Task: C:\WINDOWS\Tasks\At1.job => C:\DOCUME~1\Tomek\DANEAP~1\FoxTab\UpdateProc\UpdateTask.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\At2.job => C:\DOCUME~1\NETWOR~1\DANEAP~1\FoxTab\UpdateProc\UpdateTask.exe <==== ATTENTION
Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
AlternateDataStreams: C:\WINDOWS:558622E60004C8B2
Shortcut: C:\Documents and Settings\Tomek\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\PartyCasino.lnk -> D:\Program Files\PartyGaming\PartyGaming.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\PartyPoker.lnk -> D:\Program Files\PartyGaming\PartyGaming.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Launch WhiteSmokeTranslator.lnk -> C:\Program Files\WhiteSmokeTranslator\WSTrayDictMode.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\MediaCoder.lnk -> D:\Program Files\MediaCoder\mediacoder.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Betsafe English Casino.lnk -> D:\Program Files\BETSAFE CASINO BLACK\BetsafeEnglishEuro\Casino.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Dawn of War II - Retribution.lnk -> D:\gry\Dawn of War II - Retribution\DOW2.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\bwin Casino\bwin Casino.lnk -> D:\Program Files\bwin Casino\startcasino.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\bwin Casino\Uninstall bwin Casino.lnk -> D:\Program Files\bwin Casino\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Betsafe English Casino\Betsafe English Casino.lnk -> D:\Program Files\BETSAFE CASINO BLACK\BetsafeEnglishEuro\Casino.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Betsafe English Casino\Upgrade Betsafe English Casino.lnk -> D:\Program Files\BETSAFE CASINO BLACK\BetsafeEnglishEuro\CasinoUA.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Betclick Poker\Betclick Poker.lnk -> D:\Program Files\Betclick Poker\poker.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Betclick Poker\Uninstall Betclick Poker.lnk -> D:\Program Files\Betclick Poker\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Autostart\ImpulseNow.lnk -> D:\Program Files\Stardock\Impulse\Now\ImpulseNow.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Autostart\Sid Registration.lnk -> D:\Downloads\Pirates\ATR1.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Games\PartyCasino.lnk -> D:\Program Files\PartyGaming\PartyGaming.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Games\PartyPoker.lnk -> D:\Program Files\PartyGaming\PartyGaming.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Free Mind Software\Krzyzacy\Edytor.lnk -> D:\gry\Krzyżacy\MapEdit.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Free Mind Software\Krzyzacy\Konfiguracja.lnk -> D:\gry\Krzyżacy\Setup.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Free Mind Software\Krzyzacy\Krzyzacy.lnk -> D:\gry\Krzyżacy\Krzyzacy.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Free Mind Software\Krzyzacy\Strona Cenega.lnk -> D:\gry\Krzyżacy\Cenega.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Free Mind Software\Krzyzacy\Strona Free Mind Software.lnk -> D:\gry\Krzyżacy\FreeMindSoftware.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Free Mind Software\Krzyzacy\Strona Gry.lnk -> D:\gry\Krzyżacy\Krzyzacy.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\FoxTab PDF Converter\Uninstall FoxTab PDF Converter.lnk -> D:\Program Files\FoxTabPDFConverter\Uninstall\Uninstall.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\FormatFactory\FormatFactory.lnk -> D:\Program Files\FormatFactory\FormatFactory.exe (Free Time)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\FormatFactory\Uninstall.lnk -> D:\Program Files\FormatFactory\uninst.exe ()
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Fantastic Win\Fantastic Win.lnk -> D:\Casino\Fantastic Win\startcasino.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Fantastic Win\Uninstall Fantastic Win.lnk -> D:\Casino\Fantastic Win\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\KONAMI\Pro Evolution Soccer 2010\Spolszczenie\Odinstaluj.lnk -> D:\gry\Pro Evolution Soccer 2010\img\uninstall.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Internet Download Manager\Grabber Help.lnk -> D:\Program Files\Internet Download Manager\grabber.chm (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Internet Download Manager\IDM Help.lnk -> D:\Program Files\Internet Download Manager\idman.chm (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Internet Download Manager\Internet Download Manager.lnk -> D:\Program Files\Internet Download Manager\IDMan.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Internet Download Manager\license.lnk -> D:\Program Files\Internet Download Manager\license.txt (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Internet Download Manager\TUTORIALS.lnk -> D:\Program Files\Internet Download Manager\tutor.chm (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Internet Download Manager\Uninstall IDM.lnk -> D:\Program Files\Internet Download Manager\Uninstall.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Handset software update tool\ZTE Handset software update tool.lnk -> D:\Program Files\ZTE upgrade\Handset software update tool\ZTE_Dous.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Instrukcja.lnk -> D:\gry\Europa Universalis III\_sup_\EU3_Instrukcja.pdf (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Legenda do mapy.lnk -> D:\gry\Europa Universalis III\_sup_\EU3_Legenda.pdf (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Mapa.lnk -> D:\gry\Europa Universalis III\_sup_\EU3_mapa1.pdf (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Poradnik.lnk -> D:\gry\Europa Universalis III\_sup_\EU3_poradnik.pdf (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Readme.lnk -> D:\gry\Europa Universalis III\_sup_\ReadMe.txt (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Rejestracja gry.lnk -> D:\gry\Europa Universalis III\_sup_\Zarejestruj grę.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Linki\Kompania Graczy.lnk -> D:\gry\Europa Universalis III\_sup_\Kompania Graczy.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Linki\Pomoc techniczna.lnk -> D:\gry\Europa Universalis III\_sup_\Pomoc techniczna.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Linki\Sklep internetowy.lnk -> D:\gry\Europa Universalis III\_sup_\Sklep internetowy.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Linki\Strona Cenega Poland.lnk -> D:\gry\Europa Universalis III\_sup_\Cenega Poland.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis III\Linki\Strona serii Superseller.lnk -> D:\gry\Europa Universalis III\_sup_\superseller.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Mapa Imperium.lnk -> D:\gry\Europa Universalis - Rome\misc2\EU_RZYM_mapa.pdf (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Odinstaluj Europa Universalis - Rzym.lnk -> D:\gry\Europa Universalis - Rome\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Rejestracja gry.lnk -> D:\gry\Europa Universalis - Rome\misc2\Rejestracja gry.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Społeczność internetowa.lnk -> D:\gry\Europa Universalis - Rome\misc2\Społeczność internetowa.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Uruchom Europa Universalis - Rzym.lnk -> D:\gry\Europa Universalis - Rome\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Linki\Kompania graczy.lnk -> D:\gry\Europa Universalis - Rome\misc2\Kompania graczy.url (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Linki\Pomoc techniczna.lnk -> D:\gry\Europa Universalis - Rome\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Linki\Sklep internetowy.lnk -> D:\gry\Europa Universalis - Rome\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Linki\Strona firmy Cenega Poland.lnk -> D:\gry\Europa Universalis - Rome\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\Paradox Interactive\Europa Universalis - Rzym\Linki\Strona firmy Paradox.lnk -> D:\gry\Europa Universalis - Rome\UNWISE.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\New Life of Heroes\Campaign Editor for Heroes III In the Wake of Gods.lnk -> D:\gry\Heroes of Might and Magic III - Zlota Edycja\h3wcmped.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\New Life of Heroes\ERM Help for Heroes III In the Wake of Gods.lnk -> D:\gry\Heroes of Might and Magic III - Zlota Edycja\erm_help\index.htm (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\New Life of Heroes\ERM Script Editor for Heroes III In the Wake of Gods.lnk -> D:\gry\Heroes of Might and Magic III - Zlota Edycja\erm_s\erm_s.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\New Life of Heroes\Heroes III In the Wake of Gods.lnk -> D:\gry\Heroes of Might and Magic III - Zlota Edycja\h3wog.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\New Life of Heroes\Heroes Zone.lnk -> D:\gry\Heroes of Might and Magic III - Zlota Edycja\h3zone.bat (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\New Life of Heroes\Map Editor for Heroes III In the Wake of Gods.lnk -> D:\gry\Heroes of Might and Magic III - Zlota Edycja\H3WMAPED.EXE (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\PartyPoker\PartyPoker.lnk -> D:\Program Files\PartyGaming\PartyGaming.exe (No File)
Shortcut: C:\Documents and Settings\Tomek\Menu Start\Programy\PartyCasino\PartyCasino.lnk -> D:\Program Files\PartyGaming\PartyGaming.exe (No File)
HKLM\...\Run: [hpqSRMon] => [X]
HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k
AppInit_DLLs: c:\docume~1\alluse~1\daneap~1\prowebi\prowebi.dll => c:\docume~1\alluse~1\daneap~1\prowebi\prowebi.dll File Not Found
AppInit_DLLs: c:\docume~1\alluse~1\daneap~1\content c:\docume~1\alluse~1\daneap~1\intelismart webbing\intelismartwebbing.dll => c:\docume~1\alluse~1\daneap~1\intelismart webbing\intelismartwebbing.dll File Not Found
AppInit_DLLs: c:\docume~1\alluse~1\daneap~1\speed streamer\speedstreamer.dll => c:\docume~1\alluse~1\daneap~1\speed streamer\speedstreamer.dll File Not Found
AppInit_DLLs: c:\docume~1\alluse~1\daneap~1\intelewin c:\docume~1\alluse~1\daneap~1\winclean => c:\docume~1\alluse~1\daneap~1\intelewin c:\docume~1\alluse~1\daneap~1\winclean File Not Found
ShortcutTarget: ImpulseNow.lnk -> D:\Program Files\Stardock\Impulse\Now\ImpulseNow.exe (No File)
ShortcutTarget: Sid Registration.lnk -> D:\Downloads\Pirates\ATR1.exe (No File)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
SearchScopes: HKLM - {22EA9004-053E-4DF8-B29E-A5736F87115F} URL =
Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}
SearchScopes: HKCU - {22EA9004-053E-4DF8-B29E-A5736F87115F} URL =
Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF Extension: ShopDrop - C:\Documents and Settings\Tomek\Dane aplikacji\Mozilla\Firefox\Profiles\l6l8xt74.default-1419082897234\Extensions\uawr-uia@auaaaeuo-.org [2014-07-04]
CHR DefaultSearchURL:
Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&src=defsearch&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=PL&install_date=20111224&user_guid=C93D7F6B49AD4B17B8526F52BE7E5278&machine_id=0b35d7a39c8fbf9ba35bace5a8cf3969&browser=CR&os=win&os_version=5.1-x86-SP3
CHR Plugin: (Vividas Player Plugin) - C:\Documents and Settings\Tomek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\choofoanehnlponopnapopbnkeldllka\4.1_1\npVividasPlayer.dll No File
CHR Plugin: (LiveVDO plug-in) - C:\Documents and Settings\Tomek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pbiamblgmkgbcgbcgejjgebalncpmhnp\1.3_0\chvsharetvplg.dll No File
CHR Plugin: (Adobe Acrobat) - D:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
S2 021a327e; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\speed streamer\speedstreamerSvc.dll",service
S2 235d9f54; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\intelismart webbing\intelismartwebbingSvc.dll",service
S2 3f163a52; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\prowebi\ProwebiSvc.dll",service
S2 827a2642; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\winspeed\WinSpeedSvc.dll",service
S2 8c3f71b6; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\content accelerator\contentacceleratorSvc.dll",service
S2 9c871385; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\turbonet\TurboNetSvc.dll",service
S2 a6aa1523; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\winclean performap\wincleanperformapSvc.dll",service
S2 dabcc88a; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\browser enhancer\browserenhancerSvc.dll",service
S3 AmdLLD; system32\DRIVERS\AmdLLD.sys [X]
S3 cpuz130; \??\C:\DOCUME~1\Tomek\USTAWI~1\Temp\cpuz130\cpuz_x32.sys [X]
S3 CrystalSysInfo; \??\D:\Program Files\MediaCoder\SysInfo.sys [X]
S3 hamachi; system32\DRIVERS\hamachi.sys [X]
S4 IntelIde; No ImagePath
S3 PCAMPR5; \??\C:\WINDOWS\system32\PCAMPR5.SYS [X]
C:\Documents and Settings\All Users\Dane aplikacji\Prowebi
C:\Documents and Settings\All Users\Dane aplikacji\ReobboSAVer
C:\Documents and Settings\All Users\Dane aplikacji\fad6366515bf0ce5
C:\Documents and Settings\TEMP\Ustawienia lokalne\Temp\ubi5B.tmp.exe
C:\Documents and Settings\Tomek\Ustawienia lokalne\Temp\ggdrive-menu.exe
C:\Documents and Settings\Tomek\Ustawienia lokalne\Temp\ggdrive-overlay.exe
C:\Documents and Settings\Tomek\Ustawienia lokalne\Temp\installstats.exe
C:\Documents and Settings\All Users\Dane aplikacji\InstallMate
C:\Documents and Settings\All Users\Dane aplikacji\ahbcadmejkmopjmpfiojabjcloaafcdm
Reboot: