Postaram się odświeżyć temat - mój komp od wczoraj wykazuje dziwne objawy i się wiesza nawet nie da się go wzbudzić z czuwania. Podczas przeglądania stron zaczyna się wieszać. Nie wiem co jest grane. Pracuje w miarą normalnie tylko po pewnym czasie się wiesza i tylko twardy reset:( Proszę o wskazówki tylko "jak krowie na rowie" bo komputery to nie moja specjalność choć dzięki Waszej pomocy udało mi się już wskrzesić mojego starego lapka:) Dlatego mam nadzieję, że tu też coś zaczaruję. http://obrazki.elektroda.pl/3855158400_1336846678_thumb.jpg
OTL logfile created on: 2012-05-12 17:18:26 - Run 1
OTL by OldTimer - Version 3.2.42.3 Folder = F:\PUDA2\INSTALKI\ANTYWIRUSY\Narzędzia
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
1,99 Gb Total Physical Memory | 0,87 Gb Available Physical Memory | 43,89% Memory free
3,83 Gb Paging File | 2,72 Gb Available in Paging File | 70,89% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 54,97 Gb Total Space | 36,16 Gb Free Space | 65,77% Space Free | Partition Type: NTFS
Drive E: | 19,53 Gb Total Space | 16,66 Gb Free Space | 85,27% Space Free | Partition Type: NTFS
Drive F: | 149,04 Gb Total Space | 76,62 Gb Free Space | 51,41% Space Free | Partition Type: NTFS
Computer Name: KOWEMAT-DOM | User Name: ET | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2012-05-12 14:19:54 | 000,595,456 | ---- | M] (OldTimer Tools) -- F:\PUDA2\INSTALKI\ANTYWIRUSY\Narzędzia\OTL.exe
PRC - [2012-05-03 14:10:02 | 002,446,872 | ---- | M] (Check Point Software Technologies LTD) -- C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
PRC - [2012-05-03 14:07:06 | 000,073,360 | ---- | M] (Check Point Software Technologies LTD) -- C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
PRC - [2012-04-30 21:05:22 | 000,497,280 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe
PRC - [2012-04-30 21:04:28 | 000,738,944 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
PRC - [2012-04-28 04:07:02 | 001,224,176 | ---- | M] (Google Inc.) -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe
PRC - [2012-04-04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012-03-07 02:15:17 | 004,241,512 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012-03-07 02:15:14 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012-03-06 16:05:24 | 000,192,512 | ---- | M] (Two Pilots) -- C:\WINDOWS\VPDAgent.exe
PRC - [2009-01-17 16:48:08 | 005,853,672 | ---- | M] (o2.pl Sp. z o.o.) -- C:\Program Files\Tlen.pl\tlen.exe
PRC - [2008-04-15 17:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2003-04-18 19:15:50 | 000,053,248 | ---- | M] (Extended Systems, Inc.) -- C:\WINDOWS\system32\BtUsrBdg.exe
PRC - [2003-04-15 10:48:00 | 000,036,864 | ---- | M] () -- C:\WINDOWS\system32\BTSetBootKey.exe
[color=#E56717]========== Modules (No Company Name) ==========[/color]
MOD - [2012-05-12 09:44:41 | 001,758,720 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\12051200\algo.dll
MOD - [2012-04-28 04:07:01 | 000,444,400 | ---- | M] () -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\ppgooglenaclpluginchrome.dll
MOD - [2012-04-28 04:06:59 | 003,915,248 | ---- | M] () -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\pdf.dll
MOD - [2012-04-28 04:05:34 | 000,122,880 | ---- | M] () -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\avutil-51.dll
MOD - [2012-04-28 04:05:33 | 000,220,672 | ---- | M] () -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\avformat-53.dll
MOD - [2012-04-28 04:05:32 | 001,747,456 | ---- | M] () -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\avcodec-53.dll
MOD - [2012-04-28 03:09:18 | 008,743,584 | ---- | M] () -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\gcswf32.dll
MOD - [2012-03-06 16:05:24 | 000,048,640 | ---- | M] () -- C:\WINDOWS\system32\gcprpm.dll
MOD - [2009-01-17 16:47:38 | 000,033,792 | ---- | M] () -- C:\Program Files\Tlen.pl\languages\polish.dll
MOD - [2009-01-06 13:55:46 | 000,061,464 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\TlenSMS.tpl
MOD - [2008-12-23 16:11:32 | 000,195,096 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\Video.tpl
MOD - [2008-12-22 15:32:06 | 000,093,720 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\Voice.tpl
MOD - [2008-12-16 15:51:44 | 000,151,552 | ---- | M] () -- C:\Program Files\Tlen.pl\libgadu.dll
MOD - [2008-07-22 09:49:48 | 000,075,800 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\FileTM.tpl
MOD - [2008-07-22 09:49:40 | 000,106,520 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\File.tpl
MOD - [2008-06-19 14:20:08 | 000,017,408 | ---- | M] () -- C:\Program Files\Tlen.pl\hook.dll
MOD - [2008-06-19 14:15:54 | 000,030,720 | ---- | M] () -- C:\Program Files\Tlen.pl\libutil2.dll
MOD - [2008-06-19 14:15:46 | 000,139,264 | ---- | M] () -- C:\Program Files\Tlen.pl\libexpat2.dll
MOD - [2008-04-15 17:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2008-01-15 16:57:06 | 000,349,720 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\Tlenofon.tpl
MOD - [2007-10-05 15:00:58 | 000,181,248 | ---- | M] () -- C:\Program Files\Tlen.pl\libutil.dll
MOD - [2005-11-18 11:33:58 | 000,054,784 | ---- | M] () -- C:\Program Files\Tlen.pl\libs\libexpat.dll
MOD - [2005-10-20 11:36:08 | 000,077,824 | R--- | M] () -- C:\Program Files\HP\Digital Imaging\bin\crm\xmltok.dll
MOD - [2005-10-20 11:36:08 | 000,065,536 | R--- | M] () -- C:\Program Files\HP\Digital Imaging\bin\crm\xmlparse.dll
MOD - [2003-04-15 10:48:00 | 000,036,864 | ---- | M] () -- C:\WINDOWS\system32\BTSetBootKey.exe
MOD - [2003-01-30 06:04:00 | 000,618,496 | ---- | M] () -- C:\Program Files\Tlen.pl\stlpmt45.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2012-05-04 22:46:14 | 000,257,696 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012-05-03 14:10:02 | 002,446,872 | ---- | M] (Check Point Software Technologies LTD) [Auto | Running] -- C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe -- (vsmon)
SRV - [2012-04-30 21:05:22 | 000,497,280 | ---- | M] (Check Point Software Technologies) [Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe -- (IswSvc)
SRV - [2012-04-04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012-03-07 02:15:14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2012-03-06 16:05:24 | 000,192,512 | ---- | M] (Two Pilots) [Auto | Running] -- C:\WINDOWS\VPDAgent.exe -- (Agent)
SRV - [2012-02-29 09:50:48 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2006-03-03 22:03:10 | 000,069,632 | ---- | M] (HP) [Auto | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | Boot | Stopped] -- -- (cerc6)
DRV - [2012-05-03 14:07:08 | 000,526,608 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\WINDOWS\system32\vsdatant.sys -- (Vsdatant)
DRV - [2012-04-30 21:05:40 | 000,027,016 | ---- | M] (Check Point Software Technologies) [Kernel | Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys -- (ISWKL)
DRV - [2012-04-04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012-03-07 02:03:51 | 000,612,184 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2012-03-07 02:03:38 | 000,337,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2012-03-07 02:02:00 | 000,035,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (AswRdr)
DRV - [2012-03-07 02:01:53 | 000,053,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2012-03-07 02:01:39 | 000,095,704 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2012-03-07 02:01:30 | 000,020,696 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2012-03-07 01:58:29 | 000,024,920 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2012-01-09 18:59:34 | 000,485,808 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF)
DRV - [2012-01-09 18:59:30 | 000,133,208 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\kl1.sys -- (KL1)
DRV - [2012-01-09 18:59:30 | 000,011,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl2.sys -- (kl2)
DRV - [2010-04-03 12:02:54 | 000,240,608 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\WINDOWS\system32\drivers\RsFx0150.sys -- (RsFx0150)
DRV - [2007-06-06 13:51:04 | 000,161,792 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2003-11-05 11:53:00 | 000,019,840 | ---- | M] (Windigo Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vadmulti.sys -- (vad_multi) Windigo Virtual Audio Device (WDM)
DRV - [2003-10-29 19:52:00 | 000,024,523 | ---- | M] (Windigo) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\csrbc01.sys -- (CSRBC01)
DRV - [2003-04-14 10:35:00 | 000,055,616 | ---- | M] (Extended Systems Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Btcomm.sys -- (BTCOMM)
DRV - [2003-03-18 11:31:00 | 000,015,876 | ---- | M] (Windigo Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BtKrnBdg.sys -- (BTKRNBDG)
DRV - [2001-08-10 08:00:00 | 000,003,252 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\PQNTDRV.SYS -- (PQNTDrv)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/sfp/sfp_1332494846_278505
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = pl.v9.com/sfp/sfp_1332494846_278505
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: " URL " = http://search.live.com/results.aspx?q={searchTerms} & src={referrer:source?}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gazeta.pl/0,0.html?sc=1
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: " URL " = http://www.bing.com/search?q={searchTerms} & src=IE-SearchBox & FORM=IE8SRC
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\..\SearchScopes\{6DEE2D4C-57E2-402C-93E0-50EDC8693F8B}: " URL " = http://www.bing.com/search?q={searchTerms} & src=IE-SearchBox & FORM=IE8SRC
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\..\SearchScopes\{CEDFEBE5-02FD-44C5-93D5-EDCED907B7E9}: " URL " = http://www.bing.com/search?q={searchTerms} & src=IE-SearchBox & FORM=IE8SRC
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\..\SearchScopes\{D2F7305C-893F-4B8F-A980-5FFA9439F8ED}: " URL " = http://search.zonealarm.com/search?Source=Browser & oemCode=ZLN112284174895313-1600 & toolbarId=base & affiliateId=1600 & Lan=en & utid=54f48abd0000000000000019b949c8c6 & q={searchTerms}
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\..\SearchScopes\{F51F8E1E-54B5-488F-A2DA-A20F43BED67F}: " URL " = http://szukaj.gazeta.pl/portalSearch.do?s.si(navigation).navigationEnabled=true & s.sm.query={searchTerms}
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyOverride " = & lt; local & gt;
[color=#E56717]========== FireFox ==========[/color]
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\TrustChecker [2012-05-10 21:58:56 | 000,000,000 | ---D | M]
[2012-03-23 11:50:13 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[color=#E56717]========== Chrome ==========[/color]
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome & ie={inputEncoding} & q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome & hl={language} & q={searchTerms},
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\18.0.1025.168\gcswf32.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.99\npGoogleUpdate3.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: SmallringFX MetalSliver Theme = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\amoaokkohdcekgomnddkdfocbifmiafo\1.9_0\
CHR - Extension: YouTube = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Szukaj w Google = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: avast! WebRep = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
CHR - Extension: Skype Click to Call = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.10.0.9560_0\
CHR - Extension: Gmail = C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2008-04-15 17:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Zonealarm Helper Object) - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.5.23.8\bh\zonealarm.dll (Montera Technologeis LTD)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (ZoneAlarm Security Engine Registrar) - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (ZoneAlarm Security Toolbar) - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - C:\Program Files\Check Point Software Technologies LTD\zonealarm\1.5.20.3\zonealarmTlbr.dll (Montera Technologeis LTD)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O3 - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\..\Toolbar\WebBrowser: (ZoneAlarm Security Engine) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation)
O4 - HKLM..\Run: [BTSETBOOTKEY] C:\WINDOWS\System32\BTSetBootKey.exe ()
O4 - HKLM..\Run: [BTUSRBDG] C:\WINDOWS\System32\BtUsrBdg.exe (Extended Systems, Inc.)
O4 - HKLM..\Run: [ISW] C:\Program Files\CheckPoint\ZAForceField\ForceField.exe (Check Point Software Technologies)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [ZoneAlarm] C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe (Check Point Software Technologies LTD)
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-343818398-1220945662-1177238915-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 81.210.63.238 81.210.63.225
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E513E11A-FD4F-4B81-9F58-E70F2E1660E2}: DhcpNameServer = 81.210.63.238 81.210.63.225
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012-03-23 09:41:33 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- " %1 " %*
O35 - HKLM\..exefile [open] -- " %1 " %*
O37 - HKLM\...com [@ = comfile] -- " %1 " %*
O37 - HKLM\...exe [@ = exefile] -- " %1 " %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2012-05-12 15:58:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ET\DoctorWeb
[2012-05-12 14:32:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ET\Dane aplikacji\Malwarebytes
[2012-05-12 14:30:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware
[2012-05-12 14:30:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
[2012-05-12 14:30:40 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012-05-12 14:30:39 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012-05-10 21:58:24 | 000,011,352 | ---- | C] (Kaspersky Lab ZAO) -- C:\WINDOWS\System32\drivers\kl2.sys
[2012-05-10 21:58:22 | 000,133,208 | ---- | C] (Kaspersky Lab ZAO) -- C:\WINDOWS\System32\drivers\kl1.sys
[2012-05-10 21:58:19 | 000,485,808 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys
[2012-05-10 21:57:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Check Point
[2012-05-03 19:09:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2012-05-03 14:07:08 | 000,526,608 | ---- | C] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vsdatant.sys
[2012-04-28 20:32:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ET\Dane aplikacji\Google
[2012-04-28 20:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Google Earth
[2012-04-28 20:30:34 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2012-04-21 14:20:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Szkoła na miarę klasa 1
[2012-04-21 14:20:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\YDP
[2012-04-21 14:20:25 | 000,000,000 | ---D | C] -- C:\Program Files\Szkola na miare klasa 1b
[2012-04-21 14:19:57 | 000,327,168 | ---- | C] (InstallShield Software Corporation) -- C:\WINDOWS\IsUn0415.exe
[2012-04-21 09:01:02 | 000,419,488 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012-04-12 22:52:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ET\Dane aplikacji\BabylonToolbar
[2012-03-23 11:01:31 | 000,733,296 | ---- | C] (Google Inc.) -- C:\Program Files\ChromeSetup.exe
[4 C:\WINDOWS\*.tmp files - & gt; C:\WINDOWS\*.tmp - & gt; ]
[1 C:\WINDOWS\System32\*.tmp files - & gt; C:\WINDOWS\System32\*.tmp - & gt; ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2012-05-12 17:12:01 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\ET\Pulpit\Continue Ringtones Maker Installation.lnk
[2012-05-12 17:12:00 | 000,001,120 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-343818398-1220945662-1177238915-1003UA.job
[2012-05-12 17:07:57 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012-05-12 17:06:20 | 000,001,024 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012-05-12 17:06:09 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012-05-12 16:46:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012-05-12 16:35:01 | 000,001,028 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012-05-12 14:30:42 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk
[2012-05-11 21:42:15 | 000,281,336 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012-05-11 21:12:53 | 000,556,016 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2012-05-11 21:12:53 | 000,498,088 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012-05-11 21:12:53 | 000,108,322 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2012-05-11 21:12:53 | 000,091,974 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012-05-11 21:07:26 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012-05-10 22:16:37 | 000,415,915 | ---- | M] () -- C:\WINDOWS\System32\vsconfig.xml
[2012-05-10 21:59:07 | 000,003,236 | ---- | M] () -- C:\user.js
[2012-05-10 21:57:41 | 000,000,539 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\ZoneAlarm Security.lnk
[2012-05-10 19:45:40 | 000,002,539 | ---- | M] () -- C:\Documents and Settings\ET\Pulpit\Microsoft Office Word 2003.lnk
[2012-05-07 20:52:46 | 000,002,513 | ---- | M] () -- C:\Documents and Settings\ET\Pulpit\Microsoft Office PowerPoint 2003.lnk
[2012-05-06 12:12:01 | 000,001,068 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-343818398-1220945662-1177238915-1003Core.job
[2012-05-04 22:46:13 | 000,419,488 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012-05-04 22:46:13 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2012-05-03 18:59:39 | 000,002,267 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2012-05-03 14:07:08 | 000,526,608 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\System32\vsdatant.sys
[2012-05-01 20:14:33 | 000,002,279 | ---- | M] () -- C:\Documents and Settings\ET\Pulpit\Google Chrome.lnk
[2012-04-21 14:20:26 | 000,001,302 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Szkoła na miarę, klasa 1, semestr 2.lnk
[2012-04-17 19:00:30 | 000,007,168 | ---- | M] () -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[4 C:\WINDOWS\*.tmp files - & gt; C:\WINDOWS\*.tmp - & gt; ]
[1 C:\WINDOWS\System32\*.tmp files - & gt; C:\WINDOWS\System32\*.tmp - & gt; ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2012-05-12 17:12:00 | 000,000,950 | ---- | C] () -- C:\Documents and Settings\ET\Pulpit\Continue Ringtones Maker Installation.lnk
[2012-05-12 14:30:42 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk
[2012-05-10 21:57:41 | 000,000,539 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\ZoneAlarm Security.lnk
[2012-04-28 20:30:39 | 000,001,028 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012-04-28 20:30:38 | 000,001,024 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012-04-21 14:20:26 | 000,001,302 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Szkoła na miarę, klasa 1, semestr 2.lnk
[2012-04-21 09:01:03 | 000,000,930 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012-04-09 22:19:38 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2012-03-30 23:30:44 | 000,007,168 | ---- | C] () -- C:\Documents and Settings\ET\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012-03-23 17:31:56 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\BTSetBootKey.exe
[2012-03-23 17:22:38 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\ESICOMMN.DLL
[2012-03-23 16:59:34 | 000,120,253 | ---- | C] () -- C:\WINDOWS\hpoins11.dat
[2012-03-23 16:50:51 | 000,077,824 | R--- | C] () -- C:\WINDOWS\System32\HPZIDS01.dll
[2012-03-23 14:26:37 | 001,262,956 | ---- | C] () -- C:\WINDOWS\System32\XMNT2001.EXE
[2012-03-23 14:26:37 | 000,003,252 | ---- | C] () -- C:\WINDOWS\System32\drivers\PQNTDRV.SYS
[2012-03-23 11:34:12 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012-03-23 11:29:40 | 000,048,640 | ---- | C] () -- C:\WINDOWS\System32\gcprpm.dll
[2012-03-23 10:42:46 | 001,445,112 | ---- | C] () -- C:\WINDOWS\System32\igkrng400.bin
[2012-03-23 10:42:45 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4943.dll
[2012-03-23 10:29:08 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2012-03-23 10:27:51 | 000,281,336 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012-03-23 10:14:36 | 000,000,968 | ---- | C] () -- C:\WINDOWS\unins000.dat
[2012-03-23 10:06:14 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2012-03-23 09:54:31 | 000,112,688 | ---- | C] () -- C:\WINDOWS\System32\shw32.dll
[2012-03-23 09:54:31 | 000,039,095 | ---- | C] () -- C:\WINDOWS\iccsigs.dat
[2012-03-23 09:44:10 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2012-03-23 09:37:30 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[color=#E56717]========== LOP Check ==========[/color]
[2012-03-23 11:25:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software
[2012-03-23 11:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CheckPoint
[2012-03-23 19:52:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\InsERT
[2012-03-23 11:47:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl
[2012-03-31 12:06:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\Babylon
[2012-04-12 22:52:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\BabylonToolbar
[2012-03-23 14:36:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\Check Point Software Technologies LTD
[2012-03-23 11:50:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\CheckPoint
[2012-03-23 11:27:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\Complitly
[2012-04-21 17:18:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\ObviousIdea
[2012-03-31 12:06:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\pdfforge
[2012-03-23 11:47:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\Tlen.pl
[2012-03-23 17:38:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ET\Dane aplikacji\XTND_BTUIObjects
[color=#E56717]========== Purity Check ==========[/color]
& lt; End of report & gt;