wirus hi problem z uruchomieniem

Wszystko co nie było zgodne z regulaminem forum
gofer551

Użytkownik
Posty: 2
Rejestracja: 21 sie 2011, 09:34

wirus hi problem z uruchomieniem

Post21 sie 2011, 10:19

Witam od wczoraj mam problem z pc po zainstalowaniu fałszywego flash playera . Komputer od razu przełacza się na tryb awaryjny.
raport z otl:
OTL logfile created on: 2011-08-20 21:18:34 - Run 1
OTL by OldTimer - Version 3.2.26.5 Folder = E:\MACIEK
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

4,00 Gb Total Physical Memory | 3,18 Gb Available Physical Memory | 79,47% Memory free
8,00 Gb Paging File | 7,26 Gb Available in Paging File | 90,85% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 198,62 Gb Total Space | 158,84 Gb Free Space | 79,97% Space Free | Partition Type: NTFS
Drive D: | 198,72 Gb Total Space | 185,44 Gb Free Space | 93,32% Space Free | Partition Type: NTFS
Drive E: | 198,72 Gb Total Space | 142,84 Gb Free Space | 71,88% Space Free | Partition Type: NTFS

Computer Name: MD-KOMPUTER | User Name: MD | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011-08-20 21:17:49 | 000,580,096 | ---- | M] (OldTimer Tools) -- E:\MACIEK\OTL.exe


========== Modules (No Company Name) ==========


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:64bit: - [2009-07-14 03:39:29 | 000,010,240 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\regedt32.exe -- (.EsetTrialReset)
SRV:64bit: - [2009-05-14 14:54:26 | 000,023,296 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv)
SRV:64bit: - [2009-05-14 14:47:54 | 000,731,840 | ---- | M] (ESET) [Auto | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe -- (ekrn)
SRV - [2011-07-21 12:12:16 | 000,269,480 | ---- | M] (Avira GmbH) [Disabled | Stopped] -- E:\MACIEK\Nowy folder\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011-07-06 19:52:38 | 000,366,640 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- E:\MACIEK\Nowy folder\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011-04-21 07:53:48 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Stopped] -- E:\MACIEK\Nowy folder\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011-01-17 12:40:39 | 000,066,872 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011-01-07 20:48:56 | 000,378,984 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2010-12-28 10:00:34 | 001,296,728 | ---- | M] (Dostępne tylko dla zarejestrowanych użytkowników) [On_Demand | Stopped] -- C:\Program Files (x86)\BitComet\tools\BitCometService.exe -- (BITCOMET_HELPER_SERVICE)
SRV - [2010-03-18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009-12-23 23:34:20 | 000,370,688 | ---- | M] (StarWind Software) [Auto | Stopped] -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2009-07-14 03:14:30 | 000,009,216 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWow64\regedt32.exe -- (.EsetTrialReset)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2007-12-14 10:46:28 | 000,047,624 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\GIGABYTE\GEST\GSvr.exe -- (GEST Service)
SRV - [2007-05-31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007-05-31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011-07-21 12:15:16 | 000,123,784 | ---- | M] (Avira GmbH) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2011-07-06 19:52:42 | 000,025,912 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2011-03-11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011-03-11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010-11-20 13:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010-07-31 11:40:47 | 000,834,544 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2010-04-12 10:55:00 | 000,091,568 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:64bit: - [2009-08-19 08:05:06 | 000,239,616 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009-07-14 02:09:50 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2009-06-30 10:37:16 | 000,033,800 | ---- | M] (Panda Security, S.L.) [File_System | Boot | Stopped] -- C:\Windows\SysNative\drivers\pavboot64.sys -- (pavboot)
DRV:64bit: - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009-05-14 14:49:56 | 000,121,152 | ---- | M] (ESET) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\epfwwfpr.sys -- (epfwwfpr)
DRV:64bit: - [2009-05-14 14:47:16 | 000,134,024 | ---- | M] (ESET) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\ehdrv.sys -- (ehdrv)
DRV:64bit: - [2009-05-14 14:41:14 | 000,142,776 | ---- | M] (ESET) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\eamon.sys -- (eamon)
DRV:64bit: - [2008-04-22 08:53:36 | 000,012,744 | R--- | M] (EnTech Taiwan) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Entech64.sys -- (ENTECH64)
DRV:64bit: - [2007-01-23 14:48:00 | 000,136,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LMouKE.Sys -- (LMouKE)
DRV:64bit: - [2007-01-23 14:47:00 | 000,112,400 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\L8042mou.Sys -- (L8042mou)
DRV:64bit: - [2007-01-23 14:47:00 | 000,035,600 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L8042Kbd.sys -- (L8042Kbd)
DRV - [2011-08-20 21:09:35 | 000,481,912 | ---- | M] (Symantec Corporation) [Kernel | System | Stopped] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2010-08-16 08:53:34 | 000,020,544 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\gdrv.sys -- (gdrv)
DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2007-10-16 15:15:26 | 000,036,416 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\ET5Drv.sys -- (ET5Drv)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-581049885-2092088071-771393487-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKU\S-1-5-21-581049885-2092088071-771393487-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.gazeta.pl/0,0.html?p=109"
FF - prefs.js..extensions.enabledItems: {B042753D-F57E-4e8e-A01B-7379A6D4CEFB}:1.27.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: smartwebprinting@hp.com:4.5
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.12.2.100006
FF - prefs.js..network.proxy.backup.ftp: "87.98.236.87"
FF - prefs.js..network.proxy.backup.ftp_port: 1
FF - prefs.js..network.proxy.backup.gopher: "87.98.236.87"
FF - prefs.js..network.proxy.backup.gopher_port: 1
FF - prefs.js..network.proxy.backup.socks: "87.98.236.87"
FF - prefs.js..network.proxy.backup.socks_port: 1
FF - prefs.js..network.proxy.backup.ssl: "87.98.236.87"
FF - prefs.js..network.proxy.backup.ssl_port: 1
FF - prefs.js..network.proxy.ftp: "64.20.51.18"
FF - prefs.js..network.proxy.gopher: "64.20.51.18"
FF - prefs.js..network.proxy.http: "64.20.51.18"
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.socks: "64.20.51.18"
FF - prefs.js..network.proxy.ssl: "64.20.51.18"
FF - prefs.js..network.proxy.type: 1

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandasecurity.com/activescan: C:\Program Files (x86)\Panda Security\ActiveScan 2.0\npwrapper.dll (Panda Security, S.L.)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\MD\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\MD\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\MD\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-10-17 16:27:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.18\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011-07-05 13:32:32 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.18\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011-07-05 13:32:32 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010-07-31 11:29:19 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-10-17 16:27:40 | 000,000,000 | ---D | M]

[2010-07-30 15:16:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MD\AppData\Roaming\mozilla\Extensions
[2011-08-20 17:44:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MD\AppData\Roaming\mozilla\Firefox\Profiles\em7quqow.default\extensions
[2011-05-10 15:08:27 | 000,000,000 | ---D | M] (BitComet Video Downloader) -- C:\Users\MD\AppData\Roaming\mozilla\Firefox\Profiles\em7quqow.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
[2011-05-10 15:08:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MD\AppData\Roaming\mozilla\Firefox\Profiles\em7quqow.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}-trash
[2011-08-20 17:44:01 | 000,000,000 | ---D | M] ("Foxit PDF Creator Toolbar") -- C:\Users\MD\AppData\Roaming\mozilla\Firefox\Profiles\em7quqow.default\extensions\toolbar@ask.com
[2011-03-13 10:26:16 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2010-08-16 16:15:35 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2011-01-17 12:01:27 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011-03-13 10:26:16 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2010-10-17 16:27:40 | 000,000,000 | ---D | M] (HP Smart Web Printing) -- C:\PROGRAM FILES (X86)\HP\DIGITAL IMAGING\SMART WEB PRINTING\MOZILLAADDON3
[2011-04-15 14:20:18 | 001,034,544 | ---- | M] (BitComet) -- C:\Program Files (x86)\mozilla firefox\plugins\npBitCometAgent.dll
[2011-02-02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2011-07-05 13:32:29 | 000,002,767 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\allegro-pl.xml
[2011-07-05 13:32:29 | 000,001,406 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\fbc-pl.xml
[2011-07-05 13:32:29 | 000,000,917 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\merlin-pl.xml
[2011-07-05 13:32:29 | 000,000,858 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\pwn-pl.xml
[2011-07-05 13:32:29 | 000,001,183 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-pl.xml
[2011-07-05 13:32:29 | 000,001,683 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2011-08-20 20:49:45 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg64.dll (Google Inc.)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files (x86)\BitComet\tools\BitCometBHO_1.5.4.11.dll (BitComet)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL (Microsoft Corporation)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKU\S-1-5-21-581049885-2092088071-771393487-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:64bit: - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4:64bit: - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech Inc.)
O4:64bit: - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [avgnt] E:\MACIEK\Nowy folder\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [Razer Imperator Driver] C:\Program Files (x86)\Razer\Imperator\RazerImperatorTray.exe (Razer USA Ltd)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-581049885-2092088071-771393487-1000..\Run: [AlcoholAutomount] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe (Alcohol Soft Development Team)
O4 - HKU\S-1-5-21-581049885-2092088071-771393487-1000..\Run: [BitComet] C:\Program Files (x86)\BitComet\BitComet.exe (Dostępne tylko dla zarejestrowanych użytkowników)
O4 - HKU\S-1-5-21-581049885-2092088071-771393487-1000..\Run: [DAEMON Tools Lite] E:\MACIEK\programy\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-581049885-2092088071-771393487-1000..\Run: [Gadu-Gadu 10] C:\Program Files (x86)\Gadu-Gadu 10\gg.exe (GG Network S.A.)
O4:64bit: - HKLM..\RunOnce: [GrpConv] C:\Windows\SysNative\grpconv.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [GrpConv] C:\Windows\SysWow64\grpconv.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] E:\MACIEK\Nowy folder\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: &P&obierz &za pomocą BitComet - C:\Program Files (x86)\BitComet\BitComet.exe (Dostępne tylko dla zarejestrowanych użytkowników)
O8:64bit: - Extra context menu item: Funkcja Google Sidewiki - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O8:64bit: - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files (x86)\BitComet\BitComet.exe (Dostępne tylko dla zarejestrowanych użytkowników)
O8 - Extra context menu item: &P&obierz &za pomocą BitComet - C:\Program Files (x86)\BitComet\BitComet.exe (Dostępne tylko dla zarejestrowanych użytkowników)
O8 - Extra context menu item: Funkcja Google Sidewiki - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files (x86)\BitComet\BitComet.exe (Dostępne tylko dla zarejestrowanych użytkowników)
O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files (x86)\BitComet\tools\BitCometBHO_1.5.4.11.dll (BitComet)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} Dostępne tylko dla zarejestrowanych użytkowników (Shockwave ActiveX Control)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} Dostępne tylko dla zarejestrowanych użytkowników (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} Dostępne tylko dla zarejestrowanych użytkowników (Java Plug-in 1.6.0_24)
O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} Dostępne tylko dla zarejestrowanych użytkowników (ActiveScan 2.0 Installer Class)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} Dostępne tylko dla zarejestrowanych użytkowników (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} Dostępne tylko dla zarejestrowanych użytkowników (Java Plug-in 1.6.0_24)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} Dostępne tylko dla zarejestrowanych użytkowników (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)


SafeBootMin:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SafeBootMin:64bit: Base - Driver Group
SafeBootMin:64bit: Boot Bus Extender - Driver Group
SafeBootMin:64bit: Boot file system - Driver Group
SafeBootMin:64bit: File system - Driver Group
SafeBootMin:64bit: Filter - Driver Group
SafeBootMin:64bit: HelpSvc - Service
SafeBootMin:64bit: PCI Configuration - Driver Group
SafeBootMin:64bit: PNP Filter - Driver Group
SafeBootMin:64bit: Primary disk - Driver Group
SafeBootMin:64bit: sacsvr - Service
SafeBootMin:64bit: SCSI Class - Driver Group
SafeBootMin:64bit: System Bus Extender - Driver Group
SafeBootMin:64bit: vmms - Service
SafeBootMin:64bit: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin:64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SafeBootNet:64bit: Base - Driver Group
SafeBootNet:64bit: Boot Bus Extender - Driver Group
SafeBootNet:64bit: Boot file system - Driver Group
SafeBootNet:64bit: File system - Driver Group
SafeBootNet:64bit: Filter - Driver Group
SafeBootNet:64bit: HelpSvc - Service
SafeBootNet:64bit: Messenger - Service
SafeBootNet:64bit: NDIS Wrapper - Driver Group
SafeBootNet:64bit: NetBIOSGroup - Driver Group
SafeBootNet:64bit: NetDDEGroup - Driver Group
SafeBootNet:64bit: Network - Driver Group
SafeBootNet:64bit: NetworkProvider - Driver Group
SafeBootNet:64bit: PCI Configuration - Driver Group
SafeBootNet:64bit: PNP Filter - Driver Group
SafeBootNet:64bit: PNP_TDI - Driver Group
SafeBootNet:64bit: Primary disk - Driver Group
SafeBootNet:64bit: rdsessmgr - Service
SafeBootNet:64bit: sacsvr - Service
SafeBootNet:64bit: SCSI Class - Driver Group
SafeBootNet:64bit: Streams Drivers - Driver Group
SafeBootNet:64bit: System Bus Extender - Driver Group
SafeBootNet:64bit: TDI - Driver Group
SafeBootNet:64bit: vmms - Service
SafeBootNet:64bit: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet:64bit: WudfUsbccidDriver - Driver
SafeBootNet:64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet:64bit: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet:64bit: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet:64bit: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet:64bit: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet:64bit: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

========== Files/Folders - Created Within 30 Days ==========

[2011-08-20 21:07:43 | 000,000,000 | ---D | C] -- C:\Users\MD\AppData\Roaming\Malwarebytes
[2011-08-20 21:07:39 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011-08-20 21:07:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011-08-20 21:07:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011-08-20 21:07:36 | 000,025,912 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2011-08-20 18:29:16 | 000,000,000 | ---D | C] -- C:\Users\MD\AppData\Roaming\Avira
[2011-08-20 18:28:49 | 000,123,784 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avipbb.sys
[2011-08-20 18:28:49 | 000,088,288 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2011-08-20 18:28:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2011-08-20 18:17:20 | 052,390,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MRT.exe
[2011-08-20 17:12:07 | 000,033,800 | ---- | C] (Panda Security, S.L.) -- C:\Windows\SysNative\drivers\pavboot64.sys
[2011-08-20 17:12:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Panda Security
[2011-08-11 11:08:19 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2011-08-11 11:08:18 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2011-07-31 09:46:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gothic III
[2011-07-28 13:16:42 | 000,000,000 | ---D | C] -- C:\Users\MD\Documents\Gothic3ForsakenGods
[2011-07-28 11:19:59 | 000,000,000 | ---D | C] -- C:\Users\MD\Documents\gothic3
[2011-07-28 11:14:40 | 000,000,000 | ---D | C] -- C:\Users\MD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JoWooD Productions Software AG
[2011-07-28 11:09:51 | 000,000,000 | ---D | C] -- C:\Users\MD\AppData\Roaming\InstallShield
[2011-07-24 17:07:38 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011-07-24 17:07:37 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2011-07-24 17:07:37 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2011-07-24 17:07:36 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2011-07-24 17:07:36 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2011-07-24 17:07:36 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2011-07-24 17:07:36 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2011-07-24 17:07:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2011-07-24 17:07:36 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2011-07-24 17:07:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0(35).dll
[2011-07-24 17:07:34 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2011-07-24 17:07:34 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2011-07-24 17:07:34 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0(34).dll
[2011-07-24 17:07:34 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2011-07-24 17:07:34 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2011-07-24 17:07:34 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2011-07-24 17:07:33 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2011-07-24 17:07:33 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2011-07-24 17:07:33 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2011-07-24 17:07:33 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2011-07-24 17:07:18 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2011-07-24 17:07:18 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2011-07-24 17:07:18 | 000,338,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2011-07-24 17:07:18 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2011-07-24 17:07:17 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2011-07-24 17:07:17 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2011-07-24 17:07:16 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2011-07-24 17:07:16 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2011-07-24 17:07:16 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2011-07-24 17:07:16 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2011-07-24 17:07:16 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2011-07-24 17:07:15 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe

========== Files - Modified Within 30 Days ==========

[2011-08-20 21:20:05 | 003,407,872 | -HS- | M] () -- C:\Users\MD\ntuser.dat
[2011-08-20 21:07:39 | 000,000,847 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011-08-20 20:55:45 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-08-20 20:55:36 | 3220,037,632 | -HS- | M] () -- C:\hiberfil.sys
[2011-08-20 20:49:45 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
[2011-08-20 20:22:28 | 000,012,288 | ---- | M] () -- C:\Windows\SysNative\umstartup.etl
[2011-08-20 18:28:54 | 000,001,016 | ---- | M] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2011-08-20 17:04:02 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{ffb62d14-cb3c-11e0-8911-001fd0572d52}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 17:04:02 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{ffb62d14-cb3c-11e0-8911-001fd0572d52}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 17:04:02 | 000,065,536 | -HS- | M] () -- C:\Users\MD\ntuser.dat{ffb62d14-cb3c-11e0-8911-001fd0572d52}.TM.blf
[2011-08-20 16:57:15 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{9d5d2c94-cb3c-11e0-8ef1-001fd0572d52}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 16:57:15 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{9d5d2c94-cb3c-11e0-8ef1-001fd0572d52}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 16:57:15 | 000,065,536 | -HS- | M] () -- C:\Users\MD\ntuser.dat{9d5d2c94-cb3c-11e0-8ef1-001fd0572d52}.TM.blf
[2011-08-20 16:55:08 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{58d19113-cb3c-11e0-b48b-834047388522}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 16:55:08 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{58d19113-cb3c-11e0-b48b-834047388522}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 16:55:08 | 000,065,536 | -HS- | M] () -- C:\Users\MD\ntuser.dat{58d19113-cb3c-11e0-b48b-834047388522}.TM.blf
[2011-08-20 15:35:11 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{53bb76f3-cb2d-11e0-8dfd-846e7285811c}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 15:35:11 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{53bb76f3-cb2d-11e0-8dfd-846e7285811c}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 15:35:11 | 000,065,536 | -HS- | M] () -- C:\Users\MD\ntuser.dat{53bb76f3-cb2d-11e0-8dfd-846e7285811c}.TM.blf
[2011-08-20 14:19:50 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{84e478f3-cb26-11e0-a48b-c8fe7b33de1d}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 14:19:50 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{84e478f3-cb26-11e0-a48b-c8fe7b33de1d}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 14:19:50 | 000,065,536 | -HS- | M] () -- C:\Users\MD\ntuser.dat{84e478f3-cb26-11e0-a48b-c8fe7b33de1d}.TM.blf
[2011-08-20 12:28:46 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{ec92c7f0-cb16-11e0-bd7b-ec5b2f4cca1c}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 12:28:46 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{ec92c7f0-cb16-11e0-bd7b-ec5b2f4cca1c}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 12:28:46 | 000,065,536 | -HS- | M] () -- C:\Users\MD\ntuser.dat{ec92c7f0-cb16-11e0-bd7b-ec5b2f4cca1c}.TM.blf
[2011-08-20 12:24:36 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{8f9711f0-cb16-11e0-ae28-85d50f039a1c}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 12:24:36 | 000,524,288 | -HS- | M] () -- C:\Users\MD\ntuser.dat{8f9711f0-cb16-11e0-ae28-85d50f039a1c}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 12:24:36 | 000,065,536 | -HS- | M] () -- C:\Users\MD\ntuser.dat{8f9711f0-cb16-11e0-ae28-85d50f039a1c}.TM.blf
[2011-08-13 18:29:24 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\Tempas2400.html
[2011-08-13 18:29:24 | 000,002,089 | ---- | M] () -- C:\Users\MD\AppData\Local\TempIu2400.html
[2011-08-11 20:35:38 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempUp4192.html
[2011-08-11 20:35:38 | 000,002,089 | ---- | M] () -- C:\Users\MD\AppData\Local\TempXp4192.html
[2011-08-11 12:56:47 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempIW1980.html
[2011-08-11 11:08:59 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempWL2772.html
[2011-08-10 16:24:03 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempCM4936.html
[2011-08-07 13:21:07 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempOI2880.html
[2011-08-05 13:30:22 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempmA2256.html
[2011-08-03 11:54:24 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempAT3052.html
[2011-08-03 11:54:24 | 000,002,089 | ---- | M] () -- C:\Users\MD\AppData\Local\TempbZ3052.html
[2011-08-03 10:56:00 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempaJ1424.html
[2011-08-03 10:56:00 | 000,002,089 | ---- | M] () -- C:\Users\MD\AppData\Local\TempDt1424.html
[2011-08-02 21:05:44 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempHq2920.html
[2011-08-02 17:07:27 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempIJ3068.html
[2011-08-02 15:10:10 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\Tempcu3492.html
[2011-08-02 08:55:29 | 000,001,044 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011-08-02 08:55:25 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2011-08-01 21:19:01 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempZm2904.html
[2011-08-01 21:11:04 | 000,001,048 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011-08-01 21:02:22 | 000,010,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-08-01 21:02:22 | 000,010,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-08-01 18:41:00 | 000,001,046 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-581049885-2092088071-771393487-1000UA.job
[2011-08-01 18:41:00 | 000,000,994 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-581049885-2092088071-771393487-1000Core.job
[2011-08-01 16:03:29 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\Tempwr2512.html
[2011-07-31 17:59:36 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempoQ2908.html
[2011-07-31 09:46:06 | 000,000,710 | ---- | M] () -- C:\Users\Public\Desktop\Gothic III.lnk
[2011-07-30 19:02:58 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\Tempib2056.html
[2011-07-30 10:05:12 | 052,390,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MRT.exe
[2011-07-29 21:38:19 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempfJ2752.html
[2011-07-29 14:27:34 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\Tempwq2604.html
[2011-07-29 14:27:34 | 000,002,089 | ---- | M] () -- C:\Users\MD\AppData\Local\TempvL2604.html
[2011-07-28 11:57:43 | 000,001,834 | ---- | M] () -- C:\Users\MD\AppData\Roaming\ImperatorProfile0.dat
[2011-07-28 11:18:15 | 000,000,888 | ---- | M] () -- C:\Users\MD\Desktop\Gothic 3 - Zmierzch Bogów.lnk
[2011-07-28 11:14:51 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempTg2316.html
[2011-07-27 18:36:18 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\Tempje2580.html
[2011-07-27 16:18:26 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempBH4464.html
[2011-07-26 20:46:26 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempJS4224.html
[2011-07-26 20:16:39 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TemphM2744.html
[2011-07-26 14:23:11 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempDR2308.html
[2011-07-26 13:50:55 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TemprX2432.html
[2011-07-26 12:49:25 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempjV4228.html
[2011-07-26 10:40:22 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempJt4724.html
[2011-07-26 10:18:23 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempcC2388.html
[2011-07-25 18:42:50 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempLQ2796.html
[2011-07-25 16:17:22 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempLq3308.html
[2011-07-25 15:32:06 | 001,549,696 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011-07-25 15:32:06 | 000,697,674 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2011-07-25 15:32:06 | 000,615,810 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011-07-25 15:32:06 | 000,134,784 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2011-07-25 15:32:06 | 000,106,190 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011-07-25 12:11:46 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempQB4176.html
[2011-07-25 10:57:38 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempMk3612.html
[2011-07-24 19:24:21 | 000,418,416 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011-07-24 19:10:44 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\Tempcb2940.html
[2011-07-24 10:41:05 | 000,002,432 | ---- | M] () -- C:\Users\MD\AppData\Local\TempWi1176.html
[2011-07-24 09:37:12 | 000,002,385 | ---- | M] () -- C:\Users\MD\Desktop\Google Chrome.lnk

========== Files Created - No Company Name ==========

[2011-08-20 21:07:39 | 000,000,847 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011-08-20 18:28:54 | 000,001,016 | ---- | C] () -- C:\Users\Public\Desktop\Avira AntiVir Control Center.lnk
[2011-08-20 16:59:58 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{ffb62d14-cb3c-11e0-8911-001fd0572d52}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 16:59:58 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{ffb62d14-cb3c-11e0-8911-001fd0572d52}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 16:59:58 | 000,065,536 | -HS- | C] () -- C:\Users\MD\ntuser.dat{ffb62d14-cb3c-11e0-8911-001fd0572d52}.TM.blf
[2011-08-20 16:57:15 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{9d5d2c94-cb3c-11e0-8ef1-001fd0572d52}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 16:57:15 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{9d5d2c94-cb3c-11e0-8ef1-001fd0572d52}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 16:57:15 | 000,065,536 | -HS- | C] () -- C:\Users\MD\ntuser.dat{9d5d2c94-cb3c-11e0-8ef1-001fd0572d52}.TM.blf
[2011-08-20 16:55:08 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{58d19113-cb3c-11e0-b48b-834047388522}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 16:55:08 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{58d19113-cb3c-11e0-b48b-834047388522}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 16:55:08 | 000,065,536 | -HS- | C] () -- C:\Users\MD\ntuser.dat{58d19113-cb3c-11e0-b48b-834047388522}.TM.blf
[2011-08-20 15:07:33 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{53bb76f3-cb2d-11e0-8dfd-846e7285811c}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 15:07:33 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{53bb76f3-cb2d-11e0-8dfd-846e7285811c}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 15:07:33 | 000,065,536 | -HS- | C] () -- C:\Users\MD\ntuser.dat{53bb76f3-cb2d-11e0-8dfd-846e7285811c}.TM.blf
[2011-08-20 14:18:55 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{84e478f3-cb26-11e0-a48b-c8fe7b33de1d}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 14:18:55 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{84e478f3-cb26-11e0-a48b-c8fe7b33de1d}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 14:18:55 | 000,065,536 | -HS- | C] () -- C:\Users\MD\ntuser.dat{84e478f3-cb26-11e0-a48b-c8fe7b33de1d}.TM.blf
[2011-08-20 12:27:11 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{ec92c7f0-cb16-11e0-bd7b-ec5b2f4cca1c}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 12:27:11 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{ec92c7f0-cb16-11e0-bd7b-ec5b2f4cca1c}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 12:27:11 | 000,065,536 | -HS- | C] () -- C:\Users\MD\ntuser.dat{ec92c7f0-cb16-11e0-bd7b-ec5b2f4cca1c}.TM.blf
[2011-08-20 12:24:36 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{8f9711f0-cb16-11e0-ae28-85d50f039a1c}.TMContainer00000000000000000002.regtrans-ms
[2011-08-20 12:24:36 | 000,524,288 | -HS- | C] () -- C:\Users\MD\ntuser.dat{8f9711f0-cb16-11e0-ae28-85d50f039a1c}.TMContainer00000000000000000001.regtrans-ms
[2011-08-20 12:24:36 | 000,065,536 | -HS- | C] () -- C:\Users\MD\ntuser.dat{8f9711f0-cb16-11e0-ae28-85d50f039a1c}.TM.blf
[2011-08-13 15:59:01 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempas2400.html
[2011-08-13 15:59:01 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempIu2400.html
[2011-08-11 20:28:40 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempUp4192.html
[2011-08-11 20:28:40 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempXp4192.html
[2011-08-11 12:55:37 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempIW1980.html
[2011-08-11 11:03:05 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempWL2772.html
[2011-08-10 16:22:07 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempCM4936.html
[2011-08-07 13:15:50 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempOI2880.html
[2011-08-05 13:01:21 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempmA2256.html
[2011-08-03 11:18:24 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempAT3052.html
[2011-08-03 11:18:24 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempbZ3052.html
[2011-08-03 10:37:23 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempaJ1424.html
[2011-08-03 10:37:23 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempDt1424.html
[2011-08-02 20:53:28 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempHq2920.html
[2011-08-02 16:26:26 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempIJ3068.html
[2011-08-02 15:06:39 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempcu3492.html
[2011-08-01 20:55:52 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZm2904.html
[2011-08-01 15:49:31 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempwr2512.html
[2011-07-31 17:46:41 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempoQ2908.html
[2011-07-31 09:46:05 | 000,000,710 | ---- | C] () -- C:\Users\Public\Desktop\Gothic III.lnk
[2011-07-30 18:41:44 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempib2056.html
[2011-07-29 20:59:55 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempfJ2752.html
[2011-07-29 13:58:42 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempwq2604.html
[2011-07-29 13:58:42 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempvL2604.html
[2011-07-28 11:18:15 | 000,000,888 | ---- | C] () -- C:\Users\MD\Desktop\Gothic 3 - Zmierzch Bogów.lnk
[2011-07-28 10:58:40 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempTg2316.html
[2011-07-27 18:29:31 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempje2580.html
[2011-07-27 15:36:13 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempBH4464.html
[2011-07-26 20:32:19 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempJS4224.html
[2011-07-26 19:09:55 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemphM2744.html
[2011-07-26 14:05:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempDR2308.html
[2011-07-26 13:49:11 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemprX2432.html
[2011-07-26 12:41:03 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempjV4228.html
[2011-07-26 10:38:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempJt4724.html
[2011-07-26 10:10:54 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempcC2388.html
[2011-07-25 17:55:48 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLQ2796.html
[2011-07-25 15:28:22 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLq3308.html
[2011-07-25 11:46:33 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempQB4176.html
[2011-07-25 10:11:12 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempMk3612.html
[2011-07-24 17:02:31 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempcb2940.html
[2011-07-24 10:39:38 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempWi1176.html
[2011-07-10 09:42:54 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempWM4856.html
[2011-07-09 20:59:31 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempxU4496.html
[2011-07-09 20:17:17 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempnL2628.html
[2011-07-09 17:56:16 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempUC2564.html
[2011-07-08 20:01:22 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZV2568.html
[2011-07-08 16:48:22 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempDL2592.html
[2011-07-08 16:48:22 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempoI2592.html
[2011-07-08 15:24:11 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempfQ2576.html
[2011-07-08 15:24:11 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempRX2576.html
[2011-07-08 12:57:22 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempbv2408.html
[2011-07-08 12:57:22 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempJQ2408.html
[2011-07-08 11:47:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempPa2468.html
[2011-07-07 19:31:03 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemplB2548.html
[2011-07-07 15:46:49 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempXZ2324.html
[2011-07-07 15:46:49 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempVA2324.html
[2011-07-07 14:15:51 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempHs2484.html
[2011-07-07 14:15:51 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempTe2484.html
[2011-07-07 13:22:58 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempTY2380.html
[2011-07-07 13:22:58 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFU2380.html
[2011-07-07 10:00:51 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemphK3124.html
[2011-07-07 10:00:51 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZt3124.html
[2011-07-07 09:49:35 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempMy2448.html
[2011-07-06 19:45:12 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempWB4740.html
[2011-07-06 15:39:06 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempta2412.html
[2011-07-06 14:09:32 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemptG2888.html
[2011-07-06 12:37:07 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLd1644.html
[2011-07-06 10:24:41 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempKX2408.html
[2011-07-06 10:24:41 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFm2408.html
[2011-07-06 09:50:47 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempbl2616.html
[2011-07-05 20:10:16 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempUi1648.html
[2011-07-05 15:27:10 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempOg4156.html
[2011-07-05 11:58:27 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempJy4800.html
[2011-07-05 11:16:17 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempOf2720.html
[2011-07-04 09:50:45 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempvP4376.html
[2011-07-04 09:50:45 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZL4376.html
[2011-07-03 17:08:06 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempjB3692.html
[2011-07-03 15:20:21 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempWU2780.html
[2011-07-02 17:24:05 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempQy2644.html
[2011-07-01 21:08:24 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempBB4488.html
[2011-07-01 20:22:00 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempdj2600.html
[2011-07-01 18:07:41 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempXh4016.html
[2011-07-01 18:07:41 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TemppQ4016.html
[2011-07-01 17:22:10 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempoA2388.html
[2011-07-01 15:29:41 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempQF1080.html
[2011-07-01 14:21:40 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temptn2816.html
[2011-07-01 09:52:52 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempEv2856.html
[2011-07-01 09:34:03 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempGw3308.html
[2011-06-30 12:03:32 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempYm3868.html
[2011-06-29 20:50:49 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempDC2544.html
[2011-06-29 17:31:45 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempuV2956.html
[2011-06-29 17:01:21 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempeH4480.html
[2011-06-29 12:27:17 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempDF1716.html
[2011-06-29 12:27:17 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempNT1716.html
[2011-06-29 11:51:42 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempoA4956.html
[2011-06-29 11:08:19 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempIe2312.html
[2011-06-29 10:42:47 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempBi2600.html
[2011-06-29 10:42:47 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempMi2600.html
[2011-06-29 10:04:10 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempaR3040.html
[2011-06-28 17:36:39 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempVV2664.html
[2011-06-28 12:42:09 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempRu2780.html
[2011-06-28 12:42:09 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempaR2780.html
[2011-06-28 12:02:14 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempmj2528.html
[2011-06-27 18:11:14 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempfE2508.html
[2011-06-27 15:32:43 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempJl3308.html
[2011-06-26 18:07:40 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temppx4968.html
[2011-06-25 15:17:28 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temprp2528.html
[2011-06-24 20:12:13 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempea4364.html
[2011-06-24 18:19:25 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemppK2372.html
[2011-06-24 18:19:25 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempRJ2372.html
[2011-06-24 16:43:14 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempzO2948.html
[2011-06-24 12:50:32 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temptk2736.html
[2011-06-23 18:52:26 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempAK2496.html
[2011-06-23 18:52:26 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TemphZ2496.html
[2011-06-23 15:19:38 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempXn2572.html
[2011-06-23 15:19:38 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempkj2572.html
[2011-06-23 14:28:22 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempnS2544.html
[2011-06-23 14:28:22 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempCW2544.html
[2011-06-22 17:40:08 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempjm1936.html
[2011-06-22 17:40:08 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TemppS1936.html
[2011-06-22 16:55:28 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempnH2552.html
[2011-06-22 14:36:06 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempdT2712.html
[2011-06-22 13:53:04 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempNl2016.html
[2011-06-22 13:33:04 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempyj2636.html
[2011-06-22 13:33:04 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempOA2636.html
[2011-06-22 11:21:54 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempbh2712.html
[2011-06-22 10:43:12 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempve2752.html
[2011-06-22 07:57:03 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempTr2216.html
[2011-06-21 14:06:03 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempHZ2568.html
[2011-06-21 11:40:56 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempsH3440.html
[2011-06-21 09:20:31 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFv2624.html
[2011-06-20 12:24:25 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempnY2596.html
[2011-06-20 10:21:54 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempSi4768.html
[2011-06-19 17:18:15 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempDO2748.html
[2011-06-19 17:18:15 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempNa2748.html
[2011-06-18 12:07:05 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempTj2980.html
[2011-06-18 12:07:05 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempRb2980.html
[2011-06-17 13:15:37 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempDB2264.html
[2011-06-17 09:45:27 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempGT2996.html
[2011-06-16 20:20:38 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempVb2192.html
[2011-06-16 20:20:38 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempyd2192.html
[2011-06-16 18:46:48 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempcn1672.html
[2011-06-16 15:47:41 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempYl4508.html
[2011-06-15 15:59:17 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZH2636.html
[2011-06-15 13:49:59 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFD3144.html
[2011-06-10 12:34:21 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temprw2972.html
[2011-06-05 16:19:17 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempiu1556.html
[2011-06-04 15:21:56 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempMj2732.html
[2011-06-03 16:06:31 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempjmB888.html
[2011-06-02 15:46:24 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempRM4348.html
[2011-06-01 13:13:04 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Templz4664.html
[2011-05-31 19:46:58 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempOG5492.html
[2011-05-31 19:46:58 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempvy5492.html
[2011-05-31 18:49:27 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempts2720.html
[2011-05-29 17:49:45 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempcT2132.html
[2011-05-29 16:36:24 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempqu3044.html
[2011-05-29 16:36:24 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Temple3044.html
[2011-05-26 18:41:44 | 000,196,442 | ---- | C] () -- C:\Windows\lang.ini
[2011-05-26 16:49:34 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempGY2896.html
[2011-05-26 15:04:36 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temphh2532.html
[2011-05-25 17:42:42 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempRK3124.html
[2011-05-25 15:36:26 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFj4772.html
[2011-05-24 18:33:33 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempwq2960.html
[2011-05-24 18:33:33 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Temphf2960.html
[2011-05-22 15:56:16 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempCg2664.html
[2011-05-21 15:06:35 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemprJ2652.html
[2011-05-18 15:51:04 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFl4444.html
[2011-05-16 19:06:31 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFb2600.html
[2011-05-16 19:06:31 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempVp2600.html
[2011-05-14 18:53:02 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFh3024.html
[2011-05-13 16:57:55 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFt2708.html
[2011-05-12 17:23:17 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemppJ2264.html
[2011-05-11 17:51:36 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempYj2744.html
[2011-05-09 16:08:46 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempaZ4676.html
[2011-05-08 15:40:40 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempqf3872.html
[2011-05-07 18:32:17 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempom2612.html
[2011-05-07 18:32:16 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempgB2612.html
[2011-05-07 17:59:19 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temprr5112.html
[2011-05-07 15:33:35 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempnOS968.html
[2011-05-06 19:16:52 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempzn4420.html
[2011-05-06 19:16:52 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempAg4420.html
[2011-05-06 16:09:53 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempJy2888.html
[2011-05-05 20:17:38 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempGz1340.html
[2011-05-05 20:17:38 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZO1340.html
[2011-05-05 19:22:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempEV2088.html
[2011-05-05 16:27:18 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempAs4528.html
[2011-05-04 18:01:17 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempAU4680.html
[2011-05-04 15:49:50 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempew3036.html
[2011-05-04 15:49:50 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempiX3036.html
[2011-05-03 20:43:25 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temppc4004.html
[2011-05-03 17:15:00 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempPl4964.html
[2011-05-02 12:27:06 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZh3040.html
[2011-05-01 16:54:42 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempdA1576.html
[2011-04-29 21:41:42 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemptY4128.html
[2011-04-29 21:41:42 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempDj4128.html
[2011-04-29 20:42:41 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempae4396.html
[2011-04-29 18:41:48 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempgT4864.html
[2011-04-27 20:35:52 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempmi2360.html
[2011-04-27 15:17:39 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempaC2468.html
[2011-04-26 10:01:47 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempbi2404.html
[2011-04-25 14:40:27 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempTQ2068.html
[2011-04-23 18:10:58 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempAb1976.html
[2011-04-21 10:20:22 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempGL4580.html
[2011-04-21 10:20:22 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempES4580.html
[2011-04-20 10:55:58 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempoV2400.html
[2011-04-19 17:27:13 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLd3892.html
[2011-04-18 15:52:26 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempeT2272.html
[2011-04-18 11:39:10 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempxe2368.html
[2011-04-16 18:25:22 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempwi2288.html
[2011-04-15 17:54:07 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempoP2696.html
[2011-04-15 14:02:19 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemplZ2940.html
[2011-04-14 19:57:02 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempyo2644.html
[2011-04-14 19:57:02 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempQJ2644.html
[2011-04-14 19:09:08 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempSK4708.html
[2011-04-14 14:45:27 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempauj740.html
[2011-04-14 14:45:27 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempxys740.html
[2011-04-14 11:10:51 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempwn1988.html
[2011-04-13 18:48:34 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempvK2444.html
[2011-04-13 14:35:11 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempYD2496.html
[2011-04-12 18:45:46 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempsS3048.html
[2011-04-12 16:03:17 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempYF3048.html
[2011-04-10 17:49:50 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempul4532.html
[2011-04-09 20:40:24 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempkn3032.html
[2011-04-09 11:11:51 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempUm2528.html
[2011-04-06 16:46:24 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temppc2108.html
[2011-04-05 18:54:49 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempxM3064.html
[2011-04-05 15:22:01 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempHt3028.html
[2011-04-04 15:59:13 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempwB3064.html
[2011-04-03 16:20:19 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempBZ5040.html
[2011-04-02 16:21:39 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempeL4300.html
[2011-04-02 15:30:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempwr4888.html
[2011-04-02 15:30:57 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempzr4888.html
[2011-04-02 11:33:21 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempcb2544.html
[2011-03-30 15:34:20 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempbO1604.html
[2011-03-29 17:56:51 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempcL3044.html
[2011-03-29 15:51:14 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempRp4012.html
[2011-03-29 15:03:54 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temptd2964.html
[2011-03-27 17:56:05 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemptR5024.html
[2011-03-25 16:27:03 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempfl4520.html
[2011-03-24 20:03:56 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempdr1280.html
[2011-03-24 12:59:10 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempfX3052.html
[2011-03-23 20:14:47 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempxed904.html
[2011-03-23 20:14:47 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempnou904.html
[2011-03-23 17:22:32 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempjS3776.html
[2011-03-23 14:41:20 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempCn1396.html
[2011-03-22 20:23:49 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempTG3756.html
[2011-03-21 18:19:34 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempna3820.html
[2011-03-21 18:00:13 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempkh1700.html
[2011-03-21 15:14:03 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempbH4632.html
[2011-03-20 19:42:08 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempCL2240.html
[2011-03-20 19:42:08 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempca2240.html
[2011-03-20 13:21:49 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempaH4604.html
[2011-03-18 18:30:52 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempSbX688.html
[2011-03-18 14:54:18 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempbB4572.html
[2011-03-17 20:31:12 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemplO3020.html
[2011-03-16 19:05:26 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFf4560.html
[2011-03-16 19:01:28 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempml4424.html
[2011-03-15 16:08:11 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempxN1220.html
[2011-03-14 17:09:18 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempiy1460.html
[2011-03-14 16:57:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempwX4080.html
[2011-03-10 19:11:23 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemppGb424.html
[2011-03-07 19:03:39 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempRS2580.html
[2011-02-22 21:39:04 | 000,240,640 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011-02-07 20:00:08 | 001,529,856 | ---- | C] () -- C:\Windows\SysWow64\ff_samplerate.dll
[2011-02-07 20:00:08 | 000,925,667 | ---- | C] () -- C:\Windows\SysWow64\ffmpegmt.dll
[2011-02-07 20:00:08 | 000,721,798 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011-02-07 20:00:08 | 000,336,384 | ---- | C] () -- C:\Windows\SysWow64\ff_libfaad2.dll
[2011-02-07 20:00:08 | 000,324,096 | ---- | C] () -- C:\Windows\SysWow64\TomsMoComp_ff.dll
[2011-02-07 20:00:08 | 000,216,576 | ---- | C] () -- C:\Windows\SysWow64\ff_libdts.dll
[2011-02-07 20:00:08 | 000,151,552 | ---- | C] () -- C:\Windows\SysWow64\ff_libmad.dll
[2011-02-07 20:00:08 | 000,145,408 | ---- | C] () -- C:\Windows\SysWow64\libmpeg2_ff.dll
[2011-02-07 20:00:08 | 000,140,800 | ---- | C] () -- C:\Windows\SysWow64\ff_unrar.dll
[2011-02-07 20:00:08 | 000,121,856 | ---- | C] () -- C:\Windows\SysWow64\ff_liba52.dll
[2011-02-07 20:00:08 | 000,100,864 | ---- | C] () -- C:\Windows\SysWow64\ff_wmv9.dll
[2011-02-07 20:00:08 | 000,065,024 | ---- | C] () -- C:\Windows\SysWow64\FLT_ffdshow.dll
[2011-02-07 19:45:52 | 000,080,896 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011-02-07 19:39:02 | 004,166,551 | ---- | C] () -- C:\Windows\SysWow64\ffmpeg.dll
[2011-01-17 12:40:42 | 000,183,152 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011-01-17 12:40:39 | 000,066,872 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011-01-17 12:40:38 | 000,669,184 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2011-01-13 17:09:47 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempwd3360.html
[2011-01-01 20:36:05 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempvs4724.html
[2010-12-23 21:52:07 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempzI4580.html
[2010-12-12 21:18:43 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempMI4648.html
[2010-12-11 16:45:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempHC3112.html
[2010-12-07 20:24:44 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempAt3028.html
[2010-12-06 20:43:56 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempsF2320.html
[2010-12-06 20:43:56 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempvH2320.html
[2010-12-03 22:12:47 | 000,001,834 | ---- | C] () -- C:\Users\MD\AppData\Roaming\ImperatorProfile0.dat
[2010-11-27 19:45:41 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempwu1932.html
[2010-11-27 16:21:38 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempGN3912.html
[2010-11-22 19:54:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempuI3016.html
[2010-11-18 19:30:22 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLQ1496.html
[2010-11-18 19:30:22 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLF1496.html
[2010-11-18 17:01:23 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempKM2864.html
[2010-11-17 17:50:11 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempsb4380.html
[2010-11-10 17:19:10 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Temphp2884.html
[2010-11-09 15:56:30 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZG4376.html
[2010-11-09 15:52:32 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempzR5108.html
[2010-11-09 15:52:32 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempfc5108.html
[2010-11-05 14:12:44 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempwLz164.html
[2010-11-04 15:43:31 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempGP4140.html
[2010-11-04 10:01:52 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLn2364.html
[2010-11-04 10:01:52 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempUm2364.html
[2010-10-29 15:33:13 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempaQ3396.html
[2010-10-29 14:45:41 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLh2248.html
[2010-10-29 14:45:41 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempdc2248.html
[2010-10-24 18:26:56 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempnH1944.html
[2010-10-24 16:06:09 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempGR4688.html
[2010-10-22 14:12:15 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempXb4624.html
[2010-10-17 16:08:23 | 000,172,480 | ---- | C] () -- C:\Windows\hpoins44.dat
[2010-10-17 15:58:10 | 000,137,732 | ---- | C] () -- C:\Windows\hpoins44.dat.temp
[2010-10-17 15:58:10 | 000,000,512 | ---- | C] () -- C:\Windows\hpomdl44.dat.temp
[2010-10-13 17:32:57 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZG2448.html
[2010-10-11 19:23:44 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempMR5096.html
[2010-10-11 16:10:04 | 000,122,884 | ---- | C] () -- C:\Windows\UnGins.exe
[2010-10-06 14:46:52 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempmQ2392.html
[2010-10-05 15:22:05 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempMK2424.html
[2010-10-04 16:24:48 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempLq4792.html
[2010-09-30 19:16:21 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempYl2864.html
[2010-09-29 19:55:16 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempEA2296.html
[2010-09-29 17:29:51 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempsy4260.html
[2010-09-29 17:28:29 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempFl4804.html
[2010-09-29 17:25:03 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempaC1992.html
[2010-09-29 16:09:49 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempfj2104.html
[2010-09-24 17:25:49 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempdu2480.html
[2010-08-31 20:21:18 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempnk1352.html
[2010-08-31 11:42:10 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempNP2236.html
[2010-08-27 14:12:47 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempZq2368.html
[2010-08-26 17:36:19 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TemphL2788.html
[2010-08-26 17:36:19 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempVc2788.html
[2010-08-25 17:41:23 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempch2464.html
[2010-08-24 13:49:59 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempBL5508.html
[2010-08-24 13:49:59 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempgJ5508.html
[2010-08-24 13:48:52 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\Tempbq5272.html
[2010-08-24 13:48:52 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempXm5272.html
[2010-08-23 19:00:56 | 000,002,432 | ---- | C] () -- C:\Users\MD\AppData\Local\TempbJ3216.html
[2010-08-23 19:00:56 | 000,002,089 | ---- | C] () -- C:\Users\MD\AppData\Local\TempBu3216.html
[2010-08-18 21:56:38 | 000,000,151 | ---- | C] () -- C:\Windows\SysWow64\Registration.ini
[2010-08-14 10:45:18 | 000,249,856 | ---- | C] () -- C:\Windows\SysWow64\dxr.dll
[2010-08-14 10:45:10 | 000,358,400 | ---- | C] () -- C:\Windows\SysWow64\gdsmux.exe
[2010-08-14 10:43:52 | 000,150,528 | ---- | C] () -- C:\Windows\SysWow64\mkx.dll
[2010-08-14 10:43:42 | 000,109,568 | ---- | C] () -- C:\Windows\SysWow64\avi.dll
[2010-08-14 10:43:34 | 000,141,824 | ---- | C] () -- C:\Windows\SysWow64\mp4.dll
[2010-08-14 10:43:22 | 000,123,392 | ---- | C] () -- C:\Windows\SysWow64\ogm.dll
[2010-08-14 10:42:54 | 000,113,152 | ---- | C] () -- C:\Windows\SysWow64\dsmux.exe
[2010-08-14 10:42:48 | 000,154,112 | ---- | C] () -- C:\Windows\SysWow64\ts.dll
[2010-08-14 10:42:10 | 000,097,792 | ---- | C] () -- C:\Windows\SysWow64\avs.dll
[2010-08-14 10:42:06 | 000,137,728 | ---- | C] () -- C:\Windows\SysWow64\mkv2vfr.exe
[2010-08-14 10:41:54 | 000,093,184 | ---- | C] () -- C:\Windows\SysWow64\avss.dll
[2010-08-14 10:40:02 | 000,080,384 | ---- | C] () -- C:\Windows\SysWow64\mkzlib.dll
[2010-08-14 10:39:58 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\mkunicode.dll
[2010-08-02 16:49:01 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
[2010-06-26 15:11:16 | 000,109,224 | ---- | C] () -- C:\Users\MD\AppData\Local\GDIPFONTCACHEV1.DAT
[2009-08-11 23:21:26 | 000,087,552 | ---- | C] () -- C:\Windows\SysWow64\ac3config.exe
[2009-08-11 23:21:20 | 001,021,440 | ---- | C] () -- C:\Windows\SysWow64\ac3filter_intl.dll
[2009-07-14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009-07-14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009-07-14 04:35:42 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini
[2009-07-14 04:34:57 | 000,000,513 | ---- | C] () -- C:\Windows\win.ini
[2009-07-14 04:34:57 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini
[2009-07-14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009-07-14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009-06-11 11:30:02 | 000,000,586 | ---- | C] () -- C:\Windows\hpomdl44.dat
[2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009-01-11 00:15:44 | 000,159,744 | ---- | C] () -- C:\Windows\SysWow64\mmfinfo.dll
[2008-11-06 17:37:32 | 003,596,288 | ---- | C] () -- C:\Windows\SysWow64\qt-dx331.dll
[2007-07-19 13:50:12 | 000,104,520 | ---- | C] () -- C:\Windows\SysWow64\OSD.dll
[2007-06-21 08:34:08 | 000,203,328 | R--- | C] () -- C:\Windows\GSetup.exe
[2006-03-04 06:52:00 | 000,088,576 | ---- | C] () -- C:\Windows\SysWow64\OptimFROG.dll

========== LOP Check ==========

[2011-08-20 18:23:22 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\BitComet
[2010-10-11 16:08:48 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\DAEMON Tools Lite
[2011-05-27 09:47:55 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\DisneyInteractiveStudios
[2011-04-24 18:34:05 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\Foxit Software
[2010-08-26 17:36:54 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\Gadu-Gadu 10
[2010-09-28 14:26:55 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\Leadertech
[2010-11-05 14:13:09 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\OpenFM
[2011-03-03 17:03:46 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\Rovio
[2010-08-19 13:41:36 | 000,000,000 | ---D | M] -- C:\Users\MD\AppData\Roaming\WB Games
[2011-07-02 14:49:33 | 000,032,608 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========


< %systemdrive%\*.* >
[2010-09-28 15:09:02 | 000,400,781 | ---- | M] () -- C:\AnalysisLog.sr0
[2010-08-03 11:32:59 | 000,000,087 | ---- | M] () -- C:\csb.log
[2011-08-20 20:55:36 | 3220,037,632 | -HS- | M] () -- C:\hiberfil.sys
[2011-08-20 20:55:39 | 4293,386,240 | -HS- | M] () -- C:\pagefile.sys
[2010-08-03 11:05:18 | 000,000,396 | ---- | M] () -- C:\RHDSetup.log
[2011-08-20 21:06:19 | 000,000,357 | ---- | M] () -- C:\rkill.log
[2010-08-16 08:53:35 | 000,000,122 | ---- | M] () -- C:\service.log


< MD5 for: AGP440.SYS >
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys

< MD5 for: ATAPI.SYS >
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: BEEP.SYS >
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\SysNative\drivers\beep.sys
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\winsxs\amd64_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_201592fa214e4f02\beep.sys

< MD5 for: CDROM.SYS >
[2009-07-14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: NDIS.SYS >
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\SysNative\drivers\ndis.sys
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2009-07-14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

< MD5 for: USERINIT.EXE >
[2010-11-20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010-11-20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009-07-14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009-07-14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2009-05-26 19:47:22 | 000,031,232 | ---- | M] (NirSoft) MD5=AC6094297CD882B8626466CDEB64F19F -- C:\Users\MD\AppData\Local\Temp\RarSFX0\userinit.exe
[2009-05-26 19:47:22 | 000,031,232 | ---- | M] (NirSoft) MD5=AC6094297CD882B8626466CDEB64F19F -- C:\Users\MD\AppData\Local\Temp\RarSFX1\userinit.exe
[2009-05-26 19:47:22 | 000,031,232 | ---- | M] (NirSoft) MD5=AC6094297CD882B8626466CDEB64F19F -- C:\Users\MD\AppData\Local\Temp\RarSFX2\userinit.exe
[2010-11-20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010-11-20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009-07-14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009-10-28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009-05-26 19:47:22 | 000,031,232 | ---- | M] (NirSoft) MD5=AC6094297CD882B8626466CDEB64F19F -- C:\Users\MD\AppData\Local\Temp\RarSFX0\winlogon.exe
[2009-05-26 19:47:22 | 000,031,232 | ---- | M] (NirSoft) MD5=AC6094297CD882B8626466CDEB64F19F -- C:\Users\MD\AppData\Local\Temp\RarSFX1\winlogon.exe
[2009-05-26 19:47:22 | 000,031,232 | ---- | M] (NirSoft) MD5=AC6094297CD882B8626466CDEB64F19F -- C:\Users\MD\AppData\Local\Temp\RarSFX2\winlogon.exe
[2009-10-28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< End of report >


``````````a tu extras`````
OTL Extras logfile created on: 2011-08-20 21:18:34 - Run 1
OTL by OldTimer - Version 3.2.26.5 Folder = E:\MACIEK
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

4,00 Gb Total Physical Memory | 3,18 Gb Available Physical Memory | 79,47% Memory free
8,00 Gb Paging File | 7,26 Gb Available in Paging File | 90,85% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 198,62 Gb Total Space | 158,84 Gb Free Space | 79,97% Space Free | Partition Type: NTFS
Drive D: | 198,72 Gb Total Space | 185,44 Gb Free Space | 93,32% Space Free | Partition Type: NTFS
Drive E: | 198,72 Gb Total Space | 142,84 Gb Free Space | 71,88% Space Free | Partition Type: NTFS

Computer Name: MD-KOMPUTER | User Name: MD | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-581049885-2092088071-771393487-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L" File not found
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{302725CC-C7B9-4650-8602-7F353B01366A}" = ESET NOD32 Antivirus
"{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum obsługi urządzeń z systemem Windows Mobile
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 266.58
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 266.58
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 266.58
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{BE930E38-7BB3-45B6-85B2-5251F374F844}" = 64 Bit HP CIO Components Installer
"{CDBF8C2D-04B0-4F9B-9AE1-7422F7F0EC94}" = HP Deskjet F2400 All-In-One Driver Software 13.0 Rel .6
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"HP Imaging Device Functions" = HP Imaging Device Functions 13.0
"HP Print Projects" = HP Print Projects 1.0
"HP Smart Web Printing" = HP Smart Web Printing 4.5
"HP Solution Center & Imaging Support Tools" = HP Solution Center 13.0
"HPExtendedCapabilities" = HP Customer Participation Program 13.0
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Shop for HP Supplies" = Shop for HP Supplies
"WinRAR archiver" = Archiwizator WinRAR

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{02B244A2-7F6A-42E8-A36F-8C385D7A1625}" = Gothic III
"{07FB17D8-7DB6-4F06-80C4-8BE1719CB6A1}" = hpWLPGInstaller
"{0F367CA3-3B2F-43F9-A44A-25A8EE69E45D}" = Scan
"{13A5E785-5197-4EAD-8EE3-D660271E49BC}" = Feedback Tool
"{153C7D89-9CF4-4719-A551-C5BF45236DB5}" = redist
"{175F0111-2968-4935-8F70-33108C6A4DE3}" = MarketResearch
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{21A2F5EE-1DC5-488A-BE7E-E526F8C61488}" = DeviceDiscovery
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 24
"{2DD388FF-6422-43C9-86A1-C7A99C83E946}" = ASUS nVidia Driver
"{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}" = Logitech SetPoint
"{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}" = BufferChm
"{42E2EEB2-D48E-4A47-B181-32ECA031D93B}" = DJ_AIO_06_F2400_SW_Min
"{43CDF946-F5D9-4292-B006-BA0D92013021}" = WebReg
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A70EF07-7F88-4434-BB61-D1DE8AE93DD4}" = SolutionCenter
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5869CE1E-BC0B-4648-B1AE-6EF4A985590C}" = Dynamic Energy Saver 1.0 B8.0128.1
"{63FF21C9-A810-464F-B60A-3111747B1A6D}" = GPBaseService2
"{64958DA4-79D3-43FD-AF06-720DAD044F9E}" = LEGO? Pirates of the Caribbean The Video Game
"{68A10D12-0D0F-4212-BDE6-D87FAD32A8FA}" = SmartWebPrinting
"{6B2FFB21-AC88-45C3-9A7D-4BB3E744EC91}" = HPSSupply
"{6BAA71B6-8F43-4C72-931A-3354ABB0258A}" = F2400
"{6BBA26E9-AB03-4FE7-831A-3535584CA002}" = Toolbox
"{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7925AD2D-53A7-4101-988F-5EF39160D950}_is1" = abc.ultra
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{8CC990CD-87C8-475C-AC32-8A7984E2FCFA}" = CDDRV_Installer
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A1E1A376-49D4-4960-8599-D5D26A4C2E7B}" = Razer Imperator
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AE8705FB-E13C-40A9-8A2D-68D6733FBFC2}" = Status
"{B1ADF008-E898-4FE2-8A1F-690D9A06ACAF}" = DolbyFiles
"{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
"{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{C43326F5-F135-4551-8270-7F7ABA0462E1}" = HPProductAssistant
"{C5A8DF48-580B-44D3-B2B2-E965A9368F28}" = LEGO? Harry Potter?: Years 1-4
"{C75CDBA2-3C86-481e-BD10-BDDA758F9DFF}" = hpPrintProjects
"{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget
"{D651CB41-D92C-4639-BC24-9A926FEA24D2}" = Gothic 3 - Zmierzch Bogów
"{DC0A5F99-FD66-433F-9D3A-05DCBA64BE42}" = TrayApp
"{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
"{EFB25A40-6FB0-11D8-8203-0060520AECC4}" = Akademia Szybkiego Czytania - Złota Edycja
"{FAF26102-09D7-4C58-AB01-0D59A2E517CA}" = Copy
"{FEFAF112-4DA8-479C-89E2-7DE25091711A}" = Call of Juarez - Więzy Krwi
"ActiveScan 2.0" = Panda ActiveScan 2.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"BitComet" = BitComet 1.27
"Deluxe Ski Jump 3_is1" = Deluxe Ski Jump 3 v1.7.0
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Foxit Reader" = Foxit Reader
"Gadu-Gadu 10" = Gadu-Gadu 10
"InstallShield_{FEFAF112-4DA8-479C-89E2-7DE25091711A}" = Call of Juarez - Więzy Krwi
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware wersja 1.51.1.1800
"Mozilla Firefox (3.6.18)" = Mozilla Firefox (3.6.18)
"Nero7Lite_is1" = Nero 7 Lite
"NSS" = Norton Security Scan
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"PowerISO" = PowerISO
"PunkBusterSvc" = PunkBuster Services
"RealAlt_is1" = Real Alternative 2.0.2
"Winamp" = Winamp
"Windows 7 - Codec Pack" = Windows 7 Codec Pack 3.0.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-581049885-2092088071-771393487-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"UnityWebPlayer" = Unity Web Player

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 2011-08-15 13:26:12 | Computer Name = MD-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: Gothic III Forsaken Gods.exe, wersja:
1.80.25931.29, sygnatura czasowa: 0x490b03fc Nazwa modułu powodującego błąd: Engine.dll,
wersja: 1.60.25931.29, sygnatura czasowa: 0x490aff91 Kod wyjątku: 0xc0000005 Przesunięcie
błędu: 0x003a50c5 Identyfikator procesu powodującego błąd: 0x13d8 Godzina uruchomienia
aplikacji powodującej błąd: 0x01cc5b706d36fbd0 Ścieżka aplikacji powodującej błąd:
E:\MACIEK\GRY\gothic zb\Gothic III Forsaken Gods.exe Ścieżka modułu powodującego
błąd: E:\MACIEK\GRY\gothic zb\Engine.dll Identyfikator raportu: aba95a3f-c763-11e0-9c89-001fd0572d52

Error - 2011-08-15 13:28:02 | Computer Name = MD-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: Gothic III Forsaken Gods.exe, wersja:
1.80.25931.29, sygnatura czasowa: 0x490b03fc Nazwa modułu powodującego błąd: Game.dll,
wersja: 1.60.25931.29, sygnatura czasowa: 0x490b03cc Kod wyjątku: 0xc0000005 Przesunięcie
błędu: 0x00054298 Identyfikator procesu powodującego błąd: 0x5f4 Godzina uruchomienia
aplikacji powodującej błąd: 0x01cc5b70af550027 Ścieżka aplikacji powodującej błąd:
E:\MACIEK\GRY\gothic zb\Gothic III Forsaken Gods.exe Ścieżka modułu powodującego
błąd: E:\MACIEK\GRY\gothic zb\Game.dll Identyfikator raportu: ed0f7d94-c763-11e0-9c89-001fd0572d52

Error - 2011-08-15 13:28:03 | Computer Name = MD-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: Gothic III Forsaken Gods.exe, wersja:
1.80.25931.29, sygnatura czasowa: 0x490b03fc Nazwa modułu powodującego błąd: Engine.dll,
wersja: 1.60.25931.29, sygnatura czasowa: 0x490aff91 Kod wyjątku: 0xc0000005 Przesunięcie
błędu: 0x003a50c5 Identyfikator procesu powodującego błąd: 0x5f4 Godzina uruchomienia
aplikacji powodującej błąd: 0x01cc5b70af550027 Ścieżka aplikacji powodującej błąd:
E:\MACIEK\GRY\gothic zb\Gothic III Forsaken Gods.exe Ścieżka modułu powodującego
błąd: E:\MACIEK\GRY\gothic zb\Engine.dll Identyfikator raportu: edaf907c-c763-11e0-9c89-001fd0572d52

Error - 2011-08-20 10:55:11 | Computer Name = MD-Komputer | Source = ESENT | ID = 455
Description = Catalog Database (896) Catalog Database: Wystąpił błąd -1811 podczas
otwierania pliku dziennika C:\Windows\system32\CatRoot2\edb00523.log.

Error - 2011-08-20 10:55:11 | Computer Name = MD-Komputer | Source = Microsoft-Windows-CAPI2 | ID = 257
Description = Zainicjowanie bazy danych wykazu przez Usługi kryptograficzne nie
powiodło się. Błąd ESENT: -528.

Error - 2011-08-20 11:12:15 | Computer Name = MD-Komputer | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. .

Error - 2011-08-20 11:12:15 | Computer Name = MD-Komputer | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. .

Error - 2011-08-20 12:39:30 | Computer Name = MD-Komputer | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. .

Error - 2011-08-20 12:39:30 | Computer Name = MD-Komputer | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. .

Error - 2011-08-20 15:18:19 | Computer Name = MD-Komputer | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej. .

[ System Events ]
Error - 2011-08-20 15:12:14 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068

Error - 2011-08-20 15:12:14 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068

Error - 2011-08-20 15:12:14 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068

Error - 2011-08-20 15:13:11 | Computer Name = MD-Komputer | Source = DCOM | ID = 10005
Description =

Error - 2011-08-20 15:17:14 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068

Error - 2011-08-20 15:17:14 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068

Error - 2011-08-20 15:17:14 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068

Error - 2011-08-20 15:19:22 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068

Error - 2011-08-20 15:19:22 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068

Error - 2011-08-20 15:19:22 | Computer Name = MD-Komputer | Source = Service Control Manager | ID = 7001
Description = Usługa Przeglądarka komputera zależy od usługi Serwer, której nie
można uruchomić z powodu następującego błędu: %%1068


< End of report >


sorry , że nie w tabelce
licze na czyjąś pomoc :pray:


/DUBEL


  • Reklama

Wróć do „Śmietnik”



Kto jest online

Użytkownicy przeglądający to forum: Obecnie na forum nie ma żadnego zarejestrowanego użytkownika i 1 gość