1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
307.
308.
309.
310.
311.
312.
313.
314.
315.
316.
317.
318.
319.
320.
321.
322.
323.
324.
325.
326.
327.
328.
329.
330.
331.
332.
333.
334.
335.
336.
337.
338.
339.
340.
341.
342.
343.
344.
345.
346.
347.
348.
349.
350.
351.
352.
353.
354.
355.
356.
357.
358.
359.
360.
361.
362.
363.
364.
365.
366.
367.
368.
369.
370.
371.
372.
373.
374.
375.
376.
377.
378.
379.
380.
381.
382.
383.
384.
385.
386.
387.
388.
389.
390.
391.
392.
393.
394.
395.
396.
397.
398.
399.
400.
401.
402.
403.
404.
405.
406.
407.
408.
409.
410.
411.
412.
413.
414.
415.
416.
417.
418.
419.
420.
421.
422.
423.
424.
425.
426.
427.
428.
429.
430.
431.
432.
433.
434.
435.
436.
437.
438.
439.
440.
441.
442.
443.
444.
445.
446.
447.
448.
449.
450.
451.
452.
453.
454.
455.
456.
457.
458.
459.
460.
461.
462.
463.
464.
465.
466.
467.
468.
469.
470.
471.
472.
473.
474.
475.
476.
477.
478.
479.
480.
481. | OTL logfile created on: 2010-09-05 22:54:54 - Run 3
OTL by OldTimer - Version 3.2.11.0 Folder = C:\\Users\\Kabak\\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 64,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 80,00% Paging File free
Paging file location(s): ?:\\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\\Windows | %ProgramFiles% = C:\\Program Files (x86)
Drive C: | 68,35 Gb Total Space | 28,86 Gb Free Space | 42,23% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive M: | 117,95 Gb Total Space | 4,98 Gb Free Space | 4,22% Space Free | Partition Type: NTFS
Computer Name: KABAK-KOMPUTER
Current User Name: Kabak
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
[color=#E56717]========== Processes (All) ==========[/color]
PRC - [2010-09-04 16:48:42 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\\Users\\Kabak\\Desktop\\OTL.exe
PRC - [2010-08-27 21:47:07 | 000,202,256 | ---- | M] (RealNetworks, Inc.) -- C:\\Program Files (x86)\\Common Files\\Real\\Update_OB\\realsched.exe
PRC - [2010-08-09 15:27:06 | 000,836,464 | ---- | M] (Opera Software) -- C:\\Program Files (x86)\\Opera\\opera.exe
PRC - [2010-06-28 12:38:11 | 000,218,464 | ---- | M] () -- C:\\Windows\\SysWOW64\\PnkBstrB.exe
PRC - [2010-06-27 10:34:25 | 000,075,064 | ---- | M] () -- C:\\Windows\\SysWOW64\\PnkBstrA.exe
PRC - [2010-06-09 10:06:33 | 000,976,832 | ---- | M] (Adobe Systems Incorporated) -- C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe
PRC - [2010-03-19 10:49:20 | 000,144,672 | ---- | M] (Apple Inc.) -- C:\\Program Files (x86)\\Common Files\\Apple\\Mobile Device Support\\AppleMobileDeviceService.exe
PRC - [2010-02-26 02:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) -- C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\ccSvcHst.exe
PRC - [2010-02-12 11:46:12 | 000,345,376 | ---- | M] (Apple Inc.) -- C:\\Program Files (x86)\\Bonjour\\mDNSResponder.exe
PRC - [2009-10-08 11:31:44 | 000,112,592 | ---- | M] (Threat Expert Ltd.) -- C:\\Program Files (x86)\\Spyware Doctor\\BDT\\BDTUpdateService.exe
PRC - [2009-03-02 15:06:16 | 000,068,136 | ---- | M] () -- C:\\Program Files (x86)\\Gigabyte\\EasySaver\\ESSVR.EXE
[color=#E56717]========== Modules (All) ==========[/color]
MOD - [2010-09-04 16:48:42 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\\Users\\Kabak\\Desktop\\OTL.exe
MOD - [2010-08-27 21:47:22 | 000,040,960 | ---- | M] () -- C:\\ProgramData\\Real\\RealPlayer\\BrowserRecordPlugin\\Chrome\\Hook\\rpchromebrowserrecordhelper.dll
MOD - [2010-08-27 21:47:07 | 000,499,712 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msvcp71.dll
MOD - [2010-08-27 21:47:07 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msvcr71.dll
MOD - [2009-07-14 03:17:51 | 001,289,712 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\ntdll.dll
MOD - [2009-07-14 03:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\Wldap32.dll
MOD - [2009-07-14 03:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\vssapi.dll
MOD - [2009-07-14 03:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\usp10.dll
MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\vsstrace.dll
MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\version.dll
MOD - [2009-07-14 03:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\spp.dll
MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\srclient.dll
MOD - [2009-07-14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\shell32.dll
MOD - [2009-07-14 03:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\setupapi.dll
MOD - [2009-07-14 03:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\shlwapi.dll
MOD - [2009-07-14 03:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\shdocvw.dll
MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\sechost.dll
MOD - [2009-07-14 03:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\samlib.dll
MOD - [2009-07-14 03:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\samcli.dll
MOD - [2009-07-14 03:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\secur32.dll
MOD - [2009-07-14 03:16:12 | 001,412,608 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\ole32.dll
MOD - [2009-07-14 03:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\propsys.dll
MOD - [2009-07-14 03:16:12 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\oleaut32.dll
MOD - [2009-07-14 03:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\olepro32.dll
MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\profapi.dll
MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\psapi.dll
MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\ntmarta.dll
MOD - [2009-07-14 03:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\netutils.dll
MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msvcrt.dll
MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msctf.dll
MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\dwmapi.dll
MOD - [2009-07-14 03:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\devobj.dll
MOD - [2009-07-14 03:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\comdlg32.dll
MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\cryptbase.dll
MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\clbcatq.dll
MOD - [2009-07-14 03:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\cfgmgr32.dll
MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\atl.dll
MOD - [2009-07-14 03:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\advapi32.dll
MOD - [2009-07-14 03:14:53 | 000,292,352 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\apphelp.dll
MOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msscript.ocx
MOD - [2009-07-14 03:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\winspool.drv
MOD - [2009-07-14 03:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\user32.dll
MOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\uxtheme.dll
MOD - [2009-07-14 03:11:24 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\sspicli.dll
MOD - [2009-07-14 03:11:23 | 000,836,608 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\kernel32.dll
MOD - [2009-07-14 03:11:23 | 000,662,528 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\rpcrt4.dll
MOD - [2009-07-14 03:11:23 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\KernelBase.dll
MOD - [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\lpk.dll
MOD - [2009-07-14 03:11:21 | 000,310,784 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\gdi32.dll
MOD - [2009-07-14 03:11:21 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\imm32.dll
MOD - [2009-07-14 03:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\winsxs\\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\\comctl32.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV:[b]64bit:[/b] - File not found [Auto | Running] -- C:\\Windows\\SysNative\\PnkBstrB.exe -- (PnkBstrB)
SRV:[b]64bit:[/b] - File not found [Auto | Running] -- C:\\Windows\\SysNative\\PnkBstrA.exe -- (PnkBstrA)
SRV:[b]64bit:[/b] - [2010-04-07 04:12:18 | 000,202,752 | ---- | M] (AMD) [Auto | Running] -- C:\\Windows\\SysNative\\atiesrxx.exe -- (AMD External Events Utility)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:56 | 000,195,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Windows\\SysNative\\umrdp.dll -- (UmRdpService)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 001,361,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Windows\\SysNative\\PeerDistSvc.dll -- (PeerDistSvc)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Program Files\\Windows Defender\\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009-07-14 03:40:24 | 000,689,152 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\\Windows\\SysNative\\cscsvc.dll -- (CscService)
SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\\Windows\\SysNative\\appmgmts.dll -- (AppMgmt)
SRV - [2010-06-28 12:38:11 | 000,218,464 | ---- | M] () [Auto | Running] -- C:\\Windows\\SysWOW64\\PnkBstrB.exe -- (PnkBstrB)
SRV - [2010-06-27 10:34:25 | 000,075,064 | ---- | M] () [Auto | Running] -- C:\\Windows\\SysWOW64\\PnkBstrA.exe -- (PnkBstrA)
SRV - [2010-05-22 15:12:47 | 000,395,048 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Common Files\\Steam\\SteamService.exe -- (Steam Client Service)
SRV - [2010-03-19 10:49:20 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\\Program Files (x86)\\Common Files\\Apple\\Mobile Device Support\\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010-02-26 02:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) [Unknown | Running] -- C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\ccSvcHst.exe -- (NIS)
SRV - [2009-10-08 11:31:44 | 000,112,592 | ---- | M] (Threat Expert Ltd.) [Auto | Running] -- C:\\Program Files (x86)\\Spyware Doctor\\BDT\\BDTUpdateService.exe -- (Browser Defender Update Service)
SRV - [2009-09-23 13:33:42 | 001,141,200 | ---- | M] (PC Tools) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Spyware Doctor\\pctsSvc.exe -- (sdCoreService)
SRV - [2009-09-23 12:17:22 | 000,358,600 | ---- | M] (PC Tools) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Spyware Doctor\\pctsAuxs.exe -- (sdAuxService)
SRV - [2009-03-02 15:06:16 | 000,068,136 | ---- | M] () [Auto | Running] -- C:\\Program Files (x86)\\Gigabyte\\EasySaver\\ESSVR.EXE -- (ES lite Service)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV:[b]64bit:[/b] - [2010-09-03 23:08:15 | 000,173,104 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.SYS -- (SymEvent)
DRV:[b]64bit:[/b] - [2010-05-06 06:01:59 | 000,451,120 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symtdiv.sys -- (SYMTDIv)
DRV:[b]64bit:[/b] - [2010-04-29 07:03:51 | 000,150,064 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\ironx64.sys -- (SymIRON)
DRV:[b]64bit:[/b] - [2010-04-22 05:02:20 | 000,221,232 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symefa64.sys -- (SymEFA)
DRV:[b]64bit:[/b] - [2010-04-22 04:29:51 | 000,505,392 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtsp64.sys -- (SRTSP)
DRV:[b]64bit:[/b] - [2010-04-22 04:29:51 | 000,032,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtspx64.sys -- (SRTSPX) Symantec Real Time Storage Protection (PEL)
DRV:[b]64bit:[/b] - [2010-04-07 04:44:06 | 006,659,072 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\atikmdag.sys -- (atikmdag)
DRV:[b]64bit:[/b] - [2010-04-07 04:44:06 | 006,659,072 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\atikmdag.sys -- (amdkmdag)
DRV:[b]64bit:[/b] - [2010-04-07 03:23:30 | 000,195,584 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\atikmpag.sys -- (amdkmdap)
DRV:[b]64bit:[/b] - [2010-04-03 03:28:28 | 000,894,592 | ---- | M] (Line 6) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\L6PODX3LV64.sys -- (L6PODX3LV)
DRV:[b]64bit:[/b] - [2010-03-09 12:21:42 | 000,123,408 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\AtiHdmi.sys -- (AtiHdmiService)
DRV:[b]64bit:[/b] - [2010-02-26 02:22:52 | 000,615,040 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\cchpx64.sys -- (ccHP)
DRV:[b]64bit:[/b] - [2010-02-03 14:56:56 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\hamachi.sys -- (hamachi)
DRV:[b]64bit:[/b] - [2009-09-23 16:10:04 | 000,218,056 | ---- | M] (PC Tools) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\PCTCore64.sys -- (PCTCore)
DRV:[b]64bit:[/b] - [2009-08-30 02:17:18 | 000,433,200 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symds64.sys -- (SymDS)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,200,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\vmbus.sys -- (vmbus)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,046,672 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\vmstorfl.sys -- (storflt)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,034,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\storvsc.sys -- (storvsc)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 01:42:58 | 000,006,656 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\vms3cap.sys -- (s3cap)
DRV:[b]64bit:[/b] - [2009-07-14 01:42:44 | 000,021,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\VMBusHID.sys -- (VMBusHID)
DRV:[b]64bit:[/b] - [2009-07-14 01:24:27 | 000,514,048 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\csc.sys -- (CSC)
DRV:[b]64bit:[/b] - [2009-06-10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\\Windows\\SysNative\\wbem\\ntfs.mof -- (Ntfs)
DRV:[b]64bit:[/b] - [2009-06-10 22:35:42 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-03-27 02:23:54 | 000,019,432 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | Auto | Running] -- C:\\Windows\\SysNative\\drivers\\cpuz132_x64.sys -- (cpuz132)
DRV:[b]64bit:[/b] - [2009-02-24 19:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\mcdbus.sys -- (mcdbus)
DRV - [2010-09-05 22:48:47 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\\Windows\\gdrv.sys -- (gdrv)
DRV - [2010-09-03 23:31:19 | 001,791,536 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\Definitions\\VirusDefs\\20100904.003\\EX64.SYS -- (NAVEX15)
DRV - [2010-09-03 23:31:19 | 000,475,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Program Files (x86)\\Common Files\\Symantec Shared\\EENGINE\\eeCtrl64.sys -- (eeCtrl)
DRV - [2010-09-03 23:31:19 | 000,132,656 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\\Program Files (x86)\\Common Files\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2010-09-03 23:31:19 | 000,117,808 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\Definitions\\VirusDefs\\20100904.003\\ENG64.SYS -- (NAVENG)
DRV - [2010-09-01 20:04:32 | 000,463,408 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\Definitions\\IPSDefs\\20100903.003\\IDSviA64.sys -- (IDSVia64)
DRV - [2010-08-10 01:16:24 | 000,945,200 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\Definitions\\BASHDefs\\20100810.004\\BHDrvx64.sys -- (BHDrvx64)
DRV - [2009-08-22 20:25:00 | 000,012,288 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\\Program Files (x86)\\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\\RivaTuner64.sys -- (RivaTuner64)
DRV - [2009-02-24 19:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysWOW64\\drivers\\mcdbus.sys -- (mcdbus)
DRV - [2009-02-10 18:23:10 | 000,115,600 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\\Program Files (x86)\\UltraISO\\drivers\\ISODrv64.sys -- (ISODrive)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Local Page = C:\\Windows\\SysWOW64\\blank.htm
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyEnable\" = 0
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyOverride\" = plimus.com,www.plimus.com,regnow.com,www.regnow.com,;*.local
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyServer\" = socks=
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\\ProgramData\\Real\\RealPlayer\\BrowserRecordPlugin\\Firefox\\Ext [2010-08-27 21:47:22 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\IPSFFPlgn\\ [2010-09-04 18:03:37 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\coFFPlgn\\ [2010-09-04 16:37:31 | 000,000,000 | ---D | M]
[2009-03-27 15:08:01 | 000,000,000 | ---D | M] -- C:\\Program Files (x86)\\mozilla firefox\\extensions
[2010-03-31 10:57:14 | 000,120,296 | ---- | M] ( ) -- C:\\Program Files (x86)\\mozilla firefox\\plugins\\npganymedenet.dll
[2010-01-14 00:46:00 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\\Program Files (x86)\\mozilla firefox\\plugins\\npwachk.dll
O1 HOSTS File: ([2010-05-16 10:29:39 | 000,001,078 | R--- | M]) - C:\\Windows\\SysNative\\drivers\\etc\\hosts
O1 - Hosts: 127.0.0.1 static3.cdn.ubi.com
O1 - Hosts: 127.0.0.1 ubisoft-orbit.s3.amazonaws.com
O1 - Hosts: 127.0.0.1 onlineconfigservice.ubi.com
O1 - Hosts: 127.0.0.1 orbitservice.ubi.com
O1 - Hosts: 127.0.0.1 ubisoft-orbit-savegames.s3.amazonaws.com
O2 - BHO: (PC Tools Browser Guard BHO) - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\\Program Files (x86)\\Spyware Doctor\\BDT\\PCTBrowserDefender.dll (Threat Expert Ltd.)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\\ProgramData\\Real\\RealPlayer\\BrowserRecordPlugin\\IE\\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\coIEPlg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\IPSBHO.DLL (Symantec Corporation)
O3 - HKLM\\..\\Toolbar: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\\Program Files (x86)\\Spyware Doctor\\BDT\\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKLM\\..\\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\coIEPlg.dll (Symantec Corporation)
O3 - HKCU\\..\\Toolbar\\WebBrowser: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\\Program Files (x86)\\Spyware Doctor\\BDT\\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKCU\\..\\Toolbar\\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\coIEPlg.dll (Symantec Corporation)
O4 - HKLM..\\Run: [amd_dc_opt] C:\\Program Files (x86)\\AMD\\Dual-Core Optimizer\\amd_dc_opt.exe (AMD)
O4 - HKLM..\\Run: [StartCCC] C:\\Program Files (x86)\\ATI Technologies\\ATI.ACE\\Core-Static\\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\\Run: [svchot.exe] C:\\Users\\Kabak\\AppData\\Roaming\\svhost\\svchot.exe File not found
O4 - HKLM..\\Run: [TkBellExe] C:\\Program Files (x86)\\Common Files\\Real\\Update_OB\\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\\Run: [ALLUpdate] C:\\Program Files (x86)\\ALLPlayer\\ALLUpdate.exe File not found
O4 - Startup: C:\\Users\\Kabak\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\EarthDesk.lnk = C:\\Program Files (x86)\\XericDesign\\EarthDesk\\earthdesk.exe File not found
O4 - Startup: C:\\Users\\Kabak\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\MagicDisc.lnk = C:\\Program Files (x86)\\MagicDisc\\MagicDisc.exe (MagicISO, Inc.)
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoActiveDesktop = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoActiveDesktopChanges = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer\\Run: Policies = C:\\Users\\Kabak\\AppData\\Roaming\\svhost\\svchot.exe File not found
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableInstallerDetection = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableLUA = 0
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableSecureUIAPaths = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableVirtualization = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: PromptOnSecureDesktop = 0
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: shutdownwithoutlogon = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: undockwithoutlogon = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System\\UIPI\\Clipboard\\ExceptionFormats: CF_TEXT = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O7 - HKCU\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDriveTypeAutoRun = 149
O7 - HKCU\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer\\Run: Policies = C:\\Users\\Kabak\\AppData\\Roaming\\svhost\\svchot.exe File not found
O8:[b]64bit:[/b] - Extra context menu item: Pobierz z &BitSpirit - C:\\Program Files (x86)\\BitSpirit\\bsurl.htm ()
O8 - Extra context menu item: Pobierz z &BitSpirit - C:\\Program Files (x86)\\BitSpirit\\bsurl.htm ()
O9 - Extra Button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\\PROGRA~2\\MICROS~1\\OFFICE11\\REFIEBAR.DLL (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\\Catalog_Entries\\000000000007 [] - C:\\Program Files (x86)\\Bonjour\\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\\Catalog_Entries\\000000000007 [] - C:\\Program Files (x86)\\Bonjour\\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\\..Trusted Domains: line6.net ([]* in Trusted sites)
O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\Parameters: DhcpNameServer = 192.168.1.254
O18:[b]64bit:[/b] - Protocol\\Handler\\http\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\http\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\https\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\https\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\msdaipp - No CLSID value found
O18:[b]64bit:[/b] - Protocol\\Handler\\msdaipp\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\msdaipp\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - Reg Error: Key error. File not found
O18 - Protocol\\Handler\\http\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\http\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\https\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\https\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\msdaipp\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\msdaipp\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\\PROGRA~2\\COMMON~1\\MICROS~1\\WEBCOM~1\\10\\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\\Handler\\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\\PROGRA~2\\COMMON~1\\MICROS~1\\WEBCOM~1\\11\\OWC11.DLL (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\\Filter\\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - Reg Error: Key error. File not found
O18 - Protocol\\Filter\\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\OFFICE11\\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\\Windows\\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\\Windows\\SysNative\\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\\Windows\\SysWow64\\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\\Windows\\SysWow64\\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKCU Winlogon: Shell - (Explorer.exe) - C:\\Windows\\SysWow64\\explorer.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:[b]64bit:[/b] - HKLM\\..comfile [open] -- \"%1\" %*
O35:[b]64bit:[/b] - HKLM\\..exefile [open] -- \"%1\" %*
O35 - HKLM\\..comfile [open] -- \"%1\" %*
O35 - HKLM\\..exefile [open] -- \"%1\" %*
O37:[b]64bit:[/b] - HKLM\\...com [@ = comfile] -- \"%1\" %*
O37:[b]64bit:[/b] - HKLM\\...exe [@ = exefile] -- \"%1\" %*
O37 - HKLM\\...com [@ = comfile] -- \"%1\" %*
O37 - HKLM\\...exe [@ = exefile] -- \"%1\" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2010-09-05 21:47:36 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\Threat Expert
[2010-09-04 19:17:08 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Team 17
[2010-09-04 18:35:18 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\DoctorWeb
[2010-09-04 17:15:42 | 000,000,000 | ---D | C] -- C:\\Program Files\\MailShare
[2010-09-04 16:56:45 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\Malwarebytes
[2010-09-04 16:56:40 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\\Windows\\SysWow64\\drivers\\mbamswissarmy.sys
[2010-09-04 16:56:39 | 000,024,664 | ---- | C] (Malwarebytes Corporation) -- C:\\Windows\\SysNative\\drivers\\mbam.sys
[2010-09-04 16:56:39 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Malwarebytes\' Anti-Malware
[2010-09-04 16:56:39 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Malwarebytes
[2010-09-04 16:48:51 | 000,000,000 | ---D | C] -- C:\\_OTL
[2010-09-04 16:48:24 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\\Users\\Kabak\\Desktop\\OTL.exe
[2010-09-04 13:10:41 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\trend micro
[2010-09-04 12:59:02 | 001,636,304 | ---- | C] (Threat Expert Ltd.) -- C:\\Windows\\PCTBDCore.dll
[2010-09-04 12:59:02 | 000,165,840 | ---- | C] (Threat Expert Ltd.) -- C:\\Windows\\PCTBDRes.dll
[2010-09-04 12:59:02 | 000,149,456 | ---- | C] (PC Tools) -- C:\\Windows\\SGDetectionTool.dll
[2010-09-04 12:43:46 | 000,304,576 | ---- | C] (PC Tools) -- C:\\Windows\\SysNative\\drivers\\pctgntdi64.sys
[2010-09-04 12:43:46 | 000,132,048 | ---- | C] (PC Tools) -- C:\\Windows\\SysNative\\drivers\\pctwfpfilter64.sys
[2010-09-04 12:43:43 | 000,218,056 | ---- | C] (PC Tools) -- C:\\Windows\\SysNative\\drivers\\PCTCore64.sys
[2010-09-04 12:43:34 | 000,092,896 | ---- | C] (PC Tools) -- C:\\Windows\\SysNative\\drivers\\pctplsg64.sys
[2010-09-04 12:43:29 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Spyware Doctor
[2010-09-04 12:43:29 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\PC Tools
[2010-09-04 12:43:29 | 000,000,000 | ---D | C] -- C:\\ProgramData\\PC Tools
[2010-09-04 12:43:29 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\PC Tools
[2010-09-04 11:09:27 | 000,615,040 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\cchpx64.sys
[2010-09-04 11:09:27 | 000,505,392 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtsp64.sys
[2010-09-04 11:09:27 | 000,451,120 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symtdiv.sys
[2010-09-04 11:09:27 | 000,433,200 | R--- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symds64.sys
[2010-09-04 11:09:27 | 000,221,232 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symefa64.sys
[2010-09-04 11:09:27 | 000,150,064 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\ironx64.sys
[2010-09-04 11:09:27 | 000,032,304 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtspx64.sys
[2010-09-04 11:09:13 | 000,000,000 | ---D | C] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C
[2010-09-03 23:08:17 | 000,173,104 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.SYS
[2010-09-03 23:08:15 | 000,000,000 | ---D | C] -- C:\\Program Files\\Common Files\\Symantec Shared
[2010-09-03 23:08:15 | 000,000,000 | ---D | C] -- C:\\Program Files\\Symantec
[2010-09-03 23:07:49 | 000,000,000 | ---D | C] -- C:\\Windows\\SysNative\\drivers\\NISx64
[2010-09-03 23:07:47 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Norton Internet Security
[2010-09-03 23:07:13 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\NortonInstaller
[2010-08-29 22:04:15 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\NVIDIA Corporation
[2010-08-29 22:03:39 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Wise Installation Wizard
[2010-08-28 15:58:05 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Magic Workstation
[2010-08-27 21:49:37 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\Real
[2010-08-27 21:47:13 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\xing shared
[2010-08-27 21:47:07 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Real
[2010-08-27 21:47:07 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Real
[2010-08-27 21:47:07 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Real
[2010-08-27 21:22:52 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\Real
[2010-08-27 21:21:28 | 000,000,000 | ---D | C] -- C:\\Windows\\SysWow64\\WatchTV
[2010-08-27 19:37:54 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\Documents\\KONAMI
[2010-08-27 19:31:04 | 000,000,000 | ---D | C] -- C:\\ProgramData\\KONAMI
[2010-08-26 19:25:19 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\Apple Computer
[2010-08-26 19:25:18 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\Apple Computer
[2010-08-26 19:24:54 | 000,000,000 | ---D | C] -- C:\\ProgramData\\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
[2010-08-26 19:24:23 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\QuickTime
[2010-08-26 19:24:23 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Apple Computer
[2010-08-26 19:24:15 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Apple Software Update
[2010-08-26 19:24:15 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\Apple
[2010-08-26 19:24:06 | 000,000,000 | ---D | C] -- C:\\Program Files\\Common Files\\Apple
[2010-08-26 19:23:59 | 000,000,000 | ---D | C] -- C:\\Program Files\\Bonjour
[2010-08-26 19:23:59 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Bonjour
[2010-08-26 19:23:56 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Apple
[2010-08-26 19:23:56 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Apple
[2010-08-11 16:02:18 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\Ashampoo
[2010-08-11 16:01:44 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\ashampoo
[2010-08-11 16:01:44 | 000,000,000 | ---D | C] -- C:\\ProgramData\\ashampoo
[2010-08-11 16:01:42 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Ashampoo
[2010-08-10 22:45:04 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\2K Games
[2010-08-10 22:44:47 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\XAudio2_7.dll
[2010-08-10 22:44:47 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\XAudio2_7.dll
[2010-08-10 22:44:47 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\XAPOFX1_5.dll
[2010-08-10 22:44:47 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\XAPOFX1_5.dll
[2010-08-10 22:44:46 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\D3DCompiler_43.dll
[2010-08-10 22:44:46 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\D3DX9_43.dll
[2010-08-10 22:44:46 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\D3DCompiler_43.dll
[2010-08-10 22:44:46 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\D3DX9_43.dll
[2010-08-10 22:44:46 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\d3dcsx_43.dll
[2010-08-10 22:44:46 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\d3dcsx_43.dll
[2010-08-10 22:44:46 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\d3dx10_43.dll
[2010-08-10 22:44:46 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\d3dx10_43.dll
[2010-08-10 22:44:46 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\d3dx11_43.dll
[2010-08-10 22:44:46 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\d3dx11_43.dll
[2010-08-10 22:44:46 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\xactengine3_7.dll
[2010-08-10 22:44:46 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\xactengine3_7.dll
[2010-08-08 11:23:49 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\Documents\\StarCraft II
[2010-08-08 11:23:49 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Blizzard Entertainment
[2010-08-08 11:23:49 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Blizzard Entertainment
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2055-09-19 08:29:11 | 000,002,012 | ---- | M] () -- C:\\Windows\\SysWow64\\NAV_75_cltDynam.dat
[2010-09-05 22:57:12 | 002,883,584 | ---- | M] () -- C:\\Users\\Kabak\\NTUSER.DAT
[2010-09-05 22:57:03 | 000,002,432 | ---- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\TempKW4808.html
[2010-09-05 22:57:03 | 000,002,089 | ---- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\TempjJ4808.html
[2010-09-05 22:54:05 | 000,001,046 | ---- | M] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineUA.job
[2010-09-05 22:53:53 | 000,016,160 | -H-- | M] () -- C:\\Windows\\SysNative\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010-09-05 22:53:53 | 000,016,160 | -H-- | M] () -- C:\\Windows\\SysNative\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010-09-05 22:53:31 | 001,048,792 | ---- | M] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\Cat.DB
[2010-09-05 22:48:49 | 000,001,042 | ---- | M] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineCore.job
[2010-09-05 22:48:47 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\\Windows\\gdrv.sys
[2010-09-05 22:48:44 | 000,000,006 | -H-- | M] () -- C:\\Windows\\tasks\\SA.DAT
[2010-09-05 22:48:41 | 000,067,584 | --S- | M] () -- C:\\Windows\\bootstat.dat
[2010-09-05 22:48:36 | 2414,731,264 | -HS- | M] () -- C:\\hiberfil.sys
[2010-09-05 22:47:50 | 001,628,365 | -H-- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\IconCache.db
[2010-09-04 19:19:59 | 001,542,928 | ---- | M] () -- C:\\Windows\\SysNative\\perfh015.dat
[2010-09-04 19:19:59 | 000,899,944 | ---- | M] () -- C:\\Windows\\SysNative\\perfh009.dat
[2010-09-04 19:19:59 | 000,419,030 | ---- | M] () -- C:\\Windows\\SysNative\\perfc015.dat
[2010-09-04 19:19:59 | 000,381,014 | ---- | M] () -- C:\\Windows\\SysNative\\perfc009.dat
[2010-09-04 19:19:59 | 000,004,748 | ---- | M] () -- C:\\Windows\\SysNative\\PerfStringBackup.INI
[2010-09-04 19:19:40 | 000,002,112 | ---- | M] () -- C:\\Users\\Public\\Desktop\\\'Worms Reloaded\'.lnk
[2010-09-04 17:11:37 | 049,018,712 | ---- | M] () -- C:\\Users\\Kabak\\Desktop\\launch.exe
[2010-09-04 16:56:43 | 000,001,005 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Malwarebytes\' Anti-Malware.lnk
[2010-09-04 16:48:42 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\\Users\\Kabak\\Desktop\\OTL.exe
[2010-09-04 16:48:06 | 000,020,074 | -H-- | M] () -- C:\\Users\\Kabak\\AppData\\Roaming\\Kabaklog.dat
[2010-09-04 16:36:44 | 000,002,489 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Norton Internet Security.lnk
[2010-09-04 14:37:23 | 000,002,432 | ---- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\Tempvw4172.html
[2010-09-04 13:18:22 | 000,293,376 | ---- | M] () -- C:\\Users\\Kabak\\Desktop\\50z9mfr4.exe
[2010-09-04 12:43:39 | 000,001,988 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Spyware Doctor.lnk
[2010-09-03 23:21:18 | 000,002,432 | ---- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\Tempkm4672.html
[2010-09-03 23:08:15 | 000,173,104 | ---- | M] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.SYS
[2010-09-03 23:08:15 | 000,007,440 | ---- | M] () -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.CAT
[2010-09-03 23:08:15 | 000,000,854 | ---- | M] () -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.INF
[2010-08-29 22:01:34 | 000,000,998 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Mafia II.lnk
[2010-08-28 23:41:54 | 000,001,024 | ---- | M] () -- C:\\Users\\Kabak\\Desktop\\Magic Workstation.lnk
[2010-08-27 21:47:21 | 000,185,920 | ---- | M] (RealNetworks, Inc.) -- C:\\Windows\\SysWow64\\rmoc3260.dll
[2010-08-27 21:47:19 | 000,006,656 | ---- | M] (RealNetworks, Inc.) -- C:\\Windows\\SysWow64\\pndx5016.dll
[2010-08-27 21:47:19 | 000,005,632 | ---- | M] (RealNetworks, Inc.) -- C:\\Windows\\SysWow64\\pndx5032.dll
[2010-08-27 21:47:07 | 000,499,712 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\msvcp71.dll
[2010-08-27 21:47:07 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\msvcr71.dll
[2010-08-27 21:47:07 | 000,278,528 | ---- | M] (Real Networks, Inc) -- C:\\Windows\\SysWow64\\pncrt.dll
[2010-08-27 19:38:00 | 000,000,600 | ---- | M] () -- C:\\Users\\Kabak\\Desktop\\Pro Evolution Soccer 2010 — skrót.lnk
[2010-08-08 11:45:15 | 000,000,782 | ---- | M] () -- C:\\Users\\Public\\Desktop\\StarCraft II.lnk
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2010-09-04 19:19:40 | 000,002,112 | ---- | C] () -- C:\\Users\\Public\\Desktop\\\'Worms Reloaded\'.lnk
[2010-09-04 16:56:43 | 000,001,005 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Malwarebytes\' Anti-Malware.lnk
[2010-09-04 16:55:08 | 049,018,712 | ---- | C] () -- C:\\Users\\Kabak\\Desktop\\launch.exe
[2010-09-04 16:36:00 | 001,048,792 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\Cat.DB
[2010-09-04 13:18:22 | 000,293,376 | ---- | C] () -- C:\\Users\\Kabak\\Desktop\\50z9mfr4.exe
[2010-09-04 12:59:02 | 001,152,470 | ---- | C] () -- C:\\Windows\\UDB.zip
[2010-09-04 12:59:02 | 000,767,952 | ---- | C] () -- C:\\Windows\\BDTSupport.dll
[2010-09-04 12:59:02 | 000,000,882 | ---- | C] () -- C:\\Windows\\RegSDImport.xml
[2010-09-04 12:59:02 | 000,000,880 | ---- | C] () -- C:\\Windows\\RegISSImport.xml
[2010-09-04 12:59:02 | 000,000,131 | ---- | C] () -- C:\\Windows\\IDB.zip
[2010-09-04 12:43:46 | 000,007,357 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\pctgntdi64.cat
[2010-09-04 12:43:43 | 000,007,353 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\pctcore64.cat
[2010-09-04 12:43:39 | 000,001,988 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Spyware Doctor.lnk
[2010-09-04 12:43:35 | 000,007,353 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\pctplsg64.cat
[2010-09-04 11:57:21 | 000,002,432 | ---- | C] () -- C:\\Users\\Kabak\\AppData\\Local\\Tempvw4172.html
[2010-09-04 11:09:27 | 000,007,829 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symefa64.cat
[2010-09-04 11:09:27 | 000,007,787 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symnetv64.cat
[2010-09-04 11:09:27 | 000,007,414 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtspx64.cat
[2010-09-04 11:09:27 | 000,007,410 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtsp64.cat
[2010-09-04 11:09:27 | 000,007,406 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symds64.cat
[2010-09-04 11:09:27 | 000,007,402 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\iron.cat
[2010-09-04 11:09:27 | 000,007,368 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symnet64.cat
[2010-09-04 11:09:27 | 000,007,358 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\cchpx64.cat
[2010-09-04 11:09:27 | 000,003,373 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symefa.inf
[2010-09-04 11:09:27 | 000,002,793 | R--- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symds.inf
[2010-09-04 11:09:27 | 000,001,838 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\cchpx64.inf
[2010-09-04 11:09:27 | 000,001,473 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symnetv.inf
[2010-09-04 11:09:27 | 000,001,445 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symnet.inf
[2010-09-04 11:09:27 | 000,001,437 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtsp64.inf
[2010-09-04 11:09:27 | 000,001,421 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtspx64.inf
[2010-09-04 11:09:27 | 000,000,771 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\iron.inf
[2010-09-04 11:09:13 | 000,000,172 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\isolate.ini
[2010-09-03 23:18:40 | 000,002,432 | ---- | C] () -- C:\\Users\\Kabak\\AppData\\Local\\Tempkm4672.html
[2010-09-03 23:08:17 | 000,007,440 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.CAT
[2010-09-03 23:08:17 | 000,000,854 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.INF
[2010-09-03 23:08:05 | 000,002,489 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Norton Internet Security.lnk
[2010-08-29 22:01:34 | 000,000,998 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Mafia II.lnk
[2010-08-28 23:41:54 | 000,001,024 | ---- | C] () -- C:\\Users\\Kabak\\Desktop\\Magic Workstation.lnk
[2010-08-27 21:49:30 | 000,001,046 | ---- | C] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineUA.job
[2010-08-27 21:49:28 | 000,001,042 | ---- | C] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineCore.job
[2010-08-27 19:38:00 | 000,000,600 | ---- | C] () -- C:\\Users\\Kabak\\Desktop\\Pro Evolution Soccer 2010 — skrót.lnk
[2010-08-08 11:23:49 | 000,000,782 | ---- | C] () -- C:\\Users\\Public\\Desktop\\StarCraft II.lnk
[2010-06-23 23:46:54 | 000,165,376 | ---- | C] () -- C:\\Windows\\SysWow64\\unrar.dll
[2010-06-23 23:46:54 | 000,000,038 | ---- | C] () -- C:\\Windows\\avisplitter.ini
[2010-06-23 23:46:53 | 000,108,032 | ---- | C] () -- C:\\Windows\\SysWow64\\ff_vfw.dll
[2010-06-23 23:46:53 | 000,000,547 | ---- | C] () -- C:\\Windows\\SysWow64\\ff_vfw.dll.manifest
[2010-06-04 20:29:28 | 000,000,359 | ---- | C] () -- C:\\Windows\\GearBox.ini
[2010-03-04 20:59:00 | 000,000,010 | ---- | C] () -- C:\\Windows\\GSetup.ini
[2010-03-04 20:51:08 | 009,936,457 | ---- | C] () -- C:\\Program Files\\07.Long & Junior - Marzenia ( Extended ).mp3
[2009-08-07 19:51:34 | 000,178,430 | ---- | C] () -- C:\\Windows\\SysWow64\\xlive.dll.cat
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\\Windows\\SysWow64\\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\\Windows\\SysWow64\\msjetoledb40.dll
[2009-04-20 19:50:44 | 000,005,120 | ---- | C] () -- C:\\Users\\Kabak\\AppData\\Local\\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-04-20 19:49:22 | 008,676,883 | ---- | C] () -- C:\\Windows\\SysWow64\\NCMedia2.dll
[2009-04-20 19:49:22 | 000,205,824 | ---- | C] () -- C:\\Windows\\SysWow64\\xvidvfw.dll
[2009-03-28 21:04:34 | 000,004,746 | ---- | C] () -- C:\\Windows\\SysWow64\\PerfStringBackup.INI
[2009-03-07 20:44:22 | 000,000,412 | ---- | C] () -- C:\\Windows\\ODBC.INI
[2005-04-08 04:16:43 | 000,020,074 | -H-- | C] () -- C:\\Users\\Kabak\\AppData\\Roaming\\Kabaklog.dat
[2003-04-08 12:40:22 | 000,005,679 | ---- | C] () -- C:\\Windows\\SysWow64\\OUTLPERF.INI
[color=#E56717]========== Alternate Data Streams ==========[/color]
@Alternate Data Stream - 195 bytes -> C:\\ProgramData\\TEMP:DFC5A2B2
@Alternate Data Stream - 114 bytes -> C:\\ProgramData\\TEMP:A8ADE5D8
@Alternate Data Stream - 113 bytes -> C:\\ProgramData\\TEMP:05EE1EEF
< End of report >
|