~ ZHPDiag v2015.8.17.120 Przez Nicolas Coolman (2015/08/17) ~ rozpoczety przez USER (Administrator) (2015/08/17 21:29:03) ~ Strona: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Stan wersja: Wersja OK ~ : Skaner ~ Raport: C:\Users\USER\Desktop\ZHPDiag.txt ~ Raport: C:\Users\USER\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System uruchamiania: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Przegladarek internetowych (2) - 0s MFIE: Mozilla Firefox 40.0.2 (x86 fr) v40.0.2 MSIE: Internet Explorer v9.0.8112.16421 ---\\ Informacje o produkcie Windows (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK (Auto) ---\\ System ochrony oprogramowania (2) - 1s Malwarebytes Anti-Malware version 2.1.8.1057 Windows Defender WVISTA (Activate) ---\\ System optymalizacji oprogramowania (1) - 1s CCleaner v5.08 ---\\ Oprogramowania nadzoru (2) - 1s Adobe Flash Player 10 ActiveX Adobe Reader 7.0.5 - Polish ---\\ Informacje o systemie (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 2, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 1570.564 MB (35% free) ~ System Restore: Activé (Enable) ~ System drive C: has 20 GB free of 157 GB ---\\ Polaczenie systemu tryb (3) - 0s ~ Computer Name: USER-PC ~ User Name: USER ~ Logged in as Administrator ---\\ Wyliczenie jednostek dysku (1) - 2s ~ Drive C: has 20 GB free of 157 GB (System) ---\\ Panstwa z centrum zabezpieczen systemu Windows (12) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Szukaj pliku rodzajowego (22) - 0s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Eksplorator Windows.) () -- C:\Windows\Explorer.exe [2926592] [MD5.4B555106290BD117334E9A08761C035A] - (.Microsoft Corporation - Proces hosta systemu Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Aplikacja uruchamiania systemu Windows.) () -- C:\Windows\System32\Wininit.exe [96768] [MD5.152110AF82E06FF13C325EB99236B271] - (.Microsoft Corporation - Rozszerzenia internetowe Win32.) () -- C:\Windows\System32\wininet.dll [1129472] [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Aplikacja logowania systemu Windows.) () -- C:\Windows\System32\Winlogon.exe [314368] [MD5.F5272A105F59A7B3B345D9D6D87DA7AD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [273408] [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [19944] [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70144] [MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [67072] [MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [75264] [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [561152] [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Sterownik portu i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [54784] [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [100864] [MD5.1B864548B2ACEC1C0BB29B615CC42978] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [107008] [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [185856] [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Sterownik systemu plików NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1082232] [MD5.8A79FDF04A73428597E2CAF9D0D67850] - (.Microsoft Corporation - Sterownik portu równoległego.) () -- C:\Windows\System32\drivers\Parport.sys [79360] [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [242688] [MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [66560] [MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [72192] [MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Sterownik kopiowania woluminów w tle.) () -- C:\Windows\System32\drivers\volsnap.sys [224640] ---\\ Rozpoczela proces (9) - 1s [MD5.31B8835B003CAA6D31BEAD83DDBF98E5] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.8.) -- C:\Windows\System32\nvvsvc.exe [634656] [PID.892] [MD5.1ED58DA041A992EEEC934290508B6B71] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [865056] [PID.1404] [MD5.31B8835B003CAA6D31BEAD83DDBF98E5] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.8.) -- C:\Windows\System32\nvvsvc.exe [634656] [PID.1412] [MD5.3A2BDD76E7D2A5F40A7174793D1BA794] - (...) -- C:\Windows\System32\PnkBstrA.exe [75136] [PID.2416] [MD5.B776DFE408E415AA901030C022EEB7DA] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [1821472] [PID.3276] [MD5.0629259E3AF6BB0534FCECA208973404] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1258856] [PID.2648] [MD5.654A1AD33C486830F63BA84E86928F45] - (.ZTE - PPPOE.) -- C:\Program Files\neostrada tp\TP.exe [765952] [PID.3952] [MD5.749C9E51E6D5A5AC23D2B4B8B63CAFE9] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [377000] [PID.3640] [MD5.8BBBDE2F8710EA78AE249C508F96F498] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\USER\AppData\Roaming\ZHP\ZHPDiag3.exe [1902592] [PID.3128] ---\\ Mozilla Firefox, pluginy, start, wyszukaj, rozszerzenia (P2,M0,M1,M2,M3) (5) - 1s P2 - EXT FILE: (...) -- C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\r659bnet.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll P2 - FPN: [HKLM] [@google.com/npPicasa2,version=2.0.0] - (.Google, Inc..) -- C:\Program Files\Picasa2\npPicasa2.dll P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc..) -- C:\Program Files\Google\Picasa3\npPicasa3.dll ---\\ Internet Explorer, start, wyszukaj, URLSearchHook, Phishing (R0,R1,R3,R4) (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer, zarzadzanie serwerem Proxy (R5) (3) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analiza wierszy F0,F1,F2,F3 - IniFiles, ladowanie programów (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Przekierowanie pliku Hosts (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (19) ---\\ Aplikacje rozpoczete przez wpisywac do rejestru i plików (O4) (4) - 0s O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Proces hosta systemu Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Proces hosta systemu Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe ---\\ Zmiana adresu domeny DNS (O17) (11) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 194.204.152.34 194.204.159.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 194.204.152.34 194.204.159.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.25.67.5 194.204.159.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 194.204.152.34 194.204.159.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 213.25.67.5 194.204.159.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS3\Services\Tcpip\Parameters: NameServer = 194.204.159.1,194.204.152.34 O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 213.25.67.5 194.204.159.1 ---\\ Wykaz uslug innej firmy niz Microsoft NT i niepelnosprawnych (O23) (5) - 0s O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.8.) - C:\Windows\System32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe ---\\ Zadania zaplanowane w trybie automatycznym (O39) (9) - 4s [MD5.3D01BD151A423F6B7D89970E42E31E46] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6453528] [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskMachineCore] (...) -- C:\Program Files\Google\Update\GoogleUpdate.exe (.not file.) [0] O39 - APT: GoogleUpdateTaskMachineCore - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1032] O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2770] =>.Piriform Ltd O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3156] O39 - APT: GoogleUpdateTaskMachineCore - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3780] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{005CD2A4-CD7D-4414-9F65-B311B8E9C8D1} [3020] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{AD56DF56-4D02-4916-A125-791757FD2378} [2940] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{F7AB581E-AAAB-4F87-92DD-C547D1B85C8E} [3022] ---\\ Zainstalowane oprogramowanie (O42) (57) - 18s O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: BusinessCardsMX 3.94 - (.MOJOSOFT.) [HKLM] -- BusinessCardsMX3_is1 O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM] -- com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler O42 - Logiciel: FTP Expert 3 - (...) [HKLM] -- FTP Expert 3 O42 - Logiciel: HP LaserJet 3050/3052/3055/3390/3392 4.0 - (.HP.) [HKLM] -- HP LaserJet 3050/3052/3055/3390/3392 O42 - Logiciel: HP Customer Participation Program 8.0 - (.HP.) [HKLM] -- HPExtendedCapabilities O42 - Logiciel: VIA Platforma Menedżera urządzeń - (.VIA Technologies, Inc..) [HKLM] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169} O42 - Logiciel: IrfanView (remove only) - (...) [HKLM] -- IrfanView O42 - Logiciel: Aktualizacja zabezpieczeń dla programu Windows Media Player (KB2845142) - (.Microsoft Corporation.) [HKLM] -- KB2845142_WM64 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 O42 - Logiciel: K-Lite Mega Codec Pack 2.01 - (...) [HKLM] -- KLiteCodecPack_is1 O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1 O42 - Logiciel: Mozilla Firefox 40.0.2 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 40.0.2 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: PDF Editor 1 - (...) [HKLM] -- PDF Editor 1 O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM] -- PunkBusterSvc O42 - Logiciel: Księga Przychodów i Rozchodów 1.10 - (...) [HKLM] -- ST6UNST #1 O42 - Logiciel: Fakturowanie 1.6 - (...) [HKLM] -- ST6UNST #2 O42 - Logiciel: Kadry, Płace i ZUS 4.16 - (...) [HKLM] -- ST6UNST #3 O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker O42 - Logiciel: VIA Rhine-Family Fast-Ethernet Adapter - (...) [HKLM] -- VN_VUIns_Rhine_VIA O42 - Logiciel: Archiwizator WinRAR - (...) [HKLM] -- WinRAR archiver O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPFix_is1 O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {00203668-8170-44A0-BE44-B632FA4D780F} O42 - Logiciel: Testy B - (.Grupa IMAGE sp. z o.o..) [HKLM] -- {01D8CA8B-3F5F-4590-A0F3-36373BE97866}_is1 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: 4Trans 3.2 - (.PC NET SERVICE.) [HKLM] -- {1DD59D22-79C5-4FAA-A9B8-F39AC9BB1632} O42 - Logiciel: Skype™ 7.0 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} O42 - Logiciel: Java(TM) 6 Update 22 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216022FF} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3} O42 - Logiciel: Java(TM) 6 Update 7 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160070} O42 - Logiciel: Macromedia Flash MX - (.Macromedia.) [HKLM] -- {3BE480ED-E17A-431A-981C-5C2EDDBCD3BF} O42 - Logiciel: Doradca uaktualnienia systemu Windows Vista - (.Microsoft Corporation.) [HKLM] -- {3EAD64E4-C25F-4745-BE52-4BBF61643ACB} O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Nero 7 Essentials - (.Nero AG.) [HKLM] -- {6D6C1253-F5A2-4E0C-9070-F3C1176C1045} O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM] -- {77DCDCE3-2DED-62F3-8154-05E745472D07} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {8DC42D05-680B-41B0-8878-6C14D24602DB} O42 - Logiciel: Pakiet zgodności dla systemu Office 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-0415-0000-0000000FF1CE} O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {A80FA752-C491-4ED9-ABF0-4278563160B2} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Reader 7.0.5 - Polish - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1045-7B44-A70500000002} O42 - Logiciel: NVIDIA Sterownik graficzny 307.83 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: Aktualizacje NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF} O42 - Logiciel: MSXML 4.0 SP2 (KB941833) - (.Microsoft Corporation.) [HKLM] -- {C523D256-313D-4866-B36A-F3DE528246EF} O42 - Logiciel: fillUp Przyjazne formularze - (.e-file sp. z o.o..) [HKLM] -- {D4A8DDEF-CE67-4466-9A68-9C93D7322CEB}_is1 O42 - Logiciel: SoundMAX - (.Analog Devices.) [HKLM] -- {F0A37341-D692-11D4-A984-009027EC0A9C} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: PC Probe II - (...) [HKLM] -- {F7338FA3-DAB5-49B2-900D-0AFB5760C166} O42 - Logiciel: JNLP - (.JNLP.) [HKCU] -- JNLP ---\\ HKCU & HKLM Software Keys (133) - 18s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\ahead HKLM\SOFTWARE\ALWIL Software HKLM\SOFTWARE\Analog Devices HKLM\SOFTWARE\AppDataLow HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ASUS HKLM\SOFTWARE\Audible HKLM\SOFTWARE\Borland HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\Business Objects HKLM\SOFTWARE\BVRP Software HKLM\SOFTWARE\CA561B HKLM\SOFTWARE\Canon HKLM\SOFTWARE\Codec tweak Tool HKLM\SOFTWARE\Conexant HKLM\SOFTWARE\Data Fellows HKLM\SOFTWARE\Debug HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\ESET HKLM\SOFTWARE\FRANCE TELECOM HKLM\SOFTWARE\Futuremark HKLM\SOFTWARE\Gabest HKLM\SOFTWARE\Garmin HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\Hewlett-Packard HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\INELO HKLM\SOFTWARE\InstallationKit HKLM\SOFTWARE\InstalledOptions HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\IrfanView HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Khronos HKLM\SOFTWARE\KLCodecPack HKLM\SOFTWARE\Logitech HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\MDC HKLM\SOFTWARE\MimarSinan HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nero HKLM\SOFTWARE\Nikon HKLM\SOFTWARE\Nokia HKLM\SOFTWARE\NOS HKLM\SOFTWARE\NVIDIA Corporation HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\On2 Technologies HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\PNS HKLM\SOFTWARE\RALINK HKLM\SOFTWARE\RealNetworks HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\S3R521 HKLM\SOFTWARE\SiSoftware HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Symantec HKLM\SOFTWARE\SymNRT HKLM\SOFTWARE\The Silicon Realms Toolworks HKLM\SOFTWARE\VIA Technologies, Inc HKLM\SOFTWARE\Visicom Media HKLM\SOFTWARE\VN_VUIns HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\WholeSecurity HKLM\SOFTWARE\ZTE HKLM\SOFTWARE\Even Balance HKCU\SOFTWARE\AC3filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Ahead HKCU\SOFTWARE\Aidem Media HKCU\SOFTWARE\ALWIL Software HKCU\SOFTWARE\Analog Devices HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\BVRP Software HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\CeQuadrat HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\Electronic Arts HKCU\SOFTWARE\ESET HKCU\SOFTWARE\F-Secure Antibot HKCU\SOFTWARE\F-SecureRemovalToolsState HKCU\SOFTWARE\FotoWire HKCU\SOFTWARE\G DATA Software HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GrupaImage HKCU\SOFTWARE\GSpot Appliance Corp HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\INELO HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\JEDI-VCL HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept (Nikon) HKCU\SOFTWARE\MimarSinan HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nikon HKCU\SOFTWARE\NOS HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\NVIDIA nvCpl Container HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\PNS HKCU\SOFTWARE\RALINK HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\roxio HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Sterm HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\TheCreativeAssembly HKCU\SOFTWARE\TICKETPRO HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WebApp HKCU\SOFTWARE\Webshots HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software ---\\ Zawartosc folderów programów (O43) (219) - 12s O43 - CFD: 2008/07/29 10:13:03 - [] D -- C:\Program Files\Adobe O43 - CFD: 2015/08/14 15:34:36 - [] D -- C:\Program Files\Alwil Software O43 - CFD: 2007/06/12 15:41:31 - [] D -- C:\Program Files\Analog Devices O43 - CFD: 2007/03/07 15:50:14 - [] D -- C:\Program Files\ASUS O43 - CFD: 2009/05/10 19:34:06 - [] D -- C:\Program Files\Biznesmen O43 - CFD: 2011/09/19 21:42:18 - [] D -- C:\Program Files\Business Objects O43 - CFD: 2015/08/13 11:38:32 - [] D -- C:\Program Files\CCleaner O43 - CFD: 2015/08/17 15:17:18 - [] D -- C:\Program Files\Common Files O43 - CFD: 2010/01/22 11:24:45 - [0] D -- C:\Program Files\Cossacks O43 - CFD: 2015/08/14 12:43:30 - [] D -- C:\Program Files\Defraggler O43 - CFD: 2015/04/06 15:55:49 - [] D -- C:\Program Files\DIFX O43 - CFD: 2014/04/25 14:54:24 - [] D -- C:\Program Files\e-file O43 - CFD: 2011/07/23 14:05:49 - [] D -- C:\Program Files\EA Games O43 - CFD: 2013/05/24 20:36:39 - [] D -- C:\Program Files\ESET O43 - CFD: 2008/02/17 13:33:41 - [] D -- C:\Program Files\FlightGear O43 - CFD: 2015/08/17 15:53:22 - [] D -- C:\Program Files\Google O43 - CFD: 2012/11/14 13:24:32 - [] D -- C:\Program Files\Grupa IMAGE O43 - CFD: 2008/08/12 22:02:31 - [0] D -- C:\Program Files\Hewlett-Packard O43 - CFD: 2012/11/01 12:27:38 - [] D -- C:\Program Files\HP O43 - CFD: 2013/11/26 10:42:34 - [] D -- C:\Program Files\INELO O43 - CFD: 2015/08/17 16:15:04 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2015/08/16 22:06:36 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2007/11/11 13:22:37 - [] D -- C:\Program Files\IrfanView O43 - CFD: 2011/07/08 19:31:04 - [] D -- C:\Program Files\Java O43 - CFD: 2007/05/23 13:38:37 - [] D -- C:\Program Files\K-Lite Codec Pack O43 - CFD: 2007/11/03 20:12:00 - [] D -- C:\Program Files\KoktajlBar O43 - CFD: 2015/08/17 14:53:43 - [] D -- C:\Program Files\Logitech O43 - CFD: 2009/02/07 14:13:49 - [] D -- C:\Program Files\Macromedia O43 - CFD: 2015/08/13 10:48:55 - [] D -- C:\Program Files\Malwarebytes Anti-Malware O43 - CFD: 2007/11/10 16:18:17 - [] D -- C:\Program Files\Mario O43 - CFD: 2007/08/17 16:56:22 - [] D -- C:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 2015/08/17 14:54:18 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 2011/04/04 19:51:42 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/08/16 22:09:10 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2011/09/19 21:51:11 - [] D -- C:\Program Files\Microsoft SQL Server O43 - CFD: 2008/02/17 12:45:45 - [] D -- C:\Program Files\Microsoft Windows Vista Upgrade Advisor O43 - CFD: 2011/05/09 11:05:40 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2008/10/29 12:01:21 - [] D -- C:\Program Files\MOJOSOFT O43 - CFD: 2008/10/09 11:00:34 - [] D -- C:\Program Files\Motorola Phone Tools O43 - CFD: 2011/10/16 18:47:15 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 2015/08/15 18:56:12 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2015/08/15 18:56:05 - [] D -- C:\Program Files\Mozilla Maintenance Service O43 - CFD: 2006/11/02 14:35:51 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2011/04/04 19:50:29 - [] D -- C:\Program Files\MSECache O43 - CFD: 2008/02/17 13:20:10 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 2007/11/10 16:24:09 - [] D -- C:\Program Files\NASA O43 - CFD: 2010/12/12 16:41:16 - [] D -- C:\Program Files\neostrada tp O43 - CFD: 2007/03/07 16:18:29 - [] D -- C:\Program Files\Nero O43 - CFD: 2007/09/02 21:26:26 - [] D -- C:\Program Files\Nikon O43 - CFD: 2008/07/30 09:55:04 - [0] D -- C:\Program Files\NOS O43 - CFD: 2013/04/14 20:06:34 - [] D -- C:\Program Files\NVIDIA Corporation O43 - CFD: 2015/08/17 15:03:39 - [] D -- C:\Program Files\OpenOffice.org 3 O43 - CFD: 2012/09/20 18:20:53 - [] D -- C:\Program Files\PC NET SERVICE O43 - CFD: 2008/04/04 14:00:14 - [] D -- C:\Program Files\PDF Editor 1 O43 - CFD: 2007/11/03 20:14:59 - [] D -- C:\Program Files\Real O43 - CFD: 2006/11/02 14:35:51 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2008/02/16 17:21:10 - [0] D -- C:\Program Files\SkanerOnline O43 - CFD: 2015/04/18 12:50:48 - [] RD -- C:\Program Files\Skype O43 - CFD: 2009/07/18 20:36:40 - [] D -- C:\Program Files\Ticketsoft O43 - CFD: 2008/11/18 12:13:07 - [] D -- C:\Program Files\Trend Micro O43 - CFD: 2011/09/19 21:52:25 - [] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2015/08/17 16:08:58 - [] D -- C:\Program Files\Unlocker O43 - CFD: 2007/06/12 16:29:30 - [] D -- C:\Program Files\VIA O43 - CFD: 2013/07/12 16:10:30 - [] D -- C:\Program Files\Visicom Media O43 - CFD: 2015/08/14 15:34:36 - [] D -- C:\Program Files\VPNS HTTP Proxy O43 - CFD: 2008/05/30 14:48:00 - [] D -- C:\Program Files\Webshots O43 - CFD: 2011/07/28 18:11:39 - [] D -- C:\Program Files\Wiedźmin 2 O43 - CFD: 2011/10/16 18:47:15 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 2011/10/16 18:47:14 - [] D -- C:\Program Files\Windows Collaboration O43 - CFD: 2011/10/16 18:47:12 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2012/04/13 12:40:11 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2015/06/14 20:01:54 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2007/03/07 15:10:44 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2011/10/16 18:47:14 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 2011/10/18 07:28:58 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2011/10/16 18:47:15 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2007/06/12 15:22:46 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2015/08/14 12:34:51 - [] D -- C:\Program Files\ZHPDiag O43 - CFD: 2015/08/17 12:59:18 - [] D -- C:\Program Files\ZHPFix O43 - CFD: 2011/03/08 09:10:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2011/03/08 09:10:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2007/03/07 15:49:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 2009/03/07 19:03:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Biznesmen O43 - CFD: 2015/08/13 11:38:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2015/08/14 12:43:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler O43 - CFD: 2008/07/28 10:43:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 2014/04/25 14:54:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\fillUp Przyjazne formularze O43 - CFD: 2015/08/17 18:17:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flying Model Simulator O43 - CFD: 2013/07/12 16:10:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FTP Expert 3 O43 - CFD: 2008/07/28 10:43:23 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2013/12/20 09:59:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth O43 - CFD: 2012/11/14 13:24:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grupa IMAGE O43 - CFD: 2012/11/01 12:27:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2013/11/26 10:42:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\INELO O43 - CFD: 2007/11/11 13:22:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IrfanView O43 - CFD: 2007/05/23 13:38:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2015/04/06 16:27:59 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kurka wodna O43 - CFD: 2015/08/17 15:17:17 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech O43 - CFD: 2009/02/07 14:15:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macromedia O43 - CFD: 2006/11/02 14:52:53 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/08/13 10:48:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2009/08/03 14:06:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Menedżer Piłkarski 2004-2005 O43 - CFD: 2015/08/16 21:48:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2007/11/10 14:54:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia Microsoft Office O43 - CFD: 2007/11/10 16:25:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NASA O43 - CFD: 2010/12/12 16:41:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neostrada tp O43 - CFD: 2007/03/07 16:20:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Essentials O43 - CFD: 2012/09/20 18:20:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC NET SERVICE O43 - CFD: 2009/05/07 11:58:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 O43 - CFD: 2008/10/11 09:31:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 2015/04/18 12:50:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/08/14 12:33:02 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2009/07/18 20:35:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TORCS O43 - CFD: 2007/06/12 15:22:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/08/17 12:57:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP O43 - CFD: 2007/03/07 16:02:15 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2007/10/25 00:06:15 - [] D -- C:\ProgramData\Apple O43 - CFD: 2007/10/25 00:09:21 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2006/11/02 14:59:44 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/08/17 15:42:22 - [] D -- C:\ProgramData\BVRP Software O43 - CFD: 2007/03/07 15:10:44 - [0] SHD -- C:\ProgramData\Dane aplikacji O43 - CFD: 2006/11/02 14:59:44 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2006/11/02 14:59:44 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2007/03/07 15:10:44 - [0] SHD -- C:\ProgramData\Dokumenty O43 - CFD: 2013/05/24 20:36:39 - [] D -- C:\ProgramData\ESET O43 - CFD: 2015/08/16 22:24:49 - [] D -- C:\ProgramData\F-Secure O43 - CFD: 2006/11/02 14:59:44 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/08/17 15:13:42 - [] D -- C:\ProgramData\Google O43 - CFD: 2008/02/16 17:47:13 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 2008/02/16 17:47:21 - [] D -- C:\ProgramData\HP O43 - CFD: 2008/08/27 09:24:29 - [] D -- C:\ProgramData\hppusg O43 - CFD: 2015/08/13 10:48:45 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2007/03/07 15:10:44 - [0] SHD -- C:\ProgramData\Menu Start O43 - CFD: 2014/03/03 13:58:29 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2007/11/07 23:46:58 - [] D -- C:\ProgramData\Microsoft Corporation O43 - CFD: 2007/11/09 21:31:30 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2007/03/07 16:18:29 - [] D -- C:\ProgramData\Nero O43 - CFD: 2008/11/18 12:21:11 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 2008/07/30 09:55:04 - [0] D -- C:\ProgramData\NOS O43 - CFD: 2013/04/14 20:09:09 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2012/11/18 21:04:06 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2007/03/07 15:10:44 - [0] SHD -- C:\ProgramData\Pulpit O43 - CFD: 2007/05/23 13:38:33 - [0] D -- C:\ProgramData\Real O43 - CFD: 2015/04/18 12:50:56 - [] D -- C:\ProgramData\Skype O43 - CFD: 2006/11/02 14:59:44 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2011/07/08 19:32:32 - [] D -- C:\ProgramData\Sun O43 - CFD: 2007/03/07 15:10:44 - [0] SHD -- C:\ProgramData\Szablony O43 - CFD: 2006/11/02 14:59:44 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2007/03/07 15:10:44 - [0] SHD -- C:\ProgramData\Ulubione O43 - CFD: 2007/06/17 19:09:56 - [] D -- C:\ProgramData\Windows Genuine Advantage O43 - CFD: 2009/09/11 15:39:55 - [] D -- C:\ProgramData\WindowsSearch O43 - CFD: 2007/03/07 16:02:17 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2008/07/29 10:12:20 - [] D -- C:\Program Files\Common Files\Adobe AIR O43 - CFD: 2007/03/07 16:18:58 - [] D -- C:\Program Files\Common Files\Ahead O43 - CFD: 2015/08/17 14:46:35 - [] D -- C:\Program Files\Common Files\Apple O43 - CFD: 2011/09/19 21:44:49 - [] D -- C:\Program Files\Common Files\Borland Shared O43 - CFD: 2011/09/19 21:42:18 - [] D -- C:\Program Files\Common Files\Business Objects O43 - CFD: 2007/11/10 14:53:57 - [] D -- C:\Program Files\Common Files\Designer O43 - CFD: 2008/02/16 17:37:26 - [] D -- C:\Program Files\Common Files\Hewlett-Packard O43 - CFD: 2007/03/07 15:49:45 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 2011/07/08 19:32:31 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 2011/06/19 22:11:32 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2008/10/08 15:39:53 - [] D -- C:\Program Files\Common Files\Motorola Shared O43 - CFD: 2009/05/15 19:21:10 - [] D -- C:\Program Files\Common Files\Nikon O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2015/04/18 12:50:48 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2008/11/18 12:22:28 - [] D -- C:\Program Files\Common Files\Symantec Shared O43 - CFD: 2011/11/14 14:41:05 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2009/05/15 19:46:32 - [] D -- C:\Users\USER\AppData\Roaming\Adobe O43 - CFD: 2007/05/31 19:43:54 - [0] D -- C:\Users\USER\AppData\Roaming\AdobeUM O43 - CFD: 2008/10/11 09:40:41 - [] D -- C:\Users\USER\AppData\Roaming\Apple Computer O43 - CFD: 2014/10/18 23:38:19 - [] D -- C:\Users\USER\AppData\Roaming\Classes de site O43 - CFD: 2014/04/25 14:54:34 - [] D -- C:\Users\USER\AppData\Roaming\com.efile.fillup O43 - CFD: 2013/07/12 16:11:36 - [] D -- C:\Users\USER\AppData\Roaming\Dynamique O43 - CFD: 2014/04/25 14:54:24 - [] D -- C:\Users\USER\AppData\Roaming\fillUp O43 - CFD: 2007/10/14 13:52:28 - [] D -- C:\Users\USER\AppData\Roaming\flightgear.org O43 - CFD: 2015/04/06 15:52:54 - [] D -- C:\Users\USER\AppData\Roaming\Garmin O43 - CFD: 2007/09/23 13:41:06 - [] D -- C:\Users\USER\AppData\Roaming\Google O43 - CFD: 2008/02/16 17:47:14 - [] D -- C:\Users\USER\AppData\Roaming\HP O43 - CFD: 2012/11/08 12:41:45 - [] D -- C:\Users\USER\AppData\Roaming\HpUpdate O43 - CFD: 2007/05/07 11:07:34 - [] D -- C:\Users\USER\AppData\Roaming\Identities O43 - CFD: 2007/06/12 15:23:18 - [] D -- C:\Users\USER\AppData\Roaming\InstallShield O43 - CFD: 2008/05/31 09:08:45 - [] D -- C:\Users\USER\AppData\Roaming\IrfanView O43 - CFD: 2007/08/26 16:38:00 - [] D -- C:\Users\USER\AppData\Roaming\Kingston O43 - CFD: 2009/02/07 14:16:09 - [] D -- C:\Users\USER\AppData\Roaming\Macromedia O43 - CFD: 2007/05/23 13:39:55 - [] D -- C:\Users\USER\AppData\Roaming\Media Player Classic O43 - CFD: 2008/03/03 12:30:10 - [] SD -- C:\Users\USER\AppData\Roaming\Microsoft O43 - CFD: 2008/10/29 12:01:21 - [] D -- C:\Users\USER\AppData\Roaming\mojosoft O43 - CFD: 2015/08/15 18:56:27 - [] D -- C:\Users\USER\AppData\Roaming\Mozilla O43 - CFD: 2007/09/30 09:25:56 - [] D -- C:\Users\USER\AppData\Roaming\Nikon O43 - CFD: 2011/07/08 19:38:49 - [] D -- C:\Users\USER\AppData\Roaming\OpenOffice.org O43 - CFD: 2009/03/18 15:46:00 - [] D -- C:\Users\USER\AppData\Roaming\Real O43 - CFD: 2013/07/12 16:11:28 - [] D -- C:\Users\USER\AppData\Roaming\Sites O43 - CFD: 2011/10/16 18:06:38 - [] D -- C:\Users\USER\AppData\Roaming\Skype O43 - CFD: 2008/06/24 17:05:24 - [] D -- C:\Users\USER\AppData\Roaming\Thinstall O43 - CFD: 2015/08/17 21:29:15 - [] D -- C:\Users\USER\AppData\Roaming\ZHP O43 - CFD: 2015/08/15 18:56:54 - [] D -- C:\Users\USER\AppData\Local\Adobe O43 - CFD: 2015/08/17 15:06:23 - [] D -- C:\Users\USER\AppData\Local\Apple O43 - CFD: 2015/08/17 14:49:35 - [] D -- C:\Users\USER\AppData\Local\Apple Computer O43 - CFD: 2015/08/17 15:42:21 - [] D -- C:\Users\USER\AppData\Local\BVRP Software O43 - CFD: 2015/08/16 22:23:42 - [] D -- C:\Users\USER\AppData\Local\F-Secure O43 - CFD: 2015/08/17 15:13:42 - [0] D -- C:\Users\USER\AppData\Local\Google O43 - CFD: 2015/08/14 15:42:50 - [] D -- C:\Users\USER\AppData\Local\Microsoft O43 - CFD: 2015/08/15 18:56:21 - [] D -- C:\Users\USER\AppData\Local\Mozilla O43 - CFD: 2015/08/17 21:29:00 - [] D -- C:\Users\USER\AppData\Local\Temp O43 - CFD: 2015/08/14 18:05:15 - [] D -- C:\Users\USER\AppData\Local\VirtualStore O43 - CFD: 2006/11/02 14:51:30 - [] RD -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2007/05/07 11:07:42 - [] RD -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2009/03/07 19:17:03 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Biznesmen O43 - CFD: 2008/10/29 12:02:09 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BusinessCardsMX3 O43 - CFD: 2013/07/12 16:10:37 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FTP Expert 3 O43 - CFD: 2008/08/27 09:24:29 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2006/11/02 14:47:50 - [] RD -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2008/04/04 14:00:14 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editor 1.5 O43 - CFD: 2008/01/09 22:13:45 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rally Championship O43 - CFD: 2013/05/24 20:05:03 - [] RD -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/08/14 14:22:12 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker O43 - CFD: 2007/06/12 15:22:46 - [0] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Wyliczenie klucza rejestru startupreg (SMSR) (O53) (16) - 2s O53 - SMSR:HKLM\...\startupreg\AsusStartupHelp [Key] . (...) -- C:\Program Files\ASUS\AASP\1.00.24\AsRunHelp.exe O53 - SMSR:HKLM\...\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} [Key] . (.Nero AG - Nero Home.) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O53 - SMSR:HKLM\...\startupreg\HPUsageTracking [Key] . (...) -- C:\Program Files\HP\HP UT\bin\hppusg.exe O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (...) -- C:\Program Files\iTunes\iTunesHelper.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\NeroFilterCheck [Key] . (.Nero AG - NeroCheck.) -- C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe O53 - SMSR:HKLM\...\startupreg\NvMediaCenter [Key] . (.Microsoft Corporation - Proces hosta systemu Windows (Rundll32).) -- RUNDLL32.EXE (.not file.) O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\K-Lite Codec Pack\QuickTime\QTTask.exe O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Pasek boczny systemu Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Onet.pl - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe O53 - SMSR:HKLM\...\startupreg\SoundMAXPnP [Key] . (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe O53 - SMSR:HKLM\...\startupreg\swg [Key] . (...) -- C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\ToolBoxFX [Key] . (.HP - HPTLBXFX.) -- C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe O53 - SMSR:HKLM\...\startupreg\TSPNSUpdate [Key] . (.INELO Stocerz Sp. J. - Updater - INELO.) -- C:\Program Files\INELO\UpdateManager\update.exe O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (...) -- %ProgramFiles%\Windows Defender\MSASCui.exe (.not file.) ---\\ Lista sterowników systemu (SDL) (O58) (97) - 19s O58 - SDL:2007/01/16 05:41:50 A . (.Analog Devices, Inc. - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\ADIHdAud.sys [316928] O58 - SDL:2006/11/02 11:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [420968] O58 - SDL:2006/11/02 11:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297576] O58 - SDL:2006/11/02 11:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [98408] O58 - SDL:2006/11/02 11:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147048] O58 - SDL:2009/05/18 17:04:55 A . (.Meetinghouse Data Communications - IEEE 802.1X Protocol Driver.) -- C:\Windows\System32\drivers\AegisP.sys [17119] O58 - SDL:2006/11/02 11:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14952] O58 - SDL:2006/11/02 11:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [67688] O58 - SDL:2006/11/02 11:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [67688] O58 - SDL:2007/01/24 12:00:00 A . (. - ATK0110 ACPI Utility.) -- C:\Windows\System32\drivers\ASACPI.sys [7680] O58 - SDL:2006/10/19 04:11:12 A . (...) -- C:\Windows\System32\drivers\AsInsHelp32.sys [10304] O58 - SDL:2006/10/19 04:11:30 A . (...) -- C:\Windows\System32\drivers\AsInsHelp64.sys [12096] O58 - SDL:2007/01/24 12:00:00 RA . (...) -- C:\Windows\System32\drivers\AsIO.sys [12664] O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Sterownik szeregowy I/F (WDM) firmy Brother.) -- C:\Windows\System32\drivers\BrSerId.sys [71808] O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] O58 - SDL:2006/10/05 04:42:42 N . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see Px.) -- C:\Windows\System32\drivers\cdr4_xp.sys [2432] O58 - SDL:2006/10/05 04:42:42 N . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\Windows\System32\drivers\cdralw2k.sys [2560] O58 - SDL:2006/11/02 11:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [16488] O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] O58 - SDL:2006/11/02 09:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G60I32.sys [117760] O58 - SDL:2006/11/02 11:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [316520] O58 - SDL:2006/11/02 09:30:56 A . (.VIA Technologies, Inc. - NDIS 5.0 miniport driver.) -- C:\Windows\System32\drivers\fetnd5.sys [45568] O58 - SDL:2006/12/20 16:00:38 A . (.VIA Technologies, Inc. - NDIS 5.0 miniport driver.) -- C:\Windows\System32\drivers\fetnd5bv.sys [45568] O58 - SDL:2015/08/16 22:24:42 A . (...) -- C:\Windows\System32\drivers\fsbts.sys [44072] O58 - SDL:2012/04/18 10:05:30 A . (.GARMIN Corp. - Generic WDM Support Driver.) -- C:\Windows\System32\drivers\grmngen.sys [25448] O58 - SDL:2012/04/18 10:05:32 A . (.GARMIN Corp. - grmnusb.sys.) -- C:\Windows\System32\drivers\grmnusb.sys [15720] O58 - SDL:2006/11/02 11:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [37480] O58 - SDL:2006/04/04 23:20:37 A . (.Hewlett Packard - hpfxbulk.sys.) -- C:\Windows\System32\drivers\hpfxbulk.sys [9344] O58 - SDL:2006/04/04 23:19:11 A . (.Hewlett Packard - HPFXBULK Support Driver.) -- C:\Windows\System32\drivers\hpfxgen.sys [17024] O58 - SDL:2006/11/02 11:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [232040] O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] O58 - SDL:2007/04/29 17:58:32 A . (.Windows (R) Codename Longhorn DDK provider - KMWDFilter Driver from UASSOFT.COM.) -- C:\Windows\System32\drivers\KMWDFILTER.sys [23944] O58 - SDL:2006/11/02 11:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [65640] O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [65640] O58 - SDL:2006/11/02 11:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [65640] O58 - SDL:2005/01/31 12:20:04 A . (.Logitech Inc. - Logitech Elch 2 Video Driver.) -- C:\Windows\System32\drivers\LV561AV.SYS [211712] O58 - SDL:2005/01/31 12:12:48 A . (.Logitech Inc. - USB Statistic Driver.) -- C:\Windows\System32\drivers\LVUSBSta.sys [22016] O58 - SDL:2015/06/18 08:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] O58 - SDL:2015/06/18 08:41:42 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] O58 - SDL:2015/08/17 19:28:13 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [98520] O58 - SDL:2006/11/02 11:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [28776] O58 - SDL:2007/11/02 14:36:10 A . (.Motorola - Motorola USB Composite Device Driver.) -- C:\Windows\System32\drivers\motccgp.sys [18176] O58 - SDL:2007/01/23 19:03:44 A . (.Motorola - Motorola USB Composite Filter Driver.) -- C:\Windows\System32\drivers\motccgpfl.sys [7680] O58 - SDL:2007/06/18 14:18:26 A . (.Motorola - Motorola USB Modem and Ports Driver.) -- C:\Windows\System32\drivers\motmodem.sys [23680] O58 - SDL:2007/11/02 14:51:28 A . (.Motorola - .) -- C:\Windows\System32\drivers\motswch.sys [6400] O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] O58 - SDL:2015/06/18 08:41:50 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Sterownik wewnętrzny dyskretyzatora rysowni.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] O58 - SDL:2013/02/19 21:32:54 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [10919200] O58 - SDL:2006/11/02 11:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [88680] O58 - SDL:2006/11/02 11:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [40040] O58 - SDL:2011/10/22 21:05:09 A . (...) -- C:\Windows\System32\drivers\PnkBstrK.sys [139080] O58 - SDL:2011/09/19 21:38:05 A . (...) -- C:\Windows\System32\drivers\port_nt.sys [3912] O58 - SDL:2008/11/20 21:19:06 A . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\drivers\pxhelp20.sys [43872] O58 - SDL:2006/11/02 11:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [900712] O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] O58 - SDL:2004/12/15 19:12:04 A . (.Ralink Technology Inc. - RT2500 802.11g Wireless Adapter Driver.) -- C:\Windows\System32\drivers\rt2500.sys [218368] O58 - SDL:2005/11/24 13:51:38 A . (.Ralink Technology, Corp. - Ralink 802.11 USB Wireless Adapter Driver.) -- C:\Windows\System32\drivers\rt73.sys [245248] O58 - SDL:2006/11/02 09:30:56 A . (.Realtek Semiconductor Corporation - Realtek 10/100 NDIS 5.1 Driver.) -- C:\Windows\System32\drivers\Rtnicxp.sys [47104] O58 - SDL:2000/09/20 02:55:00 RA . (...) -- C:\Windows\System32\drivers\SECDRV.SYS [11616] O58 - SDL:2006/11/02 11:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [38504] O58 - SDL:2006/11/02 11:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [71784] O58 - SDL:2007/01/22 12:52:56 A . (.STMicroelectronics - ATM/ADSL miniport.) -- C:\Windows\System32\drivers\stmatm.sys [60533] O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] O58 - SDL:2007/02/06 17:08:24 A . (...) -- C:\Windows\System32\drivers\torususb.sys [684672] O58 - SDL:2006/11/02 11:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [235112] O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] O58 - SDL:2006/11/02 11:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] O58 - SDL:2006/11/02 11:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17512] O58 - SDL:2006/11/08 15:23:52 A . (.VIA Technologies inc,.ltd - VIA AHCI RAID DRIVER FOR WIN XP/SRV2003.) -- C:\Windows\System32\drivers\viamraid.sys [102912] O58 - SDL:2006/10/17 21:22:26 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\videX32.sys [9216] O58 - SDL:2006/11/02 11:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\vsmraid.sys [112232] O58 - SDL:2006/10/18 18:39:58 A . (.VIA Technologies,Inc - ATA/ATAPI devices hot-plug monitor.) -- C:\Windows\System32\drivers\xfilt.sys [17920] O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Najnowsze pliki zmodyfikowane lub utworzone (uzytkownika) (O61) (6) - 51s O61 - LFC: 2015/08/17 17:03:20 A . (..) -- C:\Users\USER\Downloads\AppManagerSetup_2.0.exe [2097712] O61 - LFC: 2015/08/15 18:54:59 A . (..) -- C:\Users\USER\Downloads\Firefox Setup Stub 40.0.2 (1).exe [242976] O61 - LFC: 2015/08/15 18:54:58 A . (..) -- C:\Users\USER\Downloads\Firefox Setup Stub 40.0.2.exe [242976] O61 - LFC: 2015/08/14 14:19:53 A . (..) -- C:\Users\USER\Downloads\Unlocker1.9.2.exe [402911] O61 - LFC: 2015/08/14 20:55:51 A . (..) -- C:\Users\USER\AppData\Roaming\appdataFr25.bin [24] O61 - LFC: 2015/08/15 18:16:44 A . (..) -- C:\Users\USER\AppData\Local\Microsoft\Windows\1045\StructuredQuerySchema.bin [212770] ---\\ Tarlo powloki stowarzyszenia (O67) (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Uruchamianie przystawki Podgląd zdarzeń.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Edytor rejestru.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ---\\ Menu Start Internet (SMI) (O68) (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- Chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Narzędzie inicjacji użytkownika programu IE.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Narzędzie inicjacji użytkownika programu IE.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Narzędzie inicjacji użytkownika programu IE.) -- C:\Windows\System32\ie4uinit.exe ---\\ Szukaj 'infekcji na przegladarki internetowe (SBI) (O69) (2) - 7s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Wylicza uruchamiania uslugi Svchost (SSS) (O83) (31) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Usługa użytkowania aplikacji.) -- C:\Windows\System32\aelupsvc.dll [24576] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Raporty i rozwiązania problemów.) -- C:\Windows\System32\wercplsupport.dll [62976] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Biblioteka DLL usług powłoki systemu Window.) -- C:\Windows\System32\shsvcs.dll [247808] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Usługa propagowania certyfikatów kart intel.) -- C:\Windows\System32\certprop.dll [40448] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Usługa propagowania certyfikatów kart intel.) -- C:\Windows\System32\certprop.dll [40448] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Biblioteka DLL usługi serwera.) -- C:\Windows\System32\srvsvc.dll [125952] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [576512] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Rozszerzenie IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Usługa audio systemu Windows.) -- C:\Windows\System32\audiosrv.dll [316928] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Menedżer autowybierania numeru dostępu zdal.) -- C:\Windows\System32\rasauto.dll [90624] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Menedżer połączeń usługi Dostęp zdalny.) -- C:\Windows\System32\rasmans.dll [262144] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamiczny menedżer interfejsu.) -- C:\Windows\System32\mprdim.dll [68608] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Usługa powiadamiania o zdarzeniach systemow.) -- C:\Windows\System32\Sens.dll [47104] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Składniki Pomocnika Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [288256] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serwer Telefonii Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242688] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Menedżer połączeń zdalnych serwera terminal.) -- C:\Windows\System32\termsrv.dll [449536] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [1933848] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Usługa inteligentnego transferu w tle.) -- C:\Windows\System32\qmgr.dll [758784] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Biblioteka DLL usług powłoki systemu Window.) -- C:\Windows\System32\shsvcs.dll [247808] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Usługa oferująca łączność IPv6 w sieci IPv4.) -- C:\Windows\System32\iphlpsvc.dll [200704] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Biblioteka DLL dla pomocniczej usługi logow.) -- C:\Windows\System32\seclogon.dll [19968] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Usługa informacji o aplikacji.) -- C:\Windows\System32\appinfo.dll [33280] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Usługa odnajdowania iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Usługa harmonogramu klas multimediów.) -- C:\Windows\System32\mmcss.dll [45056] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Usługa EAPHost firmy Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Usługa Harmonogram zadań.) -- C:\Windows\System32\schedsvc.dll [601600] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Usługa Konfiguracja usług terminalowych.) -- C:\Windows\System32\SessEnv.dll [84992] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Biblioteka DLL usługi Przeglądarka komputer.) -- C:\Windows\System32\browser.dll [81920] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Usługa zarządzania kluczami.) -- C:\Windows\System32\KMSVC.DLL [68096] ---\\ Wykaz wyjatków w zaporze (FirewallRules) (O87) (8) - 2s O87 - FAEL: "{8CA6609A-DDA0-4EDF-9995-6AA14C5D0F01}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\PnkBstrA.exe O87 - FAEL: "{89286B66-BA0F-418D-82B9-808070E9EEB7}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\PnkBstrA.exe O87 - FAEL: "{C5658B33-A735-4C6E-8AB0-EE88B0B41033}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\PnkBstrB.exe O87 - FAEL: "{F1DB00E2-2693-40B5-9304-91E743B85079}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\PnkBstrB.exe O87 - FAEL: "TCP Query User{78C20FBA-3D0D-4105-A1D7-7F8DD5F537CF}C:\program files\google\google earth\client\googleearth.exe" [In-None-P6-TRUE] .(.Google - Google Earth.) -- C:\program files\google\google earth\client\googleearth.exe O87 - FAEL: "UDP Query User{D2CC1614-0BD6-4A32-A9C2-BC6B03427886}C:\program files\google\google earth\client\googleearth.exe" [In-None-P17-TRUE] .(.Google - Google Earth.) -- C:\program files\google\google earth\client\googleearth.exe O87 - FAEL: "TCP Query User{1F397AFD-DF01-4711-9233-1221293E99AD}C:\program files\visicom media\ftp expert 3\ftpxpert3.exe" [In-None-P6-TRUE] .(.Visicom Media Inc. - AceFTP v3.) -- C:\program files\visicom media\ftp expert 3\ftpxpert3.exe O87 - FAEL: "UDP Query User{D6338E93-1121-471F-AE6C-497A500AA589}C:\program files\visicom media\ftp expert 3\ftpxpert3.exe" [In-None-P17-TRUE] .(.Visicom Media Inc. - AceFTP v3.) -- C:\program files\visicom media\ftp expert 3\ftpxpert3.exe ---\\ Ogólny stan uslug nie Microsoft (EGS) (SR = bieganie, SS = Zatrzymano) (9) - 20s SS - Demand [2007/09/23 09:31:06] [ 138168] Google Updater Service (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe SS - Demand [2015/08/13 04:58:15] [ 149160] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe SS - Demand [2007/01/15 18:14:38] [ 774144] NBService (NBService) . (.Nero AG.) - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe SS - Demand [2007/01/15 17:01:56] [ 266240] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe SR - Auto [2013/01/31 11:00:48] [ 634656] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe SR - Auto [2012/10/10 22:15:04] [ 1258856] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe SR - Auto [2011/07/23 14:46:05] [ 75136] PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe SS - Auto [2014/12/11 10:30:48] [ 315496] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe ---\\ Dodatkowe skanowanie (O88) (1) - 0s ~ nie groznych lub niepotrzebne znalezione. ---\\ Krótki opis elementów znalezionych na stacji roboczej (1) - 0s ~ nie groznych lub niepotrzebne znalezione. ~ End of the scan, 18474 items in 189 seconds (756)(0)()