Anonim / 2 lata, 9 miesięcy temu | Download | Plaintext | Odpowiedz |

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-04-2015 04
Ran by Izabela (administrator) on KOLNO-2835E095E on 17-04-2015 17:32:10
Running from C:\Documents and Settings\Izabela\Moje dokumenty\Pobieranie
Loaded Profiles: Izabela (Available profiles: Izabela)
Platform: Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polski
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
() C:\WINDOWS\system32\acs.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
(Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Infowatch) C:\Program Files\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe
(Lexmark International, Inc.) C:\WINDOWS\system32\spool\drivers\w32x86\3\lxdxserv.exe
( ) C:\WINDOWS\system32\lxdxcoms.exe
(Skype Technologies S.A.) C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe
() C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.3.0\loggingserver.exe
(Vimicro) C:\WINDOWS\domino.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
() C:\Program Files\AVG Secure Search\vprot.exe
(Google Inc.) C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BigDogPath323Domino] => C:\WINDOWS\Domino.exe [49152 2007-01-09] (Vimicro)
HKLM\...\Run: [AVP] => C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-16] (Kaspersky Lab ZAO)
HKLM\...\Run: [vProt] => C:\Program Files\AVG Secure Search\vprot.exe [2503704 2015-03-05] ()
HKLM\...\RunOnce: [AvgUninstallURL] => cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedback-app?lic=OABNAEUASAAtAFIAWABZAEYARAAtAEoAVQBWADcAMgAtADgAOQAyADIAUgAtAEYAVABCAFoANgAtAFEARQBNAEIAUgA"&"inst=NwA2AC0ANQAwADYANwA1AD (the data entry has 213 more characters).
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.)
Winlogon\Notify\klogon: C:\WINDOWS\system32\klogon.dll (Kaspersky Lab ZAO)
HKU\S-1-5-21-789336058-179605362-1801674531-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-179605362-1801674531-1004\...\MountPoints2: {1068bdb2-4283-11e4-b2ee-0040f490939a} - I:\Startme.exe
HKU\S-1-5-21-789336058-179605362-1801674531-1004\...\MountPoints2: {23b2134a-c4cd-11de-afcd-002127dfce2d} - J:\LaunchU3.exe -a
HKU\S-1-5-21-789336058-179605362-1801674531-1004\...\MountPoints2: {8f9c2774-05ca-11df-b106-0040f490939a} - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe
HKU\S-1-5-21-789336058-179605362-1801674531-1004\...\MountPoints2: {ba685b51-0575-11e2-851d-0040f490939a} - I:\AutoRunCardDetector.exe
ShellIconOverlayIdentifiers: [KAVOverlayIcon] -> {dd230880-495a-11d1-b064-008048ec2fc5} => C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\shellex.dll (Kaspersky Lab ZAO)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-789336058-179605362-1801674531-1004\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://do-search.com/web/?type=ds&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com/web/?type=ds&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455&q={searchTerms}
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-789336058-179605362-1801674531-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455
HKU\S-1-5-21-789336058-179605362-1801674531-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-789336058-179605362-1801674531-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455&q={searchTerms}
SearchScopes: HKLM -> {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/redirector/sredir?sredir=2685&query={searchTerms}&invocationType=tb50-ie-winamp-chromesbox-en-us&tb_uuid=20120406180807125&tb_oid=06-04-2012&tb_mrud=06-04-2012
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455&q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {0283F8B6-D9A6-425B-94C5-7FE01D47C2F1} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYPL&apn_uid=F8A0339C-C985-4446-9FA1-1547459BF25E&apn_sauid=C2282A4A-3119-45BC-A2C6-91E836A6C705
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&affID=110819&tt=060612_8_&babsrc=SP_ss&mntrId=b07e38bb0000000000000040f490939a
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = 
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=1425666009&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQB00455&q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={34AD642E-4500-420B-AF13-6797F3D30147}&mid=00be71abf3cb3fff7d528df1de75f32f-59286f6748cd775d042be715559fd0599acf8a97&lang=pl&ds=ik011&pr=&d=2012-11-12 18:17:19&v=15.2.0.5&pid=avg&sg=0&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {96bd48dd-741b-41ae-ac4a-aff96ba00f7e} URL = http://www.bigseekpro.com/search/browser/hypercam/{E958DF61-8367-49AC-8D1F-601592541FAB}?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3220468
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = http://mystart.incredibar.com/mb165/?search={searchTerms}&loc=IB_DS&a=6R8vfCKFux&i=26
SearchScopes: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/redirector/sredir?sredir=2685&query={searchTerms}&invocationType=tb50-ie-winamp-chromesbox-en-us&tb_uuid=20120406180807125&tb_oid=06-04-2012&tb_mrud=06-04-2012
BHO: Web Assistant -> {336D0C35-8A85-403a-B9D2-65C292C39087} -> C:\Program Files\Web Assistant\Extension32.dll [2013-01-29] ()
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-04-02] (Kaspersky Lab ZAO)
BHO: Incredibar.com Helper Object -> {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} -> C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll [2012-01-22] (Montera Technologeis LTD)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-04-02] (Kaspersky Lab ZAO)
BHO: uTorrentControl_v2 Toolbar -> {7473b6bd-4691-4744-a82b-7854eb3d70b6} -> C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\uTorrentControl_v2\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2013-03-23] (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: AVG Security Toolbar -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files\AVG Secure Search\18.3.0.885\AVG Secure Search_toolbar.dll [2015-03-05] (AVG Secure Search)
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll [2014-04-02] (Kaspersky Lab ZAO)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
BHO: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-10-02] (Skype Technologies S.A.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.10.11023.1534\swg.dll [2015-03-04] (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-03-23] (Oracle Corporation)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll [2014-04-02] (Kaspersky Lab ZAO)
BHO: SMTTB2009 Class -> {FCBCCB87-9224-4B8D-B117-F56D924BEB18} -> C:\Program Files\Hyperionics DB Toolbar\tbcore3.dll [2011-06-22] ()
Toolbar: HKLM - Hyperionics DB Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\Hyperionics DB Toolbar\tbcore3.dll [2011-06-22] ()
Toolbar: HKLM - Incredibar Toolbar - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll [2012-01-22] (Montera Technologeis LTD)
Toolbar: HKLM - uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\uTorrentControl_v2\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKLM - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\18.3.0.885\AVG Secure Search_toolbar.dll [2015-03-05] (AVG Secure Search)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
Toolbar: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> No Name - {32099AAC-C132-4136-9E9A-4E364A424E17} -  No File
Toolbar: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> No Name - {043C5167-00BB-4324-AF7E-62013FAEDACF} -  No File
Toolbar: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> Hyperionics DB Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\Hyperionics DB Toolbar\tbcore3.dll [2011-06-22] ()
Toolbar: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.)
Toolbar: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> uTorrentControl_v2 Toolbar - {7473B6BD-4691-4744-A82B-7854EB3D70B6} - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\uTorrentControl_v2\prxtbuTo2.dll [2014-09-23] (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-789336058-179605362-1801674531-1004 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} -  No File
DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-10-02] (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.3.0\ViProtocol.dll [2015-03-05] (AVG Secure Search)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Izabela\Dane aplikacji\Mozilla\Firefox\Profiles\6kdpdj20.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-14] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw.dll [2011-11-22] (Adobe Systems, Inc.)
FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.3.0\\npsitesafety.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @java.com/DTPlugin,version=10.17.2 -> C:\WINDOWS\system32\npDeployJava1.dll [2013-03-23] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.17.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2013-03-23] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin: @tools.bdupdater.com/BonanzaDealsLive Update;version=3 -> C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll [2013-10-31] (BonanzaDeals)
FF Plugin: @tools.bdupdater.com/BonanzaDealsLive Update;version=9 -> C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll [2013-10-31] (BonanzaDeals)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-789336058-179605362-1801674531-1004: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-789336058-179605362-1801674531-1004: @tools.google.com/Google Update;version=3 -> C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-789336058-179605362-1801674531-1004: @tools.google.com/Google Update;version=9 -> C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-789336058-179605362-1801674531-1004: @unity3d.com/UnityPlayer,version=1.0 -> C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll No File
FF Plugin HKU\S-1-5-21-789336058-179605362-1801674531-1004: ubisoft.com/uplaypc -> C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2014-12-26] ()
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-11-08]
FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\Web Assistant\Firefox
FF Extension: Web Assistant - C:\Program Files\Web Assistant\Firefox [2012-06-07]
FF HKLM\...\Firefox\Extensions: [avg@toolbar] - C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\FireFoxExt\18.3.0.885
FF Extension: AVG Security Toolbar - C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\FireFoxExt\18.3.0.885 [2015-03-05]
FF HKLM\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\Web Assistant\Firefox
FF HKLM\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com [2013-05-21]
FF HKLM\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com [2013-05-21]
FF HKLM\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com
FF Extension: Dangerous Websites Blocker - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com [2013-05-21]
FF HKLM\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com [2013-05-21]
FF HKLM\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com [2013-05-21]
FF HKLM\...\Firefox\Extensions: [searchengine@gmail.com] - C:\Documents and Settings\Izabela\Dane aplikacji\Mozilla\Firefox\Profiles\6kdpdj20.default\extensions\searchengine@gmail.com
FF HKLM\...\Firefox\Extensions: [istart_ffnt@gmail.com] - C:\Documents and Settings\Izabela\Dane aplikacji\Mozilla\Firefox\Profiles\6kdpdj20.default\extensions\istart_ffnt@gmail.com

Chrome: 
=======
CHR HomePage: Default -> hxxp://google.pl/
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-07-13]
CHR Extension: (Google Search) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-07-13]
CHR Extension: (Kaspersky URL Advisor) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2013-05-22]
CHR Extension: (Foxtab Speed Dial) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dchmpbaclbiioedakpcldenooikekokm [2013-10-31]
CHR Extension: (AdBlock) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-08-23]
CHR Extension: (Safe Money) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2013-05-22]
CHR Extension: (Content Blocker) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2013-10-16]
CHR Extension: (BonanzaDeals) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ieadcoanfjloocmfafkebdnfefmohngj [2013-10-31]
CHR Extension: (Virtual Keyboard) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2013-05-22]
CHR Extension: (Adblock Super) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd [2014-04-29]
CHR Extension: (AntiGameOrigin) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ldbahlcmhmlpomdepooifmhnalokdhgm [2014-03-05]
CHR Extension: (Izak) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nfoinbicgoegjpcnkjmigednagamoppm [2014-11-06]
CHR Extension: (hitbox notifier) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nklmccdifgknnjpppcocaeglbdamnhba [2014-11-12]
CHR Extension: (Google Wallet) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-30]
CHR Extension: (Battlefield Play4Free) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2014-04-23]
CHR Extension: (Gmail) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-07-13]
CHR Extension: (Anti-Banner) - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2013-05-22]
CHR HKLM\...\Chrome\Extension: [bmbgdmijgopggjaelphhajpjldacbnba] - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibar.crx [2012-01-22]
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx [2013-02-07]
CHR HKLM\...\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\DOCUME~1\Izabela\USTAWI~1\DANEAP~1\foxtab_speeddial.crx [2013-10-31]
CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\Web Assistant\source.crx [2012-06-07]
CHR HKLM\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2012-08-26]
CHR HKLM\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx [2013-02-07]
CHR HKLM\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx [2013-02-07]
CHR HKLM\...\Chrome\Extension: [ieadcoanfjloocmfafkebdnfefmohngj] - C:\Program Files\BonanzaDeals\BonanzaDeals.crx [2013-10-31]
CHR HKLM\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx [2013-02-07]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-10-02]
CHR HKLM\...\Chrome\Extension: [lpoimibckejjdjcfbdnajaicnklhfplh] - https://chrome.google.com/webstore/detail/lpoimibckejjdjcfbdnajaicnklhfplh
CHR HKLM\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\ChromeExt\17.3.0.49\avg.crx [2014-01-08]
CHR HKLM\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx [2013-02-07]
CHR HKU\S-1-5-21-789336058-179605362-1801674531-1004\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\DOCUME~1\Izabela\USTAWI~1\DANEAP~1\foxtab_speeddial.crx [2013-10-31]
CHR HKU\S-1-5-21-789336058-179605362-1801674531-1004\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2012-08-26]
StartMenuInternet: chrome.exe - C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation)
R2 ACS; C:\WINDOWS\system32\acs.exe [36864 2007-08-02] () [File not signed]
R2 Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [573440 2008-09-05] (ATI Technologies Inc.) [File not signed]
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356128 2013-10-16] (Kaspersky Lab ZAO)
S2 bonanzadealslive; C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-10-31] (BonanzaDeals)
S3 bonanzadealslivem; C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-10-31] (BonanzaDeals)
R2 Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [229376 2006-02-28] (Apple Computer, Inc.) [File not signed]
R2 CSObjectsSrv; C:\Program Files\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch)
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2010-04-03] (Macrovision Europe Ltd.) [File not signed]
S4 Hamachi2Svc; E:\hamachi\hamachi-2.exe [1848168 2015-03-30] (LogMeIn Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [170912 2013-03-23] (Oracle Corporation)
R2 lxdxCATSCustConnectService; C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxdxserv.exe [98984 2008-02-28] (Lexmark International, Inc.)
R2 lxdx_device; C:\WINDOWS\system32\lxdxcoms.exe [594600 2008-02-28] ( )
S2 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [73728 2007-08-09] (HP) [File not signed]
S4 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [75136 2014-04-23] ()
R2 Skype C2C Service; C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.)
S3 TunngleService; E:\Tungle\Tunngle\TnglCtrl.exe [746392 2013-03-20] (Tunngle.net GmbH) [File not signed]
S2 vToolbarUpdater18.3.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.3.0\ToolbarUpdater.exe [1802776 2015-03-05] (AVG Secure Search)
R2 Web Assistant Updater; C:\Program Files\Web Assistant\ExtensionUpdaterService.exe [188760 2013-01-29] () [File not signed]
S2 ZuneBusEnum; C:\Program Files\Zune\ZuneBusEnum.exe [57056 2011-08-05] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21275 2009-12-06] (Meetinghouse Data Communications) [File not signed]
R3 AR5211; C:\WINDOWS\System32\DRIVERS\ar5211.sys [470048 2007-08-02] (Atheros Communications, Inc.) [File not signed]
R3 ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [3300864 2008-09-05] (ATI Technologies Inc.) [File not signed]
R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [281760 2014-07-05] ()
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [16384 2004-07-09] (Microsoft Corporation)
R0 CSCrySec; C:\WINDOWS\System32\DRIVERS\CSCrySec.sys [88632 2011-06-02] (Infowatch)
R1 CSVirtualDiskDrv; C:\WINDOWS\System32\DRIVERS\CSVirtualDiskDrv.sys [39736 2011-06-02] (Infowatch)
R3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 hid7906; C:\WINDOWS\System32\drivers\hid7906.sys [53793 2006-06-28] (Compuware Corporation) [File not signed]
S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [51120 2005-03-08] (HP)
S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2005-03-08] (HP)
S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21744 2005-03-08] (HP)
R0 kl1; C:\WINDOWS\System32\DRIVERS\kl1.sys [135776 2014-04-02] (Kaspersky Lab ZAO)
R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [595008 2014-06-09] (Kaspersky Lab ZAO)
R3 klim5; C:\WINDOWS\System32\DRIVERS\klim5.sys [35672 2012-06-27] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\WINDOWS\System32\DRIVERS\klkbdflt.sys [24160 2013-10-16] (Kaspersky Lab ZAO)
R3 klmouflt; C:\WINDOWS\System32\DRIVERS\klmouflt.sys [24672 2013-10-16] (Kaspersky Lab ZAO)
R1 kltdi; C:\WINDOWS\System32\DRIVERS\kltdi.sys [44000 2013-07-15] (Kaspersky Lab ZAO)
R1 kneps; C:\WINDOWS\System32\DRIVERS\kneps.sys [145224 2015-02-18] (Kaspersky Lab ZAO)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [25888 2014-07-05] ()
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10112 2004-07-09] (Microsoft Corporation)
R3 rtl8139; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [20992 2008-04-13] (Realtek Semiconductor Corporation)
S3 RTL8169; C:\WINDOWS\System32\DRIVERS\Rtlh86.sys [106496 2008-01-25] (Realtek Corporation                                            ) [File not signed]
R0 sfdrv01a; C:\WINDOWS\System32\drivers\sfdrv01a.sys [63352 2006-07-05] (Protection Technology (StarForce))
R0 sfvfs02; C:\WINDOWS\System32\drivers\sfvfs02.sys [82296 2007-01-12] (Protection Technology (StarForce))
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2010-02-06] () [File not signed]
R1 StarOpen; C:\WINDOWS\system32\Drivers\StarOpen.sys [5632 2009-02-19] () [File not signed]
S3 tap0901t; C:\WINDOWS\System32\DRIVERS\tap0901t.sys [27136 2009-09-16] (Tunngle.net) [File not signed]
R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
R3 vmfilter323; C:\WINDOWS\System32\drivers\vmfilter323.sys [476672 2006-08-08] (Vimicro Corporation) [File not signed]
R3 ZSMC326; C:\WINDOWS\System32\Drivers\usbvm323.sys [260224 2007-04-03] (Vimicro Corporation) [File not signed]
R2 zumbus; C:\WINDOWS\System32\DRIVERS\zumbus.sys [41472 2011-08-05] (Microsoft Corporation)
U3 atdmxwzq; C:\WINDOWS\system32\Drivers\atdmxwzq.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero size file/folder)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys [X]
S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [X]
S4 IntelIde; No ImagePath
S2 ivelazxn; \??\C:\WINDOWS\system32\drivers\fhyiovmluykumhb.sys [X]
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [74336 2014-06-09] (Kaspersky Lab ZAO)
U1 WS2IFSL; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-17 17:30 - 2015-04-17 17:32 - 00000000 ____D () C:\FRST
2015-04-17 17:28 - 2015-04-17 17:28 - 00000730 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk
2015-04-17 17:28 - 2015-04-17 17:28 - 00000724 _____ () C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
2015-04-17 17:28 - 2015-04-17 17:28 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-04-17 17:28 - 2015-04-17 17:28 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-04-17 15:54 - 2015-04-17 15:55 - 00000043 _____ () C:\Documents and Settings\Izabela\Pulpit\Nowy Dokument tekstowy.txt
2015-04-16 19:36 - 2015-04-16 19:36 - 00000068 _____ () C:\WINDOWS\Awpr.ini
2015-04-16 19:35 - 2015-04-16 19:35 - 00000000 ____D () C:\Program Files\ElcomSoft
2015-04-16 19:35 - 2015-04-16 19:35 - 00000000 ____D () C:\Documents and Settings\Izabela\Menu Start\Programy\ElcomSoft
2015-04-14 19:40 - 2015-04-14 19:40 - 18178736 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2015-04-10 18:42 - 2015-04-10 18:42 - 00036357 _____ () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\recently-used.xbel
2015-04-10 14:46 - 2015-04-10 14:46 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\osu!
2015-04-10 14:13 - 2015-04-10 14:19 - 00000000 ____D () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\osu!
2015-04-08 20:28 - 2015-04-08 20:28 - 00000230 _____ () C:\Documents and Settings\Izabela\Pulpit\fasttt.txt
2015-04-06 20:31 - 2015-04-06 20:31 - 01794455 _____ () C:\Documents and Settings\Izabela\Pulpit\gwizdo.xcf
2015-04-06 14:06 - 2015-04-06 14:06 - 00000000 ____D () C:\Documents and Settings\Izabela\Moje dokumenty\Paradox Interactive
2015-04-04 13:13 - 2015-04-17 16:19 - 00000444 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1428145986.job
2015-04-04 13:13 - 2015-04-04 13:13 - 00000675 _____ () C:\Documents and Settings\All Users\Pulpit\Opera.lnk
2015-04-04 13:13 - 2015-04-04 13:13 - 00000675 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera 28.lnk
2015-04-04 13:11 - 2015-04-08 14:48 - 00000000 ____D () C:\Program Files\Opera
2015-04-03 14:19 - 2015-04-03 14:23 - 00000000 ____D () C:\Documents and Settings\Izabela\Moje dokumenty\Heroes of the Storm
2015-04-03 10:33 - 2015-04-03 10:33 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Heroes of the Storm
2015-04-03 09:47 - 2015-04-03 15:45 - 00000000 ____D () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Battle.net
2015-04-03 09:47 - 2015-04-03 14:19 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Blizzard Entertainment
2015-04-03 09:47 - 2015-04-03 09:48 - 00000000 ____D () C:\Documents and Settings\Izabela\Dane aplikacji\Battle.net
2015-04-03 09:47 - 2015-04-03 09:47 - 00000000 ____D () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Blizzard Entertainment
2015-04-03 09:47 - 2015-04-03 09:47 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Battle.net
2015-04-03 09:43 - 2015-04-03 09:43 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Battle.net
2015-03-31 14:33 - 2015-03-31 14:33 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\LogMeIn Hamachi
2015-03-28 13:35 - 2015-03-28 14:19 - 00000000 ____D () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\Darksiders2

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-17 17:33 - 2010-03-02 12:01 - 00000000 ____D () C:\Documents and Settings\Izabela\Ustawienia lokalne\temp
2015-04-17 17:32 - 2009-10-23 19:34 - 00000000 ____D () C:\Documents and Settings\Izabela\Moje dokumenty\Pobieranie
2015-04-17 17:28 - 2008-12-03 23:03 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy
2015-04-17 17:28 - 2008-12-03 23:03 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit
2015-04-17 17:26 - 2011-09-13 22:45 - 00001036 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-17 17:19 - 2008-12-03 15:10 - 01915920 _____ () C:\WINDOWS\WindowsUpdate.log
2015-04-17 16:55 - 2013-10-31 11:50 - 00000916 _____ () C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job
2015-04-17 16:50 - 2012-07-13 16:10 - 00001140 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-789336058-179605362-1801674531-1004UA.job
2015-04-17 16:40 - 2012-06-10 16:48 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-04-17 16:20 - 2013-05-21 20:46 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab
2015-04-17 16:19 - 2014-12-23 21:58 - 00000444 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1419364693.job
2015-04-17 16:19 - 2014-03-26 15:45 - 00000226 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP  logowanie.job
2015-04-17 16:19 - 2013-10-31 11:50 - 00000912 _____ () C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job
2015-04-17 16:19 - 2013-05-31 21:22 - 00000350 _____ () C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
2015-04-17 16:19 - 2011-09-13 22:45 - 00001032 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-17 16:19 - 2008-12-03 23:05 - 00000157 _____ () C:\WINDOWS\wiadebug.log
2015-04-17 16:19 - 2008-12-03 23:05 - 00000050 _____ () C:\WINDOWS\wiaservc.log
2015-04-17 16:19 - 2008-12-03 15:13 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-04-17 16:19 - 2008-08-27 10:42 - 00045668 _____ () C:\WINDOWS\system32\ativvaxx.cap
2015-04-17 16:17 - 2008-12-03 23:00 - 00000281 __RSH () C:\boot.ini
2015-04-17 16:17 - 2008-12-03 15:14 - 00000188 ___SH () C:\Documents and Settings\Izabela\ntuser.ini
2015-04-17 16:17 - 2008-12-03 15:13 - 00032626 _____ () C:\WINDOWS\SchedLgU.Txt
2015-04-17 16:17 - 2008-04-15 14:00 - 00000988 _____ () C:\WINDOWS\win.ini
2015-04-17 16:17 - 2008-04-15 14:00 - 00000227 _____ () C:\WINDOWS\system.ini
2015-04-17 16:06 - 2014-01-15 18:32 - 00931133 _____ () C:\WINDOWS\setupapi.log
2015-04-17 15:54 - 2012-06-17 14:27 - 00000000 ____D () C:\Documents and Settings\Izabela\Dane aplikacji\uTorrent
2015-04-17 15:54 - 2012-01-17 16:03 - 00000000 ____D () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\LogMeIn Hamachi
2015-04-17 15:54 - 2008-12-03 15:14 - 00000000 ____D () C:\Documents and Settings\Izabela\Pulpit
2015-04-17 15:52 - 2012-01-17 16:03 - 00000000 ____D () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\LogMeIn Hamachi
2015-04-16 20:54 - 2008-12-03 15:14 - 00000000 ____D () C:\Documents and Settings\Izabela
2015-04-16 20:44 - 2013-03-31 23:39 - 00001010 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-789336058-179605362-1801674531-1004UA.job
2015-04-16 19:35 - 2008-12-03 15:14 - 00000000 ___RD () C:\Documents and Settings\Izabela\Menu Start\Programy
2015-04-15 21:52 - 2014-08-14 22:22 - 00000000 ____D () C:\WINDOWS\system32\MpEngineStore
2015-04-15 21:52 - 2013-08-14 12:52 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-04-15 21:23 - 2008-12-19 12:36 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help
2015-04-15 21:23 - 2008-12-12 14:42 - 125832184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-04-15 16:58 - 2008-04-15 14:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2015-04-14 21:18 - 2009-04-11 16:10 - 00000000 ____D () C:\Documents and Settings\Izabela\Dane aplikacji\Skype
2015-04-14 19:46 - 2014-03-18 18:46 - 00002267 _____ () C:\Documents and Settings\All Users\Pulpit\Skype.lnk
2015-04-14 19:40 - 2012-06-10 16:48 - 00778416 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-04-14 19:40 - 2011-08-06 09:22 - 00142512 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-04-12 13:50 - 2012-07-13 16:10 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-789336058-179605362-1801674531-1004Core.job
2015-04-12 10:55 - 2008-12-03 15:14 - 00000000 ___HD () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji
2015-04-10 18:57 - 2013-01-10 19:11 - 00000000 ____D () C:\Documents and Settings\Izabela\.gimp-2.8
2015-04-10 16:20 - 2014-05-17 17:44 - 00000000 ____D () C:\Documents and Settings\Izabela\Pulpit\gry
2015-04-08 21:40 - 2008-12-03 23:03 - 01252574 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-04-08 21:40 - 2008-04-15 14:00 - 00554200 _____ () C:\WINDOWS\system32\perfh015.dat
2015-04-08 21:40 - 2008-04-15 14:00 - 00104416 _____ () C:\WINDOWS\system32\perfc015.dat
2015-04-08 15:00 - 2014-03-26 15:45 - 00000220 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP  co miesiąc.job
2015-04-06 17:20 - 2008-12-03 15:48 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-04-06 14:06 - 2008-12-03 15:14 - 00000000 ___RD () C:\Documents and Settings\Izabela\Moje dokumenty
2015-04-06 14:03 - 2008-12-03 15:10 - 00000000 ____D () C:\WINDOWS\system32\DirectX
2015-04-03 09:53 - 2014-12-23 22:06 - 00002324 _____ () C:\Documents and Settings\Izabela\Pulpit\Google Chrome.lnk
2015-04-03 09:47 - 2008-12-03 23:01 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji
2015-04-03 09:47 - 2008-12-03 15:14 - 00000000 __RHD () C:\Documents and Settings\Izabela\Dane aplikacji
2015-04-01 21:22 - 2012-04-13 20:37 - 00000000 ____D () C:\Program Files\Common Files\Steam
2015-03-31 14:34 - 2014-02-05 19:19 - 00000443 _____ () C:\Documents and Settings\All Users\Pulpit\LogMeIn Hamachi.lnk
2015-03-30 15:25 - 2012-02-06 19:07 - 00026176 ____H (LogMeIn, Inc.) C:\WINDOWS\system32\hamachi.sys
2015-03-29 21:58 - 2010-01-08 17:54 - 00000000 ____D () C:\Documents and Settings\All Users\Lx_cats
2015-03-28 13:35 - 2010-02-06 18:06 - 00000000 ____D () C:\Documents and Settings\Izabela\Moje dokumenty\My Games
2015-03-28 13:34 - 2013-01-17 19:27 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp
2015-03-25 22:55 - 2015-03-07 18:31 - 00345987 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-789336058-179605362-1801674531-1004-0.dat
2015-03-25 22:55 - 2015-03-07 18:31 - 00250550 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat
2015-03-22 15:38 - 2012-12-25 14:08 - 00340480 ___SH () C:\Documents and Settings\Izabela\Pulpit\Thumbs.db
2015-03-20 18:43 - 2011-03-09 21:50 - 00015637 _____ () C:\WINDOWS\setupact.log
2015-03-18 18:45 - 2015-02-01 18:15 - 00000000 ____D () C:\Documents and Settings\Izabela\Dane aplikacji\Audacity

==================== Files in the root of some directories =======

2013-06-26 18:00 - 2014-06-23 06:12 - 0003728 _____ () C:\Program Files\Mozilla Firefoxavg-secure-search.xml
2012-10-06 22:08 - 2012-10-06 22:08 - 0000000 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\1A5F.exe
2012-10-06 22:30 - 2012-10-06 22:30 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\1A60.exe
2012-10-06 20:49 - 2012-10-06 20:49 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\1D0.exe
2012-10-06 21:13 - 2012-10-06 21:13 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\1D9.exe
2012-10-07 10:01 - 2012-10-07 10:01 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\2E.exe
2012-10-06 15:39 - 2012-10-06 15:39 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\47.exe
2012-10-06 16:01 - 2012-10-06 16:01 - 0000000 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\4A.exe
2012-10-06 16:23 - 2012-10-06 16:23 - 0000000 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\51.exe
2012-10-06 16:45 - 2012-10-06 16:45 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\52.exe
2012-10-06 21:37 - 2012-10-06 21:37 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\614.exe
2012-10-06 17:29 - 2012-10-06 17:29 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\7C.exe
2012-10-06 20:10 - 2012-10-06 20:10 - 0000369 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\B3.exe
2009-12-01 17:07 - 2010-01-07 12:04 - 0000211 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\Hewlett-PackardHP PSC 1500 series1251292501_API.log
2009-12-01 17:07 - 2010-01-07 12:04 - 0004041 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\Hewlett-PackardHP PSC 1500 series1251292501_PROTOCOL.log
2009-12-01 17:07 - 2010-01-07 12:05 - 0001154 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\Hewlett-PackardHP PSC 1500 series1251292501_UI.log
2009-06-12 12:42 - 2009-06-12 12:42 - 0002112 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\HPSU_48BitScanUpdate.log
2009-06-12 12:42 - 2009-06-12 12:42 - 0034310 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\PatchUpdate_HP_CounterReport_Update_HPSU.log
2012-06-15 18:15 - 2014-04-23 18:37 - 0138056 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\PnkBstrK.sys
2010-04-09 21:32 - 2011-08-07 18:10 - 0000548 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\Taxi4.MCS
2009-06-12 12:37 - 2009-06-12 12:38 - 0032911 _____ () C:\Documents and Settings\Izabela\Dane aplikacji\Update_HP_RedboxHprblog_HPSU.log
2009-10-30 14:48 - 2014-05-03 21:49 - 0051200 _____ () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-10-31 11:50 - 2013-10-31 11:50 - 0364318 _____ () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\foxtab_speeddial.crx
2011-12-27 19:36 - 2011-12-27 19:36 - 0460624 _____ () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\promo.exe
2015-04-10 18:42 - 2015-04-10 18:42 - 0036357 _____ () C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\recently-used.xbel
2011-12-27 19:36 - 2011-12-27 19:37 - 2161160 _____ (DownVision                                                  ) C:\Documents and Settings\Izabela\Ustawienia lokalne\Dane aplikacji\setup.exe
2010-01-15 21:45 - 2010-01-15 21:45 - 0000252 _____ () C:\Documents and Settings\All Users\FastPics.log
2011-10-23 18:30 - 2011-10-23 18:30 - 0000071 _____ () C:\Documents and Settings\All Users\lxdx.log
2010-01-08 19:27 - 2010-01-08 20:10 - 0000431 _____ () C:\Documents and Settings\All Users\lxdxDiagnostics.log
2010-01-08 19:27 - 2010-01-08 19:27 - 0000000 _____ () C:\Documents and Settings\All Users\UpdaterLog.txt

Some content of TEMP:
====================
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\7za.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\aoe3-114-polish.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\APNStub.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\AutoRunGUI.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\avguidx.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\BestVideoDownloader-S-Setup_Suite1_20120416.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\drm_dyndata_7330005.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\drm_dyndata_7370012.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\drm_dyndata_7380014.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\drm_dyndata_7380015.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\drm_dyndata_7400009.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\EAInstall.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\EASOUNInstaller.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\eauninstall.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\GameuxInstallHelper.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\HiPatchSelfUpdateWindow.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\HiRezLauncherControls.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\ICReinstall_Camtasia-Studio(12665)-dp.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\ICReinstall_LinX 0.6.4.0.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jansi-32-git-Bukkit-1.3.1-R1.0-b2320jnks.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jansi-32-git-Bukkit-jenkins-CraftBukkit-173.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jansi-32-git-Spigot-1438.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jline_git-Bukkit-1_0_1-R1-37-g3733c54-b1714jnks.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jline_git-Bukkit-1_0_1-R1-79-g241b6f1-b1772jnks.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jline_git-Bukkit-1_1-R6-30-ge6475d0-b2030jnks.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jline_git-Bukkit-1_1-R6-33-gb66156b-b2034jnks.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jline_git-Bukkit-1_2_3-R0_2-83-gcb50fd6-b2117jnks.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jline_git-Bukkit-1_2_4-R1_0-8-g72c43ca-b2133jnks.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jre-7u10-windows-i586-iftw.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jre-7u17-windows-i586-iftw.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jre-7u21-windows-i586-iftw.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jre-7u25-windows-i586-iftw.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jre-7u45-windows-i586-iftw.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jre-7u51-windows-i586-iftw.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jre-7u6-windows-i586-iftw.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\jre-7u7-windows-i586-iftw.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\MachineIdCreator.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\NEW_CORRECT_incredibar_install.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\oi_{ED5851C8-330C-4F30-9DE1-F79CB1B6A207}.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\OptChrome.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\SkypeSetup.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\sqlite-3.7.2-sqlitejdbc.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\sqlite3.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\standalonepatcher.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\swt-win32-3349.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\tbedrs.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\TB_56.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\The Sims 2 Bon Voyage_uninst.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\TsuB0E94B89.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\ubi526.tmp.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\unins000.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\UNINSTALL.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\UninstallEADM.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\utt2C4.tmp.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\uttE4C.tmp.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\VirtualDJ New Version.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\VSUSetup.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\YontooIEClient.dll
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\YontooSetup-S.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\_is164.exe
C:\Documents and Settings\Izabela\Ustawienia lokalne\temp\{60205F04-D98B-4A9B-B52B-2E6DE63F155D}-GoogleUpdateSetup.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================