Problem z PodoWeb

Wszystko co dotyczy bezpieczeństwa systemów oraz walki z malware, w szczególności analiza logów
OpanowanY

Użytkownik
Posty: 2
Rejestracja: 30 gru 2014, 09:08

Problem z PodoWeb

Post30 gru 2014, 09:25

Witam, od jakiegoś czasu uciążliwie nawiedzają mnie reklamy wyświetlane przez "PodoWeb". Korzystam z mozilli i już ona sama oferuje mi wystarczający zakres reklam.. Z tego co wyczytałem na forum muszę wkleić jakieś logi i tu moje pytanie, czy wystarczy wkleić tylko logi z FRST ?

Logi FRST:

FRST.txt

Kod: Zaznacz cały

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-12-2014
Ran by Daniel (administrator) on SUPER_KOMPUTER on 30-12-2014 09:14:33
Running from C:\Users\Daniel\Downloads
Loaded Profile: Daniel (Available profiles: Daniel)
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) OS Language: Polski (Polska)
Internet Explorer Version 9 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
() C:\Program Files\PodoWeb\updatePodoWeb.exe
() C:\Program Files\PodoWeb\bin\utilPodoWeb.exe
() C:\Program Files\PodoWeb\bin\PodoWeb.PurBrowse.exe
() C:\Program Files\PodoWeb\bin\PodoWeb.BrowserAdapter.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12021464 2014-05-09] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\Run: [SoftonicAssistant] => C:\Users\Daniel\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe [1829832 2014-11-11] ()
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\Run: [DAEMON Tools Lite] => C:\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\Run: [EA Core] => C:\Program Files\Electronic Arts\EADM\Core.exe [3325952 2009-03-28] (Electronic Arts)
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\MountPoints2: {f8d09940-d792-11dd-8e0b-001fd01514a3} - J:\Autorun.exe
AppInit_DLLs:  =>  File Not Found
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=ds&ts=1416392503&from=smt&uid=ST3320613AS_9SZ2K311XXXX9SZ2K311&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=ds&ts=1416392503&from=smt&uid=ST3320613AS_9SZ2K311XXXX9SZ2K311&q={searchTerms}
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.mystartsearch.com/?type=hp&ts=1416392503&from=smt&uid=ST3320613AS_9SZ2K311XXXX9SZ2K311
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1416392503&from=smt&uid=ST3320613AS_9SZ2K311XXXX9SZ2K311
SearchScopes: HKU\S-1-5-21-1786797264-2859431365-2598080207-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1786797264-2859431365-2598080207-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1786797264-2859431365-2598080207-1001 -> {1823B5D1-6589-403B-9C19-E1495A3B3253} URL = http://www.mystartsearch.com/web/?type=ds&ts=1416392503&from=smt&uid=ST3320613AS_9SZ2K311XXXX9SZ2K311&q={searchTerms}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} ->  No File
BHO: PodoWeb 1.0.0.6 -> {980b8a8f-ea0b-4c24-a2e9-70635e2502e9} -> C:\Program Files\PodoWeb\PodoWebBHO.dll (PodoWeb)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 62.179.1.62 62.179.1.63

FireFox:
========
FF ProfilePath: C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\orc12gvd.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\orc12gvd.default\user.js
FF Extension: Twojanuta.pl - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\orc12gvd.default\Extensions\zacz3k@gmail.com.xpi [2014-12-27]

Chrome:
=======
CHR StartupUrls: Default -> "https://www.google.pl/"
CHR Profile: C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentacje Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-19]
CHR Extension: (Dokumenty Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-19]
CHR Extension: (Dysk Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-19]
CHR Extension: (YouTube) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-19]
CHR Extension: (Szukaj w Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-19]
CHR Extension: (Arkusze Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-19]
CHR Extension: (Google Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-19]
CHR Extension: (PodoWeb) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgifjmpambcggfjjgbenfbkhifjalamp [2014-11-19]
CHR Extension: (Gmail) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-19]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - No Path

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACTION_SVC; D:\Mirillis\Action!\action_svc.exe [16064 2014-10-25] ()
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [17536800 2014-07-25] (NVIDIA Corporation)
R2 Update PodoWeb; C:\Program Files\PodoWeb\updatePodoWeb.exe [524528 2014-12-30] ()
R2 Util PodoWeb; C:\Program Files\PodoWeb\bin\utilPodoWeb.exe [524528 2014-12-30] ()

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-11-19] (Disc Soft Ltd)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19232 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [34080 2014-03-31] (NVIDIA Corporation)
R1 {37853ded-5f26-4b06-88d4-a4f00ea1c972}Gw; C:\Windows\System32\drivers\{37853ded-5f26-4b06-88d4-a4f00ea1c972}Gw.sys [43144 2014-11-29] (StdLib)
R1 {458639bd-68ee-4273-bbab-5c062f563d3b}Gw; C:\Windows\System32\drivers\{458639bd-68ee-4273-bbab-5c062f563d3b}Gw.sys [43200 2014-12-24] (StdLib)
R1 {ab3b6fe8-8ffe-4d0c-aa1e-8030c4760982}Gw; C:\Windows\System32\drivers\{ab3b6fe8-8ffe-4d0c-aa1e-8030c4760982}Gw.sys [43144 2014-11-27] (StdLib)
R1 {adb41315-fba7-4b86-be27-b2401a20c8d2}Gw; C:\Windows\System32\drivers\{adb41315-fba7-4b86-be27-b2401a20c8d2}Gw.sys [43144 2014-11-18] (StdLib)
R1 {b0ff63b8-ba6f-45bb-b13c-8474c0d8fc94}Gw; C:\Windows\System32\drivers\{b0ff63b8-ba6f-45bb-b13c-8474c0d8fc94}Gw.sys [43144 2014-11-22] (StdLib)
R1 {b2aa7bb9-5668-402a-97c7-7dabffe0f82d}Gw; C:\Windows\System32\drivers\{b2aa7bb9-5668-402a-97c7-7dabffe0f82d}Gw.sys [43144 2014-12-01] (StdLib)
R1 {b9f73d40-1a45-43a0-9a38-3e55d05b3bd4}Gw; C:\Windows\System32\drivers\{b9f73d40-1a45-43a0-9a38-3e55d05b3bd4}Gw.sys [43144 2014-11-28] (StdLib)
R1 {f5598bc7-a9c4-4bd0-8ca5-3b6319e94b10}Gw; C:\Windows\System32\drivers\{f5598bc7-a9c4-4bd0-8ca5-3b6319e94b10}Gw.sys [43200 2014-12-22] (StdLib)

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-30 09:14 - 2014-12-30 09:14 - 00012435 _____ () C:\Users\Daniel\Downloads\FRST.txt
2014-12-30 09:13 - 2014-12-30 09:14 - 00000000 ____D () C:\FRST
2014-12-30 09:10 - 2014-12-30 09:10 - 01114624 _____ (Farbar) C:\Users\Daniel\Downloads\FRST.exe
2014-12-27 15:17 - 2014-12-27 15:17 - 00029037 _____ () C:\Users\Daniel\Downloads\Sims3.iso+keygen+crack.14(1).torrent
2014-12-27 15:16 - 2014-12-27 15:16 - 00029037 _____ () C:\Users\Daniel\Downloads\Sims3.iso+keygen+crack.14.torrent
2014-12-27 11:28 - 2014-12-27 11:28 - 00002535 _____ () C:\Users\Daniel\Desktop\Camtasia Studio 8.lnk
2014-12-27 11:26 - 2014-12-27 11:27 - 00000000 ____D () C:\Users\Daniel\Desktop\Nowy folder
2014-12-27 11:10 - 2014-12-27 11:17 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Audacity
2014-12-27 11:10 - 2014-12-27 11:10 - 00000561 _____ () C:\Users\Public\Desktop\Audacity.lnk
2014-12-27 11:10 - 2014-12-27 11:10 - 00000561 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2014-12-27 10:49 - 2014-12-27 10:49 - 22892794 _____ (Audacity Team ) C:\Users\Daniel\Downloads\audacity-win-2.0.6.exe
2014-12-26 16:58 - 2014-12-26 16:58 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-12-26 16:57 - 2014-12-26 16:57 - 00001121 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Download Manager.lnk
2014-12-26 16:57 - 2014-12-26 16:57 - 00001109 _____ () C:\Users\Public\Desktop\EA Download Manager.lnk
2014-12-26 16:57 - 2014-12-26 16:57 - 00000000 ____D () C:\Program Files\Microsoft WSE
2014-12-26 16:51 - 2014-12-26 16:57 - 00000000 ____D () C:\Program Files\Electronic Arts
2014-12-25 10:33 - 2014-12-24 18:53 - 00043200 _____ (StdLib) C:\Windows\system32\Drivers\{458639bd-68ee-4273-bbab-5c062f563d3b}Gw.sys
2014-12-24 12:55 - 2014-12-24 12:55 - 00000000 ____D () C:\Users\Daniel\Documents\Universe Sandbox ²
2014-12-22 21:36 - 2014-12-22 01:32 - 00043200 _____ (StdLib) C:\Windows\system32\Drivers\{f5598bc7-a9c4-4bd0-8ca5-3b6319e94b10}Gw.sys
2014-12-22 21:35 - 2014-12-22 21:36 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\FLV and Media Player
2014-12-22 21:34 - 2014-12-22 21:34 - 00001303 _____ () C:\Users\Public\Desktop\FLV and Media Player.lnk
2014-12-22 21:34 - 2014-12-22 21:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applian Technologies
2014-12-22 21:34 - 2014-12-22 21:34 - 00000000 ____D () C:\Program Files\Applian Technologies
2014-12-22 21:23 - 2014-12-22 21:23 - 01958688 _____ (Applian Technologies Inc.) C:\Users\Daniel\Downloads\FLVPlayerSetupStubMDV.exe
2014-12-19 16:55 - 2014-12-27 15:31 - 00000000 ____D () C:\Users\Daniel\Desktop\w
2014-12-18 14:44 - 2014-12-26 16:58 - 00000000 ____D () C:\Users\Daniel\Documents\Electronic Arts
2014-12-18 14:14 - 2014-12-18 14:46 - 00000000 ____D () C:\Users\Daniel\Downloads\The Sims 3 - Razor1911 Final MAXSPEED
2014-12-16 16:37 - 2014-12-16 16:37 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\WebTest
2014-12-16 16:36 - 2014-12-29 22:58 - 00000000 ____D () C:\Users\Daniel\AppData\Local\SoftonicAssistant
2014-12-16 16:27 - 1998-10-07 12:54 - 00327168 _____ (InstallShield Software Corporation) C:\Windows\IsUn0415.exe
2014-12-15 21:57 - 2014-12-15 21:57 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-13 18:32 - 2014-12-13 18:32 - 00002535 _____ () C:\Users\Daniel\Desktop\Camtasia Recorder 8.lnk
2014-12-13 10:09 - 2014-12-30 08:59 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-10 11:38 - 2014-12-10 12:14 - 00000000 ____D () C:\Users\Daniel\Downloads\Paktofonika - Dyskografia (320kbps)
2014-12-09 13:07 - 2014-12-09 13:07 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-12-06 14:55 - 2014-12-26 15:35 - 00000000 ____D () C:\Users\Daniel\AppData\Local\CrashDumps
2014-12-03 13:43 - 2014-12-03 13:45 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\GHISLER
2014-12-03 13:43 - 2014-12-03 13:43 - 00000587 _____ () C:\Users\Daniel\Desktop\Total Commander.lnk
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\UC.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\RAR.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\PKZIP.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\PKUNZIP.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\LHA.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\ARJ.PIF
2014-12-03 12:20 - 2014-12-14 13:31 - 00000000 ____D () C:\Users\Daniel\Downloads\The.Suffering - RELOADED
2014-12-03 12:19 - 2014-12-03 12:19 - 00000000 ____D () C:\Users\Daniel\Downloads\The.Suffering. Prison.is.Hell..[PC.ISO.ENG]
2014-12-02 09:15 - 2014-12-02 11:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-12-02 09:15 - 2014-12-02 09:15 - 00000000 ____D () C:\Users\Daniel\AppData\Local\NVIDIA
2014-12-02 09:15 - 2014-12-02 09:15 - 00000000 ____D () C:\Program Files\AGEIA Technologies
2014-12-02 09:15 - 2014-07-25 15:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge.dll
2014-12-02 09:15 - 2014-07-25 15:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 04389848 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 03063256 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 02556360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 00670552 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-12-02 09:14 - 2014-07-02 20:42 - 00377288 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 00062936 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-12-02 09:14 - 2014-07-02 18:39 - 00609240 _____ (NVIDIA Corporation) C:\Windows\system32\nvStreaming.exe
2014-12-02 09:14 - 2014-07-02 06:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin
2014-12-02 09:13 - 2014-07-02 21:54 - 00061728 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 24198088 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 16122344 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 15296456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 14498552 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 11283344 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 11222048 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 10681176 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-12-02 09:11 - 2014-07-02 21:54 - 03988952 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 02814656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 01054552 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3234052.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 00907552 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3234052.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 00907096 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 00869152 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC.dll
2014-12-02 09:11 - 2014-03-31 17:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2014-12-02 09:11 - 2014-03-31 17:42 - 00034080 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad32v.sys
2014-12-01 22:51 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-12-01 22:51 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-12-01 22:51 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-12-01 22:51 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-12-01 22:51 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-12-01 22:51 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-12-01 22:51 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-12-01 22:51 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-12-01 22:51 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-12-01 22:51 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-12-01 22:51 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-12-01 22:51 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-12-01 22:51 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-12-01 22:51 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-12-01 22:51 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-12-01 22:51 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-12-01 22:51 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2014-12-01 22:51 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2014-12-01 22:50 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-12-01 22:50 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-12-01 22:50 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-12-01 22:50 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-12-01 22:50 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-12-01 22:50 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-12-01 22:50 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-12-01 22:50 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-12-01 22:50 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-12-01 22:50 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-12-01 22:50 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-12-01 22:50 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-12-01 22:50 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-12-01 22:50 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-12-01 12:19 - 2014-12-01 01:45 - 00043144 _____ (StdLib) C:\Windows\system32\Drivers\{b2aa7bb9-5668-402a-97c7-7dabffe0f82d}Gw.sys
2014-11-30 15:12 - 2014-12-21 20:14 - 00000000 ____D () C:\Users\Daniel\Documents\Action!
2014-11-30 15:12 - 2014-11-30 15:12 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Mirillis
2014-11-30 13:33 - 2014-11-30 13:34 - 00000000 ____D () C:\Users\Daniel\Downloads\Secret Files - Tunguska PL 1 i 2
2014-11-30 12:48 - 2014-11-29 23:45 - 00043144 _____ (StdLib) C:\Windows\system32\Drivers\{37853ded-5f26-4b06-88d4-a4f00ea1c972}Gw.sys
2014-11-30 12:11 - 2014-12-27 18:43 - 00000000 ____D () C:\Users\Daniel\Documents\Camtasia Studio
2014-11-30 12:11 - 2014-11-30 12:11 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\TechSmith
2014-11-30 12:10 - 2014-11-30 12:10 - 00000000 ____D () C:\Users\Daniel\AppData\Local\TechSmith
2014-11-30 12:09 - 2014-11-30 12:09 - 00000000 ____D () C:\ProgramData\TechSmith
2014-11-30 12:09 - 2014-11-30 12:09 - 00000000 ____D () C:\ProgramData\regid.1995-08.com.techsmith
2014-11-30 12:09 - 2014-11-30 12:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2014-11-30 12:09 - 2014-11-30 12:09 - 00000000 ____D () C:\Program Files\QuickTime
2014-11-30 12:09 - 2014-11-30 12:09 - 00000000 ____D () C:\Program Files\Common Files\TechSmith Shared
2014-11-30 12:07 - 2014-11-30 12:07 - 262090240 _____ () C:\Users\Daniel\Downloads\camtasia.msi

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-30 09:09 - 2014-11-19 11:22 - 00000000 ____D () C:\Program Files\PodoWeb
2014-12-30 09:09 - 2009-07-14 03:04 - 00000505 _____ () C:\Windows\win.ini
2014-12-30 09:00 - 2014-11-19 11:13 - 00001036 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-30 08:59 - 2009-01-01 00:27 - 00199175 _____ () C:\Windows\WindowsUpdate.log
2014-12-29 23:03 - 2009-07-14 05:34 - 00021088 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-29 23:03 - 2009-07-14 05:34 - 00021088 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-29 23:02 - 2011-04-12 06:08 - 00761702 _____ () C:\Windows\system32\perfh015.dat
2014-12-29 23:02 - 2011-04-12 06:08 - 00161998 _____ () C:\Windows\system32\perfc015.dat
2014-12-29 23:02 - 2010-11-20 22:01 - 01711056 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-29 22:58 - 2014-11-19 11:13 - 00001032 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-29 22:56 - 2014-11-19 12:17 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-12-29 22:56 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-29 22:56 - 2009-07-14 05:39 - 00035144 _____ () C:\Windows\setupact.log
2014-12-29 21:08 - 2014-11-19 18:57 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Skype
2014-12-29 20:23 - 2014-11-21 15:04 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\.minecraft
2014-12-29 20:23 - 2014-11-21 14:58 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\.minecraftzyczu
2014-12-27 19:56 - 2014-11-19 12:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\uTorrent
2014-12-26 16:57 - 2009-07-14 05:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-12-26 16:51 - 2014-11-19 14:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-12-25 18:08 - 2010-11-20 22:48 - 00025836 _____ () C:\Windows\PFRO.log
2014-12-25 10:39 - 2014-11-24 13:57 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\DMCache
2014-12-23 10:02 - 2014-11-21 21:07 - 00000000 ____D () C:\ProgramData\AVG2015
2014-12-23 10:02 - 2014-11-21 21:07 - 00000000 ____D () C:\AVG
2014-12-23 10:02 - 2014-11-21 21:05 - 00000000 ____D () C:\ProgramData\MFAData
2014-12-22 21:23 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Resources
2014-12-22 13:41 - 2014-11-24 13:57 - 00000000 ____D () C:\Users\Daniel\Downloads\Video
2014-12-22 09:31 - 2014-11-27 17:52 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-12-22 09:13 - 2014-11-25 16:15 - 00001137 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-22 09:13 - 2014-11-19 11:05 - 00001425 _____ () C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-21 20:13 - 2014-11-19 11:04 - 00000000 ____D () C:\Users\Daniel
2014-12-18 14:46 - 2014-11-24 13:57 - 00000000 ____D () C:\Users\Daniel\Downloads\Compressed
2014-12-16 20:37 - 2014-11-19 12:53 - 00000000 ____D () C:\ProgramData\01e58235-010d-43b1-8340-277d43a75321
2014-12-16 16:36 - 2009-07-14 03:37 - 00000000 ___RD () C:\Users\Public
2014-12-16 10:21 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-12-15 21:36 - 2014-11-21 21:12 - 00000000 ____D () C:\Program Files\AVG Web TuneUp
2014-12-13 10:16 - 2014-11-21 22:47 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-13 10:16 - 2014-11-21 22:47 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-13 10:09 - 2014-11-21 22:47 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Adobe
2014-12-11 12:23 - 2014-11-25 16:15 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-12-09 13:51 - 2014-11-25 16:15 - 00000000 ____D () C:\Program Files\Mozilla Firefox.bak
2014-12-02 13:45 - 2014-11-19 18:58 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\NVIDIA
2014-12-02 09:21 - 2014-11-19 11:33 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-12-02 09:15 - 2014-11-19 11:41 - 00000000 ____D () C:\Users\Daniel\AppData\Local\NVIDIA Corporation
2014-12-02 09:15 - 2014-11-19 11:27 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-12-02 09:14 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Help
2014-12-01 20:27 - 2014-11-21 21:03 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Opera Software
2014-12-01 20:27 - 2014-11-21 21:03 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Opera Software
2014-12-01 20:27 - 2014-11-21 21:03 - 00000000 ____D () C:\Program Files\Opera
2014-12-01 20:26 - 2014-11-29 15:04 - 00000000 ____D () C:\MoorHunt

Some content of TEMP:
====================
C:\Users\Daniel\AppData\Local\Temp\drm_dyndata_7380014.dll
C:\Users\Daniel\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Daniel\AppData\Local\Temp\EAD4306.exe
C:\Users\Daniel\AppData\Local\Temp\EAD59D2.exe
C:\Users\Daniel\AppData\Local\Temp\EAD68C0.exe
C:\Users\Daniel\AppData\Local\Temp\EADCBC6.exe
C:\Users\Daniel\AppData\Local\Temp\FreeScreenVideoRecorder.exe
C:\Users\Daniel\AppData\Local\Temp\nvStInst.exe
C:\Users\Daniel\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Daniel\AppData\Local\Temp\SimBundD.exe
C:\Users\Daniel\AppData\Local\Temp\SimBundD[1].exe
C:\Users\Daniel\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Daniel\AppData\Local\Temp\SoftonicAssistant_v0-1-6.exe
C:\Users\Daniel\AppData\Local\Temp\UNINSTALL.EXE


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-25 18:38

==================== End Of Log ============================


Addition.txt

Kod: Zaznacz cały

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 28-12-2014
Ran by Daniel at 2014-12-30 09:15:20
Running from C:\Users\Daniel\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKLM\...\uTorrent) (Version: 2.2.1 - )
Action! (HKLM\...\Mirillis Action!) (Version: 1.20.2 - Mirillis)
Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 16.0.0.240 - Adobe Systems Incorporated)
Adobe Flash Player ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 9.0.124.0 - Adobe Systems Incorporated)
Aktualizacje NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
Audacity 2.0.6 (HKLM\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Camtasia Studio 8 (HKLM\...\{474DFABF-E55B-4905-ABAA-40791A6AC77F}) (Version: 8.4.4.1859 - TechSmith Corporation)
Counter-Strike (HKLM\...\Steam App 10) (Version:  - Valve)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
EA Download Manager (HKLM\...\EADM) (Version: 5.0.0.255 - Electronic Arts, Inc.)
FLV and Media Player 4.2.1.1 (HKLM\...\FLV and Media Player) (Version: 4.2.1.1 - Applian Technologies)
Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Grand Theft Auto IV (HKLM\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games)
Grand Theft Auto IV (Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Mozilla Firefox 34.0.5 (x86 pl) (HKLM\...\Mozilla Firefox 34.0.5 (x86 pl)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 33.1.1 - Mozilla)
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Oprogramowanie systemu PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA Sterownik 3D Vision 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Sterownik graficzny 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Sterownik kontrolera 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
Panel sterowania NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.22 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.105 - Skype Technologies S.A.)
Softonic Assistant (HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\SoftonicAssistant) (Version: 0.1.6 - Softonic International S.A.)
Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Sims™ 3 (HKLM\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.51a - Ghisler Software GmbH)
WinRAR 5.11 (32-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

22-12-2014 09:09:16 Usunięto: AVG PC TuneUp 2014
22-12-2014 09:22:57 Removed AVG 2015
22-12-2014 09:24:18 Removed AVG 2015
22-12-2014 09:24:56 Usunięto: AVG PC TuneUp 2014
22-12-2014 09:25:27 Usunięto: AVG PC TuneUp 2014 (pl-PL)
22-12-2014 09:31:34 Removed Visual Studio 2012 x86 Redistributables
26-12-2014 16:51:14 Zainstalowane The Sims 3
26-12-2014 17:02:11 Zainstalowane The Sims 3

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {597FDB44-FD14-441C-B6E5-D4EBD3F5CDE7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-13] (Adobe Systems Incorporated)
Task: {619A7DE8-186E-4BBE-87FE-C1E0ED9B0CD4} - System32\Tasks\{51E965D6-2DE2-4504-B3E4-0AD89D0AB1A3} => pcalua.exe -a C:\Users\Daniel\AppData\Roaming\mystartsearch\UninstallManager.exe -c  -ptid=smt
Task: {67995D85-D226-4C91-93EB-9F35CE4FF352} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-19] (Google Inc.)
Task: {9E0348EE-77D8-4001-B023-96AD782F33E3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-19] (Google Inc.)
Task: {E9D0E6BA-06D5-457F-89A5-5BA904C3C621} - System32\Tasks\{CEDA81BC-B420-4033-9839-D3AC53CDFD6D} => Firefox.exe http://ui.skype.com/ui/0/7.0.0.102/pl/abandoninstall?page=tsProgressBar

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-12-02 09:14 - 2014-07-02 20:42 - 00107992 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2014-12-09 13:07 - 2014-12-09 13:07 - 03758192 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2014-12-13 10:09 - 2014-12-13 10:09 - 16843952 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll
2014-11-19 10:26 - 2014-12-30 09:07 - 00524528 _____ () C:\Program Files\PodoWeb\updatePodoWeb.exe
2014-11-19 11:28 - 2014-12-30 09:08 - 00524528 _____ () C:\Program Files\PodoWeb\bin\utilPodoWeb.exe
2014-11-19 11:30 - 2014-12-29 15:53 - 00296176 _____ () C:\Program Files\PodoWeb\bin\PodoWeb.PurBrowse.exe
2014-11-19 11:30 - 2014-12-30 00:53 - 00098544 _____ () C:\Program Files\PodoWeb\bin\PodoWeb.BrowserAdapter.exe

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: DAEMON Tools Lite => "C:\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: IDMan => C:\Program Files\Internet Download Manager\IDMan.exe /onboot
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: vProt => "C:\Program Files\AVG Web TuneUp\vprot.exe"

========================= Accounts: ==========================

Administrator (S-1-5-21-1786797264-2859431365-2598080207-500 - Administrator - Disabled)
Daniel (S-1-5-21-1786797264-2859431365-2598080207-1001 - Administrator - Enabled) => C:\Users\Daniel
Gość (S-1-5-21-1786797264-2859431365-2598080207-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1786797264-2859431365-2598080207-1002 - Limited - Enabled)

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Karta tunelowania Teredo firmy Microsoft
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (12/29/2014 10:57:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/29/2014 10:45:21 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/27/2014 07:59:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/27/2014 10:18:02 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/26/2014 03:35:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 34.0.5.5443, sygnatura czasowa: 0x5475dd5d
Nazwa modułu powodującego błąd: mozalloc.dll, wersja: 34.0.5.5443, sygnatura czasowa: 0x5475d664
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x00001425
Identyfikator procesu powodującego błąd: 0xf80
Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0
Ścieżka aplikacji powodującej błąd: plugin-container.exe1
Ścieżka modułu powodującego błąd: plugin-container.exe2
Identyfikator raportu: plugin-container.exe3

Error: (12/27/2014 11:28:44 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: CamtasiaStudio.exe, wersja: 8.4.4.1859, sygnatura czasowa: 0x545d6760
Nazwa modułu powodującego błąd: CamtasiaStudio.exe, wersja: 8.4.4.1859, sygnatura czasowa: 0x545d6760
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0036cca5
Identyfikator procesu powodującego błąd: 0x1708
Godzina uruchomienia aplikacji powodującej błąd: 0xCamtasiaStudio.exe0
Ścieżka aplikacji powodującej błąd: CamtasiaStudio.exe1
Ścieżka modułu powodującego błąd: CamtasiaStudio.exe2
Identyfikator raportu: CamtasiaStudio.exe3

Error: (12/27/2014 11:28:42 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: CamtasiaStudio.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.AccessViolationException
Stack:
   at <Module>._wWinMainCRTStartup()

Error: (12/27/2014 11:26:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: CamtasiaStudio.exe, wersja: 8.4.4.1859, sygnatura czasowa: 0x545d6760
Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec49b60
Kod wyjątku: 0xc0000374
Przesunięcie błędu: 0x000c380b
Identyfikator procesu powodującego błąd: 0x658
Godzina uruchomienia aplikacji powodującej błąd: 0xCamtasiaStudio.exe0
Ścieżka aplikacji powodującej błąd: CamtasiaStudio.exe1
Ścieżka modułu powodującego błąd: CamtasiaStudio.exe2
Identyfikator raportu: CamtasiaStudio.exe3

Error: (01/16/2010 08:01:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/25/2014 06:09:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (12/30/2014 00:35:45 AM) (Source: Microsoft-Windows-HAL) (EventID: 12) (User: )
Description: Oprogramowanie układowe platformy spowodowało uszkodzenie pamięci podczas poprzedniego przejścia do innego trybu zasilania systemu. Sprawdź dostępność zaktualizowanego oprogramowania układowego przeznaczonego do tego systemu.

Error: (12/27/2014 08:28:45 PM) (Source: Microsoft-Windows-HAL) (EventID: 12) (User: )
Description: Oprogramowanie układowe platformy spowodowało uszkodzenie pamięci podczas poprzedniego przejścia do innego trybu zasilania systemu. Sprawdź dostępność zaktualizowanego oprogramowania układowego przeznaczonego do tego systemu.

Error: (12/27/2014 07:58:27 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 19:56:09 na ‎2014-‎12-‎27 było nieoczekiwane.

Error: (12/26/2014 01:03:31 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Steam Client Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (01/16/2010 08:31:04 PM) (Source: Microsoft-Windows-HAL) (EventID: 12) (User: )
Description: Oprogramowanie układowe platformy spowodowało uszkodzenie pamięci podczas poprzedniego przejścia do innego trybu zasilania systemu. Sprawdź dostępność zaktualizowanego oprogramowania układowego przeznaczonego do tego systemu.

Error: (01/16/2010 08:00:15 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 19:58:42 na ‎2010-‎01-‎16 było nieoczekiwane.

Error: (12/25/2014 07:01:06 PM) (Source: Microsoft-Windows-HAL) (EventID: 12) (User: )
Description: Oprogramowanie układowe platformy spowodowało uszkodzenie pamięci podczas poprzedniego przejścia do innego trybu zasilania systemu. Sprawdź dostępność zaktualizowanego oprogramowania układowego przeznaczonego do tego systemu.

Error: (12/25/2014 06:08:48 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 18:06:33 na ‎2014-‎12-‎25 było nieoczekiwane.

Error: (12/25/2014 02:15:46 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Update allgenius niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

Error: (12/25/2014 02:15:40 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Util allgenius niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.


Microsoft Office Sessions:
=========================
Error: (12/29/2014 10:57:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/29/2014 10:45:21 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/27/2014 07:59:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/27/2014 10:18:02 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/26/2014 03:35:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe34.0.5.54435475dd5dmozalloc.dll34.0.5.54435475d6648000000300001425f8001d02117e5350c4dC:\Program Files\Mozilla Firefox\plugin-container.exeC:\Program Files\Mozilla Firefox\mozalloc.dll6958d534-8d0c-11e4-9370-001fd01514a3

Error: (12/27/2014 11:28:44 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: CamtasiaStudio.exe8.4.4.1859545d6760CamtasiaStudio.exe8.4.4.1859545d6760c00000050036cca5170801d021bfd64c1b69D:\TechSmith\Camtasia Studio 8\CamtasiaStudio.exeD:\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe21d9c538-8db3-11e4-936f-001fd01514a3

Error: (12/27/2014 11:28:42 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: CamtasiaStudio.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.AccessViolationException
Stack:
   at <Module>._wWinMainCRTStartup()

Error: (12/27/2014 11:26:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: CamtasiaStudio.exe8.4.4.1859545d6760ntdll.dll6.1.7601.177254ec49b60c0000374000c380b65801d021b822b75c7dD:\TechSmith\Camtasia Studio 8\CamtasiaStudio.exeC:\Windows\SYSTEM32\ntdll.dllc1d42067-8db2-11e4-936f-001fd01514a3

Error: (01/16/2010 08:01:11 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/25/2014 06:09:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


==================== Memory info ===========================

Processor: Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Percentage of memory in use: 36%
Total physical RAM: 3326.49 MB
Available physical RAM: 2125.98 MB
Total Pagefile: 6651.27 MB
Available Pagefile: 4980.61 MB
Total Virtual: 2047.88 MB
Available Virtual: 1893.52 MB

==================== Drives ================================

Drive c: (System, programy) (Fixed) (Total:148.88 GB) (Free:42.89 GB) NTFS
Drive d: (Gierki, aplikacje) (Fixed) (Total:148.98 GB) (Free:133.71 GB) NTFS
Drive j: (Sims3) (CDROM) (Total:5.74 GB) (Free:0 GB) UDF

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 338D8F82)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=148.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=149 GB) - (Type=07 NTFS)

==================== End Of Log ============================


Shortcut.txt

Kod: Zaznacz cały

Users shortcut scan result (x86) Version: 28-12-2014
Ran by Daniel at 2014-12-30 09:16:41
Running from C:\Users\Daniel\Downloads
Boot Mode: Normal
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)



Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk -> D:\Audacity\audacity.exe (The Audacity Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Download Manager.lnk -> C:\Program Files\Electronic Arts\EADM\Core.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\WinRAR\CoNowego.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith\Camtasia Recorder 8.lnk -> C:\Windows\Installer\{474DFABF-E55B-4905-ABAA-40791A6AC77F}\CamtasiaIcons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith\Camtasia Studio 8.lnk -> C:\Windows\Installer\{474DFABF-E55B-4905-ABAA-40791A6AC77F}\CamtasiaIcons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> D:\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\GeForce Experience.lnk -> C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exe (NVIDIA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision Photo Viewer.lnk -> C:\Program Files\NVIDIA Corporation\3D Vision\nvstview.exe (NVIDIA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files\Java\jre1.8.0_25\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite\DTGadget.lnk -> C:\DAEMON Tools Lite\DT.gadget ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applian Technologies\FLV and Media Player Uninstall.lnk -> C:\Program Files\Applian Technologies\FLV and Media Player\uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\NetworkProjection.lnk -> C:\Windows\System32\NetProj.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{FF0C446B-C01B-404A-8AF4-2689EE0270E9}\PlayTasks\0\Play.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\3\Centrum Pomocy.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\EA Help\Electronic_Arts_Technical_Support.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\2\Umowa Użytkownika.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\pl_EULA.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\1\Przeczytaj.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\Przeczytaj.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\0\Play.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc.)
Shortcut: C:\Users\Daniel\Links\Desktop.lnk -> C:\Users\Daniel\Desktop ()
Shortcut: C:\Users\Daniel\Links\Downloads.lnk -> C:\Users\Daniel\Downloads ()
Shortcut: C:\Users\Daniel\Desktop\Camtasia Recorder 8.lnk -> C:\Windows\Installer\{474DFABF-E55B-4905-ABAA-40791A6AC77F}\CamtasiaIcons.exe ()
Shortcut: C:\Users\Daniel\Desktop\Camtasia Studio 8.lnk -> C:\Windows\Installer\{474DFABF-E55B-4905-ABAA-40791A6AC77F}\CamtasiaIcons.exe ()
Shortcut: C:\Users\Daniel\Desktop\LaunchGTAIV — skrót.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG)
Shortcut: C:\Users\Daniel\Desktop\Total Commander.lnk -> D:\totalcmd\TOTALCMD.EXE (Ghisler Software GmbH)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\WinRAR\CoNowego.txt ()
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\WinRAR\Rar.txt ()
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\LaunchGTAIV — skrót.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Steam.lnk -> D:\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\µTorrent.lnk -> C:\uTorrent\uTorrent.exe (BitTorrent, Inc.)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Audacity.lnk -> D:\Audacity\audacity.exe (The Audacity Team)
Shortcut: C:\Users\Public\Desktop\EA Download Manager.lnk -> C:\Program Files\Electronic Arts\EADM\Core.exe (Electronic Arts)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe ()




ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision preview pack 1.lnk -> C:\Program Files\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /show
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Disable 3D Vision.lnk -> C:\Program Files\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /disable
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Enable 3D Vision.lnk -> C:\Program Files\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /enable
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files\Java\jre1.8.0_25\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files\Java\jre1.8.0_25\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applian Technologies\FLV and Media Player.lnk -> C:\Program Files\Applian Technologies\FLV and Media Player\amp.exe (Applian Technologies Inc) -> -I skins2 --one-instance
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{FF0C446B-C01B-404A-8AF4-2689EE0270E9}\PlayTasks\3\Revoke License.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG) -> /revoke
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{FF0C446B-C01B-404A-8AF4-2689EE0270E9}\PlayTasks\2\Benchmark GTA IV.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG) -> -benchmark
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{FF0C446B-C01B-404A-8AF4-2689EE0270E9}\PlayTasks\1\Play (Safe Mode).lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG) -> -safemode
ShortcutWithArgument: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Public\Desktop\FLV and Media Player.lnk -> C:\Program Files\Applian Technologies\FLV and Media Player\amp.exe (Applian Technologies Inc) -> -I skins2 --one-instance


InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam Support Center.url -> hxxp://support.steampowered.com/
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Bezpieczeństwo w trybie online.url -> hxxp://go.microsoft.com/fwlink/?LinkId=142211
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Bezpieczny Internet.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129626
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Kultura.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129625
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Pogodynka.pl — oficjalny serwis pogodowy IMGW.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129624
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Polska.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129622
InternetURL: C:\Users\Daniel\Favorites\Links\Galeria obiektów Web Slice.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Daniel\Favorites\Links\Sugerowane witryny.url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Daniel\Desktop\w\Sims3.iso+keygen+crack\The Sims 3. Key Gen+Crack\ServerZoneZ - Server Development.url -> hxxp://www.serverzonez.net/

==================== End of log =============================

Awatar użytkownika
djarta

Globalny Moderator
Posty: 5854
Rejestracja: 26 gru 2008, 17:15
Lokalizacja: Białystok
Kontaktowanie:

Problem z PodoWeb

Post30 gru 2014, 14:05

1. Otwórz notatnik i wklej:
CloseProcesses:
R1 {37853ded-5f26-4b06-88d4-a4f00ea1c972}Gw; C:\Windows\System32\drivers\{37853ded-5f26-4b06-88d4-a4f00ea1c972}Gw.sys [43144 2014-11-29] (StdLib)
R1 {458639bd-68ee-4273-bbab-5c062f563d3b}Gw; C:\Windows\System32\drivers\{458639bd-68ee-4273-bbab-5c062f563d3b}Gw.sys [43200 2014-12-24] (StdLib)
R1 {ab3b6fe8-8ffe-4d0c-aa1e-8030c4760982}Gw; C:\Windows\System32\drivers\{ab3b6fe8-8ffe-4d0c-aa1e-8030c4760982}Gw.sys [43144 2014-11-27] (StdLib)
R1 {adb41315-fba7-4b86-be27-b2401a20c8d2}Gw; C:\Windows\System32\drivers\{adb41315-fba7-4b86-be27-b2401a20c8d2}Gw.sys [43144 2014-11-18] (StdLib)
R1 {b0ff63b8-ba6f-45bb-b13c-8474c0d8fc94}Gw; C:\Windows\System32\drivers\{b0ff63b8-ba6f-45bb-b13c-8474c0d8fc94}Gw.sys [43144 2014-11-22] (StdLib)
R1 {b2aa7bb9-5668-402a-97c7-7dabffe0f82d}Gw; C:\Windows\System32\drivers\{b2aa7bb9-5668-402a-97c7-7dabffe0f82d}Gw.sys [43144 2014-12-01] (StdLib)
R1 {b9f73d40-1a45-43a0-9a38-3e55d05b3bd4}Gw; C:\Windows\System32\drivers\{b9f73d40-1a45-43a0-9a38-3e55d05b3bd4}Gw.sys [43144 2014-11-28] (StdLib)
R1 {f5598bc7-a9c4-4bd0-8ca5-3b6319e94b10}Gw; C:\Windows\System32\drivers\{f5598bc7-a9c4-4bd0-8ca5-3b6319e94b10}Gw.sys [43200 2014-12-22] (StdLib)
R2 Update PodoWeb; C:\Program Files\PodoWeb\updatePodoWeb.exe [524528 2014-12-30] ()
R2 Util PodoWeb; C:\Program Files\PodoWeb\bin\utilPodoWeb.exe [524528 2014-12-30] ()
C:\Program Files\PodoWeb
CHR HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - No Path
C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgifjmpambcggfjjgbenfbkhifjalamp
C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\orc12gvd.default\user.js
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: PodoWeb 1.0.0.6 -> {980b8a8f-ea0b-4c24-a2e9-70635e2502e9} -> C:\Program Files\PodoWeb\PodoWebBHO.dll (PodoWeb)
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = Dostępne tylko dla zarejestrowanych użytkowników
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = Dostępne tylko dla zarejestrowanych użytkowników
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe Dostępne tylko dla zarejestrowanych użytkowników
SearchScopes: HKU\S-1-5-21-1786797264-2859431365-2598080207-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1786797264-2859431365-2598080207-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1786797264-2859431365-2598080207-1001 -> {1823B5D1-6589-403B-9C19-E1495A3B3253} URL = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}
AppInit_DLLs:  =>  File Not Found
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\Run: [SoftonicAssistant] => C:\Users\Daniel\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe [1829832 2014-11-11] ()
C:\Users\Daniel\AppData\Local\SoftonicAssistant
2014-12-16 16:37 - 2014-12-16 16:37 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\WebTest
C:\ProgramData\01e58235-010d-43b1-8340-277d43a75321
C:\Windows\System32\drivers\{37853ded-5f26-4b06-88d4-a4f00ea1c972}Gw.sys
C:\Windows\System32\drivers\{458639bd-68ee-4273-bbab-5c062f563d3b}Gw.sys
C:\Windows\System32\drivers\{ab3b6fe8-8ffe-4d0c-aa1e-8030c4760982}Gw.sys
C:\Windows\System32\drivers\{adb41315-fba7-4b86-be27-b2401a20c8d2}Gw.sys
C:\Windows\System32\drivers\{b0ff63b8-ba6f-45bb-b13c-8474c0d8fc94}Gw.sys
C:\Windows\System32\drivers\{b2aa7bb9-5668-402a-97c7-7dabffe0f82d}Gw.sys
C:\Windows\System32\drivers\{b9f73d40-1a45-43a0-9a38-3e55d05b3bd4}Gw.sys
C:\Windows\System32\drivers\{f5598bc7-a9c4-4bd0-8ca5-3b6319e94b10}Gw.sys
Task: {597FDB44-FD14-441C-B6E5-D4EBD3F5CDE7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-13] (Adobe Systems Incorporated)
Task: {619A7DE8-186E-4BBE-87FE-C1E0ED9B0CD4} - System32\Tasks\{51E965D6-2DE2-4504-B3E4-0AD89D0AB1A3} => pcalua.exe -a C:\Users\Daniel\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=smt
Task: {67995D85-D226-4C91-93EB-9F35CE4FF352} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-19] (Google Inc.)
Task: {9E0348EE-77D8-4001-B023-96AD782F33E3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-19] (Google Inc.)
Task: {E9D0E6BA-06D5-457F-89A5-5BA904C3C621} - System32\Tasks\{CEDA81BC-B420-4033-9839-D3AC53CDFD6D} => Firefox.exe Dostępne tylko dla zarejestrowanych użytkowników
C:\Users\Daniel\AppData\Roaming\mystartsearch
Emptytemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok narzędzia FRST. Uruchom FRST i kliknij w Fix.

2. Użyj >Dostępne tylko dla zarejestrowanych użytkowników
najpierw kliknij na SZUKAJ, a dopiero po zakończeniu skanowania, gdy uaktywni się przycisk USUŃ, to kliknij na niego.
Pokaż raport z niego C:\AdwCleaner\AdwCleaner[S].txt

3. Uruchom Dostępne tylko dla zarejestrowanych użytkowników. Wciśnij dowolny klawisz i czekaj, aż skończy się operacja. (UWAGA: podczas pobierania, programy mogą wskazywać, że to jest zagrożenie, proszę to zignorować). Pokaż raport.

4. Wstaw nowe logi z FRST.

OpanowanY

Użytkownik
Posty: 2
Rejestracja: 30 gru 2014, 09:08

Problem z PodoWeb

Post01 sty 2015, 20:20

AdwCleaner[S0]:

Kod: Zaznacz cały

# AdwCleaner v4.106 - Log utworzony 01/01/2015 o 19:57:11
# Aktualizacja 21/12/2014 przez Xplode
# Database : 2015-01-01.1 [Live]
# System operacyjny : Windows 7 Professional Service Pack 1 (32 bits)
# Użytkownik : Daniel - SUPER_KOMPUTER
# Ścieżka : C:\Users\Daniel\Downloads\adwcleaner_4.106.exe
# Opcja : Usuń

***** [ Usługi ] *****


***** [ Pliki / Foldery ] *****

Folder Usunięto : C:\ProgramData\AVG Security Toolbar
Folder Usunięto : C:\ProgramData\IePluginServices
Folder Usunięto : C:\ProgramData\WindowsMangerProtect
Folder Usunięto : C:\Program Files\PodoWeb
Folder Usunięto : C:\Program Files\SupTab
Folder Usunięto : C:\Users\Daniel\AppData\Roaming\RHEng
Plik Usunięto : C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_searches.vi-view.com_0.localstorage
Plik Usunięto : C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage

***** [ Zadania ] *****


***** [ Skróty ] *****


***** [ Rejestr ] *****

Klucz Usunięto : HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Klucz Usunięto : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
Klucz Usunięto : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Klucz Usunięto : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Klucz Usunięto : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Klucz Usunięto : HKCU\Software\InstallCore
Klucz Usunięto : HKCU\Software\PodoWeb
Klucz Usunięto : HKCU\Software\Softonic
Klucz Usunięto : HKCU\Software\SupHpUISoft
Klucz Usunięto : HKLM\SOFTWARE\PodoWeb
Klucz Usunięto : HKLM\SOFTWARE\SupDp
Klucz Usunięto : HKLM\SOFTWARE\SupTab
Klucz Usunięto : HKLM\SOFTWARE\supWindowsMangerProtect
Klucz Usunięto : HKLM\SOFTWARE\supWPM
Klucz Usunięto : HKLM\SOFTWARE\mystartsearchSoftware

***** [ Przeglądarki internetowe ] *****

-\\ Internet Explorer v9.0.8112.16457


-\\ Mozilla Firefox v34.0.5 (x86 pl)


-\\ Google Chrome v39.0.2171.95


*************************

AdwCleaner[R0].txt - [4383 octets] - [01/01/2015 19:52:30]
AdwCleaner[S0].txt - [4215 octets] - [01/01/2015 19:57:11]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4275 octets] ##########

JRT:

Kod: Zaznacz cały

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.1 (12.28.2014:1)
OS: Windows 7 Professional x86
Ran by Daniel on 2015-01-01 at 20:10:43,00
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: C:\Users\Daniel\AppData\Roaming\mozilla\firefox\profiles\orc12gvd.default\minidumps [5 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 2015-01-01 at 20:13:14,89
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

FRST

Kod: Zaznacz cały

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-12-2014
Ran by Daniel (administrator) on SUPER_KOMPUTER on 01-01-2015 20:15:06
Running from C:\Users\Daniel\Desktop\Nowy folder (2)\FRST
Loaded Profile: Daniel (Available profiles: Daniel)
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) OS Language: Polski (Polska)
Internet Explorer Version 9 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12021464 2014-05-09] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\Run: [DAEMON Tools Lite] => C:\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\Run: [EA Core] => "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\MountPoints2: {f8d09940-d792-11dd-8e0b-001fd01514a3} - J:\Autorun.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 62.179.1.62 62.179.1.63

FireFox:
========
FF ProfilePath: C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\orc12gvd.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Extension: Twojanuta.pl - C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\orc12gvd.default\Extensions\zacz3k@gmail.com.xpi [2014-12-27]

Chrome:
=======
CHR StartupUrls: Default -> "https://www.google.pl/"
CHR Profile: C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentacje Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-19]
CHR Extension: (Dokumenty Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-19]
CHR Extension: (Dysk Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-19]
CHR Extension: (YouTube) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-19]
CHR Extension: (Szukaj w Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-19]
CHR Extension: (Arkusze Google) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-19]
CHR Extension: (Google Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-19]
CHR Extension: (Gmail) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-19]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACTION_SVC; D:\Mirillis\Action!\action_svc.exe [16064 2014-10-25] ()
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [17536800 2014-07-25] (NVIDIA Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-11-19] (Disc Soft Ltd)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19232 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [34080 2014-03-31] (NVIDIA Corporation)

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-01 20:13 - 2015-01-01 20:13 - 00001061 _____ () C:\Users\Daniel\Desktop\JRT.txt
2015-01-01 20:10 - 2015-01-01 20:10 - 01707939 _____ (Thisisu) C:\Users\Daniel\Downloads\JRT.exe
2015-01-01 20:10 - 2015-01-01 20:10 - 00000000 ____D () C:\Windows\ERUNT
2015-01-01 19:52 - 2015-01-01 19:57 - 00000000 ____D () C:\AdwCleaner
2015-01-01 19:46 - 2015-01-01 20:09 - 00000000 ____D () C:\Users\Daniel\Desktop\Nowy folder (2)
2015-01-01 12:04 - 2015-01-01 12:04 - 00047819 _____ () C:\Users\Daniel\Downloads\The Sims 3 Kariera.torrent
2015-01-01 09:52 - 2015-01-01 11:22 - 00720248 _____ () C:\Users\Daniel\Downloads\Setup.exe
2014-12-31 18:41 - 2014-12-31 18:41 - 00000957 _____ () C:\Users\Public\Desktop\Origin.lnk
2014-12-31 18:41 - 2014-12-31 18:41 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Origin
2014-12-31 18:41 - 2014-12-31 18:41 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Origin
2014-12-31 18:41 - 2014-12-31 18:41 - 00000000 ____D () C:\ProgramData\Origin
2014-12-31 18:41 - 2014-12-31 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2014-12-31 18:41 - 2014-12-31 18:41 - 00000000 ____D () C:\Program Files\Origin Games
2014-12-31 18:40 - 2014-12-31 18:41 - 00000000 ____D () C:\Program Files\Origin
2014-12-31 18:40 - 2014-12-31 18:40 - 00000539 _____ () C:\Windows\KB893803v2.log
2014-12-31 18:36 - 2014-12-31 18:36 - 00002152 _____ () C:\Users\Public\Desktop\The Sims™ 3 Zwierzaki.lnk
2014-12-31 13:50 - 2014-12-31 13:50 - 00002252 _____ () C:\Users\Public\Desktop\The Sims™ 3 Skok w Przyszłość.lnk
2014-12-31 11:45 - 2014-12-31 11:45 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-12-30 21:00 - 2014-12-30 21:30 - 00000821 _____ () C:\Users\Daniel\Desktop\Counter-Strike Source.lnk
2014-12-30 21:00 - 2014-12-30 21:00 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VALVe
2014-12-30 21:00 - 2014-12-30 21:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VALVe
2014-12-30 09:16 - 2014-12-30 09:16 - 00023587 _____ () C:\Users\Daniel\Downloads\Shortcut.txt
2014-12-30 09:15 - 2014-12-30 09:16 - 00021309 _____ () C:\Users\Daniel\Downloads\Addition.txt
2014-12-30 09:13 - 2015-01-01 20:15 - 00000000 ____D () C:\FRST
2014-12-27 15:17 - 2014-12-27 15:17 - 00029037 _____ () C:\Users\Daniel\Downloads\Sims3.iso+keygen+crack.14(1).torrent
2014-12-27 15:16 - 2014-12-27 15:16 - 00029037 _____ () C:\Users\Daniel\Downloads\Sims3.iso+keygen+crack.14.torrent
2014-12-27 11:28 - 2014-12-27 11:28 - 00002535 _____ () C:\Users\Daniel\Desktop\Camtasia Studio 8.lnk
2014-12-27 11:26 - 2014-12-27 11:27 - 00000000 ____D () C:\Users\Daniel\Desktop\Nowy folder
2014-12-27 11:10 - 2014-12-27 11:17 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Audacity
2014-12-27 11:10 - 2014-12-27 11:10 - 00000561 _____ () C:\Users\Public\Desktop\Audacity.lnk
2014-12-27 11:10 - 2014-12-27 11:10 - 00000561 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2014-12-27 10:49 - 2014-12-27 10:49 - 22892794 _____ (Audacity Team ) C:\Users\Daniel\Downloads\audacity-win-2.0.6.exe
2014-12-26 16:58 - 2014-12-31 18:41 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-12-26 16:57 - 2014-12-26 16:57 - 00000000 ____D () C:\Program Files\Microsoft WSE
2014-12-26 16:51 - 2014-12-31 18:31 - 00000000 ____D () C:\Program Files\Electronic Arts
2014-12-24 12:55 - 2014-12-24 12:55 - 00000000 ____D () C:\Users\Daniel\Documents\Universe Sandbox ²
2014-12-22 21:35 - 2014-12-22 21:36 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\FLV and Media Player
2014-12-22 21:34 - 2014-12-22 21:34 - 00001303 _____ () C:\Users\Public\Desktop\FLV and Media Player.lnk
2014-12-22 21:34 - 2014-12-22 21:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applian Technologies
2014-12-22 21:34 - 2014-12-22 21:34 - 00000000 ____D () C:\Program Files\Applian Technologies
2014-12-22 21:23 - 2014-12-22 21:23 - 01958688 _____ (Applian Technologies Inc.) C:\Users\Daniel\Downloads\FLVPlayerSetupStubMDV.exe
2014-12-19 16:55 - 2015-01-01 15:06 - 00000000 ____D () C:\Users\Daniel\Desktop\w
2014-12-18 14:44 - 2014-12-26 16:58 - 00000000 ____D () C:\Users\Daniel\Documents\Electronic Arts
2014-12-18 14:14 - 2014-12-18 14:46 - 00000000 ____D () C:\Users\Daniel\Downloads\The Sims 3 - Razor1911 Final MAXSPEED
2014-12-16 16:27 - 1998-10-07 12:54 - 00327168 _____ (InstallShield Software Corporation) C:\Windows\IsUn0415.exe
2014-12-15 21:57 - 2014-12-15 21:57 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-13 18:32 - 2014-12-13 18:32 - 00002535 _____ () C:\Users\Daniel\Desktop\Camtasia Recorder 8.lnk
2014-12-13 10:09 - 2015-01-01 19:16 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-10 11:38 - 2014-12-10 12:14 - 00000000 ____D () C:\Users\Daniel\Downloads\Paktofonika - Dyskografia (320kbps)
2014-12-09 13:07 - 2014-12-09 13:07 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-12-06 14:55 - 2015-01-01 19:47 - 00000000 ____D () C:\Users\Daniel\AppData\Local\CrashDumps
2014-12-03 13:43 - 2014-12-03 13:45 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\GHISLER
2014-12-03 13:43 - 2014-12-03 13:43 - 00000587 _____ () C:\Users\Daniel\Desktop\Total Commander.lnk
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\UC.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\RAR.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\PKZIP.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\PKUNZIP.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\LHA.PIF
2014-12-03 13:43 - 2014-04-30 08:51 - 00000545 _____ () C:\Windows\ARJ.PIF
2014-12-03 12:20 - 2014-12-14 13:31 - 00000000 ____D () C:\Users\Daniel\Downloads\The.Suffering - RELOADED
2014-12-03 12:19 - 2014-12-03 12:19 - 00000000 ____D () C:\Users\Daniel\Downloads\The.Suffering. Prison.is.Hell..[PC.ISO.ENG]
2014-12-02 09:15 - 2014-12-02 11:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-12-02 09:15 - 2014-12-02 09:15 - 00000000 ____D () C:\Users\Daniel\AppData\Local\NVIDIA
2014-12-02 09:15 - 2014-12-02 09:15 - 00000000 ____D () C:\Program Files\AGEIA Technologies
2014-12-02 09:15 - 2014-07-25 15:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge.dll
2014-12-02 09:15 - 2014-07-25 15:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 04389848 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 03063256 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 02556360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 00670552 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-12-02 09:14 - 2014-07-02 20:42 - 00377288 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-12-02 09:14 - 2014-07-02 20:42 - 00062936 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-12-02 09:14 - 2014-07-02 18:39 - 00609240 _____ (NVIDIA Corporation) C:\Windows\system32\nvStreaming.exe
2014-12-02 09:14 - 2014-07-02 06:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin
2014-12-02 09:13 - 2014-07-02 21:54 - 00061728 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 24198088 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 16122344 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 15296456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 14498552 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 11283344 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 11222048 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 10681176 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-12-02 09:11 - 2014-07-02 21:54 - 03988952 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 02814656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 01054552 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3234052.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 00907552 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3234052.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 00907096 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR.dll
2014-12-02 09:11 - 2014-07-02 21:54 - 00869152 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC.dll
2014-12-02 09:11 - 2014-03-31 17:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2014-12-02 09:11 - 2014-03-31 17:42 - 00034080 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad32v.sys

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-01 20:06 - 2009-07-14 05:34 - 00021088 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-01 20:06 - 2009-07-14 05:34 - 00021088 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-01 20:05 - 2011-04-12 06:08 - 00761702 _____ () C:\Windows\system32\perfh015.dat
2015-01-01 20:05 - 2011-04-12 06:08 - 00161998 _____ () C:\Windows\system32\perfc015.dat
2015-01-01 20:05 - 2010-11-20 22:01 - 01711056 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-01 20:02 - 2009-01-01 00:27 - 00207151 _____ () C:\Windows\WindowsUpdate.log
2015-01-01 19:59 - 2014-11-19 12:17 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-01-01 19:59 - 2010-11-20 22:48 - 00030528 _____ () C:\Windows\PFRO.log
2015-01-01 19:59 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-01 19:59 - 2009-07-14 05:39 - 00035480 _____ () C:\Windows\setupact.log
2015-01-01 19:50 - 2014-11-19 13:29 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2015-01-01 19:47 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2015-01-01 19:18 - 2014-11-19 11:13 - 00001036 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-01 18:27 - 2014-11-19 18:57 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\Skype
2015-01-01 18:27 - 2014-11-19 12:25 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\uTorrent
2015-01-01 16:13 - 2014-11-21 15:04 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\.minecraft
2015-01-01 16:13 - 2014-11-21 14:58 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\.minecraftzyczu
2015-01-01 13:03 - 2009-07-14 03:04 - 00000505 _____ () C:\Windows\win.ini
2015-01-01 11:18 - 2014-11-19 11:13 - 00001032 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-31 18:36 - 2009-07-14 05:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-12-31 18:31 - 2014-11-19 14:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-12-27 18:43 - 2014-11-30 12:11 - 00000000 ____D () C:\Users\Daniel\Documents\Camtasia Studio
2014-12-25 10:39 - 2014-11-24 13:57 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\DMCache
2014-12-23 10:02 - 2014-11-21 21:07 - 00000000 ____D () C:\ProgramData\AVG2015
2014-12-23 10:02 - 2014-11-21 21:07 - 00000000 ____D () C:\AVG
2014-12-23 10:02 - 2014-11-21 21:05 - 00000000 ____D () C:\ProgramData\MFAData
2014-12-22 21:23 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Resources
2014-12-22 13:41 - 2014-11-24 13:57 - 00000000 ____D () C:\Users\Daniel\Downloads\Video
2014-12-22 09:31 - 2014-11-27 17:52 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-12-22 09:13 - 2014-11-25 16:15 - 00001137 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-22 09:13 - 2014-11-19 11:05 - 00001425 _____ () C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-21 20:14 - 2014-11-30 15:12 - 00000000 ____D () C:\Users\Daniel\Documents\Action!
2014-12-21 20:13 - 2014-11-19 11:04 - 00000000 ____D () C:\Users\Daniel
2014-12-18 14:46 - 2014-11-24 13:57 - 00000000 ____D () C:\Users\Daniel\Downloads\Compressed
2014-12-16 16:36 - 2009-07-14 03:37 - 00000000 ___RD () C:\Users\Public
2014-12-16 10:21 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-12-15 21:36 - 2014-11-21 21:12 - 00000000 ____D () C:\Program Files\AVG Web TuneUp
2014-12-13 10:16 - 2014-11-21 22:47 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-13 10:16 - 2014-11-21 22:47 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-13 10:09 - 2014-11-21 22:47 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Adobe
2014-12-11 12:23 - 2014-11-25 16:15 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-12-09 13:51 - 2014-11-25 16:15 - 00000000 ____D () C:\Program Files\Mozilla Firefox.bak
2014-12-02 13:45 - 2014-11-19 18:58 - 00000000 ____D () C:\Users\Daniel\AppData\Roaming\NVIDIA
2014-12-02 09:21 - 2014-11-19 11:33 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-12-02 09:15 - 2014-11-19 11:41 - 00000000 ____D () C:\Users\Daniel\AppData\Local\NVIDIA Corporation
2014-12-02 09:15 - 2014-11-19 11:27 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-12-02 09:14 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Help

Some content of TEMP:
====================
C:\Users\Daniel\AppData\Local\Temp\Quarantine.exe
C:\Users\Daniel\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-25 18:38

==================== End Of Log ============================

Addition

Kod: Zaznacz cały

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 28-12-2014
Ran by Daniel at 2015-01-01 20:15:47
Running from C:\Users\Daniel\Desktop\Nowy folder (2)\FRST
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKLM\...\uTorrent) (Version: 2.2.1 - )
Action! (HKLM\...\Mirillis Action!) (Version: 1.20.2 - Mirillis)
Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 16.0.0.240 - Adobe Systems Incorporated)
Adobe Flash Player ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 9.0.124.0 - Adobe Systems Incorporated)
Aktualizacje NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
Audacity 2.0.6 (HKLM\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Camtasia Studio 8 (HKLM\...\{474DFABF-E55B-4905-ABAA-40791A6AC77F}) (Version: 8.4.4.1859 - TechSmith Corporation)
Counter-Strike (HKLM\...\Steam App 10) (Version:  - Valve)
CSS FULL DZ [Oct 15 2007] v18.1 (HKLM\...\CSS FULL DZ [Oct 15 2007]) (Version: v18.1 - GrCs2Ek~)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
FLV and Media Player 4.2.1.1 (HKLM\...\FLV and Media Player) (Version: 4.2.1.1 - Applian Technologies)
Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Grand Theft Auto IV (HKLM\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games)
Grand Theft Auto IV (Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Mozilla Firefox 34.0.5 (x86 pl) (HKLM\...\Mozilla Firefox 34.0.5 (x86 pl)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 33.1.1 - Mozilla)
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Oprogramowanie systemu PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA Sterownik 3D Vision 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Sterownik graficzny 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Sterownik kontrolera 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
Origin (HKLM\...\Origin) (Version: 8.4.1.210 - Electronic Arts, Inc.)
Panel sterowania NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.22 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.105 - Skype Technologies S.A.)
Softonic Assistant (HKU\S-1-5-21-1786797264-2859431365-2598080207-1001\...\SoftonicAssistant) (Version: 0.1.6 - Softonic International S.A.)
Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Sims™ 3 (HKLM\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts)
The Sims™ 3 Skok w Przyszłość (HKLM\...\{A0BBD6C7-B546-4048-B33A-F21F5C9F5B09}) (Version: 21.0.150 - Electronic Arts)
The Sims™ 3 Zwierzaki (HKLM\...\{C12631C6-804D-4B32-B0DD-8A496462F106}) (Version: 10.0.96 - Electronic Arts)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.51a - Ghisler Software GmbH)
WinRAR 5.11 (32-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

26-12-2014 16:51:14 Zainstalowane The Sims 3
26-12-2014 17:02:11 Zainstalowane The Sims 3
31-12-2014 13:47:15 Zainstalowane TheSims3EP11
31-12-2014 18:09:40 Zainstalowane TheSims3EP8
31-12-2014 18:31:07 Zainstalowane TheSims3EP5

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-12-02 09:14 - 2014-07-02 20:42 - 00107992 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: DAEMON Tools Lite => "C:\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: IDMan => C:\Program Files\Internet Download Manager\IDMan.exe /onboot
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: vProt => "C:\Program Files\AVG Web TuneUp\vprot.exe"

========================= Accounts: ==========================

Administrator (S-1-5-21-1786797264-2859431365-2598080207-500 - Administrator - Disabled)
Daniel (S-1-5-21-1786797264-2859431365-2598080207-1001 - Administrator - Enabled) => C:\Users\Daniel
Gość (S-1-5-21-1786797264-2859431365-2598080207-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1786797264-2859431365-2598080207-1002 - Limited - Enabled)

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Karta tunelowania Teredo firmy Microsoft
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================

System errors:
=============

Microsoft Office Sessions:
=========================

==================== Memory info ===========================

Processor: Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Percentage of memory in use: 28%
Total physical RAM: 3326.49 MB
Available physical RAM: 2367.48 MB
Total Pagefile: 6651.27 MB
Available Pagefile: 5587.58 MB
Total Virtual: 2047.88 MB
Available Virtual: 1880.6 MB

==================== Drives ================================

Drive c: (System, programy) (Fixed) (Total:148.88 GB) (Free:43.13 GB) NTFS
Drive d: (Gierki, aplikacje) (Fixed) (Total:148.98 GB) (Free:129.28 GB) NTFS
Drive j: (Sims3) (CDROM) (Total:5.74 GB) (Free:0 GB) UDF

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 338D8F82)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=148.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=149 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Shortcut

Kod: Zaznacz cały

Users shortcut scan result (x86) Version: 28-12-2014
Ran by Daniel at 2015-01-01 20:16:06
Running from C:\Users\Daniel\Desktop\Nowy folder (2)\FRST
Boot Mode: Normal
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)



Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk -> D:\Audacity\audacity.exe (The Audacity Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\WinRAR\CoNowego.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VALVe\Counter-Strike Source\Uninstall.lnk -> D:\VALVe\Counter-Strike Source\uninst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VALVe\Counter-Strike Source\Website.lnk -> D:\VALVe\Counter-Strike Source\CSS FULL DZ [Oct 15 2007].url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith\Camtasia Recorder 8.lnk -> C:\Windows\Installer\{474DFABF-E55B-4905-ABAA-40791A6AC77F}\CamtasiaIcons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith\Camtasia Studio 8.lnk -> C:\Windows\Installer\{474DFABF-E55B-4905-ABAA-40791A6AC77F}\CamtasiaIcons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> D:\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin.lnk -> C:\Program Files\Origin\Origin.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Usuń Origin.lnk -> C:\Program Files\Origin\OriginUninstall.exe (Electronic Arts, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\GeForce Experience.lnk -> C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exe (NVIDIA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision Photo Viewer.lnk -> C:\Program Files\NVIDIA Corporation\3D Vision\nvstview.exe (NVIDIA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files\Java\jre1.8.0_25\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite\DTGadget.lnk -> C:\DAEMON Tools Lite\DT.gadget ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applian Technologies\FLV and Media Player Uninstall.lnk -> C:\Program Files\Applian Technologies\FLV and Media Player\uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\NetworkProjection.lnk -> C:\Windows\System32\NetProj.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{FF0C446B-C01B-404A-8AF4-2689EE0270E9}\PlayTasks\0\Play.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{CFA7DAA2-761F-4EEB-9D19-08CC213E98F0}\PlayTasks\3\Centrum Pomocy.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Skok w Przyszłość\Support\EA Help\Electronic_Arts_Technical_Support.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{CFA7DAA2-761F-4EEB-9D19-08CC213E98F0}\PlayTasks\2\Umowa Użytkownika.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Skok w Przyszłość\Support\pl_EULA.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{CFA7DAA2-761F-4EEB-9D19-08CC213E98F0}\PlayTasks\1\Przeczytaj.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Skok w Przyszłość\Support\Przeczytaj.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{CFA7DAA2-761F-4EEB-9D19-08CC213E98F0}\PlayTasks\0\The Sims™ 3 Skok w Przyszłość.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Skok w Przyszłość\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\3\Centrum Pomocy.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\EA Help\Electronic_Arts_Technical_Support.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\2\Umowa Użytkownika.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\pl_EULA.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\1\Przeczytaj.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\Przeczytaj.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\0\Play.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{4B125B6A-C222-4F61-BCA6-3816B72D556D}\PlayTasks\3\Centrum Pomocy.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Zwierzaki\Support\EA Help\Electronic_Arts_Technical_Support.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{4B125B6A-C222-4F61-BCA6-3816B72D556D}\PlayTasks\2\Umowa Użytkownika.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Zwierzaki\Support\pl_EULA.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{4B125B6A-C222-4F61-BCA6-3816B72D556D}\PlayTasks\1\Przeczytaj.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Zwierzaki\Support\Przeczytaj.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{4B125B6A-C222-4F61-BCA6-3816B72D556D}\PlayTasks\0\The Sims™ 3 Zwierzaki.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Zwierzaki\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc.)
Shortcut: C:\Users\Daniel\Links\Desktop.lnk -> C:\Users\Daniel\Desktop ()
Shortcut: C:\Users\Daniel\Links\Downloads.lnk -> C:\Users\Daniel\Downloads ()
Shortcut: C:\Users\Daniel\Desktop\Camtasia Recorder 8.lnk -> C:\Windows\Installer\{474DFABF-E55B-4905-ABAA-40791A6AC77F}\CamtasiaIcons.exe ()
Shortcut: C:\Users\Daniel\Desktop\Camtasia Studio 8.lnk -> C:\Windows\Installer\{474DFABF-E55B-4905-ABAA-40791A6AC77F}\CamtasiaIcons.exe ()
Shortcut: C:\Users\Daniel\Desktop\LaunchGTAIV — skrót.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG)
Shortcut: C:\Users\Daniel\Desktop\Total Commander.lnk -> D:\totalcmd\TOTALCMD.EXE (Ghisler Software GmbH)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\WinRAR\CoNowego.txt ()
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\WinRAR\Rar.txt ()
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\LaunchGTAIV — skrót.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Steam.lnk -> D:\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\µTorrent.lnk -> C:\uTorrent\uTorrent.exe (BitTorrent, Inc.)
Shortcut: C:\Users\Daniel\AppData\Local\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\3\Centrum Pomocy.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\EA Help\Electronic_Arts_Technical_Support.htm ()
Shortcut: C:\Users\Daniel\AppData\Local\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\2\Umowa Użytkownika.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\pl_EULA.rtf ()
Shortcut: C:\Users\Daniel\AppData\Local\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\1\Przeczytaj.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Support\Przeczytaj.txt ()
Shortcut: C:\Users\Daniel\AppData\Local\Microsoft\Windows\GameExplorer\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\PlayTasks\0\Play.lnk -> C:\Program Files\Electronic Arts\The Sims 3\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc.)
Shortcut: C:\Users\Daniel\AppData\Local\Microsoft\Windows\GameExplorer\{25F5F78C-ADBC-4457-90E6-37FA11715169}\PlayTasks\0\Zagraj.lnk -> D:\VALVe\Counter-Strike Source\hl2.exe ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Audacity.lnk -> D:\Audacity\audacity.exe (The Audacity Team)
Shortcut: C:\Users\Public\Desktop\Origin.lnk -> C:\Program Files\Origin\Origin.exe (Electronic Arts)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe ()
Shortcut: C:\Users\Public\Desktop\The Sims™ 3 Skok w Przyszłość.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Skok w Przyszłość\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc.)
Shortcut: C:\Users\Public\Desktop\The Sims™ 3 Zwierzaki.lnk -> C:\Program Files\Electronic Arts\The Sims 3 Zwierzaki\Game\Bin\Sims3Launcher.exe (Electronic Arts, Inc.)




ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VALVe\Counter-Strike Source\Counter-Strike Source.lnk -> D:\VALVe\Counter-Strike Source\hl2.exe () -> -game cstrike -nojoy
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision preview pack 1.lnk -> C:\Program Files\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /show
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Disable 3D Vision.lnk -> C:\Program Files\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /disable
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Enable 3D Vision.lnk -> C:\Program Files\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /enable
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files\Java\jre1.8.0_25\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files\Java\jre1.8.0_25\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applian Technologies\FLV and Media Player.lnk -> C:\Program Files\Applian Technologies\FLV and Media Player\amp.exe (Applian Technologies Inc) -> -I skins2 --one-instance
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{FF0C446B-C01B-404A-8AF4-2689EE0270E9}\PlayTasks\3\Revoke License.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG) -> /revoke
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{FF0C446B-C01B-404A-8AF4-2689EE0270E9}\PlayTasks\2\Benchmark GTA IV.lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG) -> -benchmark
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{FF0C446B-C01B-404A-8AF4-2689EE0270E9}\PlayTasks\1\Play (Safe Mode).lnk -> C:\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (Sony DADC Austria AG) -> -safemode
ShortcutWithArgument: C:\Users\Daniel\Desktop\Counter-Strike Source.lnk -> D:\VALVe\Counter-Strike Source\hl2.exe () -> -game cstrike -nojoy
ShortcutWithArgument: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\Daniel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Public\Desktop\FLV and Media Player.lnk -> C:\Program Files\Applian Technologies\FLV and Media Player\amp.exe (Applian Technologies Inc) -> -I skins2 --one-instance


InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam Support Center.url -> hxxp://support.steampowered.com/
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Bezpieczeństwo w trybie online.url -> hxxp://go.microsoft.com/fwlink/?LinkId=142211
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Bezpieczny Internet.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129626
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Kultura.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129625
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Pogodynka.pl — oficjalny serwis pogodowy IMGW.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129624
InternetURL: C:\Users\Daniel\Favorites\Links for Polska\Polska.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129622
InternetURL: C:\Users\Daniel\Favorites\Links\Galeria obiektów Web Slice.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Daniel\Favorites\Links\Sugerowane witryny.url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Daniel\Desktop\w\Sims3.iso+keygen+crack\The Sims 3. Key Gen+Crack\ServerZoneZ - Server Development.url -> hxxp://www.serverzonez.net/

==================== End of log =============================

Awatar użytkownika
djarta

Globalny Moderator
Posty: 5854
Rejestracja: 26 gru 2008, 17:15
Lokalizacja: Białystok
Kontaktowanie:

Problem z PodoWeb

Post01 sty 2015, 20:43

Wyczyszczone.

Wykonaj wszystko z tego tematu: Kroki kończące temat.
Końcowo pokazujesz: raport z DelFix oraz raport z pełnego skanowania Malwarebytes



  • Reklama

Wróć do „Bezpieczeństwo”



Kto jest online

Użytkownicy przeglądający to forum: Obecnie na forum nie ma żadnego zarejestrowanego użytkownika i 2 gości