kku.exe
[2009-11-29 20:25:33 | 00,053,248 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Ustawienia lokalne\\Dane aplikacji\\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-11-29 20:23:51 | 00,002,592 | ---- | M] () -- C:\\WINDOWS\\Corsairs.isu
[2009-11-26 19:48:05 | 00,114,928 | RHS- | M] () -- C:\\cs6phv6d.exe
[2009-11-26 15:52:30 | 00,114,819 | RHS- | M] () -- C:\\wfx062.exe
[2009-11-25 18:28:38 | 00,022,066 | ---- | M] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\Nareligie.odt
[2009-11-25 14:47:51 | 00,116,090 | RHS- | M] () -- C:\\ngp8l.exe
[2009-11-24 09:27:28 | 00,113,508 | RHS- | M] () -- C:\\wu1n.exe
[2009-11-23 14:29:50 | 00,115,372 | RHS- | M] () -- C:\\i9bwjpqc.exe
[8 C:\\WINDOWS\\System32\\*.tmp files -> C:\\WINDOWS\\System32\\*.tmp -> ]
[4 C:\\WINDOWS\\*.tmp files -> C:\\WINDOWS\\*.tmp -> ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2009-12-21 21:15:01 | 00,001,915 | ---- | C] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Pulpit\\Google Earth.lnk
[2009-12-21 18:48:48 | 00,001,734 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\HijackThis.lnk
[2009-12-20 15:06:24 | 00,017,822 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\Kontakty_6759484.xml
[2009-12-20 15:02:47 | 00,000,701 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Miranda IM.lnk
[2009-12-18 16:42:39 | 00,001,534 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Nero Express.lnk
[2009-12-18 16:40:27 | 00,000,670 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\DVD Shrink 3.2.lnk
[2009-12-13 12:36:04 | 16,693,748 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\katalog_2010_mini.pdf
[2009-12-12 19:25:20 | 00,000,754 | ---- | C] () -- C:\\WINDOWS\\WORDPAD.INI
[2009-12-11 22:18:08 | 04,550,148 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\2009-12-06 21;23;24.JPG
[2009-12-11 22:18:08 | 03,885,525 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\2009-12-06 21;22;14.JPG
[2009-12-11 22:11:55 | 08,404,446 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Go__wno.rar
[2009-12-09 20:38:22 | 63,302,2620 | ---- | C] () -- C:\\Image.nrg
[2009-12-08 14:06:51 | 00,118,048 | RHS- | C] () -- C:\\xmor.exe
[2009-12-07 15:58:33 | 00,117,228 | RHS- | C] () -- C:\\ohd.exe
[2009-12-06 17:52:05 | 00,115,347 | RHS- | C] () -- C:\\2id9.exe
[2009-12-05 08:39:46 | 00,113,233 | RHS- | C] () -- C:\\k8jc.exe
[2009-12-03 12:53:59 | 00,113,792 | RHS- | C] () -- C:\\mbvd.exe
[2009-12-01 22:41:30 | 00,000,754 | ---- | C] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Pulpit\\Resume Adobe Downloads.lnk
[2009-12-01 20:25:07 | 00,147,931 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Port Royale spolszczenie (www.pobieralnia.pl0.exe
[2009-12-01 20:20:29 | 00,000,719 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Menu Start\\Programy\\Autostart\\OneWay.lnk
[2009-12-01 20:20:08 | 00,000,707 | ---- | C] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Pulpit\\OneWay.lnk
[2009-12-01 12:06:37 | 50,863,9260 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Svetovy.pristav(2).rar
[2009-11-30 23:00:06 | 00,343,447 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Pulpit\\Prezentacja makra.rar
[2009-11-30 22:56:58 | 00,115,905 | RHS- | C] () -- C:\\mbdm.exe
[2009-11-30 20:54:55 | 00,359,424 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\1.ppt
[2009-11-30 20:13:23 | 00,000,427 | ---- | C] () -- C:\\WINDOWS\\ODBC.INI
[2009-11-30 20:10:21 | 00,001,745 | ---- | C] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Menu Start\\Programy\\Autostart\\Microsoft Office.lnk
[2009-11-29 20:23:40 | 00,002,592 | ---- | C] () -- C:\\WINDOWS\\Corsairs.isu
[2009-11-28 14:02:44 | 00,115,856 | RHS- | C] () -- C:\\q3kku.exe
[2009-11-26 19:48:32 | 00,114,928 | RHS- | C] () -- C:\\cs6phv6d.exe
[2009-11-26 15:52:58 | 00,114,819 | RHS- | C] () -- C:\\wfx062.exe
[2009-11-25 18:28:34 | 00,022,066 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Moje dokumenty\\Nareligie.odt
[2009-11-25 14:48:17 | 00,116,090 | RHS- | C] () -- C:\\ngp8l.exe
[2009-11-24 09:27:56 | 00,113,508 | RHS- | C] () -- C:\\wu1n.exe
[2009-11-23 14:30:17 | 00,115,372 | RHS- | C] () -- C:\\i9bwjpqc.exe
[2009-11-06 09:52:29 | 00,139,456 | ---- | C] () -- C:\\WINDOWS\\System32\\drivers\\PnkBstrK.sys
[2009-11-06 09:52:29 | 00,138,056 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\PnkBstrK.sys
[2009-11-06 03:14:42 | 00,041,872 | ---- | C] () -- C:\\WINDOWS\\System32\\xfcodec.dll
[2009-10-31 10:58:55 | 00,000,038 | ---- | C] () -- C:\\WINDOWS\\AviSplitter.INI
[2009-10-14 13:54:02 | 00,721,904 | ---- | C] () -- C:\\WINDOWS\\System32\\drivers\\sptd.sys
[2009-09-22 16:05:30 | 00,147,456 | ---- | C] () -- C:\\WINDOWS\\System32\\RtlCPAPI.dll
[2009-09-12 20:39:39 | 00,057,344 | RHS- | C] () -- C:\\WINDOWS\\System32\\flashadgmn32.dll
[2009-07-15 15:23:42 | 00,581,632 | ---- | C] () -- C:\\WINDOWS\\System32\\nvhwvid.dll
[2009-07-15 15:23:42 | 00,286,720 | ---- | C] () -- C:\\WINDOWS\\System32\\nvnt4cpl.dll
[2009-07-15 15:23:41 | 00,212,992 | ---- | C] () -- C:\\WINDOWS\\System32\\nvapi.dll
[2009-06-14 11:51:30 | 00,000,010 | ---- | C] () -- C:\\WINDOWS\\WININIT.INI
[2009-04-28 15:48:07 | 00,000,032 | ---- | C] () -- C:\\WINDOWS\\CD-Start.INI
[2009-03-06 16:16:38 | 00,168,448 | ---- | C] () -- C:\\WINDOWS\\System32\\unrar.dll
[2009-03-06 16:16:35 | 03,596,288 | ---- | C] () -- C:\\WINDOWS\\System32\\qt-dx331.dll
[2009-03-06 16:16:35 | 00,795,648 | ---- | C] () -- C:\\WINDOWS\\System32\\xvidcore.dll
[2009-03-06 16:16:35 | 00,130,048 | ---- | C] () -- C:\\WINDOWS\\System32\\xvidvfw.dll
[2009-03-06 16:16:33 | 00,067,584 | ---- | C] () -- C:\\WINDOWS\\System32\\ff_vfw.dll
[2009-03-06 16:16:33 | 00,000,547 | ---- | C] () -- C:\\WINDOWS\\System32\\ff_vfw.dll.manifest
[2009-02-06 18:37:29 | 00,000,069 | ---- | C] () -- C:\\WINDOWS\\NeroDigital.ini
[2009-02-06 18:37:28 | 00,053,248 | ---- | C] () -- C:\\Documents and Settings\\Cys.BLASZAKIII\\Ustawienia lokalne\\Dane aplikacji\\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-02-03 21:14:36 | 00,000,085 | -HS- | C] () -- C:\\Documents and Settings\\All Users.WINDOWS\\Dane aplikacji\\.zreglib
[2009-01-27 21:59:20 | 00,363,520 | ---- | C] () -- C:\\WINDOWS\\System32\\psisdecd.dll
[2009-01-27 21:57:45 | 00,032,768 | ---- | C] () -- C:\\WINDOWS\\System32\\UnAudioNT.dll
[2009-01-27 21:39:50 | 00,005,606 | ---- | C] () -- C:\\WINDOWS\\System32\\stci.dll
[2009-01-27 21:39:00 | 00,041,068 | ---- | C] () -- C:\\WINDOWS\\System32\\ActPanel.dll
[2008-04-30 13:55:16 | 00,071,208 | ---- | C] () -- C:\\WINDOWS\\System32\\PhysXLoader.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelTraditionalChinese.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelSwedish.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelSpanish.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelSimplifiedChinese.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelPortugese.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelKorean.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelJapanese.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelGerman.dll
[2008-04-28 11:11:16 | 00,053,248 | ---- | C] () -- C:\\WINDOWS\\System32\\AgCPanelFrench.dll
[2007-10-12 23:20:06 | 00,151,417 | ---- | C] () -- C:\\WINDOWS\\System32\\xlive.dll.cat
[2001-10-26 18:29:52 | 00,078,848 | ---- | C] () -- C:\\WINDOWS\\System32\\e8main1.dll
[2001-10-26 18:29:52 | 00,078,848 | ---- | C] () -- C:\\WINDOWS\\System32\\e8main0.dll
[2001-07-22 03:41:32 | 00,027,440 | ---- | C] () -- C:\\WINDOWS\\System32\\drivers\\secdrv.sys
[1999-01-22 18:46:58 | 00,065,536 | ---- | C] () -- C:\\WINDOWS\\System32\\MSRTEDIT.DLL
[1996-04-03 20:33:26 | 00,005,248 | ---- | C] () -- C:\\WINDOWS\\System32\\giveio.sys
[color=#E56717]========== Custom Scans ==========[/color]
[color=#A23BEC]< %systemdrive%\\*.* >[/color]
[2009-09-30 17:23:08 | 00,118,464 | RHS- | M] () -- C:\\0fkk02x.exe
[2009-11-18 14:51:33 | 00,114,071 | RHS- | M] () -- C:\\0qw6vege.exe
[2009-09-08 19:38:55 | 00,116,142 | RHS- | M] () -- C:\\10nb.exe
[2002-07-10 00:04:57 | 00,114,602 | RHS- | M] () -- C:\\1a1dndah.exe
[2009-10-09 13:46:32 | 00,117,508 | RHS- | M] () -- C:\\1di1w.exe
[2009-03-06 10:50:06 | 00,108,794 | RHS- | M] () -- C:\\2.bat
[2009-12-06 17:51:37 | 00,115,347 | RHS- | M] () -- C:\\2id9.exe
[2009-09-20 06:02:46 | 00,117,220 | RHS- | M] () -- C:\\2o1ajagt.exe
[2009-10-15 14:30:19 | 00,116,414 | RHS- | M] () -- C:\\2sm66r.exe
[2009-09-07 18:41:57 | 00,115,578 | RHS- | M] () -- C:\\3c.exe
[2009-10-28 16:51:20 | 00,115,845 | RHS- | M] () -- C:\\3n8awsyg.exe
[2009-09-21 15:21:24 | 00,115,367 | RHS- | M] () -- C:\\3yalgc.exe
[2009-09-10 14:51:51 | 00,115,040 | RHS- | M] () -- C:\\63trvn.bat
[2009-11-13 14:43:47 | 00,115,082 | RHS- | M] () -- C:\\6ruaqx.exe
[2009-09-14 14:17:01 | 00,115,493 | RHS- | M] () -- C:\\86.exe
[2009-11-02 15:55:22 | 00,115,127 | RHS- | M] () -- C:\\9b9w3.exe
[2009-09-07 16:02:32 | 00,115,087 | RHS- | M] () -- C:\\9cquqs.exe
[2009-11-17 14:52:49 | 00,114,180 | RHS- | M] () -- C:\\9g86.exe
[2009-09-30 13:45:17 | 00,116,840 | RHS- | M] () -- C:\\9jyhdim8.exe
[2009-10-30 20:09:23 | 00,113,614 | RHS- | M] () -- C:\\a2g21.exe
[2009-12-21 15:19:05 | 00,346,894 | ---- | M] () -- C:\\aaw7boot.log
[2009-01-27 11:57:46 | 00,000,000 | ---- | M] () -- C:\\AUTOEXEC.BAT
[2009-12-21 21:38:54 | 00,000,055 | RHS- | M] () -- C:\\autorun.inf
[2009-08-29 18:43:26 | 00,112,225 | RHS- | M] () -- C:\\b.bat
[2009-10-24 08:58:50 | 00,114,191 | RHS- | M] () -- C:\\b00ijwpu.exe
[2009-06-22 07:06:18 | 00,107,569 | RHS- | M] () -- C:\\be2trf.bat
[2009-06-22 08:55:08 | 00,000,211 | RHS- | M] () -- C:\\boot.ini
[2001-07-21 23:13:54 | 00,004,952 | RHS- | M] () -- C:\\Bootfont.bin
[2009-09-24 14:52:23 | 00,112,471 | RHS- | M] () -- C:\\bycfht.exe
[2009-06-21 07:51:15 | 00,105,283 | RHS- | M] () -- C:\\cahpcg.cmd
[2009-12-01 16:03:14 | 00,009,880 | ---- | M] () -- C:\\chunkdbg.txt
[2009-09-05 09:26:36 | 00,117,153 | RHS- | M] () -- C:\\cj3k.exe
[2009-01-27 11:57:46 | 00,000,000 | ---- | M] () -- C:\\CONFIG.SYS
[2009-09-20 19:51:43 | 00,115,061 | RHS- | M] () -- C:\\cqb6wo.exe
[2009-11-26 19:48:05 | 00,114,928 | RHS- | M] () -- C:\\cs6phv6d.exe
[2009-10-06 13:47:31 | 00,118,651 | RHS- | M] () -- C:\\ctu8r.exe
[2009-11-20 14:42:46 | 00,114,945 | RHS- | M] () -- C:\\curqp.exe
[2009-03-05 14:23:39 | 00,109,434 | RHS- | M] () -- C:\\dbrxubcw.com
[2009-10-26 14:45:29 | 00,114,244 | RHS- | M] () -- C:\\eexyv.exe
[2009-09-02 18:46:47 | 00,112,747 | RHS- | M] () -- C:\\ewqij.bat
[2009-10-06 20:31:22 | 00,117,625 | RHS- | M] () -- C:\\f9o8o.exe
[2009-06-15 19:13:33 | 00,104,476 | RHS- | M] () -- C:\\fsaht.cmd
[2009-11-10 17:10:27 | 00,112,695 | RHS- | M] () -- C:\\g12g.exe
[2009-11-01 09:33:35 | 00,115,086 | RHS- | M] () -- C:\\gcq6.exe
[2009-10-27 16:15:09 | 00,115,072 | RHS- | M] () -- C:\\hjvjte.exe
[2009-05-09 10:37:49 | 00,107,947 | RHS- | M] () -- C:\\hkn6k.bat
[2009-08-27 14:43:11 | 00,113,233 | RHS- | M] () -- C:\\hx.exe
[2009-09-02 14:49:51 | 00,113,455 | RHS- | M] () -- C:\\i0yva6.exe
[2009-11-23 14:29:50 | 00,115,372 | RHS- | M] () -- C:\\i9bwjpqc.exe
[2009-12-09 20:40:29 | 63,302,2620 | ---- | M] () -- C:\\Image.nrg
[2009-01-27 11:57:46 | 00,000,000 | RHS- | M] () -- C:\\IO.SYS
[2009-07-02 09:57:31 | 00,106,656 | RHS- | M] () -- C:\\ix8bmwx.bat
[2009-12-05 08:39:19 | 00,113,233 | RHS- | M] () -- C:\\k8jc.exe
[2009-11-06 16:18:36 | 00,114,311 | RHS- | M] () -- C:\\l61yyp.exe
[2009-09-17 20:24:24 | 00,115,797 | RHS- | M] () -- C:\\lhh3v.exe
[2009-11-19 16:15:35 | 00,114,469 | RHS- | M] () -- C:\\lphfa.exe
[2009-06-22 13:14:34 | 00,106,074 | RHS- | M] () -- C:\\m.com
[2009-09-07 10:13:09 | 00,115,319 | RHS- | M] () -- C:\\m.exe
[2009-12-02 14:40:47 | 00,115,905 | RHS- | M] () -- C:\\mbdm.exe
[2009-12-03 15:53:37 | 00,113,792 | RHS- | M] () -- C:\\mbvd.exe
[2009-10-12 12:37:48 | 00,114,888 | RHS- | M] () -- C:\\mje12tni.exe
[2009-09-27 17:48:56 | 00,116,665 | RHS- | M] () -- C:\\mranjm.exe
[2009-01-27 11:57:46 | 00,000,000 | RHS- | M] () -- C:\\MSDOS.SYS
[2009-09-01 09:42:50 | 00,112,442 | RHS- | M] () -- C:\\mt2.exe
[2009-11-03 17:36:48 | 00,111,826 | RHS- | M] () -- C:\\mwfubaob.exe
[2009-10-20 16:24:43 | 00,116,183 | RHS- | M] () -- C:\\nds0q.exe
[2009-11-25 14:47:51 | 00,116,090 | RHS- | M] () -- C:\\ngp8l.exe
[2009-02-01 19:19:27 | 00,047,564 | RHS- | M] () -- C:\\NTDETECT.COM
[2009-02-01 19:19:27 | 00,250,624 | RHS- | M] () -- C:\\ntldr
[2009-09-16 14:51:35 | 00,115,942 | RHS- | M] () -- C:\\o8tf6l.exe
[2009-09-04 13:44:05 | 00,112,699 | RHS- | M] () -- C:\\o9bxu.exe
[2009-12-07 15:58:06 | 00,117,228 | RHS- | M] () -- C:\\ohd.exe
[2009-11-15 16:08:54 | 00,116,522 | RHS- | M] () -- C:\\opdux.exe
[2009-12-21 15:19:05 | 31,960,59648 | -HS- | M] () -- C:\\pagefile.sys
[2009-11-12 16:01:33 | 00,113,817 | RHS- | M] () -- C:\\pbudsara.exe
[2009-09-13 06:20:15 | 00,115,742 | RHS- | M] () -- C:\\ph.exe
[2009-08-31 09:39:43 | 00,112,679 | RHS- | M] () -- C:\\pkkwng.exe
[2009-11-30 12:48:58 | 00,115,856 | RHS- | M] () -- C:\\q3kku.exe
[2009-11-21 17:42:23 | 00,116,030 | RHS- | M] () -- C:\\q93fi6kf.exe
[2009-10-22 14:54:55 | 00,113,953 | RHS- | M] () -- C:\\qbr2q.exe
[2009-09-17 07:13:55 | 00,116,163 | RHS- | M] () -- C:\\qcod.exe
[2009-10-08 10:19:37 | 00,117,945 | RHS- | M] () -- C:\\r2g20.exe
[2009-09-29 13:46:05 | 00,117,960 | RHS- | M] () -- C:\\rg9g9bgq.exe
[2009-10-14 18:40:50 | 00,115,522 | RHS- | M] () -- C:\\s3ek.exe
[2009-10-19 14:55:00 | 00,115,181 | RHS- | M] () -- C:\\se12ydam.exe
[2009-10-04 19:34:11 | 00,117,453 | RHS- | M] () -- C:\\sp1jensi.exe
[2009-11-04 14:44:24 | 00,114,304 | RHS- | M] () -- C:\\srgo.exe
[2009-06-21 20:17:06 | 00,107,773 | RHS- | M] () -- C:\\ste8.bat
[2009-10-03 08:02:23 | 00,118,853 | RHS- | M] () -- C:\\t2hjo0.exe
[2009-08-29 12:00:22 | 00,114,758 | RHS- | M] () -- C:\\t8s2x.exe
[2009-09-22 16:27:42 | 00,115,804 | RHS- | M] () -- C:\\ucivd6xi.bat
[2009-10-29 15:59:51 | 00,112,905 | RHS- | M] () -- C:\\uqgvf.exe
[2009-10-11 07:55:40 | 00,114,819 | RHS- | M] () -- C:\\vlvtdflx.exe
[2009-02-20 08:34:54 | 00,106,970 | RHS- | M] () -- C:\\w2.com
[2009-09-25 14:27:26 | 00,111,956 | RHS- | M] () -- C:\\w9uxx92.exe
[2009-10-22 18:44:29 | 00,115,729 | RHS- | M] () -- C:\\wcgswa.exe
[2009-11-26 15:52:30 | 00,114,819 | RHS- | M] () -- C:\\wfx062.exe
[2009-09-19 08:06:00 | 00,116,114 | RHS- | M] () -- C:\\wrsf.exe
[2009-11-24 09:27:28 | 00,113,508 | RHS- | M] () -- C:\\wu1n.exe
[2009-03-13 11:47:01 | 00,108,968 | RHS- | M] () -- C:\\xdw.com
[2009-06-19 19:33:07 | 00,107,692 | RHS- | M] () -- C:\\xhah66s.cmd
[2009-12-08 14:06:23 | 00,118,048 | RHS- | M] () -- C:\\xmor.exe
[2009-09-05 18:07:28 | 00,114,662 | RHS- | M] () -- C:\\y.bat
[2009-10-13 09:44:58 | 00,114,400 | RHS- | M] () -- C:\\ycvvj.exe
[color=#E56717]========== Alternate Data Streams ==========[/color]
@Alternate Data Stream - 48 bytes -> C:\\WINDOWS:837E2723055BCD3C
< End of report >
|