Anonim / 2 lata, 11 miesięcy temu | Download | Plaintext | Odpowiedz |

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-09-2014
Ran by Basia (administrator) on DOM-552A8DF0FCA on 27-09-2014 09:18:02
Running from D:\impreza urodzinowa
Loaded Profile: Basia (Available profiles: Basia & Administrator)
Platform: Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polski
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(Nuance Communications, Inc.) C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(SONIX) C:\WINDOWS\tsnp2std.exe
(Sonix) C:\WINDOWS\vsnp2std.exe
(VM305SNAP) C:\WINDOWS\vm305_sti.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
(Valve Corporation) E:\Steamm\Steam.exe
(Nektra S.A.) C:\Program Files\IVONA\IVONA Reader\integr\OutlookExpress\IROElauncher.exe
() C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
(Foxit Corporation) C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Ellora Assets Corp.) C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Valve Corporation) E:\Steamm\bin\steamwebhelper.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Valve Corporation) E:\Steamm\bin\steamwebhelper.exe
(Valve Corporation) E:\Steamm\bin\steamwebhelper.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16377344 2007-06-13] (Realtek Semiconductor Corp.)
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [644696 2007-05-14] (CANON INC.)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1603152 2007-04-03] (CANON INC.)
HKLM\...\Run: [SSBkgdUpdate] => C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM\...\Run: [OpwareSE4] => C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [tsnp2std] => C:\WINDOWS\tsnp2std.exe [258048 2007-01-05] (SONIX)
HKLM\...\Run: [snp2std] => C:\WINDOWS\vsnp2std.exe [675840 2006-09-15] (Sonix)
HKLM\...\Run: [BigDog305] => C:\WINDOWS\VM305_STI.EXE [57344 2007-04-09] (VM305SNAP)
HKLM\...\Run: [AVP] => C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe [206448 2012-10-31] (Kaspersky Lab ZAO)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2009-09-29] (Advanced Micro Devices, Inc.)
HKLM\...\Winlogon: [Shell] explorer.exe  [1035264 2008-04-14] (Microsoft Corporation)
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.)
Winlogon\Notify\klogon: C:\WINDOWS\system32\klogon.dll (Kaspersky Lab ZAO)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKLM\...\Policies\Explorer: [NoViewContextMenu] 0
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [484904 2007-04-19] (Hewlett-Packard Company)
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Run: [Steam] => E:\steamm\steam.exe [1938112 2014-09-23] (Valve Corporation)
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Run: [IROElauncher] => C:\Program Files\IVONA\IVONA Reader\integr\OutlookExpress\IROElauncher.exe [86016 2008-09-24] (Nektra S.A.)
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Run: [KiesPDLR] => C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [21432 2012-08-31] ()
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Run: [Facebook Update] => C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Facebook\Update\FacebookUpdate.exe [138096 2014-09-03] (Facebook Inc.)
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\RunOnce: [Shockwave Updater] => C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1100465.exe [447928 2008-08-06] (Adobe Systems, Inc.)
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Policies\system: [EnableLUA] 0
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Policies\system: [DisableCMD] 0
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-1060284298-1214440339-725345543-1004\...\MountPoints2: {b7451b44-f62c-11e3-a100-001a4df698b1} - G:\setup.exe
ShellIconOverlayIdentifiers: GGDriveOverlay1 -> {E68D0A50-3C40-4712-B90D-DCFA93FF2534} => C:\Documents and Settings\All Users\Dane aplikacji\GG\ggdrive\ggdrive-overlay.dll (GG Network S.A.)
ShellIconOverlayIdentifiers: GGDriveOverlay2 -> {E68D0A51-3C40-4712-B90D-DCFA93FF2534} => C:\Documents and Settings\All Users\Dane aplikacji\GG\ggdrive\ggdrive-overlay.dll (GG Network S.A.)
ShellIconOverlayIdentifiers: GGDriveOverlay3 -> {E68D0A52-3C40-4712-B90D-DCFA93FF2534} => C:\Documents and Settings\All Users\Dane aplikacji\GG\ggdrive\ggdrive-overlay.dll (GG Network S.A.)
ShellIconOverlayIdentifiers: GGDriveOverlay4 -> {E68D0A53-3C40-4712-B90D-DCFA93FF2534} => C:\Documents and Settings\All Users\Dane aplikacji\GG\ggdrive\ggdrive-overlay.dll (GG Network S.A.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM - {40439b93-f815-4122-8073-d03bed94c303} URL = ${SEARCH_URL}{searchTerms}
BHO: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO: IEVkbdBHO Class -> {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: FilterBHO Class -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 91.239.248.21 8.8.4.4

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default
FF SearchEngineOrder.1: v9
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=6.0.11.2852 -> C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nppl3260;version=6.0.12.46 -> C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1662 -> C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.46 -> C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @veetle.com/vbp;version=0.9.17 -> C:\Program Files\Veetle\VLCBroadcast\npvbp.dll No File
FF Plugin: @veetle.com/veetleCorePlugin,version=0.9.19 -> C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF Plugin: @veetle.com/veetlePlayerPlugin,version=0.9.18 -> C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
FF Plugin HKCU: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll No File
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npOggX.dll (ESKA)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Extension: NetVideoHunter - C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default\Extensions\netvideohunter@netvideohunter.com [2014-07-28]
FF Extension: DownloadHelper - C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06]
FF Extension: Google Docs Viewer - C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default\Extensions\adonis.cuhk@gmail.com.xpi [2013-10-20]
FF Extension: Awesome screenshot: Capture and Annotate - C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default\Extensions\jid0-GXjLLfbCoAx0LcltEdFrEkQdQPI@jetpack.xpi [2014-05-02]
FF Extension: S3.Google Translator - C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default\Extensions\s3google@translator.xpi [2014-05-02]
FF Extension: TimeLineRemove.Com - C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default\Extensions\tl_r@jetpack.xpi [2013-06-14]
FF Extension: Unseen - C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default\Extensions\unseen@tangrs.xpi [2014-06-13]
FF Extension: Adblock Plus - C:\Documents and Settings\Basia\Dane aplikacji\Mozilla\Firefox\Profiles\olsfyncq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2012-11-21]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2008-12-05]
FF HKLM\...\Firefox\Extensions: [linkfilter@kaspersky.ru] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\linkfilter@kaspersky.ru
FF Extension: Kaspersky URL Advisor - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\linkfilter@kaspersky.ru [2012-04-22]
FF HKLM\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru
FF Extension: Kaspersky Virtual Keyboard - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru [2012-04-22]
FF HKLM\...\Firefox\Extensions: [KavAntiBanner@Kaspersky.ru] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\KavAntiBanner@Kaspersky.ru
FF Extension: Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\KavAntiBanner@Kaspersky.ru [2012-04-22]
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 &lt;video&gt; - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012-06-17]

Chrome: 
=======
CHR Plugin: (Widevine Content Decryption Module) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\WidevineCDM\1.4.4.600\_platform_specific\win_x86\widevinecdmadapter.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\pdf.dll ()
CHR Plugin: (Microsoft® Windows Media Player Firefox Plugin) - C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation)
CHR Plugin: (BitCometAgent) - C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll (BitComet)
CHR Plugin: (2007 Microsoft Office system) - C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
CHR Plugin: (Ogg Player Gecko Plugin) - C:\Program Files\Mozilla Firefox\plugins\npOggX.dll (ESKA)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (DivX Plus Web Player) - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Java Deployment Toolkit 7.0.510.13) - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Java(TM) Platform SE 7 U51) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
CHR Plugin: (Veetle TV Player) - C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
CHR Plugin: (Veetle TV Core) - C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Plugin: (Shockwave for Director) - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll No File
CHR CustomProfile: C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-06-02]
CHR Extension: (Google Drive) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-06-02]
CHR Extension: (YouTube) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-06-02]
CHR Extension: (Google Search) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-06-02]
CHR Extension: (Google Wallet) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-30]
CHR Extension: (DivX Plus Web Player HTML5 <video>) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2013-06-02]
CHR Extension: (Gmail) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-06-02]
CHR Extension: (Anti-Banner) - C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2013-06-02]
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ChromeExt\urladvisor.crx [2011-09-28]
CHR HKLM\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ChromeExt\virtkbd.crx [2011-09-28]
CHR HKLM\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2011-12-12]
CHR HKLM\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ChromeExt\ab.crx [2011-09-28]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [593920 2009-09-29] () [File not signed]
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe [206448 2012-10-31] (Kaspersky Lab ZAO)
R2 FoxitCloudUpdateService; C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [239680 2014-02-19] (Foxit Corporation)
R2 FreemakeVideoCapture; C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe [9216 2014-07-15] (Ellora Assets Corp.) [File not signed]
S3 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [101528 2007-04-13] () [File not signed]
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-12-18] (Oracle Corporation)
R2 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [270336 2001-02-23] (Microsoft Corporation) [File not signed]
S4 WLSetupSvc; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [266240 2007-10-25] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21275 2009-07-10] (Meetinghouse Data Communications) [File not signed]
R1 AmdK8; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [43520 2006-06-18] (Advanced Micro Devices)
R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [271360 2008-06-16] () [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
R1 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [243128 2014-06-17] (Disc Soft Ltd)
S3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-13] (Microsoft Corporation)
S3 gdrv; C:\WINDOWS\gdrv.sys [15600 2008-06-06] (Windows (R) 2000 DDK provider)
S3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R0 KL1; C:\WINDOWS\System32\DRIVERS\kl1.sys [133208 2011-03-04] (Kaspersky Lab ZAO)
R1 kl2; C:\WINDOWS\System32\DRIVERS\kl2.sys [11352 2011-03-04] (Kaspersky Lab ZAO)
R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [565552 2012-04-22] (Kaspersky Lab)
R3 klim5; C:\WINDOWS\System32\DRIVERS\klim5.sys [34608 2011-03-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\WINDOWS\System32\DRIVERS\klmouflt.sys [19472 2009-11-02] (Kaspersky Lab)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [18048 2008-06-16] () [File not signed]
R3 ManyCam; C:\WINDOWS\System32\DRIVERS\mcvidrv.sys [34432 2012-10-11] (ManyCam LLC)
R3 mcaudrv_simple; C:\WINDOWS\System32\drivers\mcaudrv.sys [25088 2012-10-11] (ManyCam LLC)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R2 npf; C:\WINDOWS\System32\drivers\npf.sys [35088 2011-02-11] (CACE Technologies, Inc.)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [46720 2007-05-04] (NVIDIA Corporation)
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [19968 2007-05-04] (NVIDIA Corporation)
R3 RT61; C:\WINDOWS\System32\DRIVERS\RT61.sys [380928 2006-05-04] (Ralink Technology Inc.)
S3 SE1008mdm; C:\WINDOWS\System32\DRIVERS\SE1008mdm.sys [58536 2009-02-18] (Sony Ericsson)
S3 SNP2STD; C:\WINDOWS\System32\DRIVERS\snp2sxp.sys [12039552 2007-04-09] ()
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [320120 2014-06-17] (Duplex Secure Ltd.)
R2 Vcs; C:\WINDOWS\system32\Drivers\Vcs.sys [6852 2002-12-09] () [File not signed]
S3 VIAudio; C:\WINDOWS\System32\drivers\ac97via.sys [84480 2004-08-03] (VIA Technologies, Inc.)
S3 ZSMC0305; C:\WINDOWS\System32\Drivers\usbVM305.sys [391688 2006-05-08] (Vimicro Corporation)
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U1 WS2IFSL; No ImagePath
U3 akjmubuj; No ImagePath
U3 atydl2vb; No ImagePath

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-25 15:38 - 2014-09-25 15:39 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-09-23 19:44 - 2014-09-23 19:42 - 00068000 ____H () C:\WINDOWS\Minidump\Mini092314-01.dmp
2014-09-23 19:21 - 2014-09-23 19:21 - 00000000 _____ () C:\STF11B.tmp
2014-09-23 19:12 - 2014-09-23 19:12 - 00000896 _____ () C:\Documents and Settings\Basia\Pulpit\angielski.txt
2014-09-20 21:38 - 2014-09-23 19:45 - 00176656 _____ () C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
2014-09-20 21:37 - 2014-09-22 21:35 - 00001686 _____ () C:\WINDOWS\WindowsUpdate.log
2014-09-20 21:36 - 2014-09-23 19:44 - 02511864 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-09-20 11:20 - 2014-09-20 11:20 - 00000000 ____D () C:\Documents and Settings\Basia\Menu Start\Programy\VirtualDJ
2014-09-20 10:57 - 2014-09-20 10:57 - 00000717 _____ () C:\Documents and Settings\All Users\Pulpit\CPUID CPU-Z.lnk
2014-09-16 20:44 - 2014-09-16 20:44 - 00024648 _____ () C:\Documents and Settings\Basia\Pulpit\herb_Granat.cdr
2014-09-16 06:22 - 2014-09-16 06:22 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\ATI
2014-09-15 17:22 - 2014-09-15 17:22 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Catalyst Control Center
2014-09-14 13:31 - 2014-09-14 13:31 - 00000000 ____D () C:\Documents and Settings\Basia\Dane aplikacji\Steam
2014-09-14 11:53 - 2014-09-14 11:53 - 00000682 _____ () C:\Documents and Settings\Basia\Pulpit\The Walking Dead Season 2.lnk
2014-09-14 11:53 - 2014-09-14 11:53 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\The Walking Dead Season 2
2014-09-12 12:34 - 2014-09-12 12:55 - 222757959 _____ () C:\Documents and Settings\Basia\Pulpit\New track 5.wmv
2014-09-12 11:36 - 2014-09-12 11:36 - 00000000 ____D () C:\Program Files\NTCore
2014-09-12 11:36 - 2014-09-12 11:36 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Explorer Suite
2014-09-12 09:52 - 2014-09-12 10:19 - 00370112 _____ () C:\Documents and Settings\Basia\Pulpit\A Sky Full Of Stars (Cover Instrumental) [In the Style of Coldplay].mp4.sfk
2014-09-12 09:52 - 2014-09-12 10:19 - 00064640 _____ () C:\Documents and Settings\Basia\Pulpit\Polska - Czechy 01, Komentuje Marek Solecki.mp4.sfk
2014-09-12 09:43 - 2014-09-12 09:45 - 20366783 _____ () C:\Documents and Settings\Basia\Pulpit\A Sky Full Of Stars (Cover Instrumental) [In the Style of Coldplay].mp4
2014-09-12 09:37 - 2014-09-12 09:38 - 01928084 _____ () C:\Documents and Settings\Basia\Pulpit\Polska - Czechy 01, Komentuje Marek Solecki.mp4
2014-09-12 09:12 - 2014-09-12 10:19 - 00277440 _____ () C:\Documents and Settings\Basia\Pulpit\Podziękujmy Naszym by Nene.mp4.sfk
2014-09-12 08:40 - 2014-09-12 08:45 - 50431906 _____ () C:\Documents and Settings\Basia\Pulpit\Podziękujmy Naszym by Nene.mp4
2014-09-11 21:23 - 2014-09-11 21:23 - 00000000 ____D () C:\Documents and Settings\Basia\Moje dokumenty\MedicomView
2014-09-10 18:53 - 2014-09-10 18:53 - 17903792 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-09-04 19:22 - 2014-09-04 19:24 - 00000000 ____D () C:\AdwCleaner
2014-09-03 20:35 - 2014-09-03 20:35 - 00000000 ____D () C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Skype
2014-09-03 20:34 - 2014-09-03 20:34 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-09-03 20:34 - 2014-09-03 20:34 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Skype
2014-09-03 20:23 - 2014-09-03 20:23 - 01586592 _____ () C:\Documents and Settings\Basia\Pulpit\Untitled.veg
2014-09-03 20:21 - 2014-09-03 20:21 - 00009472 _____ () C:\Documents and Settings\Basia\Pulpit\New track 3.mp4.sfk
2014-09-03 20:20 - 2014-09-03 20:21 - 01169467 _____ () C:\Documents and Settings\Basia\Pulpit\New track 3.mp4
2014-08-31 23:05 - 2014-08-31 14:01 - 00000000 ____D () C:\Documents and Settings\Basia\Pulpit\Everton.vs.Chelsea.bramki.30.08.2014.www.allgoals.com.pl

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-27 09:18 - 2014-07-09 20:32 - 00000000 ____D () C:\FRST
2014-09-27 09:18 - 2009-06-10 18:34 - 00000000 ____D () C:\Documents and Settings\Basia\Ustawienia lokalne\temp
2014-09-27 08:52 - 2012-04-09 10:26 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-09-27 08:39 - 2008-06-21 12:56 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-09-27 08:36 - 2014-04-15 17:18 - 00001002 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1060284298-1214440339-725345543-1004UA.job
2014-09-27 08:24 - 2013-06-02 16:26 - 00001034 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-27 08:15 - 2011-10-07 21:32 - 00000000 ____D () C:\Documents and Settings\Basia\Dane aplikacji\vlc
2014-09-27 08:09 - 2008-06-05 14:10 - 00240640 _____ () C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-09-27 07:56 - 2012-04-22 08:49 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab
2014-09-27 07:55 - 2012-05-18 02:46 - 00262144 _____ () C:\WINDOWS\system32\config\ACEEvent.evt
2014-09-27 07:54 - 2008-06-04 18:31 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-09-27 07:54 - 2008-06-04 18:31 - 00000050 _____ () C:\WINDOWS\wiaservc.log
2014-09-27 07:53 - 2013-06-02 16:26 - 00001030 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-27 07:53 - 2008-06-04 16:42 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-09-26 20:52 - 2008-06-04 16:42 - 00032580 _____ () C:\WINDOWS\SchedLgU.Txt
2014-09-26 20:36 - 2014-04-15 17:17 - 00000980 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1060284298-1214440339-725345543-1004Core.job
2014-09-26 06:33 - 2012-04-25 08:46 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-09-25 18:38 - 2009-05-23 15:11 - 00176656 _____ () C:\Documents and Settings\Basia\Dane aplikacji\GDIPFONTCACHEV1.DAT
2014-09-25 18:35 - 2009-05-01 11:29 - 00002531 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Word.lnk
2014-09-25 15:30 - 2013-06-02 16:31 - 00001819 _____ () C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk
2014-09-23 19:44 - 2008-08-18 22:33 - 00000000 ____D () C:\WINDOWS\Minidump
2014-09-23 19:15 - 2008-06-04 16:43 - 00000000 ____D () C:\Documents and Settings\Basia\Pulpit
2014-09-23 17:11 - 2013-05-24 17:58 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help
2014-09-22 21:35 - 2014-07-27 11:53 - 00065536 _____ () C:\WINDOWS\system32\config\CaptureL.evt
2014-09-22 21:35 - 2012-08-11 15:17 - 05150204 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1060284298-1214440339-725345543-1004-0.dat
2014-09-22 21:35 - 2012-08-08 23:42 - 00602812 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat
2014-09-22 21:35 - 2009-09-20 16:30 - 00000292 ___SH () C:\Documents and Settings\Basia\ntuser.ini
2014-09-22 21:32 - 2008-06-04 16:43 - 00000000 ____D () C:\Documents and Settings\Basia
2014-09-20 21:38 - 2008-06-04 16:43 - 00000000 ___HD () C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji
2014-09-20 16:38 - 2008-06-04 17:58 - 00000000 ____D () C:\Documents and Settings\Basia\Dane aplikacji\Skype
2014-09-20 12:37 - 2012-01-24 22:46 - 00002267 _____ () C:\Documents and Settings\All Users\Pulpit\Skype.lnk
2014-09-20 11:44 - 2008-06-04 18:29 - 00000000 ___RD () C:\Documents and Settings\All Users\Dokumenty
2014-09-20 11:44 - 2008-06-04 16:43 - 00000000 ___HD () C:\Documents and Settings\Basia\Szablony
2014-09-20 11:42 - 2008-06-04 18:02 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-09-20 11:28 - 2008-06-04 18:02 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Adobe
2014-09-20 11:26 - 2008-06-05 14:09 - 00000000 ____D () C:\Documents and Settings\Basia\Dane aplikacji\Adobe
2014-09-20 11:23 - 2008-06-04 18:29 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy
2014-09-20 11:21 - 2010-10-14 12:19 - 00000000 ____D () C:\Program Files\CCleaner
2014-09-20 11:20 - 2008-06-04 16:43 - 00000000 ___RD () C:\Documents and Settings\Basia\Menu Start\Programy
2014-09-20 11:17 - 2008-09-23 15:25 - 00000000 ____D () C:\WINDOWS\system32\LogFiles
2014-09-20 10:57 - 2013-06-19 11:47 - 00000000 ____D () C:\Program Files\CPUID
2014-09-20 10:57 - 2013-06-19 11:47 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\CPUID
2014-09-20 10:57 - 2008-06-04 18:29 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit
2014-09-19 20:15 - 2014-06-04 14:56 - 00000000 ____D () C:\Documents and Settings\Basia\Pulpit\2014_06_04
2014-09-18 22:53 - 2008-06-04 16:43 - 00000000 ___RD () C:\Documents and Settings\Basia\Moje dokumenty
2014-09-17 22:06 - 2008-06-04 18:29 - 01285350 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-09-17 22:06 - 2006-03-02 14:00 - 00565348 _____ () C:\WINDOWS\system32\perfh015.dat
2014-09-17 22:06 - 2006-03-02 14:00 - 00110434 _____ () C:\WINDOWS\system32\perfc015.dat
2014-09-16 06:22 - 2008-06-04 18:27 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji
2014-09-15 17:22 - 2008-06-04 17:34 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-09-15 17:16 - 2008-06-04 16:52 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups
2014-09-14 13:56 - 2014-06-17 18:55 - 00000000 ____D () C:\Documents and Settings\Basia\Moje dokumenty\Telltale Games
2014-09-14 13:43 - 2006-03-02 14:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-09-14 13:31 - 2008-06-04 16:43 - 00000000 __RHD () C:\Documents and Settings\Basia\Dane aplikacji
2014-09-12 12:59 - 2014-08-07 17:31 - 03645336 _____ () C:\Documents and Settings\Basia\Pulpit\00000026.restored.veg
2014-09-10 18:53 - 2012-04-09 10:26 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-09-10 18:53 - 2012-02-05 08:58 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-09-03 20:34 - 2008-06-04 17:57 - 00000000 ___RD () C:\Program Files\Skype
2014-09-03 20:34 - 2008-06-04 17:57 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Skype
2014-09-03 20:31 - 2014-04-15 17:17 - 00000000 ____D () C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Facebook
2014-09-03 20:31 - 2009-09-06 21:36 - 00000000 ____D () C:\Documents and Settings\Basia\Ustawienia lokalne\Dane aplikacji\Temp

Some content of TEMP:
====================
C:\Documents and Settings\Basia\Ustawienia lokalne\temp\Foxit Reader Updater.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================