Odinstalowanie Babylona

Cześć!

Mam problem z tym, że nie mogę odinstalować Babylona. Włącza mi się zawsze zawsze zamiast google.pl

W Narzędzia/dodatki nie mam go.

Będę bardzo wdzięczna za pomoc.

Daj log z otl analiza-dezynfekcja-zestaw-narzedzi-nieingerencyjnych-t485632.html

http://polski.babylon.com/info/uninstall

Ponadto:

w pasek adresu wpisz: about:config

W polu filtr wpisz: babylon

kliknij na każdej wartości PPM(prawym przyciskiem myszy) i wybierz Resetuj.

Jak to zrobić? Mam WINDOWS XP

Jeśli metoda ybu nie poskutkuje przeczytaj zawartość linka. Z pewnością wtedy do tego dojdziesz :stuck_out_tongue:

Masz podaną w linku instrukcje jak wykonać logi z OTL :slight_smile: wszystko ładnie pisze.

Tym powinaś usunąć gada :slight_smile:

http://www.instalki.pl/programy/downloa … eaner.html

OTL logfile created on: 2012-06-04 16:17:26 - Run 2

OTL by OldTimer - Version 3.2.46.0 Folder = C:\Documents and Settings\Ula\Pulpit\Muzyka z zapiska.pl

Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 8.0.6001.18702)

Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,17 Gb Available Physical Memory | 72,42% Memory free

4,84 Gb Paging File | 4,17 Gb Available in Paging File | 86,18% Paging File free

Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

Drive C: | 698,63 Gb Total Space | 324,40 Gb Free Space | 46,43% Space Free | Partition Type: NTFS

Computer Name: CORE2DUO | User Name: Ula | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: All users

Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012-06-04 16:12:40 | 000,596,480 | ---- | M] (OldTimer Tools) – C:\Documents and Settings\Ula\Pulpit\Muzyka z zapiska.pl\OTL.exe

PRC - [2012-05-13 20:25:32 | 000,019,768 | ---- | M] (Smartbar) – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Linkury.exe

PRC - [2012-04-09 11:20:30 | 003,063,968 | ---- | M] (Skype Technologies S.A.) – C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe

PRC - [2012-03-15 07:54:30 | 000,912,344 | ---- | M] (Mozilla Corporation) – C:\Program Files\Mozilla Firefox\firefox.exe

PRC - [2012-03-07 02:15:17 | 004,241,512 | ---- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastUI.exe

PRC - [2012-03-07 02:15:14 | 000,044,768 | ---- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

PRC - [2010-03-18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) – C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe

PRC - [2010-01-06 15:56:39 | 000,198,160 | ---- | M] (RealNetworks, Inc.) – C:\Program Files\Common Files\Real\Update_OB\realsched.exe

PRC - [2009-04-07 09:13:10 | 000,673,616 | ---- | M] (SEIKO EPSON CORPORATION) – C:\Program Files\Epson Software\Event Manager\EEventManager.exe

PRC - [2009-01-26 02:23:36 | 001,891,328 | ---- | M] (Microsoft Corporation) – C:\WINDOWS\explorer.exe

PRC - [2008-08-08 07:03:41 | 000,524,288 | ---- | M] () – C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe

PRC - [2008-01-15 13:01:24 | 000,143,455 | ---- | M] (ComArch S.A.) – C:\Program Files\Comarch\ComarchSmartCard\CardServer.exe

PRC - [2007-09-02 13:58:52 | 000,495,616 | ---- | M] () – C:\Program Files\RocketDock\RocketDock.exe

PRC - [2005-03-11 14:47:08 | 000,114,688 | ---- | M] (OLYMPUS IMAGING CORP.) – C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe

PRC - [2004-10-08 11:09:46 | 001,437,712 | ---- | M] (Cisco Systems, Inc.) – C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe

========== Modules (No Company Name) ==========

MOD - [2012-06-04 07:51:02 | 001,765,888 | ---- | M] () – C:\Program Files\Alwil Software\Avast5\defs\12060400\algo.dll

MOD - [2012-05-19 17:08:07 | 000,910,648 | ---- | M] () – C:\WINDOWS\assembly\GAC_32\System.Data.SQLite\1.0.66.0__db937bc2d44ff139\System.Data.SQLite.dll

MOD - [2012-05-19 17:08:03 | 000,145,208 | ---- | M] () – C:\WINDOWS\assembly\GAC_MSIL\Interop.SHDocVw\1.1.0.0__84542ff99aed6a4d\Interop.SHDocVw.dll

MOD - [2012-05-13 20:26:22 | 000,016,184 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Resources.Utilities.dll

MOD - [2012-05-13 20:26:18 | 000,024,888 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.dll

MOD - [2012-05-13 20:26:16 | 000,019,256 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Resources.SideBySide.dll

MOD - [2012-05-13 20:26:12 | 000,013,112 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Resources.ProcessDownMonitor.dll

MOD - [2012-05-13 20:26:08 | 000,067,896 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll

MOD - [2012-05-13 20:26:06 | 000,331,576 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Resources.FilesManager.dll

MOD - [2012-05-13 20:26:06 | 000,034,616 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Resources.AutomaticUpdates.dll

MOD - [2012-05-13 20:26:02 | 000,015,672 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Personalization.Common.dll

MOD - [2012-05-13 20:26:00 | 000,078,648 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Personalization.BusinessLogic.dll

MOD - [2012-05-13 20:25:54 | 000,018,232 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Infrastructure.Utilities.dll

MOD - [2012-05-13 20:25:52 | 000,054,584 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Infrastructure.Plugins.InternetExplorerLocalPlugin.dll

MOD - [2012-05-13 20:25:42 | 000,011,576 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Infrastructure.EventManager.dll

MOD - [2012-05-13 20:25:40 | 000,028,472 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Infrastructure.Core.dll

MOD - [2012-05-13 20:25:38 | 000,013,112 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.GUI.Multimedia.Loader.dll

MOD - [2012-05-13 20:25:38 | 000,012,088 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.Infrastructure.BusinessEntities.dll

MOD - [2012-05-13 20:25:34 | 001,218,360 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.GUI.MainClient.dll

MOD - [2012-05-13 20:25:34 | 000,080,696 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.GUI.Docking.dll

MOD - [2012-05-13 20:25:32 | 000,542,008 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Smartbar.GUI.Controls.dll

MOD - [2012-05-13 20:24:30 | 000,046,904 | ---- | M] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\MACTrackBarLib.dll

MOD - [2012-03-15 07:54:30 | 001,014,744 | ---- | M] () – C:\Program Files\Mozilla Firefox\js3250.dll

MOD - [2012-01-03 15:10:54 | 000,300,544 | ---- | M] () – C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL

MOD - [2011-10-05 04:52:30 | 000,756,048 | ---- | M] () – C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL

MOD - [2011-09-27 08:23:00 | 000,087,912 | ---- | M] () – C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll

MOD - [2011-09-27 08:22:40 | 001,242,472 | ---- | M] () – C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll

MOD - [2011-06-05 13:51:19 | 006,271,136 | ---- | M] () – C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

MOD - [2009-12-21 03:42:16 | 000,176,235 | ---- | M] () – C:\WINDOWS\system32\Primomonnt.dll

MOD - [2009-10-13 13:03:37 | 008,007,680 | ---- | M] () – C:\WINDOWS\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll

MOD - [2009-10-13 11:51:06 | 001,840,640 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Services\b57bb002a655920cbfa2bee29d1e22b7\System.Web.Services.ni.dll

MOD - [2009-10-13 11:50:54 | 000,627,200 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Transactions\5a555c9ae6984c40157cf940bb519f7c\System.Transactions.ni.dll

MOD - [2009-10-13 11:50:14 | 000,220,672 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\9bea05938bee3555c5aa8763d89a68f9\CustomMarshalers.ni.dll

MOD - [2009-10-13 11:50:12 | 000,971,264 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\b82c00e2d24305ad6cb08556e3779b75\System.Configuration.ni.dll

MOD - [2009-10-13 11:36:15 | 005,450,752 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\773a9786013451d3baaeff003dc4230f\System.Xml.ni.dll

MOD - [2009-10-13 11:36:11 | 012,430,848 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\63406259e94d5c0ff5b79401dfe113ce\System.Windows.Forms.ni.dll

MOD - [2009-10-13 11:36:04 | 001,587,200 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\3da96ee075bab9202626ae44c18d226c\System.Drawing.ni.dll

MOD - [2009-10-13 11:35:57 | 006,616,576 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\c70731047b0022638b3f9fb158948a03\System.Data.ni.dll

MOD - [2009-10-13 11:35:27 | 007,868,416 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\80978a322d7dd39f0a71be1251ae395a\System.ni.dll

MOD - [2009-10-13 11:35:24 | 011,486,720 | ---- | M] () – C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\6d667f19d687361886990f3ca0f49816\mscorlib.ni.dll

MOD - [2009-10-13 11:34:04 | 002,933,248 | ---- | M] () – C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll

MOD - [2009-10-13 11:34:03 | 000,261,632 | ---- | M] () – C:\WINDOWS\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll

MOD - [2009-10-13 11:34:03 | 000,069,120 | ---- | M] () – C:\WINDOWS\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll

MOD - [2009-08-12 21:11:02 | 000,473,632 | ---- | M] () – C:\Program Files\NVIDIA Corporation\nView\nvShell.dll

MOD - [2009-03-12 15:45:32 | 000,135,168 | ---- | M] () – C:\Program Files\Epson Software\Event Manager\Assistants\Scan Assistant\ScanEngine.dll

MOD - [2009-02-02 03:02:33 | 000,061,440 | ---- | M] () – C:\WINDOWS\system32\CopyToSendTo.dll

MOD - [2008-11-21 13:58:42 | 000,057,344 | ---- | M] () – C:\Program Files\Epson Software\Event Manager\Assistants\Scan Assistant\Satwain.dll

MOD - [2008-08-08 07:03:41 | 000,524,288 | ---- | M] () – C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe

MOD - [2008-06-04 15:53:14 | 000,026,624 | ---- | M] () – C:\WINDOWS\system32\spd__l.dll

MOD - [2008-05-02 00:15:38 | 000,010,240 | ---- | M] () – C:\Program Files\Unlocker\UnlockerCOM.dll

MOD - [2007-09-02 13:58:52 | 000,495,616 | ---- | M] () – C:\Program Files\RocketDock\RocketDock.exe

MOD - [2007-09-02 13:57:36 | 000,069,632 | ---- | M] () – C:\Program Files\RocketDock\RocketDock.dll

MOD - [2007-08-14 03:39:16 | 000,022,723 | ---- | M] () – C:\WINDOWS\system32\cl31cl3.dll

MOD - [2005-06-28 14:59:48 | 000,053,248 | ---- | M] () – C:\Program Files\ArcSoft\PhotoImpression 5\Share\PIHook.dll

MOD - [2005-06-01 07:24:28 | 000,110,592 | ---- | M] () – C:\WINDOWS\system32\OdiOlDVR.dll

MOD - [2004-06-21 07:44:54 | 000,053,248 | ---- | M] () – C:\WINDOWS\system32\OdiAPI.dll

========== Win32 Services (SafeList) ==========

SRV - File not found [On_Demand | Stopped] – C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe – (Microsoft Office Groove Audit Service)

SRV - File not found [Disabled | Stopped] – %SystemRoot%\System32\hidserv.dll – (HidServ)

SRV - [2012-04-09 11:20:30 | 003,063,968 | ---- | M] (Skype Technologies S.A.) [Auto | Running] – C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe – (Skype C2C Service)

SRV - [2012-04-05 11:52:16 | 000,158,856 | R— | M] (Skype Technologies) [Auto | Stopped] – C:\Program Files\Skype\Updater\Updater.exe – (SkypeUpdate)

SRV - [2012-03-07 02:15:14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Antivirus)

SRV - [2010-03-18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] – C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe – (ACDaemon)

SRV - [2009-02-02 17:02:18 | 000,056,320 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\WINDOWS\system32\clipsrv.exe – (ClipSrv)

SRV - [2008-07-30 01:16:38 | 000,132,096 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] – c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe – (NetTcpPortSharing)

SRV - [2008-04-15 13:00:00 | 000,114,688 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\WINDOWS\system32\netdde.exe – (NetDDEdsdm)

SRV - [2008-04-15 13:00:00 | 000,114,688 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\WINDOWS\system32\netdde.exe – (NetDDE)

SRV - [2008-04-15 13:00:00 | 000,075,264 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\WINDOWS\system32\tlntsvr.exe – (TlntSvr)

SRV - [2008-04-15 13:00:00 | 000,053,248 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\WINDOWS\system32\mprdim.dll – (RemoteAccess)

SRV - [2008-04-15 13:00:00 | 000,033,792 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\WINDOWS\system32\msgsvc.dll – (Messenger)

SRV - [2008-04-15 13:00:00 | 000,017,408 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\WINDOWS\system32\alrsvc.dll – (Alerter)

SRV - [2008-01-15 13:01:24 | 000,143,455 | ---- | M] (ComArch S.A.) [Auto | Running] – C:\Program Files\Comarch\ComarchSmartCard\CardServer.exe – (ComarchCardServer)

SRV - [2004-10-08 11:09:46 | 001,437,712 | ---- | M] (Cisco Systems, Inc.) [Auto | Running] – C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe – (CVPND)

========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] – -- (WDICA)

DRV - File not found [Kernel | Auto | Stopped] – C:\WINDOWS\system32\Drivers\SSPORT.sys – (SSPORT)

DRV - File not found [Kernel | On_Demand | Stopped] – -- (PDRFRAME)

DRV - File not found [Kernel | On_Demand | Stopped] – -- (PDRELI)

DRV - File not found [Kernel | On_Demand | Stopped] – -- (PDFRAME)

DRV - File not found [Kernel | On_Demand | Stopped] – -- (PDCOMP)

DRV - File not found [Kernel | System | Stopped] – -- (PCIDump)

DRV - File not found [Kernel | System | Stopped] – -- (lbrtfdc)

DRV - File not found [Kernel | System | Stopped] – -- (i2omgmt)

DRV - File not found [Kernel | Auto | Stopped] – C:\WINDOWS\system32\Drivers\DgiVecp.sys – (DgiVecp)

DRV - File not found [Kernel | System | Stopped] – -- (Changer)

DRV - [2012-03-07 02:03:51 | 000,612,184 | ---- | M] (AVAST Software) [File_System | System | Running] – C:\WINDOWS\System32\drivers\aswSnx.sys – (aswSnx)

DRV - [2012-03-07 02:03:38 | 000,337,880 | ---- | M] (AVAST Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aswSP.sys – (aswSP)

DRV - [2012-03-07 02:02:00 | 000,035,672 | ---- | M] (AVAST Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aswRdr.sys – (aswRdr)

DRV - [2012-03-07 02:01:53 | 000,053,848 | ---- | M] (AVAST Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aswTdi.sys – (aswTdi)

DRV - [2012-03-07 02:01:39 | 000,095,704 | ---- | M] (AVAST Software) [File_System | Auto | Running] – C:\WINDOWS\System32\drivers\aswmon2.sys – (aswMon2)

DRV - [2012-03-07 02:01:30 | 000,020,696 | ---- | M] (AVAST Software) [File_System | Auto | Running] – C:\WINDOWS\System32\drivers\aswFsBlk.sys – (aswFsBlk)

DRV - [2012-03-07 01:58:29 | 000,024,920 | ---- | M] (AVAST Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aavmker4.sys – (Aavmker4)

DRV - [2009-10-13 12:25:24 | 000,016,376 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | On_Demand | Stopped] – C:\WINDOWS\gdrv.sys – (gdrv)

DRV - [2009-08-10 09:37:32 | 000,089,600 | ---- | M] (Gemalto) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\GemCCID.sys – (GemCCID)

DRV - [2008-04-15 13:00:00 | 000,800,000 | ---- | M] (Microsoft Corp., Veritas Software) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\drivers\dmboot.sys – (dmboot)

DRV - [2008-04-15 13:00:00 | 000,143,744 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] – C:\WINDOWS\System32\drivers\fastfat.sys – (Fastfat)

DRV - [2008-04-15 13:00:00 | 000,120,320 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\System32\drivers\pcmcia.sys – (Pcmcia)

DRV - [2008-04-15 13:00:00 | 000,066,048 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] – C:\WINDOWS\System32\drivers\udfs.sys – (Udfs)

DRV - [2008-04-15 13:00:00 | 000,013,952 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\System32\drivers\cbidf2k.sys – (cbidf2k)

DRV - [2008-04-15 13:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\System32\drivers\acpiec.sys – (ACPIEC)

DRV - [2007-09-19 15:44:46 | 000,101,504 | R— | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\Rtenicxp.sys – (RTLE8023xp)

DRV - [2007-09-19 11:16:32 | 004,617,728 | R— | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\RtkHDAud.sys – (IntcAzAudAddService) Service for Realtek HD Audio (WDM)

DRV - [2006-11-10 16:05:00 | 000,018,688 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\afc.sys – (Afc)

DRV - [2006-09-19 08:33:28 | 000,116,992 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\e4usbaw.sys – (e4usbaw)

DRV - [2006-09-15 08:37:54 | 000,064,000 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] – C:\WINDOWS\system32\drivers\e4ldr.sys – (IKANLOADER2) General Purpose USB Driver (e4ldr.sys)

DRV - [2004-10-08 11:08:54 | 000,268,872 | ---- | M] (Cisco Systems, Inc.) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\CVPNDRVA.sys – (CVPNDRVA)

DRV - [2003-12-15 15:52:00 | 000,038,448 | ---- | M] (OLYMPUS OPTICAL CO.,LTD.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\VNUSB.sys – (VNUSB)

DRV - [2003-08-28 19:10:26 | 000,189,792 | ---- | M] (Zone Labs Inc.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\vsdatant.sys – (vsdatant)

DRV - [2003-07-24 16:25:50 | 000,139,604 | ---- | M] (Deterministic Networks, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\dne2000.sys – (DNE)

DRV - [2003-05-01 10:56:34 | 000,005,220 | ---- | M] (Cisco Systems, Inc.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\CVirtA.sys – (CVirtA)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE - HKLM…\SearchScopes,DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}

IE - HKLM…\SearchScopes{006ee092-9658-4fd6-bd8e-a21a348e59f5}: “URL” = http://feed.helperbar.com/?publisher=OP … c=lnkry&q={searchTerms}

IE - HKLM…\SearchScopes{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: “URL” = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}

IE - HKU.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/

IE - HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 0

IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 0

IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/

IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 0

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.helperbar.com/?publisher=OP … c=lnkry&q={searchTerms}

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.helperbar.com/?publisher=OP … c=lnkry&q={searchTerms}

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://feed.helperbar.com/?publisher=OP … c=lnkry_nt

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.helperbar.com/?publisher=OP … c=lnkry&q={searchTerms}

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.helperbar.com/?publisher=OP … c=lnkry&q={searchTerms}

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004…\SearchScopes,DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004…\SearchScopes{006ee092-9658-4fd6-bd8e-a21a348e59f5}: “URL” = http://feed.helperbar.com/?publisher=OP … c=lnkry&q={searchTerms}

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004…\SearchScopes{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: “URL” = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 0

IE - HKU\S-1-5-21-1957994488-1085031214-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyOverride” = *.local

========== FireFox ==========

FF - prefs.js…browser.search.useDBForOrder: true

FF - prefs.js…browser.startup.homepage: “http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=PL&userid=28ab8d17-329c-4c34-9e5f-d38de03d9c82&affid=110774&searchtype=hp&babsrc=lnkry

FF - prefs.js…extensions.enabledItems: jqs@sun.com:

FF - prefs.js…extensions.enabledItems: SignPlugin@pekao.pl:1.3.0.80

FF - prefs.js…extensions.enabledItems: SignPlugin@Raiffeisen.com:1.3.0.31

FF - prefs.js…extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:

FF - prefs.js…extensions.enabledItems: {53A03D43-5363-4669-8190-99061B2DEBA5}:1.4.7

FF - prefs.js…extensions.enabledItems: wrc@avast.com:7.0.1426

FF - prefs.js…keyword.URL: “http://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=PL&userid=28ab8d17-329c-4c34-9e5f-d38de03d9c82&affid=110774&searchtype=ds&babsrc=lnkry&q=

FF - prefs.js…network.proxy.autoconfig_url: “http://ibuk.aps.edu.pl/proxy.pac

FF - prefs.js…network.proxy.type: 2

FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()

FF - HKLM\Software\MozillaPlugins@Apple.com/iTunes,version=: File not found

FF - HKLM\Software\MozillaPlugins@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()

FF - HKLM\Software\MozillaPlugins@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)

FF - HKLM\Software\MozillaPlugins@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins@real.com/nppl3260;version=6.0.12.450: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)

FF - HKLM\Software\MozillaPlugins@real.com/nprjplug;version=1.0.3.448: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)

FF - HKLM\Software\MozillaPlugins@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)

FF - HKLM\Software\MozillaPlugins@real.com/nsJSRealPlayerPlugin;version=: File not found

FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\wrc@avast.com: C:\Program Files\Alwil Software\Avast5\WebRep\FF [2012-03-07 11:58:43 | 000,000,000 | —D | M]

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.28\extensions\Components: C:\Program Files\Mozilla Firefox\components [2012-03-15 07:54:32 | 000,000,000 | —D | M]

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.28\extensions\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-03-15 07:54:32 | 000,000,000 | —D | M]

[2010-06-13 19:44:07 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Ula\Dane aplikacji\Mozilla\Extensions

[2012-06-04 15:17:20 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Ula\Dane aplikacji\Mozilla\Firefox\Profiles\mhtaohgb.default\extensions

[2012-03-09 22:42:15 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Documents and Settings\Ula\Dane aplikacji\Mozilla\Firefox\Profiles\mhtaohgb.default\extensions{20a82645-c095-46ed-80e3-08825760534b}

[2012-03-06 23:12:50 | 000,000,000 | —D | M] (ScrapBook) – C:\Documents and Settings\Ula\Dane aplikacji\Mozilla\Firefox\Profiles\mhtaohgb.default\extensions{53A03D43-5363-4669-8190-99061B2DEBA5}

[2011-01-25 21:08:28 | 000,000,000 | —D | M] (PEKAO S.A. Sign Plugin) – C:\Documents and Settings\Ula\Dane aplikacji\Mozilla\Firefox\Profiles\mhtaohgb.default\extensions\SignPlugin@pekao.pl

[2011-02-01 14:19:28 | 000,000,000 | —D | M] (Raiffeisen SignPlugin) – C:\Documents and Settings\Ula\Dane aplikacji\Mozilla\Firefox\Profiles\mhtaohgb.default\extensions\SignPlugin@Raiffeisen.com

[2012-05-26 19:00:45 | 000,000,000 | —D | M] (No name found) – C:\Documents and Settings\Ula\Dane aplikacji\Mozilla\Firefox\Profiles\mhtaohgb.default\extensions\staged

[2012-06-01 22:16:08 | 000,002,474 | ---- | M] () – C:\Documents and Settings\Ula\Dane aplikacji\Mozilla\Firefox\Profiles\mhtaohgb.default\searchplugins\Web Search.xml

[2012-06-04 15:17:20 | 000,000,000 | —D | M] (No name found) – C:\Program Files\Mozilla Firefox\extensions

[2012-05-06 17:02:54 | 000,000,000 | —D | M] (Skype Click to Call) – C:\Program Files\Mozilla Firefox\extensions{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

[2012-03-07 11:58:43 | 000,000,000 | —D | M] (avast! WebRep) – C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST5\WEBREP\FF

[2012-03-06 23:11:35 | 000,000,000 | —D | M] (Java Quick Starter) – C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF

[2010-06-13 20:11:20 | 000,000,000 | —D | M] (RealPlayer Browser Record Plugin) – C:\PROGRAM FILES\REAL\REALPLAYER\BROWSERRECORD\FIREFOX\EXT

[2012-03-06 23:11:33 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) – C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll

[2011-01-25 09:14:56 | 000,002,767 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml

[2011-01-25 09:14:56 | 000,001,406 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml

[2011-01-25 09:14:57 | 000,000,917 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml

[2011-01-25 09:14:57 | 000,000,858 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml

[2011-01-25 09:14:57 | 000,001,183 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml

[2011-01-25 09:14:57 | 000,001,683 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2008-04-15 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)

O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)

O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)

O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O3 - HKLM…\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)

O4 - HKLM…\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)

O4 - HKLM…\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)

O4 - HKLM…\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)

O4 - HKLM…\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)

O4 - HKLM…\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)

O4 - HKLM…\Run: [EEventManager] C:\Program Files\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)

O4 - HKLM…\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)

O4 - HKLM…\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)

O4 - HKLM…\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()

O4 - HKLM…\Run: [samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe ()

O4 - HKLM…\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)

O4 - HKU.DEFAULT…\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()

O4 - HKU\S-1-5-18…\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()

O4 - HKU\S-1-5-20…\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()

O4 - HKU\S-1-5-21-1957994488-1085031214-682003330-1004…\Run: [browser Infrastructure Helper] C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar\Application\Linkury.exe (Smartbar)

O4 - HKU\S-1-5-21-1957994488-1085031214-682003330-1004…\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()

O4 - HKU.DEFAULT…\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 File not found

O4 - HKU\S-1-5-18…\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 File not found

O4 - HKU\S-1-5-20…\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 File not found

O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Cisco Systems VPN Client.lnk = C:\Program Files\Cisco Systems\VPN Client\vpngui.exe (Cisco Systems, Inc.)

O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Device Detector 3.lnk = C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe (OLYMPUS IMAGING CORP.)

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1

O7 - HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145

O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145

O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149

O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145

O7 - HKU\S-1-5-21-1957994488-1085031214-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145

O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 File not found

O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O9 - Extra ‘Tools’ menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ … ontrol.cab (Windows Genuine Advantage Validation Tool)

O16 - DPF: {4723200F-7E63-423B-8FE3-6969DCEDC2D0} https://www.ecod.pl/webapp/EcodInit.cab (EcodInitializerControl.EcodInitCtl)

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda … 5431739081 (WUWebControl Class)

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta … s-i586.cab (Java Plug-in 1.6.0_31)

O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta … s-i586.cab (Java Plug-in 1.6.0_31)

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta … s-i586.cab (Java Plug-in 1.6.0_31)

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s … wflash.cab (Shockwave Flash Object)

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.15

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces{AA8B5C7D-B007-440B-AC62-173FE0D902C9}: DhcpNameServer = 10.0.0.15

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces{AA8B5C7D-B007-440B-AC62-173FE0D902C9}: NameServer = 194.204.152.34,194.204.159.1

O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)

O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)

O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)

O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home

O24 - Desktop WallPaper: C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp

O24 - Desktop BackupWallPaper: C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp

O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No CLSID value found.

O32 - HKLM CDRom: AutoRun - 1

O32 - AutoRun File - [2009-10-13 11:32:32 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT – [NTFS]

O33 - MountPoints2{0838faef-ce0f-11df-924f-00241d98acee}\Shell - “” = AutoRun

O33 - MountPoints2{0838faef-ce0f-11df-924f-00241d98acee}\Shell\AutoRun\command - “” = E:\LaunchU3.exe -a

O34 - HKLM BootExecute: (autocheck autochk *)

O35 - HKLM…comfile [open] – “%1” %*

O35 - HKLM…exefile [open] – “%1” %*

O37 - HKLM…com [@ = comfile] – “%1” %*

O37 - HKLM…exe [@ = exefile] – “%1” %*

O38 - SubSystems\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)

O38 - SubSystems\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 30 Days ==========

[2012-05-30 18:31:39 | 000,000,000 | —D | C] – C:\Documents and Settings\Ula\Pulpit\Obrona magisterki

[2012-05-29 14:41:33 | 000,000,000 | —D | C] – C:\Documents and Settings\Ula\Pulpit\Wykresy do magisterki

[2012-05-24 22:13:01 | 000,000,000 | —D | C] – C:\Documents and Settings\Ula\Pulpit\Spice

[2012-05-19 17:17:03 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Menu Start\Programy\PrimoPDF

[2012-05-19 17:08:02 | 000,000,000 | —D | C] – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\Smartbar

[2012-05-06 17:02:58 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Dane aplikacji\boost_interprocess

[2012-05-06 17:02:04 | 000,000,000 | —D | C] – C:\Documents and Settings\Ula\Dane aplikacji\Skype

[2012-05-06 17:01:52 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Skype

[2012-05-06 17:01:52 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Menu Start\Programy\Skype

[2012-05-06 17:01:48 | 000,000,000 | R–D | C] – C:\Program Files\Skype

[2012-05-06 17:01:43 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Dane aplikacji\Skype

[4 C:\Documents and Settings\Ula*.tmp files -> C:\Documents and Settings\Ula*.tmp ->]

[3 C:\WINDOWS*.tmp files -> C:\WINDOWS*.tmp ->]

[1 C:\WINDOWS\System32*.tmp files -> C:\WINDOWS\System32*.tmp ->]

========== Files - Modified Within 30 Days ==========

[2012-06-04 15:00:05 | 000,000,260 | ---- | M] () – C:\WINDOWS\tasks\WGASetup.job

[2012-06-04 14:59:59 | 000,000,211 | -HS- | M] () – C:\boot.ini

[2012-06-04 14:59:04 | 000,249,324 | ---- | M] () – C:\WINDOWS\System32\NvApps.xml

[2012-06-04 14:59:00 | 000,002,048 | --S- | M] () – C:\WINDOWS\bootstat.dat

[2012-06-04 09:54:47 | 000,002,206 | ---- | M] () – C:\WINDOWS\System32\wpa.dbl

[2012-06-02 18:03:43 | 000,000,069 | ---- | M] () – C:\WINDOWS\NeroDigital.ini

[2012-05-24 12:07:24 | 000,503,306 | ---- | M] () – C:\WINDOWS\System32\perfh015.dat

[2012-05-24 12:07:24 | 000,444,028 | ---- | M] () – C:\WINDOWS\System32\perfh009.dat

[2012-05-24 12:07:24 | 000,089,874 | ---- | M] () – C:\WINDOWS\System32\perfc015.dat

[2012-05-24 12:07:24 | 000,071,904 | ---- | M] () – C:\WINDOWS\System32\perfc009.dat

[2012-05-19 17:17:03 | 000,000,798 | ---- | M] () – C:\Documents and Settings\All Users\Pulpit\PrimoPDF - Drop Files Here to Convert!.lnk

[2012-05-19 17:16:54 | 000,000,314 | ---- | M] () – C:\WINDOWS\primopdf.ini

[2012-05-19 17:02:57 | 007,458,096 | ---- | M] () – C:\Documents and Settings\Ula\Pulpit\InternationalPrimoPDF_5.1.0.2(dobreprogramy.pl).exe

[2012-05-15 22:07:59 | 014,195,426 | ---- | M] () – C:\Documents and Settings\Ula\Pulpit\Oceana - Cry Cry zapiska.pl.mp4

[2012-05-09 12:09:21 | 000,276,560 | ---- | M] () – C:\WINDOWS\System32\FNTCACHE.DAT

[2012-05-09 12:02:12 | 000,001,355 | ---- | M] () – C:\WINDOWS\imsins.BAK

[2012-05-07 21:38:58 | 000,079,215 | ---- | M] () – C:\Documents and Settings\Ula\Moje dokumenty\formularz2.jpg

[2012-05-07 21:36:11 | 000,116,946 | ---- | M] () – C:\Documents and Settings\Ula\Moje dokumenty\formularz1.jpg

[2012-05-07 21:34:22 | 000,172,991 | ---- | M] () – C:\Documents and Settings\Ula\Moje dokumenty\ubezpieczenie1.jpg

[2012-05-07 21:33:09 | 000,150,255 | ---- | M] () – C:\Documents and Settings\Ula\Moje dokumenty\ubezpieczenie2.jpg

[2012-05-07 21:30:57 | 000,176,701 | ---- | M] () – C:\Documents and Settings\Ula\Moje dokumenty\ubezpieczenie.jpg

[2012-05-06 21:06:44 | 000,002,267 | ---- | M] () – C:\Documents and Settings\All Users\Pulpit\Skype.lnk

[4 C:\Documents and Settings\Ula*.tmp files -> C:\Documents and Settings\Ula*.tmp ->]

[3 C:\WINDOWS*.tmp files -> C:\WINDOWS*.tmp ->]

[1 C:\WINDOWS\System32*.tmp files -> C:\WINDOWS\System32*.tmp ->]

========== Files Created - No Company Name ==========

[2012-05-19 17:17:03 | 000,000,798 | ---- | C] () – C:\Documents and Settings\All Users\Pulpit\PrimoPDF - Drop Files Here to Convert!.lnk

[2012-05-19 17:02:56 | 007,458,096 | ---- | C] () – C:\Documents and Settings\Ula\Pulpit\InternationalPrimoPDF_5.1.0.2(dobreprogramy.pl).exe

[2012-05-15 22:06:08 | 014,195,426 | ---- | C] () – C:\Documents and Settings\Ula\Pulpit\Oceana - Cry Cry zapiska.pl.mp4

[2012-05-07 21:38:39 | 000,079,215 | ---- | C] () – C:\Documents and Settings\Ula\Moje dokumenty\formularz2.jpg

[2012-05-07 21:35:52 | 000,116,946 | ---- | C] () – C:\Documents and Settings\Ula\Moje dokumenty\formularz1.jpg

[2012-05-07 21:34:03 | 000,172,991 | ---- | C] () – C:\Documents and Settings\Ula\Moje dokumenty\ubezpieczenie1.jpg

[2012-05-07 21:32:50 | 000,150,255 | ---- | C] () – C:\Documents and Settings\Ula\Moje dokumenty\ubezpieczenie2.jpg

[2012-05-07 21:30:38 | 000,176,701 | ---- | C] () – C:\Documents and Settings\Ula\Moje dokumenty\ubezpieczenie.jpg

[2012-05-06 17:01:52 | 000,002,267 | ---- | C] () – C:\Documents and Settings\All Users\Pulpit\Skype.lnk

[2012-03-06 23:41:15 | 000,003,072 | ---- | C] () – C:\WINDOWS\System32\iacenc.dll

[2011-11-01 21:26:36 | 000,051,208 | -H-- | C] () – C:\WINDOWS\System32\mlfcache.dat

[2011-06-05 13:35:18 | 000,176,235 | ---- | C] () – C:\WINDOWS\System32\Primomonnt.dll

[2011-02-18 16:30:03 | 000,000,128 | ---- | C] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\fusioncache.dat

[2011-02-18 16:11:45 | 000,001,025 | ---- | C] () – C:\WINDOWS\System32\sysprs7.dll

[2011-02-18 16:11:45 | 000,000,336 | ---- | C] () – C:\WINDOWS\System32\lsprst7.dll

[2011-02-18 16:11:21 | 000,001,024 | ---- | C] () – C:\WINDOWS\System32\clauth2.dll

[2011-02-18 16:11:21 | 000,001,024 | ---- | C] () – C:\WINDOWS\System32\clauth1.dll

[2011-02-18 16:11:21 | 000,000,073 | ---- | C] () – C:\WINDOWS\System32\ssprs.dll

[2011-02-18 16:11:21 | 000,000,000 | ---- | C] () – C:\WINDOWS\System32\serauth2.dll

[2011-02-18 16:11:21 | 000,000,000 | ---- | C] () – C:\WINDOWS\System32\serauth1.dll

[2011-02-18 16:11:21 | 000,000,000 | ---- | C] () – C:\WINDOWS\System32\nsprs.dll

[2010-09-29 18:06:43 | 000,000,117 | ---- | C] () – C:\WINDOWS\CIV.INI

[2010-07-15 20:30:00 | 000,000,000 | ---- | C] () – C:\WINDOWS\EEventManager.INI

[2010-07-15 15:21:32 | 000,111,932 | ---- | C] () – C:\WINDOWS\System32\EPPICPrinterDB.dat

[2010-07-15 15:21:32 | 000,031,053 | ---- | C] () – C:\WINDOWS\System32\EPPICPattern131.dat

[2010-07-15 15:21:32 | 000,027,417 | ---- | C] () – C:\WINDOWS\System32\EPPICPattern121.dat

[2010-07-15 15:21:32 | 000,026,154 | ---- | C] () – C:\WINDOWS\System32\EPPICPattern1.dat

[2010-07-15 15:21:32 | 000,024,903 | ---- | C] () – C:\WINDOWS\System32\EPPICPattern3.dat

[2010-07-15 15:21:32 | 000,021,390 | ---- | C] () – C:\WINDOWS\System32\EPPICPattern5.dat

[2010-07-15 15:21:32 | 000,020,148 | ---- | C] () – C:\WINDOWS\System32\EPPICPattern2.dat

[2010-07-15 15:21:32 | 000,011,811 | ---- | C] () – C:\WINDOWS\System32\EPPICPattern4.dat

[2010-07-15 15:21:32 | 000,004,943 | ---- | C] () – C:\WINDOWS\System32\EPPICPattern6.dat

[2010-07-15 15:21:32 | 000,001,146 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_DU.dat

[2010-07-15 15:21:32 | 000,001,139 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_PT.dat

[2010-07-15 15:21:32 | 000,001,139 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_BP.dat

[2010-07-15 15:21:32 | 000,001,136 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_ES.dat

[2010-07-15 15:21:32 | 000,001,129 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_FR.dat

[2010-07-15 15:21:32 | 000,001,129 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_CF.dat

[2010-07-15 15:21:32 | 000,001,120 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_IT.dat

[2010-07-15 15:21:32 | 000,001,107 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_GE.dat

[2010-07-15 15:21:32 | 000,001,104 | ---- | C] () – C:\WINDOWS\System32\EPPICPresetData_EN.dat

[2010-07-15 15:21:32 | 000,000,097 | ---- | C] () – C:\WINDOWS\System32\PICSDK.ini

[2010-07-15 15:20:47 | 000,065,793 | ---- | C] () – C:\WINDOWS\System32\esfw8b.bin

[2010-07-15 15:20:08 | 000,000,026 | ---- | C] () – C:\WINDOWS\CDE V30V300DEFGIPSRUk.ini

[2010-06-13 20:23:50 | 000,002,200 | ---- | C] () – C:\WINDOWS\wincmd.ini

[2010-06-13 20:23:49 | 000,482,408 | ---- | C] () – C:\WINDOWS\ssndii.exe

[2010-06-13 20:23:49 | 000,260,464 | ---- | C] () – C:\WINDOWS\SUPDRun.exe

[2010-06-13 20:23:45 | 000,008,636 | ---- | C] () – C:\WINDOWS\modifyPE.exe

[2010-06-13 20:23:45 | 000,004,293 | ---- | C] () – C:\WINDOWS\ODBCINST.INI

[2010-06-13 20:23:45 | 000,000,448 | ---- | C] () – C:\WINDOWS\MxGrid.INI

[2010-06-13 20:23:45 | 000,000,132 | ---- | C] () – C:\WINDOWS\mxreader.INI

[2010-06-13 20:23:45 | 000,000,069 | ---- | C] () – C:\WINDOWS\NeroDigital.ini

[2010-06-13 20:23:45 | 000,000,000 | ---- | C] () – C:\WINDOWS\nsreg.dat

[2010-06-13 20:23:44 | 000,176,128 | ---- | C] () – C:\WINDOWS\autoclk.exe

[2010-06-13 20:23:44 | 000,143,360 | ---- | C] () – C:\WINDOWS\adiras.exe

[2010-06-13 20:23:44 | 000,024,576 | ---- | C] () – C:\WINDOWS\enddisk32.exe

[2010-06-13 20:23:44 | 000,002,055 | R— | C] () – C:\WINDOWS\BTI.INI

[2010-06-13 20:23:44 | 000,002,048 | --S- | C] () – C:\WINDOWS\bootstat.dat

[2010-06-13 20:23:44 | 000,001,925 | ---- | C] () – C:\WINDOWS\AmFK.ini

[2010-06-13 20:23:44 | 000,000,990 | ---- | C] () – C:\WINDOWS\adiras.ini

[2010-06-13 20:23:44 | 000,000,617 | ---- | C] () – C:\WINDOWS\eReg.dat

[2010-06-13 20:23:44 | 000,000,287 | ---- | C] () – C:\WINDOWS\EReg072.dat

[2010-06-13 20:23:44 | 000,000,169 | ---- | C] () – C:\WINDOWS\adidsl.ini

[2010-06-13 20:23:44 | 000,000,038 | ---- | C] () – C:\WINDOWS\avisplitter.ini

[2010-06-13 20:23:44 | 000,000,021 | ---- | C] () – C:\WINDOWS\Fast800.ini

[2010-06-13 20:21:51 | 000,815,104 | ---- | C] () – C:\WINDOWS\System32\xvidcore.dll

[2010-06-13 20:21:51 | 000,180,224 | ---- | C] () – C:\WINDOWS\System32\xvidvfw.dll

[2010-06-13 20:21:40 | 000,010,240 | ---- | C] () – C:\WINDOWS\System32\vidx16.dll

[2010-06-13 20:21:38 | 000,168,448 | ---- | C] () – C:\WINDOWS\System32\unrar.dll

[2010-06-13 20:21:32 | 000,026,624 | ---- | C] () – C:\WINDOWS\System32\spd__l.dll

[2010-06-13 20:21:29 | 000,004,569 | ---- | C] () – C:\WINDOWS\System32\secupd.dat

[2010-06-13 20:21:24 | 003,596,288 | ---- | C] () – C:\WINDOWS\System32\qt-dx331.dll

[2010-06-13 20:21:21 | 000,503,306 | ---- | C] () – C:\WINDOWS\System32\perfh015.dat

[2010-06-13 20:21:21 | 000,444,028 | ---- | C] () – C:\WINDOWS\System32\perfh009.dat

[2010-06-13 20:21:21 | 000,313,828 | ---- | C] () – C:\WINDOWS\System32\perfi015.dat

[2010-06-13 20:21:21 | 000,272,128 | ---- | C] () – C:\WINDOWS\System32\perfi009.dat

[2010-06-13 20:21:21 | 000,197,912 | ---- | C] () – C:\WINDOWS\System32\physxcudart_20.dll

[2010-06-13 20:21:21 | 000,034,990 | ---- | C] () – C:\WINDOWS\System32\perfd015.dat

[2010-06-13 20:21:21 | 000,028,626 | ---- | C] () – C:\WINDOWS\System32\perfd009.dat

[2010-06-13 20:21:20 | 000,089,874 | ---- | C] () – C:\WINDOWS\System32\perfc015.dat

[2010-06-13 20:21:20 | 000,071,904 | ---- | C] () – C:\WINDOWS\System32\perfc009.dat

[2010-06-13 20:21:19 | 013,107,200 | ---- | C] () – C:\WINDOWS\System32\oembios.bin

[2010-06-13 20:21:19 | 000,110,592 | ---- | C] () – C:\WINDOWS\System32\OdiOlDVR.dll

[2010-06-13 20:21:19 | 000,053,248 | ---- | C] () – C:\WINDOWS\System32\OdiAPI.dll

[2010-06-13 20:21:19 | 000,004,463 | ---- | C] () – C:\WINDOWS\System32\oembios.dat

[2010-06-13 20:21:14 | 001,597,690 | ---- | C] () – C:\WINDOWS\System32\nvdata.bin

[2010-06-13 20:21:11 | 000,000,741 | ---- | C] () – C:\WINDOWS\System32\noise.dat

[2010-06-13 20:20:53 | 000,673,088 | ---- | C] () – C:\WINDOWS\System32\mlang.dat

[2010-06-13 20:20:53 | 000,046,258 | ---- | C] () – C:\WINDOWS\System32\mib.bin

[2010-06-13 20:20:41 | 000,127,456 | ---- | C] () – C:\WINDOWS\System32\IPDETECT.EXE

[2010-06-13 20:20:36 | 000,394,240 | ---- | C] () – C:\WINDOWS\System32\HMTCD.dll

[2010-06-13 20:20:34 | 000,276,560 | ---- | C] () – C:\WINDOWS\System32\FNTCACHE.DAT

[2010-06-13 20:20:33 | 000,085,504 | ---- | C] () – C:\WINDOWS\System32\ff_vfw.dll

[2010-06-13 20:20:32 | 000,021,856 | ---- | C] () – C:\WINDOWS\System32\emptyregdb.dat

[2010-06-13 20:20:30 | 000,282,624 | ---- | C] () – C:\WINDOWS\System32\DscPnt.dll

[2010-06-13 20:20:30 | 000,218,003 | ---- | C] () – C:\WINDOWS\System32\dssec.dat

[2010-06-13 20:20:23 | 000,001,804 | ---- | C] () – C:\WINDOWS\System32\Dcache.bin

[2010-06-13 20:20:18 | 000,139,280 | ---- | C] () – C:\WINDOWS\System32\CSGina.dll

[2010-06-13 20:20:17 | 000,061,440 | ---- | C] () – C:\WINDOWS\System32\CopyToSendTo.dll

[2010-06-13 20:20:16 | 000,126,976 | ---- | C] () – C:\WINDOWS\System32\coclassfast.dll

[2010-06-13 20:20:15 | 000,022,723 | ---- | C] () – C:\WINDOWS\System32\cl31cl3.dll

[2010-06-13 20:20:14 | 000,049,152 | R— | C] () – C:\WINDOWS\System32\ChCfg.exe

[2010-06-13 20:20:13 | 000,114,688 | ---- | C] () – C:\WINDOWS\System32\cabarc.exe

[2010-06-13 20:20:11 | 000,101,888 | ---- | C] () – C:\WINDOWS\System32\BUTIL.DLL

[2010-06-13 20:20:04 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll

[2010-06-13 20:20:04 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelSwedish.dll

[2010-06-13 20:20:04 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelSpanish.dll

[2010-06-13 20:20:04 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll

[2010-06-13 20:20:04 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelPortugese.dll

[2010-06-13 20:20:04 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelKorean.dll

[2010-06-13 20:20:04 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelJapanese.dll

[2010-06-13 20:20:04 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelGerman.dll

[2010-06-13 20:20:03 | 000,058,648 | ---- | C] () – C:\WINDOWS\System32\AgCPanelFrench.dll

[2010-06-13 20:20:03 | 000,046,892 | ---- | C] () – C:\WINDOWS\System32\ADADIX16.DLL

[2010-06-13 20:16:49 | 000,152,220 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4I2.BIN

[2010-06-13 20:16:49 | 000,152,220 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4I1.BIN

[2010-06-13 20:16:49 | 000,152,220 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4I0.BIN

[2010-06-13 20:16:49 | 000,152,132 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4P2.BIN

[2010-06-13 20:16:49 | 000,152,132 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4P1.BIN

[2010-06-13 20:16:49 | 000,152,132 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4P0.BIN

[2010-06-13 20:16:49 | 000,152,126 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E9P2.BIN

[2010-06-13 20:16:49 | 000,152,126 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E9P1.BIN

[2010-06-13 20:16:49 | 000,152,126 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E9P0.BIN

[2010-06-13 20:16:49 | 000,152,126 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E9I2.BIN

[2010-06-13 20:16:49 | 000,152,126 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E9I1.BIN

[2010-06-13 20:16:49 | 000,152,126 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E9I0.BIN

[2010-06-13 20:16:49 | 000,152,036 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4D2.BIN

[2010-06-13 20:16:49 | 000,152,034 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4D1.BIN

[2010-06-13 20:16:49 | 000,152,034 | ---- | C] () – C:\WINDOWS\System32\drivers\L1E4D0.BIN

[2010-06-13 20:16:48 | 000,022,395 | ---- | C] () – C:\WINDOWS\System32\drivers\fpga.bin

[2010-06-13 19:54:36 | 000,125,952 | ---- | C] () – C:\Documents and Settings\Ula\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[2010-06-13 19:43:54 | 000,068,608 | ---- | C] () – C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat

========== LOP Check ==========

[2010-09-17 21:57:17 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software

[2010-06-13 19:43:37 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\Azureus

[2012-06-04 15:05:14 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\boost_interprocess

[2010-06-13 19:43:37 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\Hiro-Media

[2010-10-28 18:08:12 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\ipla

[2011-06-05 13:38:18 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\Nitro PDF

[2010-10-28 21:18:11 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\OpenFM

[2010-06-13 19:43:40 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\Sage

[2010-06-13 19:43:40 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\Symfonia

[2010-06-13 19:43:40 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\TEMP

[2011-11-01 21:16:19 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji{429CAD59-35B1-4DBC-BB6D-1DB246563521}

[2011-06-05 14:07:40 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Dane aplikacji\Softland

[2012-04-06 22:50:31 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Azureus

[2010-11-28 19:53:22 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\ChomikBox

[2010-07-15 17:51:06 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Epson

[2010-06-13 19:43:59 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Gadu-Gadu

[2011-11-02 11:07:35 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Gadu-Gadu 10

[2011-10-08 16:37:18 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\iLibrary Reader

[2012-06-02 17:46:22 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\ipla

[2010-06-13 19:44:14 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Nikon

[2011-06-05 13:56:09 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Nitro PDF

[2012-05-19 17:16:54 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\OpenCandy

[2010-10-28 18:14:29 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\OpenFM

[2012-05-19 17:43:52 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\PrimoPDF

[2010-06-13 19:44:16 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Sage

[2011-06-05 14:07:39 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Softland

[2012-06-02 20:16:53 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\uTorrent

[2011-05-06 21:58:52 | 000,000,000 | —D | M] – C:\Documents and Settings\Ula\Dane aplikacji\Vso

[2012-06-04 15:00:05 | 000,000,260 | ---- | M] () – C:\WINDOWS\Tasks\WGASetup.job

========== Purity Check ==========

========== Alternate Data Streams ==========

@Alternate Data Stream - 146 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:3B71D0B4

Wklejanie logów na forum - przeczytaj i zastosuj się do Tematu

Zignorowanie zalecenia będzie skutkowało usunięciem tematu do Kosza.

Użyj AdwCleaner http://general-changelog-team.fr/outils/289-adwcleaner z funkcji Delete

Pokaż nowe logi z OTL.Umieść je na wklej.org

http://wklej.org/id/766810/

Miałaś pokazać nowe logi z OTL według instrukcji.

O to chodzi?

http://www.wklej.org/id/766872/

Dodane 04.06.2012 (Pn) 20:04

Czy o to:

http://wklej.org/id/766881/

Dodane 04.06.2012 (Pn) 20:30

OLT

http://www.wklej.org/id/766907/

Dodane 04.06.2012 (Pn) 20:33

Extras2:

http://www.wklej.org/id/766914/

Dodane 04.06.2012 (Pn) 20:37

Tak.Kliknij w okno zachowam ostrożność i dalej zrób to co podałem Ci w 1-szym poście.

W panelu sterowania odinstaluj Linkury Smartbar

Zamknij przeglądarkę i okna Własne opcje skanowania / skrypt wklej:

Kliknij Wykonaj skrypt i zatwierdź restart.

Pokaż raport z usuwania i nowy log Skanuj.

uff

W Mozilli już się nie pojawia, ale w Explorerze jeszcze tak.

Dodane 04.06.2012 (Pn) 21:28

Wszystko gra!

Hip hip hurra!

http://wklej.org/id/766997/

Wielkie dzięki;)