Skocz do zawartości
  • 👋 Witaj na MPCForum!

    Przeglądasz forum jako gość, co oznacza, że wiele świetnych funkcji jest jeszcze przed Tobą! 😎

    • Pełny dostęp do działów i ukrytych treści
    • Możliwość pisania i odpowiadania w tematach
    • System prywatnych wiadomości
    • Zbieranie reputacji i rozwijanie swojego profilu
    • Członkostwo w jednej z największych społeczności graczy

    👉 Dołączenie zajmie Ci mniej niż minutę – a zyskasz znacznie więcej!

    Zarejestruj się teraz

Moje logi czy mam wirusa?


Sto0rm

Rekomendowane odpowiedzi

Opublikowano

czy mam wirusa?

 

 

 

 

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 00:23:40, on 2012-02-26

Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5730.0013)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\PROGRA~1\AVG\AVG2012\avgrsx.exe

C:\Program Files\AVG\AVG2012\avgcsrvx.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\AVG\AVG2012\avgwdsvc.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\AVG\AVG2012\avgnsx.exe

C:\Program Files\AVG\AVG2012\avgemcx.exe

C:\WINDOWS\system32\PnkBstrA.exe

C:\Programy\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe

C:\WINDOWS\PixArt\PAC207\Monitor.exe

C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe

C:\WINDOWS\system32\nvraidservice.exe

C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

C:\Program Files\AVG Secure Search\vprot.exe

C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe

C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe

C:\Program Files\AVG\AVG2012\avgtray.exe

C:\Program Files\Common Files\Java\Java Update\jusched.exe

C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Akamai\netsession_win.exe

C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Akamai\netsession_win.exe

C:\WINDOWS\system32\wbem\unsecapp.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Mozilla Firefox\plugin-container.exe

C:\Program Files\Mozilla Firefox\plugin-container.exe

C:\Program Files\hihackthis\Trend Micro\HiJackThis\HiJackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2786678

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/cheatengine/{BD738B89-92B2-49E0-85B8-462859878FF8}

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.neostrada.pl/

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1:9421

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza

R3 - URLSearchHook: Winamp Toolbar Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll

R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)

R3 - URLSearchHook: (no name) - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)

R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL

R3 - URLSearchHook: ToolbarURLSearchHook Class - {CA3EB689-8F09-4026-AA10-B9534C691CE0} - C:\Program Files\CheatEngine Toolbar\tbhelper.dll

O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx

O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL

O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: Fantapper - {8A86D350-37AB-410A-8531-7D1363F317B3} - C:\Program Files\Brand Affinity Technologies\Fantapper Player\\IEInstaller.dll (file missing)

O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll

O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\10.0.0.7\AVG Secure Search_toolbar.dll

O2 - BHO: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)

O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O2 - BHO: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll

O2 - BHO: uTorrentBar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\CheatEngine Toolbar\tbcore3.dll

O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll

O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll

O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll

O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\10.0.0.7\AVG Secure Search_toolbar.dll

O3 - Toolbar: My Web Search - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL

O3 - Toolbar: CheatEngine Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\CheatEngine Toolbar\tbcore3.dll

O4 - HKLM\..\Run: [PAC207_Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe

O4 - HKLM\..\Run: [NVRaidService] C:\WINDOWS\system32\nvraidservice.exe

O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe

O4 - HKLM\..\Run: [CnxDslTaskBar] "c:\program files\zte corporation\zxdsl852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852"

O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd

O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"

O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"

O4 - HKLM\..\Run: [My Web Search Bar Search Scope Monitor] "C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe" /m=2 /w /h

O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe

O4 - HKLM\..\Run: [ROC_roc_dec12] "C:\Program Files\AVG Secure Search\ROC_roc_dec12.exe" /PROMPT /CMPID=roc_dec12

O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe"

O4 - HKLM\..\Run: [Microsoft] C:\Pobrane\541_'s Keylogger v7.0\541_'s Keylogger v7.0\541_'s Keylogger v7.0\541's Keylogger Builder v7.0.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

O4 - HKLM\..\Run: [svchost] C:\Documents and Settings\romek\Dane aplikacji\Microsoft\System\Services\svchost.exe

O4 - HKLM\..\RunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedback-app?lic=OQBBAFYARgBSAEUARQAtAFYAMgBHADMASwAtADgANwBXAFUAVQAtADIAVABWAEgAQQAtAFgANgBEAEYAOAAtAEwANgBQAEEATgA"&"inst=NwA3AC0ANAAzADEANAA5ADQANAA4ADYALQBCAEEAUgA5AEcAKwAxAC0ARgBMACsAOQAtAFgATwAzADYAKwAxAC0AWABPADkAKwAxAC0ARgA5AE0ANAArADEALQBEAEQAVAArADUAOQAxADQAMQAtAFMAVAA5ADAARgBBAFAAUAArADEALQBEAEQAOQAwAEYAKwAxAA"&"prod=90"&"ver=9.0.894

O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Akamai\netsession_win.exe"

O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe

O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Programy\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe" -automount

O4 - HKCU\..\Run: [Odkurzacz-MCD] C:\Programy\Odkurzacz\odk_mcd.exe

O4 - HKCU\..\Run: [svchost] C:\Documents and Settings\romek\Dane aplikacji\Microsoft\System\Services\svchost.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')

O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'USŁUGA LOKALNA')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')

O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'USŁUGA SIECIOWA')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?s=100000337&p=ZUxdm797YYUS&si=&a=k81SfhZPqAJ7B_maRXL6Zg&n=2011122307

O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO\GetAllUrl.htm

O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO\GetUrl.htm

O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra button: Fantapper - {AB745E88-1BAD-4B80-A83E-7C964EAC9804} - C:\Program Files\Brand Affinity Technologies\Fantapper Player\\IEInstaller.dll (file missing) (HKCU)

O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - (no file)

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll

O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll

O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe

O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe

O23 - Service: Fantapper Player Update Service (FTSvc) - Unknown owner - C:\Program Files\Brand Affinity Technologies\Fantapper Player\FantapperUpdateService.exe (file missing)

O23 - Service: Usługa Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Usługa Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: My Web Search Service (MyWebSearchService) - MyWebSearch.com - C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwssvc.exe

O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)

O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Programy\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe

O23 - Service: vToolbarUpdater - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe

 

--

End of file - 13787 bytes

 

 

 

pls help

[list]
[*][url="http://www.mpcforum.pl/topic/435586-tutreje-na-nostaleth/"]Mój tut rejestracji na Tajlandzkim nostale[/url]
[*][url="http://www.mpcforum.pl/topic/639995-tutwszystko-o-kartach-specjalisty/page__pid__4604876#entry4604876/"]Wszystko o kartach specialisty[/url]
[/list]

Opublikowano

A co to ? :D

[list]
[*][url="http://www.mpcforum.pl/topic/435586-tutreje-na-nostaleth/"]Mój tut rejestracji na Tajlandzkim nostale[/url]
[*][url="http://www.mpcforum.pl/topic/639995-tutwszystko-o-kartach-specjalisty/page__pid__4604876#entry4604876/"]Wszystko o kartach specialisty[/url]
[/list]

Opublikowano

A co to ? :D

OTL jest przydatnym narzędziem do walki z wszelakiego rodzaju złośliwym oprogramowaniem, na które natknąć się można m.in. podczas korzystania z Internetu.
Program analizuje charakterystyczne miejsca na dysku twardym, gdzie najczęściej lokują się szkodniki, a następnie generuje raport, który później wykorzystywany jest do ich usuwania.
OTL umożliwia skanowanie w dwóch trybach - normalnym i szybkim, a także pracę w obszarze procesów, usług, sterowników, rejestru systemowego itp.
Operacja usuwania wykrytych komponentów odbywa się w oparciu o skrypty.
W przypadku systemu, którego uruchomienie nie jest możliwe skorzystać można z płyty zawierającej narzędzie OTLPE.
OTL dobrze sprawdza się w sytuacjach kiedy złośliwe oprogramowanie podmieniło stronę startową w przeglądarce, tapetę na pulpicie, czy też zainstalowało dodatkowe toolbary.

 

Odpowiedź na twoje pytanie

s2c77Oa.png

Opublikowano

Logi z OTL

 

 


  1. OTL logfile created on: 2012-02-27 21:01:01 - Run 1

  2. OTL by OldTimer - Version 3.2.33.2 Folder = C:\Pobrane

  3. Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

  4. Internet Explorer (Version = 7.0.5730.13)

  5. Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

  6. 767,23 Mb Total Physical Memory | 435,81 Mb Available Physical Memory | 56,80% Memory free

  7. 1,83 Gb Paging File | 1,47 Gb Available in Paging File | 80,32% Paging File free

  8. Paging file location(s): C:\pagefile.sys 1152 2304 [binary data]

  9. %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

  10. Drive C: | 29,30 Gb Total Space | 6,01 Gb Free Space | 20,51% Space Free | Partition Type: NTFS

  11. Drive D: | 45,20 Gb Total Space | 2,65 Gb Free Space | 5,86% Space Free | Partition Type: NTFS

  12. Drive I: | 6,37 Gb Total Space | 4,84 Gb Free Space | 75,95% Space Free | Partition Type: NTFS

  13. Computer Name: DOM-9584CB6B227 | User Name: romek | Logged in as Administrator.

  14. Boot Mode: Normal | Scan Mode: Current user | Quick Scan

  15. Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

  16. ========== Processes (SafeList) ==========

  17. PRC - [2012-02-27 20:34:49 | 000,583,680 | ---- | M] (OldTimer Tools) -- C:\Pobrane\OTL.exe

  18. PRC - [2012-02-02 02:44:30 | 003,329,824 | ---- | M] (Akamai Technologies, Inc) -- C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Akamai\netsession_win.exe

  19. PRC - [2012-01-24 06:43:49 | 000,909,152 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe

  20. PRC - [2012-01-24 06:43:47 | 000,939,872 | ---- | M] () -- C:\Program Files\AVG Secure Search\vprot.exe

  21. PRC - [2011-12-03 01:22:12 | 002,415,456 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgtray.exe

  22. PRC - [2011-11-28 01:19:04 | 001,229,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgnsx.exe

  23. PRC - [2011-11-26 21:36:51 | 000,038,408 | ---- | M] (MyWebSearch.com) -- C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE

  24. PRC - [2011-11-26 21:36:51 | 000,034,336 | ---- | M] (MyWebSearch.com) -- C:\Program Files\MyWebSearch\bar\1.bin\M3SRCHMN.EXE

  25. PRC - [2011-10-12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe

  26. PRC - [2011-10-10 06:23:34 | 000,973,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgemcx.exe

  27. PRC - [2011-09-08 20:53:26 | 000,743,264 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgrsx.exe

  28. PRC - [2011-08-15 06:21:40 | 000,337,760 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgcsrvx.exe

  29. PRC - [2011-08-02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe

  30. PRC - [2009-12-23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) -- C:\Programy\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe

  31. PRC - [2008-04-14 21:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe

  32. PRC - [2006-11-03 11:01:16 | 000,319,488 | ---- | M] (PixArt Imaging Incorporation) -- C:\WINDOWS\PixArt\PAC207\Monitor.exe

  33. PRC - [2004-06-11 04:15:18 | 000,083,968 | R--- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvraidservice.exe

  34. ========== Modules (No Company Name) ==========

  35. MOD - [2012-02-10 20:51:52 | 003,340,064 | ---- | M] () -- c:\Program Files\Common Files\Akamai\netsession_win_7de0ed9.dll

  36. MOD - [2012-01-24 06:43:49 | 000,909,152 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe

  37. MOD - [2012-01-24 06:43:47 | 000,939,872 | ---- | M] () -- C:\Program Files\AVG Secure Search\vprot.exe

  38. MOD - [2001-04-16 17:39:02 | 000,037,808 | ---- | M] () -- C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx

  39. ========== Win32 Services (SafeList) ==========

  40. SRV - File not found [Disabled | Stopped] -- -- (HidServ)

  41. SRV - [2012-02-10 20:51:52 | 003,340,064 | ---- | M] () [Auto | Running] -- c:\program files\common files\akamai/netsession_win_7de0ed9.dll -- (Akamai)

  42. SRV - [2012-01-24 06:43:49 | 000,909,152 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe -- (vToolbarUpdater)

  43. SRV - [2011-11-26 21:36:52 | 000,034,320 | ---- | M] (MyWebSearch.com) [Auto | Stopped] -- C:\Program Files\MyWebSearch\bar\1.bin\MWSSVC.EXE -- (MyWebSearchService)

  44. SRV - [2011-10-12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe -- (AVGIDSAgent)

  45. SRV - [2011-08-02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe -- (avgwd)

  46. SRV - [2010-09-29 18:27:05 | 004,402,456 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS\System32\GameMon.des -- (npggsvc)

  47. SRV - [2009-12-23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) [Auto | Running] -- C:\Programy\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)

  48. ========== Driver Services (SafeList) ==========

  49. DRV - [2011-11-15 04:50:16 | 000,112,096 | ---- | M] (Power Software Ltd) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)

  50. DRV - [2011-10-07 06:23:48 | 000,230,608 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86)

  51. DRV - [2011-10-04 06:21:42 | 000,016,720 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim)

  52. DRV - [2011-09-23 16:37:21 | 000,484,064 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleXNt.sys -- (EagleXNt)

  53. DRV - [2011-09-13 06:30:10 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)

  54. DRV - [2011-08-08 06:08:58 | 000,040,016 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86)

  55. DRV - [2011-07-11 01:14:38 | 000,295,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix)

  56. DRV - [2011-07-11 01:14:28 | 000,024,272 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)

  57. DRV - [2011-07-11 01:14:28 | 000,023,120 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)

  58. DRV - [2011-07-11 01:14:26 | 000,134,608 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)

  59. DRV - [2010-10-17 11:46:50 | 000,436,792 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)

  60. DRV - [2009-03-18 16:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)

  61. DRV - [2008-04-14 01:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)

  62. DRV - [2008-04-13 23:26:50 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\usb8023.sys -- (USB_RNDIS)

  63. DRV - [2008-01-09 12:28:34 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)

  64. DRV - [2007-10-25 18:31:08 | 000,616,064 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PFC027.SYS -- (PAC207)

  65. DRV - [2005-08-04 04:10:18 | 001,273,344 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)

  66. DRV - [2005-05-20 19:28:04 | 000,052,736 | R--- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CnxTgNW.sys -- (CnxTgNW)

  67. DRV - [2005-05-20 19:27:58 | 000,618,112 | R--- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CnxEtU.sys -- (CnxEtU)

  68. DRV - [2005-05-20 19:27:54 | 000,131,072 | R--- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CnxEtP.sys -- (CnxEtP)

  69. DRV - [2004-06-03 03:40:46 | 000,079,360 | R--- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvatabus.sys -- (nvatabus)

  70. DRV - [2004-05-17 07:00:54 | 000,012,928 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)

  71. DRV - [2004-05-17 07:00:52 | 000,033,280 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)

  72. DRV - [2004-04-02 08:40:00 | 000,021,760 | R--- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nv_agp.sys -- (nv_agp)

  73. DRV - [2003-07-16 15:43:54 | 000,006,976 | ---- | M] (StarForce Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\prosync1.sys -- (prosync1)

  74. DRV - [2003-07-15 17:59:16 | 000,094,816 | ---- | M] (StarForce Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\prohlp02.sys -- (prohlp02)

  75. DRV - [2003-07-15 17:01:44 | 000,051,264 | ---- | M] (StarForce Technologies, Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\prodrv06.sys -- (prodrv06)

  76. DRV - [2003-04-29 12:10:40 | 000,004,448 | ---- | M] (StarForce Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp01.sys -- (sfhlp01)

  77. DRV - [1996-04-03 20:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\giveio.sys -- (giveio)

  78. ========== Standard Registry (SafeList) ==========

  79. ========== Internet Explorer ==========

  80. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm

  81. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/cheatengine/{BD738B89-92B2-49E0-85B8-462859878FF8}

  82. IE - HKLM\..\URLSearchHook: {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL Inc.)

  83. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/custom?domains=entretieneteds.to.md&q=&sitesearch=&client=pub-3439752189615153

  84. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ie

  85. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2786678

  86. IE - HKCU\..\URLSearchHook: {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL (MyWebSearch.com)

  87. IE - HKCU\..\URLSearchHook: {08C06D61-F1F3-4799-86F8-BE1A89362C85} - No CLSID value found

  88. IE - HKCU\..\URLSearchHook: {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL Inc.)

  89. IE - HKCU\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found

  90. IE - HKCU\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll (Conduit Ltd.)

  91. IE - HKCU\..\URLSearchHook: {CA3EB689-8F09-4026-AA10-B9534C691CE0} - C:\Program Files\CheatEngine Toolbar\tbhelper.dll ()

  92. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

  93. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1:9421

  94. ========== FireFox ==========

  95. FF - prefs.js..browser.search.defaultenginename: "AVG Secure Search"

  96. FF - prefs.js..browser.search.defaultthis.engineName: " "

  97. FF - prefs.js..browser.search.defaulturl: "http://search.winamp.com/search/search?query={searchTerms}&invocationType=tb50-ff-winamp-chromesbox-en-us&tb_uuid=20111105121213500&tb_oid=05-11-2011&tb_mrud=05-11-2011&query="

  98. FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"

  99. FF - prefs.js..browser.search.selectedEngine: "Google"

  100. FF - prefs.js..browser.search.useDBForOrder: true

  101. FF - prefs.js..browser.startup.homepage: "http://isearch.avg.com?cid=%7B98fdc49e-9c63-4999-a6d5-e23f8749caaf%7D&mid=f9601cceac16b256cfea0376475ddd9b-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&ds=AVG&v=10.0.0.7?=pl&pr=fr&d=2011-11-05%2014%3A09%3A01"

  102. FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.872

  103. FF - prefs.js..extensions.enabledItems: avg@igeared:6.103.018.001

  104. FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22

  105. FF - prefs.js..extensions.enabledItems: [email protected]:1.0

  106. FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23

  107. FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.8.4

  108. FF - prefs.js..extensions.enabledItems: [email protected]:5.0.67.0

  109. FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24

  110. FF - prefs.js..keyword.URL: "http://aolsearch.aol.com/aol/search?invocationType=client_searchbox&query="

  111. FF - prefs.js..network.proxy.http: "184.107.182.187"

  112. FF - prefs.js..network.proxy.http_port: 3128

  113. FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()

  114. FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)

  115. FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)

  116. FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)

  117. FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation)

  118. FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)

  119. FF - HKLM\Software\MozillaPlugins\@mywebsearch.com/Plugin: C:\Program Files\MyWebSearch\bar\1.bin\NPMyWebS.dll (MyWebSearch.com)

  120. FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\Documents and Settings\All Users\Dane aplikacji\NexonEU\NGM\npNxGameeu.dll (Nexon)

  121. FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)

  122. FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2027: C:\Program Files\Real Alternative\browser\plugin\nppl3260.dll File not found

  123. FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1040: C:\Program Files\Real Alternative\browser\plugin\nprpjplug.dll File not found

  124. FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found

  125. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)

  126. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)

  127. FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()

  128. FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)

  129. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@igeared: C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared

  130. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MyWebSearch\bar\1.bin [2011-11-26 21:37:07 | 000,000,000 | ---D | M]

  131. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\ [2012-02-01 22:30:48 | 000,000,000 | ---D | M]

  132. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-02-19 05:43:52 | 000,000,000 | ---D | M]

  133. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-11-27 12:04:53 | 000,000,000 | ---D | M]

  134. FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\[email protected]: C:\Documents and Settings\romek\Dane aplikacji\IDM\idmmzcc5

  135. [2010-02-06 16:50:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Extensions

  136. [2012-02-18 18:50:37 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Firefox\Profiles\2ldrpjle.default\extensions

  137. [2011-11-05 13:12:23 | 000,000,000 | ---D | M] (Winamp Toolbar) -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Firefox\Profiles\2ldrpjle.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}

  138. [2012-02-13 18:47:53 | 000,000,000 | ---D | M] (Flagfox) -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Firefox\Profiles\2ldrpjle.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}

  139. [2011-12-26 20:57:12 | 000,000,000 | ---D | M] (CheatEngine Toolbar) -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Firefox\Profiles\2ldrpjle.default\extensions\{75656794-AB59-4712-BFBC-5D816D56F3BC}

  140. [2012-01-11 23:42:36 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Firefox\Profiles\2ldrpjle.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}

  141. [2012-01-16 16:57:34 | 000,000,000 | ---D | M] (AVG Security Toolbar) -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Firefox\Profiles\2ldrpjle.default\extensions\avg@toolbar

  142. [2011-11-05 13:21:33 | 000,002,354 | ---- | M] () -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Firefox\Profiles\2ldrpjle.default\searchplugins\aol-web-search.xml

  143. [2011-11-05 09:35:36 | 000,000,863 | ---- | M] () -- C:\Documents and Settings\romek\Dane aplikacji\Mozilla\Firefox\Profiles\2ldrpjle.default\searchplugins\conduit.xml

  144. [2012-02-22 20:03:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions

  145. [2012-02-22 20:03:55 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}

  146. () (No name found) -- C:\DOCUMENTS AND SETTINGS\ROMEK\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2LDRPJLE.DEFAULT\EXTENSIONS\{DB9127A2-3381-41EC-82B3-1B6ED4C6F29A}.XPI

  147. [2012-02-19 05:43:52 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll

  148. [2012-02-22 20:03:38 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll

  149. [2010-12-02 16:58:06 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll

  150. [2011-09-29 01:52:42 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml

  151. [2012-01-24 06:43:45 | 000,003,766 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml

  152. [2011-09-29 01:52:42 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml

  153. [2011-09-29 01:52:42 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml

  154. [2011-09-29 01:52:42 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml

  155. [2011-09-29 01:52:42 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml

  156. [2011-09-29 01:52:42 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml

  157. ========== Chrome ==========

  158. CHR - default_search_provider: Google (Enabled)

  159. CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}

  160. CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}

  161. CHR - plugin: Shockwave Flash (Disabled) = C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll

  162. CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\17.0.963.56\gcswf32.dll

  163. CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

  164. CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer

  165. CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\17.0.963.56\ppGoogleNaClPluginChrome.dll

  166. CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\17.0.963.56\pdf.dll

  167. CHR - plugin: AVG Internet Security (Enabled) = C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\plugins/avgnpss.dll

  168. CHR - plugin: RealPlayer G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Documents and Settings\romek\Dane aplikacji\Mozilla\plugins\nppl3260.dll

  169. CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Documents and Settings\romek\Dane aplikacji\Mozilla\plugins\nprpjplug.dll

  170. CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\Browser\nppdf32.dll

  171. CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll

  172. CHR - plugin: Java Platform SE 6 U31 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll

  173. CHR - plugin: downloadUpdater (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdnu.dll

  174. CHR - plugin: downloadUpdater2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdnupdater2.dll

  175. CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npwachk.dll

  176. CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll

  177. CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll

  178. CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll

  179. CHR - plugin: Nexon Game Controller (Enabled) = C:\Documents and Settings\All Users\Dane aplikacji\NexonEU\NGM\npNxGameeu.dll

  180. CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

  181. CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll

  182. CHR - plugin: My Web Search Plugin Stub (Enabled) = C:\Program Files\MyWebSearch\bar\1.bin\NPMyWebS.dll

  183. CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

  184. CHR - plugin: MetaStream 3 Plugin (Enabled) = C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll

  185. CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

  186. CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll

  187. CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll

  188. CHR - plugin: Default Plug-in (Enabled) = default_plugin

  189. CHR - Extension: YouTube = C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\

  190. CHR - Extension: Szukaj w Google = C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.17_0\

  191. CHR - Extension: AVG Safe Search = C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.1901_0\

  192. CHR - Extension: Gmail = C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

  193. O1 HOSTS File: ([2012-02-26 00:19:26 | 000,000,296 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts

  194. O1 - Hosts: 127.0.0.1 LocalHost

  195. O1 - Hosts: 0.0.0.0 pk5156.com

  196. O1 - Hosts: 0.0.0.0 www.pk5156.com

  197. O1 - Hosts: 0.0.0.0 28pkk.com

  198. O1 - Hosts: 0.0.0.0 28pkw.com

  199. O1 - Hosts: 0.0.0.0 28pkz.com

  200. O1 - Hosts: 0.0.0.0 wooolg.com

  201. O1 - Hosts: 0.0.0.0 www.bfaft.com

  202. O1 - Hosts: 0.0.0.0 www.dw688.com

  203. O1 - Hosts: 0.0.0.0 www1.dw688.com

  204. O1 - Hosts: 0.0.0.0 www.dwdlq.cn

  205. O1 - Hosts: 0.0.0.0 www.371.com

  206. O1 - Hosts: 0.0.0.0 371.com

  207. O1 - Hosts: 0.0.0.0 WWW.ZSC3.COM

  208. O2 - BHO: (MyWebSearch Search Assistant BHO) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL (MyWebSearch.com)

  209. O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx ()

  210. O2 - BHO: (mwsBar BHO) - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL (MyWebSearch.com)

  211. O2 - BHO: (Winamp Toolbar Loader) - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL Inc.)

  212. O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)

  213. O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)

  214. O2 - BHO: (no name) - {8A86D350-37AB-410A-8531-7D1363F317B3} - No CLSID value found.

  215. O2 - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)

  216. O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\10.0.0.7\AVG Secure Search_toolbar.dll ()

  217. O2 - BHO: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found.

  218. O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

  219. O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group)

  220. O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll (Conduit Ltd.)

  221. O2 - BHO: (EpsonToolBandKicker Class) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)

  222. O2 - BHO: (SMTTB2009 Class) - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\CheatEngine Toolbar\tbcore3.dll ()

  223. O3 - HKLM\..\Toolbar: (My Web Search) - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL (MyWebSearch.com)

  224. O3 - HKLM\..\Toolbar: (CheatEngine Toolbar) - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\CheatEngine Toolbar\tbcore3.dll ()

  225. O3 - HKLM\..\Toolbar: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)

  226. O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\10.0.0.7\AVG Secure Search_toolbar.dll ()

  227. O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll (Conduit Ltd.)

  228. O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.

  229. O3 - HKLM\..\Toolbar: (Winamp Toolbar) - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL Inc.)

  230. O3 - HKLM\..\Toolbar: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)

  231. O3 - HKCU\..\Toolbar\WebBrowser: (My Web Search) - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL (MyWebSearch.com)

  232. O3 - HKCU\..\Toolbar\WebBrowser: (CheatEngine Toolbar) - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\CheatEngine Toolbar\tbcore3.dll ()

  233. O3 - HKCU\..\Toolbar\WebBrowser: (uTorrentBar Toolbar) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - C:\Program Files\uTorrentBar\prxtbuTo2.dll (Conduit Ltd.)

  234. O3 - HKCU\..\Toolbar\WebBrowser: (Winamp Toolbar) - {EBF2BA02-9094-4C5A-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL Inc.)

  235. O3 - HKCU\..\Toolbar\WebBrowser: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)

  236. O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)

  237. O4 - HKLM..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd File not found

  238. O4 - HKLM..\Run: [CnxDslTaskBar] "c:\program files\zte corporation\zxdsl852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852" File not found

  239. O4 - HKLM..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe (PixArt Imaging Incorporation)

  240. O4 - HKLM..\Run: [My Web Search Bar Search Scope Monitor] C:\Program Files\MyWebSearch\bar\1.bin\M3SRCHMN.EXE (MyWebSearch.com)

  241. O4 - HKLM..\Run: [MyWebSearch Email Plugin] C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE (MyWebSearch.com)

  242. O4 - HKLM..\Run: [NVRaidService] C:\WINDOWS\system32\nvraidservice.exe (NVIDIA Corporation)

  243. O4 - HKLM..\Run: [PAC207_Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe (PixArt Imaging Incorporation)

  244. O4 - HKLM..\Run: [ROC_roc_dec12] C:\Program Files\AVG Secure Search\ROC_roc_dec12.exe ()

  245. O4 - HKLM..\Run: [svchost] C:\Documents and Settings\romek\Dane aplikacji\Microsoft\System\Services\svchost.exe (Microsoft Corporation)

  246. O4 - HKLM..\Run: [vProt] C:\Program Files\AVG Secure Search\vprot.exe ()

  247. O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Akamai\netsession_win.exe (Akamai Technologies, Inc)

  248. O4 - HKCU..\Run: [AlcoholAutomount] C:\Programy\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe (Alcohol Soft Development Team)

  249. O4 - HKCU..\Run: [MyWebSearch Email Plugin] C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE (MyWebSearch.com)

  250. O4 - HKCU..\Run: [Odkurzacz-MCD] C:\Programy\Odkurzacz\odk_mcd.exe (Franmo Software)

  251. O4 - HKCU..\Run: [svchost] C:\Documents and Settings\romek\Dane aplikacji\Microsoft\System\Services\svchost.exe (Microsoft Corporation)

  252. O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation)

  253. O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

  254. O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data]

  255. O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?s=100000337&p=ZUxdm797YYUS&si=&a=k81SfhZPqAJ7B_maRXL6Zg&n=2011122307 File not found

  256. O8 - Extra context menu item: ????3?? - Reg Error: Value error. File not found

  257. O8 - Extra context menu item: ????3?????? - Reg Error: Value error. File not found

  258. O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO\GetAllUrl.htm ()

  259. O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO\GetUrl.htm ()

  260. O8 - Extra context menu item: ????3?? - C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO\GetUrl.htm ()

  261. O8 - Extra context menu item: ????3?????? - C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO\GetAllUrl.htm ()

  262. O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

  263. O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

  264. O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe File not found

  265. O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found

  266. O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found

  267. O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of MPCforum range - 5)

  268. O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)

  269. O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)

  270. O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)

  271. O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)

  272. O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0

  273. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0612B3D1-3B50-4167-ACAF-9AEF64ED8222}: DhcpNameServer = 192.168.1.1 0.0.0.0

  274. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E08679F6-224F-4254-B341-3FC24A6EACA6}: DhcpNameServer = 192.168.1.1 0.0.0.0

  275. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F4966835-7D41-40B5-B3DB-DC1059F8433D}: DhcpNameServer = 192.168.1.1 0.0.0.0

  276. O18 - Protocol\Handler\avgsecuritytoolbar - No CLSID value found

  277. O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)

  278. O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

  279. O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll ()

  280. O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)

  281. O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)

  282. O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)

  283. O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home

  284. O24 - Desktop WallPaper: C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp

  285. O24 - Desktop BackupWallPaper: C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp

  286. O32 - HKLM CDRom: AutoRun - 1

  287. O32 - AutoRun File - [2010-02-06 16:19:38 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]

  288. O33 - MountPoints2\{392021fa-1339-11df-98f0-806d6172696f}\Shell - "" = AutoRun

  289. O33 - MountPoints2\{392021fa-1339-11df-98f0-806d6172696f}\Shell\AutoRun\command - "" = F:\livebox_tp.EXE

  290. O33 - MountPoints2\{e55864c1-ecf6-11e0-bd3c-001bbf72979b}\Shell\AutoRun\command - "" = I:\EXPLORER.EXE

  291. O33 - MountPoints2\{e55864c1-ecf6-11e0-bd3c-001bbf72979b}\Shell\explore\Command - "" = I:\EXPLORER.EXE

  292. O33 - MountPoints2\{e55864c1-ecf6-11e0-bd3c-001bbf72979b}\Shell\open\Command - "" = I:\EXPLORER.EXE

  293. O34 - HKLM BootExecute: (autocheck autochk *)

  294. O34 - HKLM BootExecute: (lsdelete)

  295. O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2012\avgrsx.exe /sync /restart)

  296. O35 - HKLM\..comfile [open] -- "%1" %*

  297. O35 - HKLM\..exefile [open] -- "%1" %*

  298. O37 - HKLM\...com [@ = comfile] -- "%1" %*

  299. O37 - HKLM\...exe [@ = exefile] -- "%1" %*

  300. ========== Files/Folders - Created Within 30 Days ==========

  301. [2012-02-25 23:53:22 | 000,000,000 | ---D | C] -- C:\Program Files\xatspace

  302. [2012-02-25 18:50:00 | 000,000,000 | ---D | C] -- C:\Riot Games

  303. [2012-02-25 18:50:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\NewFeature1

  304. [2012-02-24 20:57:12 | 000,000,000 | -HSD | C] -- C:\WINDOWS\System32\28463

  305. [2012-02-24 16:49:53 | 000,000,000 | ---D | C] -- C:\Program Files\Ubisoft

  306. [2012-02-22 23:13:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\romek\Dane aplikacji\Tibia

  307. [2012-02-22 20:05:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java

  308. [2012-02-08 16:42:21 | 000,000,000 | ---D | C] -- C:\Program Files\free pascal

  309. [2012-02-07 18:27:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\romek\Dane aplikacji\codeblocks

  310. [2012-02-04 10:13:06 | 000,000,000 | ---D | C] -- C:\Program Files\Warcraft III

  311. [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

  312. ========== Files - Modified Within 30 Days ==========

  313. [2012-02-27 20:32:00 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

  314. [2012-02-27 20:07:07 | 000,001,030 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job

  315. [2012-02-27 20:07:00 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat

  316. [2012-02-27 18:05:00 | 000,000,240 | ---- | M] () -- C:\WINDOWS\tasks\Epson Printer Software Downloader.job

  317. [2012-02-27 17:35:11 | 090,147,006 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm

  318. [2012-02-27 17:19:36 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl

  319. [2012-02-26 06:28:07 | 000,141,240 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT

  320. [2012-02-26 00:19:26 | 000,000,296 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts

  321. [2012-02-26 00:18:06 | 000,002,555 | ---- | M] () -- C:\Documents and Settings\romek\Pulpit\HiJackThis.lnk

  322. [2012-02-26 00:10:05 | 000,893,952 | -H-- | M] () -- C:\Documents and Settings\romek\Dane aplikacji\ServerBS.exe

  323. [2012-02-25 18:50:56 | 000,001,616 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Play League of Legends.lnk

  324. [2012-02-25 18:13:47 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk

  325. [2012-02-24 19:47:17 | 000,000,030 | ---- | M] () -- C:\WINDOWS\TextSpy.ini

  326. [2012-02-23 18:59:43 | 000,163,442 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\iavichjg.avm

  327. [2012-02-22 20:20:00 | 000,000,486 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job

  328. [2012-02-17 11:20:16 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk

  329. [2012-02-13 11:17:48 | 000,000,248 | ---- | M] () -- C:\WINDOWS\System32\secustat.dat

  330. [2012-02-13 11:17:05 | 000,000,305 | ---- | M] () -- C:\WINDOWS\System32\secushr.dat

  331. [2012-02-11 18:55:59 | 000,000,080 | ---- | M] () -- C:\WINDOWS\Wininit.ini

  332. [2012-02-11 18:53:45 | 000,000,014 | ---- | M] () -- C:\WINDOWS\msoffice.ini

  333. [2012-02-06 22:58:55 | 000,120,320 | ---- | M] () -- C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

  334. [2012-02-02 20:46:20 | 000,116,654 | ---- | M] () -- C:\WINDOWS\DOM-9584CB6B2272012-02-02---20-46-20.gif

  335. [2012-02-02 20:45:45 | 000,108,892 | ---- | M] () -- C:\WINDOWS\DOM-9584CB6B2272012-02-02---20-45-44.gif

  336. [2012-01-31 18:54:24 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini

  337. [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

  338. ========== Files Created - No Company Name ==========

  339. [2012-02-26 00:09:55 | 000,893,952 | -H-- | C] () -- C:\Documents and Settings\romek\Dane aplikacji\ServerBS.exe

  340. [2012-02-25 18:50:56 | 000,001,616 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Play League of Legends.lnk

  341. [2012-02-02 20:46:20 | 000,116,654 | ---- | C] () -- C:\WINDOWS\DOM-9584CB6B2272012-02-02---20-46-20.gif

  342. [2012-02-02 20:45:45 | 000,108,892 | ---- | C] () -- C:\WINDOWS\DOM-9584CB6B2272012-02-02---20-45-44.gif

  343. [2012-02-02 17:15:34 | 000,002,555 | ---- | C] () -- C:\Documents and Settings\romek\Pulpit\HiJackThis.lnk

  344. [2011-11-28 19:42:30 | 001,867,776 | ---- | C] () -- C:\WINDOWS\System32\python24.dll

  345. [2011-11-15 18:20:19 | 000,014,620 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat

  346. [2011-11-01 22:11:26 | 000,001,579 | ---- | C] () -- C:\WINDOWS\kaillera.ini

  347. [2011-10-23 20:19:28 | 000,016,432 | ---- | C] () -- C:\WINDOWS\System32\lsdelete.exe

  348. [2011-10-23 16:22:15 | 000,003,072 | ---- | C] () -- C:\WINDOWS\setwintitle.exe

  349. [2011-10-23 10:39:17 | 000,000,083 | ---- | C] () -- C:\WINDOWS\System32\getfilesfb.ini

  350. [2011-09-26 19:26:27 | 000,000,081 | ---- | C] () -- C:\WINDOWS\System32\procexpdl.ini

  351. [2011-09-18 14:09:01 | 000,000,115 | ---- | C] () -- C:\WINDOWS\System32\getfiles.ini

  352. [2011-08-30 22:13:12 | 000,000,305 | ---- | C] () -- C:\WINDOWS\System32\secushr.dat

  353. [2011-08-30 22:10:35 | 000,000,248 | ---- | C] () -- C:\WINDOWS\System32\secustat.dat

  354. [2011-08-30 22:09:22 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI

  355. [2011-08-26 13:35:01 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\HMIPCore.dll

  356. [2011-06-26 05:45:00 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\romek\Ustawienia lokalne\Dane aplikacji\{6B0DAD56-D547-4B4B-B50F-E84B8706E221}

  357. [2011-05-31 17:01:14 | 000,083,968 | ---- | C] () -- C:\WINDOWS\UnGins.exe

  358. [2011-04-18 16:00:59 | 006,904,040 | ---- | C] () -- C:\WINDOWS\System32\SpoonUninstall.exe

  359. [2011-04-08 12:03:27 | 000,107,926 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat

  360. [2011-04-08 12:03:27 | 000,107,926 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-73586283-706699826-1801674531-1003-0.dat

  361. [2011-03-01 22:06:45 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll

  362. [2011-02-19 18:06:17 | 000,000,014 | ---- | C] () -- C:\WINDOWS\msoffice.ini

  363. [2011-01-24 12:03:16 | 000,000,706 | ---- | C] () -- C:\WINDOWS\System32\Remover.ini

  364. [2011-01-24 12:03:12 | 000,000,566 | ---- | C] () -- C:\WINDOWS\System32\SP207.INI

  365. [2011-01-13 20:06:42 | 000,075,152 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat

  366. [2010-12-26 10:40:05 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat

  367. [2010-12-15 21:51:26 | 000,000,036 | ---- | C] () -- C:\WINDOWS\mafosav.INI

  368. [2010-12-15 20:01:06 | 000,000,021 | ---- | C] () -- C:\WINDOWS\clofghls.dll

  369. [2010-12-15 17:50:21 | 000,111,932 | ---- | C] () -- C:\WINDOWS\System32\EPPICPrinterDB.dat

  370. [2010-12-15 17:50:21 | 000,031,053 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern131.dat

  371. [2010-12-15 17:50:21 | 000,027,417 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern121.dat

  372. [2010-12-15 17:50:21 | 000,026,154 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern1.dat

  373. [2010-12-15 17:50:21 | 000,024,903 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern3.dat

  374. [2010-12-15 17:50:21 | 000,021,390 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern5.dat

  375. [2010-12-15 17:50:21 | 000,020,148 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern2.dat

  376. [2010-12-15 17:50:21 | 000,011,811 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern4.dat

  377. [2010-12-15 17:50:21 | 000,004,943 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern6.dat

  378. [2010-12-15 17:50:21 | 000,001,146 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_DU.dat

  379. [2010-12-15 17:50:21 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_PT.dat

  380. [2010-12-15 17:50:21 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_BP.dat

  381. [2010-12-15 17:50:21 | 000,001,136 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_ES.dat

  382. [2010-12-15 17:50:21 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_FR.dat

  383. [2010-12-15 17:50:21 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_CF.dat

  384. [2010-12-15 17:50:21 | 000,001,120 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_IT.dat

  385. [2010-12-15 17:50:21 | 000,001,107 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_GE.dat

  386. [2010-12-15 17:50:21 | 000,001,104 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_EN.dat

  387. [2010-12-15 17:50:21 | 000,000,097 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini

  388. [2010-11-19 12:17:46 | 000,001,096 | ---- | C] () -- C:\WINDOWS\7THLEVEL.INI

  389. [2010-11-18 12:15:18 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll

  390. [2010-11-18 12:15:18 | 000,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll

  391. [2010-11-18 12:15:18 | 000,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll

  392. [2010-10-28 17:22:19 | 000,139,080 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys

  393. [2010-10-28 17:22:19 | 000,138,056 | ---- | C] () -- C:\Documents and Settings\romek\Dane aplikacji\PnkBstrK.sys

  394. [2010-10-28 17:21:46 | 000,270,240 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe

  395. [2010-10-28 17:21:40 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe

  396. [2010-10-17 13:05:26 | 000,253,696 | ---- | C] () -- C:\WINDOWS\hppunin.exe

  397. [2010-08-08 09:03:25 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\WLANUTL.dll

  398. [2010-06-14 21:14:38 | 000,000,030 | ---- | C] () -- C:\WINDOWS\TextSpy.ini

  399. [2010-06-14 15:42:22 | 000,000,059 | ---- | C] () -- C:\WINDOWS\dcmvwr.INI

  400. [2010-03-02 16:06:35 | 000,000,192 | ---- | C] () -- C:\WINDOWS\winamp.ini

  401. ========== LOP Check ==========

  402. [2010-10-11 09:54:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AlawarWrapper

  403. [2011-12-19 12:21:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search

  404. [2010-10-27 14:11:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG Security Toolbar

  405. [2012-02-24 21:59:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG2012

  406. [2012-01-04 21:43:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\avg9

  407. [2010-11-14 21:15:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software

  408. [2011-03-15 09:23:51 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files

  409. [2011-11-26 10:10:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Easybits GO

  410. [2010-12-15 18:12:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EPSON

  411. [2010-02-07 20:09:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10

  412. [2011-07-03 17:50:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\InterAction studios

  413. [2010-11-20 10:48:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla

  414. [2012-02-27 17:36:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData

  415. [2010-09-15 12:57:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nexon

  416. [2010-03-08 15:45:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NexonEU

  417. [2011-08-21 12:02:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM

  418. [2011-10-28 18:52:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PMB Files

  419. [2012-01-01 14:16:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tarma Installer

  420. [2011-06-07 17:37:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP

  421. [2010-12-15 18:04:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\UDL

  422. [2011-11-27 12:05:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Viewpoint

  423. [2011-10-21 17:09:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\.minecraft

  424. [2011-11-05 14:09:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\AVG Secure Search

  425. [2011-11-05 14:11:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\AVG2012

  426. [2012-02-13 11:17:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\BITS

  427. [2011-02-09 01:07:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\COWON

  428. [2011-07-29 17:20:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\dBpoweramp

  429. [2011-03-25 16:35:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\DBV

  430. [2011-07-08 21:40:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\Dev-Cpp

  431. [2011-11-08 16:06:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\DMCache

  432. [2011-06-03 16:06:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\Enterbrain

  433. [2010-12-15 20:40:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\EPSON

  434. [2012-02-23 19:46:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\EurekaLog

  435. [2011-12-24 21:21:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\Firaxis Games

  436. [2011-08-30 22:08:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\FlashGet

  437. [2011-08-30 22:08:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\FlashGetBHO

  438. [2010-11-17 13:52:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\Gadu-Gadu 10

  439. [2010-09-01 14:16:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\GHISLER

  440. [2012-01-04 21:43:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\go

  441. [2011-07-25 23:25:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\GoD

  442. [2011-10-22 18:13:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\gtk-2.0

  443. [2010-06-14 21:12:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\InterTrust

  444. [2011-04-15 11:33:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\ipla

  445. [2011-09-02 17:45:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\LolClient

  446. [2012-01-04 21:49:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\My Games

  447. [2011-04-23 19:36:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\Notepad++

  448. [2010-07-31 20:28:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\OpenFM

  449. [2011-05-16 20:32:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\POST

  450. [2011-05-15 15:57:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\RDRM

  451. [2010-10-11 09:55:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\Settlement. Colossus

  452. [2011-04-03 20:50:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\SFBot

  453. [2010-10-08 11:36:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\TeamViewer

  454. [2012-02-24 20:20:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\Tibia

  455. [2011-12-26 20:57:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\Toolbar4

  456. [2011-12-03 13:25:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\TS3Client

  457. [2012-02-06 09:19:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\romek\Dane aplikacji\uTorrent

  458. [2012-02-22 20:20:00 | 000,000,486 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

  459. [2012-02-27 18:05:00 | 000,000,240 | ---- | M] () -- C:\WINDOWS\Tasks\Epson Printer Software Downloader.job

  460. ========== Purity Check ==========

  461. ========== Alternate Data Streams ==========

  462. @Alternate Data Stream - 141 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:05EE1EEF

  463. @Alternate Data Stream - 123 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:325064EA

  464. < End of report >

 

 

[list]
[*][url="http://www.mpcforum.pl/topic/435586-tutreje-na-nostaleth/"]Mój tut rejestracji na Tajlandzkim nostale[/url]
[*][url="http://www.mpcforum.pl/topic/639995-tutwszystko-o-kartach-specjalisty/page__pid__4604876#entry4604876/"]Wszystko o kartach specialisty[/url]
[/list]

Opublikowano

Oprocz tego ze sa jakies toolbary do przegladarki doinstalowane ktore moga byc uwazane za spyware to logi sa czyste.

Unbanned :]

Wszelkie pytania/wiadomości kierować na

Misiekantos253

Zarchiwizowany

Ten temat przebywa obecnie w archiwum. Dodawanie nowych odpowiedzi zostało zablokowane.

×
×
  • Dodaj nową pozycję...