chyba zrobiłem jak pisałeś i nie pomogło
mam firefoxa na windows XP
Jak usunąć Search.certified-toolbar.com
-
- Posty: 39
- Rejestracja: 22 sty 2013, 08:15
Jak usunąć Search.certified-toolbar.com
Ostatnio zmieniony 23 sty 2013, 15:53 przez XMan, łącznie zmieniany 1 raz.
Powód: wydzieliłem, zmieniłem temat.
Powód: wydzieliłem, zmieniłem temat.
- kominekl
- Posty: 5855
- Rejestracja: 27 lis 2011, 14:25
- Kontaktowanie:
Problem search certified toolbar
jaras pisze:chyba zrobiłem jak pisałeś i nie pomogło
mam firefoxa na windows XP
Ponów.
Kiedy komputery staną się twoim jedynym życiem, jedynym totemem odstraszającym klątwę nudy, wtedy prędzej czy później granica między tymi dwoma wymiarami zniknie i postacie z Błękitnej Pustki zaczną pojawiać się w Realu. Czasem są twoimi przyjaciółmi. A czasem nie.
-
- Posty: 39
- Rejestracja: 22 sty 2013, 08:15
Problem search certified toolbar
spróbuję
w oknie Własne opcje skanowania/skrypt mam wkleić to co zapodałeś to działa uniwersalnie na wszystkie kompy?
w oknie Własne opcje skanowania/skrypt mam wkleić to co zapodałeś to działa uniwersalnie na wszystkie kompy?
- XMan
- Posty: 13385
- Rejestracja: 30 lis 2008, 00:40
Jak usunąć Search.certified-toolbar.com
Dostępne tylko dla zarejestrowanych użytkowników
Proponuję w tym celu użyć w pierwszej kolejności dobry program Malwarebytes Anti-Malware
Nie instaluj wersji PRO tylko Freeware.
Pełne skanowanie.
Obsługa programu Malwarebytes' Anti-Malware
Po skanowaniu wrzuć z niego logi.
Wrzuć dodatkowo wymagane/obowiązkowe logi w tym temacie zgodnie z regulaminem :
bezpieczenstwo/regulamin-bezpiecze-stwa-t19001.html
http://www.hotfix.pl/obsluga-programu-otl-a143.htm
Masz podane gdzie i jak wrzucać:
W razie problemów:
Dostępne tylko dla zarejestrowanych użytkowników
Dostępne tylko dla zarejestrowanych użytkowników
Należy użyć zautomatyzowanych narzędzi, jak programy anty-malware
Proponuję w tym celu użyć w pierwszej kolejności dobry program Malwarebytes Anti-Malware
Nie instaluj wersji PRO tylko Freeware.
Pełne skanowanie.
Obsługa programu Malwarebytes' Anti-Malware
Po skanowaniu wrzuć z niego logi.
Wrzuć dodatkowo wymagane/obowiązkowe logi w tym temacie zgodnie z regulaminem :
bezpieczenstwo/regulamin-bezpiecze-stwa-t19001.html
http://www.hotfix.pl/obsluga-programu-otl-a143.htm
Powinny wyskoczyć dwa logi - OTL.txt i Extras.txt - proszę je dać na Forum.
Masz podane gdzie i jak wrzucać:
Proszę nie korzystać z tagów QUOTE oraz CODE
Do wrzucania logów korzystamy tylko i jedynie z serwisu Dostępne tylko dla zarejestrowanych użytkowników
Jest on najlepszy z powodu nie obcinania długich partii tekstu i nie cechuje się ,,duperelami"
W razie problemów:
Dostępne tylko dla zarejestrowanych użytkowników
Dostępne tylko dla zarejestrowanych użytkowników
- kominekl
- Posty: 5855
- Rejestracja: 27 lis 2011, 14:25
- Kontaktowanie:
Jak usunąć Search.certified-toolbar.com
Należy użyć zautomatyzowanych narzędzi, jak programy anty-malware
To fakt, ale nawet one nie robią tego co do końca trzeba. One szukają czynników infekcyjnych, a są też kosmetyczne.
w oknie Własne opcje skanowania/skrypt mam wkleić to co zapodałeś to działa uniwersalnie na wszystkie kompy?
Każdy komputer ma własna "duszę" - jest inny

Kiedy komputery staną się twoim jedynym życiem, jedynym totemem odstraszającym klątwę nudy, wtedy prędzej czy później granica między tymi dwoma wymiarami zniknie i postacie z Błękitnej Pustki zaczną pojawiać się w Realu. Czasem są twoimi przyjaciółmi. A czasem nie.
- XMan
- Posty: 13385
- Rejestracja: 30 lis 2008, 00:40
Jak usunąć Search.certified-toolbar.com
Każdy komputer ma własna "duszę" - jest inny.
No i dlatego wydzieliłem z innego tematu oraz poprosiłem o nowe logi

- kominekl
- Posty: 5855
- Rejestracja: 27 lis 2011, 14:25
- Kontaktowanie:
Jak usunąć Search.certified-toolbar.com
No i dlatego wydzieliłem z innego tematu oraz poprosiłem o nowe logi
I bardzo słusznie nasz kochany moderatorku

Kiedy komputery staną się twoim jedynym życiem, jedynym totemem odstraszającym klątwę nudy, wtedy prędzej czy później granica między tymi dwoma wymiarami zniknie i postacie z Błękitnej Pustki zaczną pojawiać się w Realu. Czasem są twoimi przyjaciółmi. A czasem nie.
- XMan
- Posty: 13385
- Rejestracja: 30 lis 2008, 00:40
Jak usunąć Search.certified-toolbar.com
O co chodzi
Co źle napisałem ?
Przecież jako specjalista możesz jeszcze podać/wymagać jeszcze inne programy a ja tylko podałem podstawowe.
He... he... bardzo się uśmiałem
bezpieczenstwo/regulamin-bezpiecze-stwa-t19001.html
Tak mój kochany Ekspercie no ale:
No i jeszcze inne o co prosicie oraz są ostatnio zabronione np. GMER

Co źle napisałem ?
Przecież jako specjalista możesz jeszcze podać/wymagać jeszcze inne programy a ja tylko podałem podstawowe.
I bardzo słusznie nasz kochany moderatorku
He... he... bardzo się uśmiałem

bezpieczenstwo/regulamin-bezpiecze-stwa-t19001.html
Główny dział Bezpieczeństwo został stworzony do działania przeciwko szkodnikom na które możemy trafić w sieci. Dział ten jest jeden z ważniejszych z powodu dodatkowych punktów regulaminowych.
Główni użytkownicy uprawnieni do pomagania:
...oraz oczywiście Moderatorzy i Administratorzy
Tak mój kochany Ekspercie no ale:
Dodam tylko, że oprócz dwóch logów w z OTL`a, prosimy jeszcze o log z TDSSKiller`a -> http://www.hotfix.pl/instrukcja-obslugi ... r-a341.htm.
No i jeszcze inne o co prosicie oraz są ostatnio zabronione np. GMER

- kominekl
- Posty: 5855
- Rejestracja: 27 lis 2011, 14:25
- Kontaktowanie:
Jak usunąć Search.certified-toolbar.com
O co chodzi
Co źle napisałem ?
Przecież jako specjalista możesz jeszcze podać/wymagać jeszcze inne programy a ja tylko podałem podstawowe.
Nie dążyłem do ukazania jakiegoś błędu. TDSSKiller dorzuciłem jako dodatek dla obczajenia rootkit`ów


He... he... bardzo się uśmiałem
To nie była ironia

Tak mój kochany Ekspercie no ale:
Ja o GMER nie proszę


Reasumacja.
Czekamy na użytkownika, kończymy OT, który wynikł z nieporozumienia



Kiedy komputery staną się twoim jedynym życiem, jedynym totemem odstraszającym klątwę nudy, wtedy prędzej czy później granica między tymi dwoma wymiarami zniknie i postacie z Błękitnej Pustki zaczną pojawiać się w Realu. Czasem są twoimi przyjaciółmi. A czasem nie.
-
- Posty: 39
- Rejestracja: 22 sty 2013, 08:15
Jak usunąć Search.certified-toolbar.com
OTL
Dostępne tylko dla zarejestrowanych użytkowników
Dostępne tylko dla zarejestrowanych użytkowników
TDSS
Dostępne tylko dla zarejestrowanych użytkowników
czy to wystarczy?
-- 23 sty 2013, 22:09 --
faktycznie Malwarebytes' Anti-Malware nie do końca załatwia sprawę
pozdrawiam
-- 24 sty 2013, 14:51 --
nie wiem czy to ma jakiś związek ?
nie mogę zainstalować Adobe Reader
Dostępne tylko dla zarejestrowanych użytkowników
Dostępne tylko dla zarejestrowanych użytkowników
TDSS
Dostępne tylko dla zarejestrowanych użytkowników
czy to wystarczy?
-- 23 sty 2013, 22:09 --
faktycznie Malwarebytes' Anti-Malware nie do końca załatwia sprawę
pozdrawiam
-- 24 sty 2013, 14:51 --
nie wiem czy to ma jakiś związek ?
nie mogę zainstalować Adobe Reader
- kominekl
- Posty: 5855
- Rejestracja: 27 lis 2011, 14:25
- Kontaktowanie:
Jak usunąć Search.certified-toolbar.com
nie wiem czy to ma jakiś związek ?
nie mogę zainstalować Adobe Reader
Tym zajmiemy się na sam koniec.
faktycznie Malwarebytes' Anti-Malware nie do końca załatwia sprawę

O33 - MountPoints2\{0f79d329-2b47-11df-94f2-00248c097fd9}\Shell\AutoRun\command - \"\" = G:\qkm.exe
O33 - MountPoints2\{0f79d329-2b47-11df-94f2-00248c097fd9}\Shell\open\Command - \"\" = G:\qkm.exe
Z podłączonymi pamięciami przenośnymi użyj USBFix (z opcji Deletion) -> Dostępne tylko dla zarejestrowanych użytkowników. Zaprezentuj log, który wytworzy.
"Optimizer Pro_is1" = Optimizer Pro v3.0
"TuneUp Utilities 2012" = TuneUp Utilities 2012
"vShare.tv plugin" = vShare.tv plugin 1.3
Odinstaluj to oprogramowanie + ewentualnie zbędne Ci.
Logi.
Uruchom OTL -> w oknie Własne opcje skanowania/skrypt wklej:
:OTL
SRV - File not found [Auto | Stopped] -- C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe -- (FreemakeVideoCapture)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\astsrv.exe -- (astcc)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\LMouKE.sys -- (LMouKE)
IE - HKLM\..\SearchScopes\{8FB629B0-EBAD-4B6F-B09F-25D10207EEA7}: \"URL\" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: \"URL\" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{14ED1BFB-6AFF-4360-8359-1D79EA766B92}: \"URL\" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&SearchSource=4&ctid=CT1640187
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: \"URL\" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{893C8355-C7F5-44A3-8644-088B0AD21C43}: \"URL\" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}
IE - HKCU\..\SearchScopes\{8FB629B0-EBAD-4B6F-B09F-25D10207EEA7}: \"URL\" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&SearchSource=4&ctid=CT2481033&SSPV=IEOB18
IE - HKCU\..\SearchScopes\{BB9111E7-173D-4516-8A28-6A918904F199}: \"URL\" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&locale=&apn_ptnrs=T5&apn_dtid=YYYYYYYYPL&apn_uid=265c1209-edc9-41e1-99af-9552cf8fa2b0&apn_sauid=3CFA5E8F-C7EE-439C-947C-FFA5C60FE84C
FF - prefs.js..browser.search.order.1: \"Web Search\"
FF - prefs.js..browser.search.selectedEngine: \"Web Search\"
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
[2013-01-21 12:40:24 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\extensions\searchplugins
[2013-01-21 12:40:15 | 000,000,000 | ---D | M] (Complitly - Speed up your search with your personal search suggestions tool) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\extensions\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
[2012-06-25 17:02:43 | 000,000,000 | ---D | M] (Yontoo) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\extensions\extensions\plugin@yontoo.com
[2012-11-07 20:20:38 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}
[2012-08-10 16:55:30 | 000,000,000 | ---D | M] (DownloadnSave) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\50252cb87c953@50252cb87c98d.info
[2012-12-08 04:35:54 | 000,005,283 | ---- | M] () (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\extensions\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}\,MaheshmadhukardhondAcPro.xpi
[2012-06-12 22:02:37 | 000,010,043 | ---- | M] () (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\IplextoALL@ALLPlayer.org.xpi
[2012-12-08 12:05:47 | 000,001,052 | ---- | M] () -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\searchplugins\ashampoo-po-customized-web-search.xml
[2012-09-08 08:09:56 | 000,002,572 | ---- | M] () -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\searchplugins\askcom.xml
[2012-12-14 19:03:42 | 000,002,117 | ---- | M] () -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\searchplugins\Startsear.xml
[2013-01-21 12:40:24 | 000,003,265 | ---- | M] () -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\searchplugins\Web Search.xml
[2013-01-21 12:40:24 | 000,003,265 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Web Search.xml
CHR - Extension: DealPly = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje\3.0.7.2_0\
CHR - Extension: vshare plugin = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj\1.3_0\
CHR - Extension: DropinSavings = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\1.0_0\
O4 - HKLM..\Run: [Device Detector] DevDetect.exe -autorun File not found
O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe File not found
O4 - HKCU..\Run: [Norton Download Manager{NAV202019-SHPD-FSD31014}] C:\Documents and Settings\All Users\Dokumenty\Norton\{NAV202019-SHPD-FSD31014}\NAVDownloader.exe (Symantec Corporation)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} Dostępne tylko dla zarejestrowanych użytkowników (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} Dostępne tylko dla zarejestrowanych użytkowników (Reg Error: Key error.)
[2013-01-22 20:14:28 | 000,000,000 | ---D | C] -- C:\Program Files\PC Tools
[2013-01-22 20:10:15 | 000,202,280 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTSD.sys
[2013-01-22 20:10:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools
[2013-01-22 20:09:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Dane aplikacji\TestApp
[2013-01-22 20:09:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Tools
[2013-01-22 17:43:07 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine
@Alternate Data Stream - 151 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:C5549CEC
@Alternate Data Stream - 127 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:430C6D84
@Alternate Data Stream - 105 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2
:Files
C:\Program Files\ESET
C:\WINDOWS\tasks\*.*
:Reg
[-HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
:Commands
[clearallrestorepoints]
[emptytemp]
Klikasz Wykonaj skrypt. Dajesz log z usuwania. Następnie podaj log z ADWCleaner (z opcji Delete) -> Dostępne tylko dla zarejestrowanych użytkowników + nowe logi z OTL.
Kiedy komputery staną się twoim jedynym życiem, jedynym totemem odstraszającym klątwę nudy, wtedy prędzej czy później granica między tymi dwoma wymiarami zniknie i postacie z Błękitnej Pustki zaczną pojawiać się w Realu. Czasem są twoimi przyjaciółmi. A czasem nie.
-
- Posty: 39
- Rejestracja: 22 sty 2013, 08:15
Jak usunąć Search.certified-toolbar.com
log z ADWCleaner
# AdwCleaner v2.108 - Log utworzony 26/01/2013 o 21:37:56
# Aktualizacja 24/01/2013 przez Xplode
# System operacyjny : Microsoft Windows XP Dodatek Service Pack 3 (32 bits)
# Użytkownik : MCD2 - BARTOSZ
# Tryb uruchomienia : Normalny
# Ścieżka : G:\04 Pobieranie\adwcleaner_www.instalki{usun}.pl.exe
# Opcja [Usuń]
***** [Usługi] *****
***** [Pliki / Foldery] *****
Folder Usunięto : C:\Documents and Settings\All Users\Dane aplikacji\SweetIM
Folder Usunięto : C:\Documents and Settings\All Users\Menu Start\Programy\DealPly
Folder Usunięto : C:\Documents and Settings\MCD2\Dane aplikacji\OpenCandy
Folder Usunięto : C:\Program Files\DealPly
Folder Usunięto : C:\Program Files\SweetIM
Folder Usunięto : C:\Program Files\sweetpacks bundle uninstaller
Folder Usunięto : C:\WINDOWS\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
***** [Rejestr] *****
Klucz Usunięto : HKCU\Software\DealPly
Klucz Usunięto : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
Klucz Usunięto : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Klucz Usunięto : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Klucz Usunięto : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Klucz Usunięto : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Klucz Usunięto : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Klucz Usunięto : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Klucz Usunięto : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\sim-packages
Klucz Usunięto : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Klucz Usunięto : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Klucz Usunięto : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Klucz Usunięto : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\Software\DealPly
Klucz Usunięto : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DealPly
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
***** [Przeglądarki Internetowe] *****
-\\ Internet Explorer v8.0.6001.18702
Podmieniono : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.09010003&st=12&barid={959B7A14-126E-4431-8E71-B105BF15912E} --> hxxp://www.google.com
Podmieniono : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.09010003&st=12&barid={959B7A14-126E-4431-8E71-B105BF15912E} --> hxxp://www.google.com
*************************
AdwCleaner[R1].txt - [721 octets] - [22/01/2013 10:34:35]
AdwCleaner[S1].txt - [19777 octets] - [22/01/2013 10:10:56]
AdwCleaner[S2].txt - [778 octets] - [22/01/2013 10:39:27]
AdwCleaner[S3].txt - [837 octets] - [22/01/2013 17:33:58]
AdwCleaner[S4].txt - [896 octets] - [22/01/2013 21:00:58]
AdwCleaner[S5].txt - [15947 octets] - [26/01/2013 21:37:56]
########## EOF - C:\AdwCleaner[S5].txt - [16008 octets] ##########
otl
OTL logfile created on: 2013-01-26 21:46:22 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = G:\Programy
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 1,14 Gb Available Physical Memory | 57,09% Memory free
3,85 Gb Paging File | 3,11 Gb Available in Paging File | 80,88% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 117,19 Gb Total Space | 84,59 Gb Free Space | 72,18% Space Free | Partition Type: NTFS
Drive D: | 255,41 Gb Total Space | 228,65 Gb Free Space | 89,52% Space Free | Partition Type: NTFS
Drive G: | 931,51 Gb Total Space | 19,14 Gb Free Space | 2,05% Space Free | Partition Type: NTFS
Computer Name: BARTOSZ | User Name: MCD2 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013-01-23 01:01:43 | 000,170,912 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe
PRC - [2013-01-22 09:35:41 | 000,602,112 | ---- | M] (OldTimer Tools) -- G:\Programy\OTL.exe
PRC - [2013-01-16 21:09:18 | 000,917,400 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012-12-28 16:14:36 | 000,101,376 | ---- | M] (Freemake) -- C:\Documents and Settings\All Users\Dane aplikacji\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
PRC - [2012-12-05 02:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\ccsvchst.exe
PRC - [2012-12-05 02:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton AntiVirus\Engine\20.2.1.22\ccsvchst.exe
PRC - [2012-06-26 12:10:30 | 001,516,632 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
PRC - [2012-06-11 10:33:26 | 000,724,376 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2012-06-11 10:33:14 | 000,174,488 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2012-06-11 10:33:06 | 000,126,872 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2011-12-09 18:22:26 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Winamp\winampa.exe
PRC - [2008-04-24 12:40:56 | 002,562,048 | ---- | M] (Aladdin Knowledge Systems Ltd.) -- C:\WINDOWS\system32\hasplms.exe
PRC - [2008-04-15 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004-08-25 06:35:38 | 000,192,512 | ---- | M] (A4Tech Co., Ltd.) -- C:\Program Files\A4Tech\Mouse\Amoumain.exe
PRC - [2003-02-18 04:51:00 | 000,691,748 | ---- | M] (C. Ghisler & Co.) -- C:\totalcmd\TOTALCMD.EXE
========== Modules (No Company Name) ==========
MOD - [2013-01-16 21:09:33 | 003,022,232 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2012-07-13 02:54:11 | 001,859,584 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Web.Services\1126dc2c152098ec23d4554405217184\System.Web.Services.ni.dll
MOD - [2012-07-13 02:54:07 | 000,221,696 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\2516a49d10f4418f72e1c25f691815a8\System.ServiceProcess.ni.dll
MOD - [2012-07-13 02:54:02 | 017,996,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\5be1370b1331393f73af710d0d71b02d\System.ServiceModel.ni.dll
MOD - [2012-07-13 02:53:41 | 001,218,560 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Management\1409dc3832b37f850569c69a795f834b\System.Management.ni.dll
MOD - [2012-07-13 02:52:30 | 000,148,480 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuratio#\909306caa69b55ffdce3ae5a7f6baa20\System.Configuration.Install.ni.dll
MOD - [2012-07-13 02:52:05 | 001,020,928 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\a40c42510e312339018486b1d7076e0a\System.Runtime.DurableInstancing.ni.dll
MOD - [2012-07-13 02:52:04 | 000,142,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\9115e9f656b00fc4e46da91537ef1358\SMDiagnostics.ni.dll
MOD - [2012-07-13 02:52:03 | 002,637,312 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\9bfda0add366eea12ea0402e60d01e84\System.Runtime.Serialization.ni.dll
MOD - [2012-07-13 01:21:46 | 001,616,384 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Microsoft.CSharp\9c3ba92c4fce8efd41b59a0243415408\Microsoft.CSharp.ni.dll
MOD - [2012-07-13 01:21:44 | 007,052,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\14ba6251d6ec84c9579ed3d3e10b30c1\System.Core.ni.dll
MOD - [2012-07-13 01:21:41 | 005,618,176 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\5ee8bf77e7b3e25cdbff6e1c299574fe\System.Xml.ni.dll
MOD - [2012-07-13 01:21:38 | 000,980,480 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\0c8e950df17a0abec10888e8ad966cbe\System.Configuration.ni.dll
MOD - [2012-07-13 01:21:36 | 009,090,560 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\6f399163bb35597da7141ccdb7f39d16\System.ni.dll
MOD - [2012-07-13 01:21:27 | 014,412,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\3953b1d8b9b57e4957bff8f58145384e\mscorlib.ni.dll
MOD - [2012-06-26 12:11:10 | 000,345,688 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtXml4.dll
MOD - [2012-06-26 12:11:08 | 000,282,200 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtSvg4.dll
MOD - [2012-06-26 12:11:02 | 008,197,208 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtGUI4.dll
MOD - [2012-06-26 12:11:00 | 002,302,040 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtCore4.dll
MOD - [2012-06-26 12:10:58 | 000,202,328 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\imageformats\qjpeg4.dll
MOD - [2012-06-26 12:10:58 | 000,027,736 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\imageformats\qsvg4.dll
MOD - [2012-05-30 15:51:08 | 000,699,280 | R--- | M] () -- C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\wincfi39.dll
MOD - [2011-06-06 12:55:36 | 000,300,544 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL
MOD - [2010-07-16 17:34:34 | 000,268,800 | ---- | M] () -- C:\WINDOWS\system32\KSXPPI32.dll
MOD - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2004-03-29 21:59:50 | 000,028,672 | ---- | M] () -- C:\Program Files\A4Tech\Mouse\Setuphk.dll
MOD - [2001-10-28 15:42:30 | 000,116,224 | ---- | M] () -- C:\WINDOWS\system32\pdfcmnnt.dll
========== Services (SafeList) ==========
SRV - [2013-01-23 11:35:23 | 000,251,400 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013-01-23 01:01:43 | 000,170,912 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2013-01-19 09:24:26 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012-12-28 16:14:36 | 000,101,376 | ---- | M] (Freemake) [Auto | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe -- (Freemake Improver)
SRV - [2012-12-05 02:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\ccSvcHst.exe -- (NCO)
SRV - [2012-12-05 02:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton AntiVirus\Engine\20.2.1.22\ccSvcHst.exe -- (NAV)
SRV - [2012-06-11 10:33:26 | 000,724,376 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011-02-11 22:23:34 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [Disabled | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd)
SRV - [2011-01-17 09:21:32 | 001,045,256 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010-01-26 08:27:13 | 000,085,096 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2008-04-24 12:40:56 | 002,562,048 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Auto | Running] -- C:\WINDOWS\system32\hasplms.exe -- (hasplms)
SRV - [2006-08-11 22:51:42 | 000,902,760 | ---- | M] (Autodesk, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskNetSrv.exe -- (Autodesk Network Licensing Service)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2013-01-16 14:11:47 | 001,603,824 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\VirusDefs\20130125.023\NAVEX15.SYS -- (NAVEX15)
DRV - [2013-01-16 14:11:47 | 000,093,296 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\VirusDefs\20130125.023\NAVENG.SYS -- (NAVENG)
DRV - [2013-01-16 03:51:12 | 000,997,464 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\BASHDefs\20130116.013\BHDrvx86.sys -- (BHDrvx86)
DRV - [2013-01-07 20:03:26 | 000,142,496 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2013-01-06 01:00:00 | 000,106,656 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2013-01-04 16:28:04 | 000,373,728 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\IPSDefs\20130124.001\IDSXpx86.sys -- (IDSxpx86)
DRV - [2012-10-24 22:23:25 | 000,376,480 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2012-10-09 02:00:02 | 000,586,400 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\srtsp.sys -- (SRTSP)
DRV - [2012-10-04 02:40:35 | 000,927,904 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\symefa.sys -- (SymEFA)
DRV - [2012-10-04 02:40:20 | 000,368,288 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\symds.sys -- (SymDS)
DRV - [2012-09-07 03:05:14 | 000,394,656 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\symtdi.sys -- (SYMTDI)
DRV - [2012-09-07 02:48:08 | 000,175,264 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\ironx86.sys -- (SymIRON)
DRV - [2012-09-06 18:40:52 | 000,032,888 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\srtspx.sys -- (SRTSPX)
DRV - [2012-08-20 20:49:49 | 000,134,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NST\7DD02010.021\ccsetx86.sys -- (ccSet_NST)
DRV - [2012-08-20 20:49:49 | 000,134,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\ccsetx86.sys -- (ccSet_NAV)
DRV - [2012-06-11 10:33:46 | 000,019,072 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2012-01-09 16:28:20 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2012-01-09 16:28:20 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2012-01-09 16:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2012-01-09 16:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011-09-13 13:46:08 | 001,211,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ksaud.sys -- (ksaud)
DRV - [2011-02-11 22:23:34 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf)
DRV - [2010-08-24 18:31:18 | 000,028,624 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV - [2010-08-24 18:31:02 | 000,037,328 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2010-08-24 18:30:52 | 000,038,864 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2010-08-24 18:30:18 | 000,010,448 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
DRV - [2010-07-22 17:45:18 | 002,016,640 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ksaudfl.sys -- (ksaudfl)
DRV - [2010-03-19 16:15:48 | 000,046,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1e51x86.sys -- (L1e)
DRV - [2008-10-02 12:01:46 | 004,878,336 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2008-04-15 13:00:00 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2008-03-18 15:09:16 | 000,350,720 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\aksfridge.sys -- (aksfridge)
DRV - [2008-02-11 15:55:04 | 000,586,240 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hardlock.sys -- (hardlock)
DRV - [2007-12-17 10:14:06 | 000,012,400 | R--- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO)
DRV - [2007-07-23 14:12:44 | 000,046,336 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\akshhl.sys -- (akshhl)
DRV - [2007-07-05 14:16:56 | 000,238,976 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\akshasp.sys -- (akshasp)
DRV - [2005-07-20 18:08:28 | 000,100,096 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\aksusb.sys -- (aksusb)
DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page =
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: ""
FF - prefs.js..browser.search.defaultenginename: "SweetIM Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Web Search"
FF - prefs.js..browser.search.selectedEngine: "SweetIM Search"
FF - prefs.js..browser.search.useDBForOrder: ""
FF - prefs.js..browser.startup.homepage: "http://www.wp.pl/"
FF - prefs.js..extensions.enabledAddons: %7B20a82645-c095-46ed-80e3-08825760534b%7D:0.0.0
FF - prefs.js..extensions.enabledAddons: mp4downloader%40jeff.net:1.3.2.2
FF - prefs.js..extensions.enabledAddons: fmdownloader%40gmail.com:1.0.0
FF - prefs.js..extensions.enabledAddons: ytfmdownloader%40gmail.com:1.0.0
FF - prefs.js..extensions.enabledAddons: %7BBBDA0591-3099-440a-AA10-41764D9DB4DB%7D:11.1.1.5%20-%202
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.1
FF - prefs.js..keyword.URL: "http://search.sweetim.com/search.asp?barid={959B7A14-126E-4431-8E71-B105BF15912E}&src=2&crg=3.09010003&q="
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: ""
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Web Search"
FF - prefs.js..browser.startup.homepage: "http://www.google.pl/"
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: ""
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.11.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.11.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fmdownloader@gmail.com: C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ [2013-01-24 16:43:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\IPSFFPlgn\ [2013-01-07 21:14:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F04D2D30-776C-4d02-8627-8E4385ECA58D}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.2.0.18\coFFPlgn\ [2013-01-26 21:40:09 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ytfmdownloader@gmail.com: C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ [2013-01-24 16:43:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013-01-23 01:13:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013-01-24 14:17:28 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 2.0.0.16\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012-08-22 08:02:29 | 000,000,000 | ---D | M]
[2009-04-23 14:58:54 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Extensions
[2013-01-26 21:26:35 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\extensions
[2013-01-26 21:26:35 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\extensions\extensions
[2013-01-26 21:26:37 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions
[2012-07-31 12:59:18 | 000,221,380 | ---- | M] () (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\gophoto@gophoto.it.xpi
[2012-12-11 23:28:52 | 000,049,176 | ---- | M] () (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\mp4downloader@jeff.net.xpi
[2013-01-24 15:53:00 | 000,190,000 | ---- | M] () (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi
[2013-01-24 15:53:37 | 000,004,003 | ---- | M] () -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\searchplugins\sweetim.xml
[2013-01-24 15:53:16 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2013-01-19 09:24:14 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2013-01-19 09:24:15 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2013-01-24 15:53:16 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
[2013-01-24 15:53:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\staged
[2013-01-07 21:14:35 | 000,000,000 | ---D | M] (Norton Vulnerability Protection) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\IPSFFPLGN
[2013-01-24 16:43:26 | 000,000,000 | ---D | M] (Freemake Video Downloader Plugin) -- C:\PROGRAM FILES\FREEMAKE\FREEMAKE VIDEO DOWNLOADER\BROWSERPLUGIN\FIREFOX\FMDOWNLOADER@GMAIL.COM
[2013-01-24 16:43:26 | 000,000,000 | ---D | M] (Freemake Youtube Download Button) -- C:\PROGRAM FILES\FREEMAKE\FREEMAKE VIDEO DOWNLOADER\BROWSERPLUGIN\FIREFOX\YTFMDOWNLOADER@GMAIL.COM
[2010-02-03 07:20:10 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2013-01-16 21:10:14 | 000,262,552 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012-10-29 13:06:24 | 000,172,032 | ---- | M] (LiveVDO.tv) -- C:\Program Files\mozilla firefox\plugins\npfflivevdoplg.dll
[2013-01-17 01:46:35 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2013-01-17 01:46:35 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2013-01-17 01:46:35 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2013-01-17 01:46:35 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2013-01-17 01:46:35 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2013-01-17 01:46:35 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml
========== Chrome ==========
CHR - homepage: Dostępne tylko dla zarejestrowanych użytkowników
CHR - homepage: Dostępne tylko dla zarejestrowanych użytkowników{959B7A14-126E-4431-8E71-B105BF15912E}
CHR - Extension: No name found = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2_0\
CHR - Extension: No name found = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.14_0\
CHR - Extension: No name found = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: No name found = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\6.1.3_0\
O1 HOSTS File: ([2008-04-15 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\20.2.1.22\ips\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Norton Identity Protection) - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\coieplg.dll (Symantec Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
O3 - HKLM\..\Toolbar: (Norton Identity Safe Toolbar) - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\coieplg.dll (Symantec Corporation)
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [Creative KSRun Persistence Module] C:\WINDOWS\System32\KSRun.dll (Creative Technology Ltd.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [WheelMouse] C:\Program Files\A4Tech\Mouse\Amoumain.exe (A4Tech Co., Ltd.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKCU..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O16 - DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} Dostępne tylko dla zarejestrowanych użytkowników (Java Plug-in 1.6.0_35)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} Dostępne tylko dla zarejestrowanych użytkowników (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{91985C9D-8CA7-458B-A775-528653D86DCC}: DhcpNameServer = 192.168.1.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-03-08 09:17:28 | 000,000,000 | ---D | M] - C:\Autodesk_Robot_Structural_Analysis_Professional_2009 -- [ NTFS ]
O32 - AutoRun File - [2009-04-23 18:23:42 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{0f79d329-2b47-11df-94f2-00248c097fd9}\Shell\AutoRun\command - "" = G:\qkm.exe
O33 - MountPoints2\{0f79d329-2b47-11df-94f2-00248c097fd9}\Shell\open\Command - "" = G:\qkm.exe
O33 - MountPoints2\{163b9cd8-35b8-11e0-9609-00248c097fd9}\Shell\AutoRun\command - "" = F:\System\autorun.exe
O33 - MountPoints2\{163b9cd8-35b8-11e0-9609-00248c097fd9}\Shell\open\command - "" = F:\System\autorun.exe
O33 - MountPoints2\{4ac25c9c-7829-11de-9456-00248c097fd9}\Shell - "" = AutoRun
O33 - MountPoints2\{4ac25c9c-7829-11de-9456-00248c097fd9}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{4ac25c9d-7829-11de-9456-00248c097fd9}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Recycled\ctfmon.exe
O33 - MountPoints2\{4ac25c9d-7829-11de-9456-00248c097fd9}\Shell\Open(&0)\command - "" = I:\Recycled\ctfmon.exe
O33 - MountPoints2\{c75cae4d-9dfe-11de-947d-00248c097fd9}\Shell\AutoRun\command - "" = F:\k1d.exe
O33 - MountPoints2\{c75cae4d-9dfe-11de-947d-00248c097fd9}\Shell\open\Command - "" = F:\k1d.exe
O33 - MountPoints2\{c9b4b936-623a-11df-9530-00248c097fd9}\Shell\AutoRun\command - "" = F:\EmDesk.exe
O33 - MountPoints2\{c9b4b936-623a-11df-9530-00248c097fd9}\Shell\EmDesk\command - "" = F:\EmDesk.exe
O33 - MountPoints2\{d88d9256-6ec1-11de-944b-00248c097fd9}\Shell\AutoRun\command - "" = m9ma.exe
O33 - MountPoints2\{d88d9256-6ec1-11de-944b-00248c097fd9}\Shell\explore\Command - "" = m9ma.exe
O33 - MountPoints2\{d88d9256-6ec1-11de-944b-00248c097fd9}\Shell\open\Command - "" = m9ma.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2013-01-24 16:51:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Dane aplikacji\FreemakeVideoDownloader
[2013-01-24 16:44:15 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
[2013-01-24 16:43:22 | 000,000,000 | ---D | C] -- C:\Program Files\Freemake
[2013-01-24 16:08:25 | 000,000,000 | ---D | C] -- C:\Program Files\ConvertHelper
[2013-01-24 16:04:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\dwhelper
[2013-01-24 15:52:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\SweetPacks
[2013-01-24 15:52:40 | 000,000,000 | ---D | C] -- C:\Program Files\SweetPacks
[2013-01-23 15:11:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Sun
[2013-01-23 01:03:50 | 000,261,024 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2013-01-23 01:01:53 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2013-01-23 01:01:53 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2013-01-23 01:01:53 | 000,094,112 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll
[2013-01-21 12:40:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\DownTango
[2013-01-21 12:40:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\SimplyTech
[2013-01-21 12:40:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\DownTango
[2013-01-21 12:39:58 | 000,000,000 | ---D | C] -- C:\Program Files\Red Sky
[2013-01-19 09:24:12 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2013-01-09 10:06:19 | 016,369,160 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerInstaller.exe
[2013-01-08 19:28:54 | 000,000,000 | R--D | C] -- C:\Documents and Settings\MCD2\Pulpit\SharedDocs na Komputer taty (Tata)
[2013-01-08 08:40:51 | 000,134,304 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NST\7DD02010.021\ccsetx86.sys
[2013-01-08 08:40:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NST\7DD02010.021
[2013-01-07 21:12:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NST
[2013-01-07 21:12:08 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Identity Safe
[2013-01-07 21:12:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Norton Identity Safe
[2013-01-07 21:12:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Norton AntiVirus
[2012-12-31 04:34:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN
========== Files - Modified Within 30 Days ==========
[2013-01-26 21:41:30 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2013-01-26 21:39:37 | 000,182,038 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2013-01-26 21:39:29 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013-01-26 21:37:47 | 000,136,704 | ---- | M] () -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013-01-26 02:18:13 | 000,000,572 | ---- | M] () -- C:\Documents and Settings\MCD2\Moje dokumenty\spider.sav
[2013-01-24 16:43:31 | 000,000,991 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Freemake Video Downloader.lnk
[2013-01-24 15:52:41 | 000,000,883 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Video Converter.lnk
[2013-01-24 14:50:30 | 000,000,905 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Ashampoo ClipFinder HD.lnk
[2013-01-24 14:17:28 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader X.lnk
[2013-01-24 12:04:16 | 000,001,891 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Norton AntiVirus.LNK
[2013-01-24 12:03:25 | 000,606,830 | ---- | M] () -- C:\WINDOWS\System32\drivers\NAV\1402010.016\Cat.DB
[2013-01-24 12:03:10 | 000,014,818 | ---- | M] () -- C:\WINDOWS\System32\drivers\NAV\1402010.016\VT20130115.021
[2013-01-23 11:35:23 | 000,697,864 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2013-01-23 11:35:23 | 000,074,248 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2013-01-23 01:13:33 | 000,000,730 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2013-01-23 01:01:43 | 000,094,112 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll
[2013-01-23 01:01:42 | 000,859,552 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\npdeployJava1.dll
[2013-01-23 01:01:42 | 000,780,192 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\deployJava1.dll
[2013-01-23 01:01:42 | 000,261,024 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2013-01-23 01:01:42 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2013-01-23 01:01:42 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2013-01-23 01:01:42 | 000,143,872 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl
[2013-01-22 20:54:37 | 003,529,904 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013-01-22 20:10:35 | 000,609,598 | ---- | M] () -- C:\WINDOWS\System32\drivers\Cat.DB
[2013-01-22 09:40:32 | 000,532,906 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2013-01-22 09:40:32 | 000,473,072 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2013-01-22 09:40:32 | 000,094,156 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2013-01-22 09:40:32 | 000,076,166 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2013-01-21 12:40:31 | 000,000,162 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Search.url
[2013-01-21 12:40:26 | 000,000,862 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\Mozilla Firefox.lnk
[2013-01-17 13:21:24 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2013-01-15 16:15:11 | 000,002,515 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\Microsoft Word.lnk
[2013-01-15 12:39:51 | 000,000,728 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\NapiProjekt.lnk
[2013-01-10 08:53:33 | 000,000,172 | ---- | M] () -- C:\WINDOWS\System32\drivers\NAV\1402010.016\isolate.ini
[2013-01-09 10:06:19 | 016,369,160 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerInstaller.exe
[2013-01-07 20:03:26 | 000,142,496 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS
[2013-01-07 20:03:26 | 000,007,446 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.CAT
[2013-01-07 20:03:26 | 000,000,806 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.INF
[2013-01-07 19:58:18 | 000,000,885 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\Norton Download Manager.lnk
[2013-01-07 19:58:18 | 000,000,800 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\Pliki instalacyjne Norton.lnk
[2013-01-03 07:18:52 | 000,015,360 | ---- | M] () -- C:\WINDOWS\Launcher.exe
[2012-12-31 04:34:29 | 000,000,725 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\VLC media player.lnk
========== Files Created - No Company Name ==========
[2013-01-25 01:54:44 | 000,293,758 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-18-0.dat
[2013-01-25 01:54:31 | 000,293,758 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1123561945-1220945662-1801674531-1003-0.dat
[2013-01-24 16:43:29 | 000,000,991 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Freemake Video Downloader.lnk
[2013-01-24 15:52:41 | 000,000,883 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Video Converter.lnk
[2013-01-24 14:50:30 | 000,000,905 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Ashampoo ClipFinder HD.lnk
[2013-01-24 14:17:28 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader X.lnk
[2013-01-24 14:17:28 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader X.lnk
[2013-01-22 20:10:21 | 000,609,598 | ---- | C] () -- C:\WINDOWS\System32\drivers\Cat.DB
[2013-01-21 12:40:31 | 000,000,162 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Search.url
[2013-01-21 12:40:30 | 000,015,360 | ---- | C] () -- C:\WINDOWS\Launcher.exe
[2013-01-08 08:40:48 | 000,000,827 | ---- | C] () -- C:\WINDOWS\System32\drivers\NST\7DD02010.021\ccsetx86.inf
[2013-01-08 08:40:47 | 000,007,611 | ---- | C] () -- C:\WINDOWS\System32\drivers\NST\7DD02010.021\ccsetx86.cat
[2013-01-08 08:40:47 | 000,000,172 | ---- | C] () -- C:\WINDOWS\System32\drivers\NST\7DD02010.021\isolate.ini
[2013-01-07 19:58:14 | 000,000,885 | ---- | C] () -- C:\Documents and Settings\MCD2\Pulpit\Norton Download Manager.lnk
[2012-12-31 04:34:29 | 000,000,725 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\VLC media player.lnk
[2012-09-23 12:27:11 | 067,963,216 | ---- | C] () -- C:\Program Files\Nokia_PC_Suite_ALL.exe
[2012-09-09 12:14:23 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012-09-09 09:10:57 | 000,078,022 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\palzinnmjtfhxnx
[2012-07-21 09:58:07 | 000,644,608 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2012-07-21 09:58:07 | 000,258,048 | ---- | C] () -- C:\WINDOWS\System32\libFLAC.dll
[2012-07-20 11:32:09 | 000,000,034 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2012-07-11 16:35:46 | 000,293,758 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat
[2012-07-05 15:22:15 | 000,039,732 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2012-07-04 11:18:34 | 000,002,772 | ---- | C] () -- C:\Documents and Settings\MCD2\.recently-used.xbel
[2012-06-20 22:48:05 | 000,207,360 | ---- | C] () -- C:\WINDOWS\System32\evrprop.dll
[2012-06-20 22:47:26 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\mkzlib.dll
[2012-06-20 22:47:25 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\mkunicode.dll
[2012-05-17 22:52:27 | 000,793,296 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2012-04-18 18:20:41 | 000,044,795 | ---- | C] () -- C:\WINDOWS\System32\kschimp.ini
[2012-03-21 11:05:19 | 000,146,136 | ---- | C] () -- C:\WINDOWS\hpoins27.dat
[2012-03-21 11:05:19 | 000,000,932 | ---- | C] () -- C:\WINDOWS\hpomdl27.dat
[2012-03-03 15:08:19 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2011-09-08 10:22:14 | 000,034,637 | ---- | C] () -- C:\WINDOWS\System32\ksaud.ini
[2011-08-09 13:09:54 | 000,000,025 | ---- | C] () -- C:\Documents and Settings\MCD2\.gtk-bookmarks
[2011-04-11 07:12:31 | 000,000,101 | ---- | C] () -- C:\WINDOWS\rcpn.ini
[2011-04-11 07:12:31 | 000,000,051 | ---- | C] () -- C:\WINDOWS\launcher.ini
[2011-02-11 22:23:34 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2010-01-18 07:52:13 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Plug-Ins
[2009-07-09 06:31:55 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdw.DAT
[2009-07-09 06:31:55 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\MCD2\Dane aplikacji\LaserPrinter
[2009-05-06 13:41:17 | 000,136,704 | ---- | C] () -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ==========
[2009-05-04 08:57:54 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2011-12-19 09:53:27 | 001,510,400 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 11:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-15 13:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
< End of report >
Otl zrobił tylko 1, nie wiem gdzie poszukać log z usuwania...nie doczytałem i go zamknąłem
-- 26 sty 2013, 22:59 --
Search.certified-toolbar.com pokazuje się po otwarciu winampa
# AdwCleaner v2.108 - Log utworzony 26/01/2013 o 21:37:56
# Aktualizacja 24/01/2013 przez Xplode
# System operacyjny : Microsoft Windows XP Dodatek Service Pack 3 (32 bits)
# Użytkownik : MCD2 - BARTOSZ
# Tryb uruchomienia : Normalny
# Ścieżka : G:\04 Pobieranie\adwcleaner_www.instalki{usun}.pl.exe
# Opcja [Usuń]
***** [Usługi] *****
***** [Pliki / Foldery] *****
Folder Usunięto : C:\Documents and Settings\All Users\Dane aplikacji\SweetIM
Folder Usunięto : C:\Documents and Settings\All Users\Menu Start\Programy\DealPly
Folder Usunięto : C:\Documents and Settings\MCD2\Dane aplikacji\OpenCandy
Folder Usunięto : C:\Program Files\DealPly
Folder Usunięto : C:\Program Files\SweetIM
Folder Usunięto : C:\Program Files\sweetpacks bundle uninstaller
Folder Usunięto : C:\WINDOWS\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
***** [Rejestr] *****
Klucz Usunięto : HKCU\Software\DealPly
Klucz Usunięto : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
Klucz Usunięto : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Klucz Usunięto : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Klucz Usunięto : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Klucz Usunięto : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Klucz Usunięto : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Klucz Usunięto : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Klucz Usunięto : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\sim-packages
Klucz Usunięto : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Klucz Usunięto : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Klucz Usunięto : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Klucz Usunięto : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\Software\DealPly
Klucz Usunięto : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DealPly
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B
Klucz Usunięto : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Wartość Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
***** [Przeglądarki Internetowe] *****
-\\ Internet Explorer v8.0.6001.18702
Podmieniono : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.09010003&st=12&barid={959B7A14-126E-4431-8E71-B105BF15912E} --> hxxp://www.google.com
Podmieniono : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.09010003&st=12&barid={959B7A14-126E-4431-8E71-B105BF15912E} --> hxxp://www.google.com
*************************
AdwCleaner[R1].txt - [721 octets] - [22/01/2013 10:34:35]
AdwCleaner[S1].txt - [19777 octets] - [22/01/2013 10:10:56]
AdwCleaner[S2].txt - [778 octets] - [22/01/2013 10:39:27]
AdwCleaner[S3].txt - [837 octets] - [22/01/2013 17:33:58]
AdwCleaner[S4].txt - [896 octets] - [22/01/2013 21:00:58]
AdwCleaner[S5].txt - [15947 octets] - [26/01/2013 21:37:56]
########## EOF - C:\AdwCleaner[S5].txt - [16008 octets] ##########
otl
OTL logfile created on: 2013-01-26 21:46:22 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = G:\Programy
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 1,14 Gb Available Physical Memory | 57,09% Memory free
3,85 Gb Paging File | 3,11 Gb Available in Paging File | 80,88% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 117,19 Gb Total Space | 84,59 Gb Free Space | 72,18% Space Free | Partition Type: NTFS
Drive D: | 255,41 Gb Total Space | 228,65 Gb Free Space | 89,52% Space Free | Partition Type: NTFS
Drive G: | 931,51 Gb Total Space | 19,14 Gb Free Space | 2,05% Space Free | Partition Type: NTFS
Computer Name: BARTOSZ | User Name: MCD2 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013-01-23 01:01:43 | 000,170,912 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe
PRC - [2013-01-22 09:35:41 | 000,602,112 | ---- | M] (OldTimer Tools) -- G:\Programy\OTL.exe
PRC - [2013-01-16 21:09:18 | 000,917,400 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012-12-28 16:14:36 | 000,101,376 | ---- | M] (Freemake) -- C:\Documents and Settings\All Users\Dane aplikacji\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
PRC - [2012-12-05 02:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\ccsvchst.exe
PRC - [2012-12-05 02:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton AntiVirus\Engine\20.2.1.22\ccsvchst.exe
PRC - [2012-06-26 12:10:30 | 001,516,632 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
PRC - [2012-06-11 10:33:26 | 000,724,376 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2012-06-11 10:33:14 | 000,174,488 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2012-06-11 10:33:06 | 000,126,872 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2011-12-09 18:22:26 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Winamp\winampa.exe
PRC - [2008-04-24 12:40:56 | 002,562,048 | ---- | M] (Aladdin Knowledge Systems Ltd.) -- C:\WINDOWS\system32\hasplms.exe
PRC - [2008-04-15 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2004-08-25 06:35:38 | 000,192,512 | ---- | M] (A4Tech Co., Ltd.) -- C:\Program Files\A4Tech\Mouse\Amoumain.exe
PRC - [2003-02-18 04:51:00 | 000,691,748 | ---- | M] (C. Ghisler & Co.) -- C:\totalcmd\TOTALCMD.EXE
========== Modules (No Company Name) ==========
MOD - [2013-01-16 21:09:33 | 003,022,232 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2012-07-13 02:54:11 | 001,859,584 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Web.Services\1126dc2c152098ec23d4554405217184\System.Web.Services.ni.dll
MOD - [2012-07-13 02:54:07 | 000,221,696 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\2516a49d10f4418f72e1c25f691815a8\System.ServiceProcess.ni.dll
MOD - [2012-07-13 02:54:02 | 017,996,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\5be1370b1331393f73af710d0d71b02d\System.ServiceModel.ni.dll
MOD - [2012-07-13 02:53:41 | 001,218,560 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Management\1409dc3832b37f850569c69a795f834b\System.Management.ni.dll
MOD - [2012-07-13 02:52:30 | 000,148,480 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuratio#\909306caa69b55ffdce3ae5a7f6baa20\System.Configuration.Install.ni.dll
MOD - [2012-07-13 02:52:05 | 001,020,928 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\a40c42510e312339018486b1d7076e0a\System.Runtime.DurableInstancing.ni.dll
MOD - [2012-07-13 02:52:04 | 000,142,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\9115e9f656b00fc4e46da91537ef1358\SMDiagnostics.ni.dll
MOD - [2012-07-13 02:52:03 | 002,637,312 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\9bfda0add366eea12ea0402e60d01e84\System.Runtime.Serialization.ni.dll
MOD - [2012-07-13 01:21:46 | 001,616,384 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Microsoft.CSharp\9c3ba92c4fce8efd41b59a0243415408\Microsoft.CSharp.ni.dll
MOD - [2012-07-13 01:21:44 | 007,052,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\14ba6251d6ec84c9579ed3d3e10b30c1\System.Core.ni.dll
MOD - [2012-07-13 01:21:41 | 005,618,176 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\5ee8bf77e7b3e25cdbff6e1c299574fe\System.Xml.ni.dll
MOD - [2012-07-13 01:21:38 | 000,980,480 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\0c8e950df17a0abec10888e8ad966cbe\System.Configuration.ni.dll
MOD - [2012-07-13 01:21:36 | 009,090,560 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\6f399163bb35597da7141ccdb7f39d16\System.ni.dll
MOD - [2012-07-13 01:21:27 | 014,412,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\3953b1d8b9b57e4957bff8f58145384e\mscorlib.ni.dll
MOD - [2012-06-26 12:11:10 | 000,345,688 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtXml4.dll
MOD - [2012-06-26 12:11:08 | 000,282,200 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtSvg4.dll
MOD - [2012-06-26 12:11:02 | 008,197,208 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtGUI4.dll
MOD - [2012-06-26 12:11:00 | 002,302,040 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\QtCore4.dll
MOD - [2012-06-26 12:10:58 | 000,202,328 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\imageformats\qjpeg4.dll
MOD - [2012-06-26 12:10:58 | 000,027,736 | ---- | M] () -- C:\Program Files\Nokia\Nokia PC Suite 7\imageformats\qsvg4.dll
MOD - [2012-05-30 15:51:08 | 000,699,280 | R--- | M] () -- C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\wincfi39.dll
MOD - [2011-06-06 12:55:36 | 000,300,544 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL
MOD - [2010-07-16 17:34:34 | 000,268,800 | ---- | M] () -- C:\WINDOWS\system32\KSXPPI32.dll
MOD - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2004-03-29 21:59:50 | 000,028,672 | ---- | M] () -- C:\Program Files\A4Tech\Mouse\Setuphk.dll
MOD - [2001-10-28 15:42:30 | 000,116,224 | ---- | M] () -- C:\WINDOWS\system32\pdfcmnnt.dll
========== Services (SafeList) ==========
SRV - [2013-01-23 11:35:23 | 000,251,400 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013-01-23 01:01:43 | 000,170,912 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2013-01-19 09:24:26 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012-12-28 16:14:36 | 000,101,376 | ---- | M] (Freemake) [Auto | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe -- (Freemake Improver)
SRV - [2012-12-05 02:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\ccSvcHst.exe -- (NCO)
SRV - [2012-12-05 02:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton AntiVirus\Engine\20.2.1.22\ccSvcHst.exe -- (NAV)
SRV - [2012-06-11 10:33:26 | 000,724,376 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011-02-11 22:23:34 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [Disabled | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd)
SRV - [2011-01-17 09:21:32 | 001,045,256 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010-01-26 08:27:13 | 000,085,096 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2008-04-24 12:40:56 | 002,562,048 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Auto | Running] -- C:\WINDOWS\system32\hasplms.exe -- (hasplms)
SRV - [2006-08-11 22:51:42 | 000,902,760 | ---- | M] (Autodesk, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskNetSrv.exe -- (Autodesk Network Licensing Service)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2013-01-16 14:11:47 | 001,603,824 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\VirusDefs\20130125.023\NAVEX15.SYS -- (NAVEX15)
DRV - [2013-01-16 14:11:47 | 000,093,296 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\VirusDefs\20130125.023\NAVENG.SYS -- (NAVENG)
DRV - [2013-01-16 03:51:12 | 000,997,464 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\BASHDefs\20130116.013\BHDrvx86.sys -- (BHDrvx86)
DRV - [2013-01-07 20:03:26 | 000,142,496 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2013-01-06 01:00:00 | 000,106,656 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2013-01-04 16:28:04 | 000,373,728 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\IPSDefs\20130124.001\IDSXpx86.sys -- (IDSxpx86)
DRV - [2012-10-24 22:23:25 | 000,376,480 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2012-10-09 02:00:02 | 000,586,400 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\srtsp.sys -- (SRTSP)
DRV - [2012-10-04 02:40:35 | 000,927,904 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\symefa.sys -- (SymEFA)
DRV - [2012-10-04 02:40:20 | 000,368,288 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\symds.sys -- (SymDS)
DRV - [2012-09-07 03:05:14 | 000,394,656 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\symtdi.sys -- (SYMTDI)
DRV - [2012-09-07 02:48:08 | 000,175,264 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\ironx86.sys -- (SymIRON)
DRV - [2012-09-06 18:40:52 | 000,032,888 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\srtspx.sys -- (SRTSPX)
DRV - [2012-08-20 20:49:49 | 000,134,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NST\7DD02010.021\ccsetx86.sys -- (ccSet_NST)
DRV - [2012-08-20 20:49:49 | 000,134,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NAV\1402010.016\ccsetx86.sys -- (ccSet_NAV)
DRV - [2012-06-11 10:33:46 | 000,019,072 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2012-01-09 16:28:20 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2012-01-09 16:28:20 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2012-01-09 16:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2012-01-09 16:28:20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011-09-13 13:46:08 | 001,211,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ksaud.sys -- (ksaud)
DRV - [2011-02-11 22:23:34 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf)
DRV - [2010-08-24 18:31:18 | 000,028,624 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV - [2010-08-24 18:31:02 | 000,037,328 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2010-08-24 18:30:52 | 000,038,864 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2010-08-24 18:30:18 | 000,010,448 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
DRV - [2010-07-22 17:45:18 | 002,016,640 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ksaudfl.sys -- (ksaudfl)
DRV - [2010-03-19 16:15:48 | 000,046,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1e51x86.sys -- (L1e)
DRV - [2008-10-02 12:01:46 | 004,878,336 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2008-04-15 13:00:00 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2008-03-18 15:09:16 | 000,350,720 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\aksfridge.sys -- (aksfridge)
DRV - [2008-02-11 15:55:04 | 000,586,240 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hardlock.sys -- (hardlock)
DRV - [2007-12-17 10:14:06 | 000,012,400 | R--- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO)
DRV - [2007-07-23 14:12:44 | 000,046,336 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\akshhl.sys -- (akshhl)
DRV - [2007-07-05 14:16:56 | 000,238,976 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\akshasp.sys -- (akshasp)
DRV - [2005-07-20 18:08:28 | 000,100,096 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\aksusb.sys -- (aksusb)
DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page =
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultengine: ""
FF - prefs.js..browser.search.defaultenginename: "SweetIM Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Web Search"
FF - prefs.js..browser.search.selectedEngine: "SweetIM Search"
FF - prefs.js..browser.search.useDBForOrder: ""
FF - prefs.js..browser.startup.homepage: "http://www.wp.pl/"
FF - prefs.js..extensions.enabledAddons: %7B20a82645-c095-46ed-80e3-08825760534b%7D:0.0.0
FF - prefs.js..extensions.enabledAddons: mp4downloader%40jeff.net:1.3.2.2
FF - prefs.js..extensions.enabledAddons: fmdownloader%40gmail.com:1.0.0
FF - prefs.js..extensions.enabledAddons: ytfmdownloader%40gmail.com:1.0.0
FF - prefs.js..extensions.enabledAddons: %7BBBDA0591-3099-440a-AA10-41764D9DB4DB%7D:11.1.1.5%20-%202
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.1
FF - prefs.js..keyword.URL: "http://search.sweetim.com/search.asp?barid={959B7A14-126E-4431-8E71-B105BF15912E}&src=2&crg=3.09010003&q="
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: ""
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Web Search"
FF - prefs.js..browser.startup.homepage: "http://www.google.pl/"
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: ""
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.11.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.11.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fmdownloader@gmail.com: C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ [2013-01-24 16:43:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\IPSFFPlgn\ [2013-01-07 21:14:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F04D2D30-776C-4d02-8627-8E4385ECA58D}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.2.0.18\coFFPlgn\ [2013-01-26 21:40:09 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ytfmdownloader@gmail.com: C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ [2013-01-24 16:43:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013-01-23 01:13:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013-01-24 14:17:28 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 2.0.0.16\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012-08-22 08:02:29 | 000,000,000 | ---D | M]
[2009-04-23 14:58:54 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Extensions
[2013-01-26 21:26:35 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\extensions
[2013-01-26 21:26:35 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\extensions\extensions
[2013-01-26 21:26:37 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions
[2012-07-31 12:59:18 | 000,221,380 | ---- | M] () (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\gophoto@gophoto.it.xpi
[2012-12-11 23:28:52 | 000,049,176 | ---- | M] () (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\mp4downloader@jeff.net.xpi
[2013-01-24 15:53:00 | 000,190,000 | ---- | M] () (No name found) -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi
[2013-01-24 15:53:37 | 000,004,003 | ---- | M] () -- C:\Documents and Settings\MCD2\Dane aplikacji\Mozilla\Firefox\Profiles\gaxqy3an.default\searchplugins\sweetim.xml
[2013-01-24 15:53:16 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2013-01-19 09:24:14 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2013-01-19 09:24:15 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2013-01-24 15:53:16 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
[2013-01-24 15:53:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\staged
[2013-01-07 21:14:35 | 000,000,000 | ---D | M] (Norton Vulnerability Protection) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\IPSFFPLGN
[2013-01-24 16:43:26 | 000,000,000 | ---D | M] (Freemake Video Downloader Plugin) -- C:\PROGRAM FILES\FREEMAKE\FREEMAKE VIDEO DOWNLOADER\BROWSERPLUGIN\FIREFOX\FMDOWNLOADER@GMAIL.COM
[2013-01-24 16:43:26 | 000,000,000 | ---D | M] (Freemake Youtube Download Button) -- C:\PROGRAM FILES\FREEMAKE\FREEMAKE VIDEO DOWNLOADER\BROWSERPLUGIN\FIREFOX\YTFMDOWNLOADER@GMAIL.COM
[2010-02-03 07:20:10 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2013-01-16 21:10:14 | 000,262,552 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012-10-29 13:06:24 | 000,172,032 | ---- | M] (LiveVDO.tv) -- C:\Program Files\mozilla firefox\plugins\npfflivevdoplg.dll
[2013-01-17 01:46:35 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2013-01-17 01:46:35 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2013-01-17 01:46:35 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2013-01-17 01:46:35 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2013-01-17 01:46:35 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2013-01-17 01:46:35 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml
========== Chrome ==========
CHR - homepage: Dostępne tylko dla zarejestrowanych użytkowników
CHR - homepage: Dostępne tylko dla zarejestrowanych użytkowników{959B7A14-126E-4431-8E71-B105BF15912E}
CHR - Extension: No name found = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2_0\
CHR - Extension: No name found = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.14_0\
CHR - Extension: No name found = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: No name found = C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\6.1.3_0\
O1 HOSTS File: ([2008-04-15 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\20.2.1.22\ips\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Norton Identity Protection) - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\coieplg.dll (Symantec Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
O3 - HKLM\..\Toolbar: (Norton Identity Safe Toolbar) - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files\Norton Identity Safe\Engine\2013.2.1.33\coieplg.dll (Symantec Corporation)
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [Creative KSRun Persistence Module] C:\WINDOWS\System32\KSRun.dll (Creative Technology Ltd.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [WheelMouse] C:\Program Files\A4Tech\Mouse\Amoumain.exe (A4Tech Co., Ltd.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKCU..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O16 - DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} Dostępne tylko dla zarejestrowanych użytkowników (Java Plug-in 1.6.0_35)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} Dostępne tylko dla zarejestrowanych użytkowników (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{91985C9D-8CA7-458B-A775-528653D86DCC}: DhcpNameServer = 192.168.1.254
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-03-08 09:17:28 | 000,000,000 | ---D | M] - C:\Autodesk_Robot_Structural_Analysis_Professional_2009 -- [ NTFS ]
O32 - AutoRun File - [2009-04-23 18:23:42 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{0f79d329-2b47-11df-94f2-00248c097fd9}\Shell\AutoRun\command - "" = G:\qkm.exe
O33 - MountPoints2\{0f79d329-2b47-11df-94f2-00248c097fd9}\Shell\open\Command - "" = G:\qkm.exe
O33 - MountPoints2\{163b9cd8-35b8-11e0-9609-00248c097fd9}\Shell\AutoRun\command - "" = F:\System\autorun.exe
O33 - MountPoints2\{163b9cd8-35b8-11e0-9609-00248c097fd9}\Shell\open\command - "" = F:\System\autorun.exe
O33 - MountPoints2\{4ac25c9c-7829-11de-9456-00248c097fd9}\Shell - "" = AutoRun
O33 - MountPoints2\{4ac25c9c-7829-11de-9456-00248c097fd9}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{4ac25c9d-7829-11de-9456-00248c097fd9}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Recycled\ctfmon.exe
O33 - MountPoints2\{4ac25c9d-7829-11de-9456-00248c097fd9}\Shell\Open(&0)\command - "" = I:\Recycled\ctfmon.exe
O33 - MountPoints2\{c75cae4d-9dfe-11de-947d-00248c097fd9}\Shell\AutoRun\command - "" = F:\k1d.exe
O33 - MountPoints2\{c75cae4d-9dfe-11de-947d-00248c097fd9}\Shell\open\Command - "" = F:\k1d.exe
O33 - MountPoints2\{c9b4b936-623a-11df-9530-00248c097fd9}\Shell\AutoRun\command - "" = F:\EmDesk.exe
O33 - MountPoints2\{c9b4b936-623a-11df-9530-00248c097fd9}\Shell\EmDesk\command - "" = F:\EmDesk.exe
O33 - MountPoints2\{d88d9256-6ec1-11de-944b-00248c097fd9}\Shell\AutoRun\command - "" = m9ma.exe
O33 - MountPoints2\{d88d9256-6ec1-11de-944b-00248c097fd9}\Shell\explore\Command - "" = m9ma.exe
O33 - MountPoints2\{d88d9256-6ec1-11de-944b-00248c097fd9}\Shell\open\Command - "" = m9ma.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2013-01-24 16:51:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Dane aplikacji\FreemakeVideoDownloader
[2013-01-24 16:44:15 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
[2013-01-24 16:43:22 | 000,000,000 | ---D | C] -- C:\Program Files\Freemake
[2013-01-24 16:08:25 | 000,000,000 | ---D | C] -- C:\Program Files\ConvertHelper
[2013-01-24 16:04:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\dwhelper
[2013-01-24 15:52:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\SweetPacks
[2013-01-24 15:52:40 | 000,000,000 | ---D | C] -- C:\Program Files\SweetPacks
[2013-01-23 15:11:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\Sun
[2013-01-23 01:03:50 | 000,261,024 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2013-01-23 01:01:53 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2013-01-23 01:01:53 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2013-01-23 01:01:53 | 000,094,112 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll
[2013-01-21 12:40:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\DownTango
[2013-01-21 12:40:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\SimplyTech
[2013-01-21 12:40:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\DownTango
[2013-01-21 12:39:58 | 000,000,000 | ---D | C] -- C:\Program Files\Red Sky
[2013-01-19 09:24:12 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2013-01-09 10:06:19 | 016,369,160 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerInstaller.exe
[2013-01-08 19:28:54 | 000,000,000 | R--D | C] -- C:\Documents and Settings\MCD2\Pulpit\SharedDocs na Komputer taty (Tata)
[2013-01-08 08:40:51 | 000,134,304 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NST\7DD02010.021\ccsetx86.sys
[2013-01-08 08:40:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NST\7DD02010.021
[2013-01-07 21:12:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NST
[2013-01-07 21:12:08 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Identity Safe
[2013-01-07 21:12:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Norton Identity Safe
[2013-01-07 21:12:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Norton AntiVirus
[2012-12-31 04:34:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN
========== Files - Modified Within 30 Days ==========
[2013-01-26 21:41:30 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2013-01-26 21:39:37 | 000,182,038 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2013-01-26 21:39:29 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013-01-26 21:37:47 | 000,136,704 | ---- | M] () -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013-01-26 02:18:13 | 000,000,572 | ---- | M] () -- C:\Documents and Settings\MCD2\Moje dokumenty\spider.sav
[2013-01-24 16:43:31 | 000,000,991 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Freemake Video Downloader.lnk
[2013-01-24 15:52:41 | 000,000,883 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Video Converter.lnk
[2013-01-24 14:50:30 | 000,000,905 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Ashampoo ClipFinder HD.lnk
[2013-01-24 14:17:28 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader X.lnk
[2013-01-24 12:04:16 | 000,001,891 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Norton AntiVirus.LNK
[2013-01-24 12:03:25 | 000,606,830 | ---- | M] () -- C:\WINDOWS\System32\drivers\NAV\1402010.016\Cat.DB
[2013-01-24 12:03:10 | 000,014,818 | ---- | M] () -- C:\WINDOWS\System32\drivers\NAV\1402010.016\VT20130115.021
[2013-01-23 11:35:23 | 000,697,864 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2013-01-23 11:35:23 | 000,074,248 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2013-01-23 01:13:33 | 000,000,730 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2013-01-23 01:01:43 | 000,094,112 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll
[2013-01-23 01:01:42 | 000,859,552 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\npdeployJava1.dll
[2013-01-23 01:01:42 | 000,780,192 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\deployJava1.dll
[2013-01-23 01:01:42 | 000,261,024 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2013-01-23 01:01:42 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2013-01-23 01:01:42 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2013-01-23 01:01:42 | 000,143,872 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl
[2013-01-22 20:54:37 | 003,529,904 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2013-01-22 20:10:35 | 000,609,598 | ---- | M] () -- C:\WINDOWS\System32\drivers\Cat.DB
[2013-01-22 09:40:32 | 000,532,906 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2013-01-22 09:40:32 | 000,473,072 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2013-01-22 09:40:32 | 000,094,156 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2013-01-22 09:40:32 | 000,076,166 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2013-01-21 12:40:31 | 000,000,162 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Search.url
[2013-01-21 12:40:26 | 000,000,862 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\Mozilla Firefox.lnk
[2013-01-17 13:21:24 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2013-01-15 16:15:11 | 000,002,515 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\Microsoft Word.lnk
[2013-01-15 12:39:51 | 000,000,728 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\NapiProjekt.lnk
[2013-01-10 08:53:33 | 000,000,172 | ---- | M] () -- C:\WINDOWS\System32\drivers\NAV\1402010.016\isolate.ini
[2013-01-09 10:06:19 | 016,369,160 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerInstaller.exe
[2013-01-07 20:03:26 | 000,142,496 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS
[2013-01-07 20:03:26 | 000,007,446 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.CAT
[2013-01-07 20:03:26 | 000,000,806 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.INF
[2013-01-07 19:58:18 | 000,000,885 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\Norton Download Manager.lnk
[2013-01-07 19:58:18 | 000,000,800 | ---- | M] () -- C:\Documents and Settings\MCD2\Pulpit\Pliki instalacyjne Norton.lnk
[2013-01-03 07:18:52 | 000,015,360 | ---- | M] () -- C:\WINDOWS\Launcher.exe
[2012-12-31 04:34:29 | 000,000,725 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\VLC media player.lnk
========== Files Created - No Company Name ==========
[2013-01-25 01:54:44 | 000,293,758 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-18-0.dat
[2013-01-25 01:54:31 | 000,293,758 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1123561945-1220945662-1801674531-1003-0.dat
[2013-01-24 16:43:29 | 000,000,991 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Freemake Video Downloader.lnk
[2013-01-24 15:52:41 | 000,000,883 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Video Converter.lnk
[2013-01-24 14:50:30 | 000,000,905 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Ashampoo ClipFinder HD.lnk
[2013-01-24 14:17:28 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader X.lnk
[2013-01-24 14:17:28 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader X.lnk
[2013-01-22 20:10:21 | 000,609,598 | ---- | C] () -- C:\WINDOWS\System32\drivers\Cat.DB
[2013-01-21 12:40:31 | 000,000,162 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Search.url
[2013-01-21 12:40:30 | 000,015,360 | ---- | C] () -- C:\WINDOWS\Launcher.exe
[2013-01-08 08:40:48 | 000,000,827 | ---- | C] () -- C:\WINDOWS\System32\drivers\NST\7DD02010.021\ccsetx86.inf
[2013-01-08 08:40:47 | 000,007,611 | ---- | C] () -- C:\WINDOWS\System32\drivers\NST\7DD02010.021\ccsetx86.cat
[2013-01-08 08:40:47 | 000,000,172 | ---- | C] () -- C:\WINDOWS\System32\drivers\NST\7DD02010.021\isolate.ini
[2013-01-07 19:58:14 | 000,000,885 | ---- | C] () -- C:\Documents and Settings\MCD2\Pulpit\Norton Download Manager.lnk
[2012-12-31 04:34:29 | 000,000,725 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\VLC media player.lnk
[2012-09-23 12:27:11 | 067,963,216 | ---- | C] () -- C:\Program Files\Nokia_PC_Suite_ALL.exe
[2012-09-09 12:14:23 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012-09-09 09:10:57 | 000,078,022 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\palzinnmjtfhxnx
[2012-07-21 09:58:07 | 000,644,608 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2012-07-21 09:58:07 | 000,258,048 | ---- | C] () -- C:\WINDOWS\System32\libFLAC.dll
[2012-07-20 11:32:09 | 000,000,034 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2012-07-11 16:35:46 | 000,293,758 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat
[2012-07-05 15:22:15 | 000,039,732 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2012-07-04 11:18:34 | 000,002,772 | ---- | C] () -- C:\Documents and Settings\MCD2\.recently-used.xbel
[2012-06-20 22:48:05 | 000,207,360 | ---- | C] () -- C:\WINDOWS\System32\evrprop.dll
[2012-06-20 22:47:26 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\mkzlib.dll
[2012-06-20 22:47:25 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\mkunicode.dll
[2012-05-17 22:52:27 | 000,793,296 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2012-04-18 18:20:41 | 000,044,795 | ---- | C] () -- C:\WINDOWS\System32\kschimp.ini
[2012-03-21 11:05:19 | 000,146,136 | ---- | C] () -- C:\WINDOWS\hpoins27.dat
[2012-03-21 11:05:19 | 000,000,932 | ---- | C] () -- C:\WINDOWS\hpomdl27.dat
[2012-03-03 15:08:19 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2011-09-08 10:22:14 | 000,034,637 | ---- | C] () -- C:\WINDOWS\System32\ksaud.ini
[2011-08-09 13:09:54 | 000,000,025 | ---- | C] () -- C:\Documents and Settings\MCD2\.gtk-bookmarks
[2011-04-11 07:12:31 | 000,000,101 | ---- | C] () -- C:\WINDOWS\rcpn.ini
[2011-04-11 07:12:31 | 000,000,051 | ---- | C] () -- C:\WINDOWS\launcher.ini
[2011-02-11 22:23:34 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll
[2010-01-18 07:52:13 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Plug-Ins
[2009-07-09 06:31:55 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdw.DAT
[2009-07-09 06:31:55 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\MCD2\Dane aplikacji\LaserPrinter
[2009-05-06 13:41:17 | 000,136,704 | ---- | C] () -- C:\Documents and Settings\MCD2\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ==========
[2009-05-04 08:57:54 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2011-12-19 09:53:27 | 001,510,400 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 11:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-15 13:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
< End of report >
Otl zrobił tylko 1, nie wiem gdzie poszukać log z usuwania...nie doczytałem i go zamknąłem
-- 26 sty 2013, 22:59 --
Search.certified-toolbar.com pokazuje się po otwarciu winampa
- kominekl
- Posty: 5855
- Rejestracja: 27 lis 2011, 14:25
- Kontaktowanie:
Jak usunąć Search.certified-toolbar.com
Otl zrobił tylko 1, nie wiem gdzie poszukać log z usuwania...nie doczytałem i go zamknąłem
Jeśli Go zamknąłeś to nie zapisał się.
Instrukcja.
Nie wykonałeś wszystkiego, bo nadal nie widzę logu z USBFix.
ADWCleaner.
Dobrze poszło, jednak coś stało się potem. Powtórz działanie w nim.
Podawanie Logów.
Logi podajemy na hostingi tekstowe typu -> Dostępne tylko dla zarejestrowanych użytkowników - pamiętaj o tym.
Kiedy komputery staną się twoim jedynym życiem, jedynym totemem odstraszającym klątwę nudy, wtedy prędzej czy później granica między tymi dwoma wymiarami zniknie i postacie z Błękitnej Pustki zaczną pojawiać się w Realu. Czasem są twoimi przyjaciółmi. A czasem nie.
-
- Posty: 39
- Rejestracja: 22 sty 2013, 08:15
Jak usunąć Search.certified-toolbar.com
jak już wkleiłem przypomniałem sobie
Dostępne tylko dla zarejestrowanych użytkowników
ok powtarzam działanie
-- 28 sty 2013, 13:11 --
USBFix zawiesza się na 97%
3 krotna próba
Dostępne tylko dla zarejestrowanych użytkowników
ok powtarzam działanie
-- 28 sty 2013, 13:11 --
USBFix zawiesza się na 97%
3 krotna próba
- kominekl
- Posty: 5855
- Rejestracja: 27 lis 2011, 14:25
- Kontaktowanie:
Jak usunąć Search.certified-toolbar.com
jak już wkleiłem przypomniałem sobie
Link źle podany - odprowadza do strony głównej.
USBFix zawiesza się na 97%
3 krotna próba
Spróbuj w trybie awaryjnym.
Kiedy komputery staną się twoim jedynym życiem, jedynym totemem odstraszającym klątwę nudy, wtedy prędzej czy później granica między tymi dwoma wymiarami zniknie i postacie z Błękitnej Pustki zaczną pojawiać się w Realu. Czasem są twoimi przyjaciółmi. A czasem nie.
-
- Reklama
Kto jest online
Użytkownicy przeglądający to forum: Obecnie na forum nie ma żadnego zarejestrowanego użytkownika i 4 gości