ComboFix 11-10-29.03 - Andrzej 2011-10-29 11:47:23.1.2 - x86 Microsoft Windows 7 Ultimate 6.1.7600.0.1250.48.1045.18.3070.2219 [GMT 2:00] Uruchomiony z: c:\users\Andrzej\Desktop\ComboFix.exe SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . C:\install.exe c:\program files\INSTALL.LOG c:\program files\SpeedBit Video Downloader\Toolbar\tbhelper.dll c:\users\Andrzej\AppData\Local\promo.exe c:\users\Andrzej\AppData\Local\setup.exe c:\windows\$NtUninstallKB27480$\1591200368\@ c:\windows\$NtUninstallKB27480$\1591200368\L\xadqgnnk c:\windows\$NtUninstallKB27480$\1591200368\loader.tlb c:\windows\$NtUninstallKB27480$\1591200368\U\@00000001 c:\windows\$NtUninstallKB27480$\1591200368\U\@000000c0 c:\windows\$NtUninstallKB27480$\1591200368\U\@000000cb c:\windows\$NtUninstallKB27480$\1591200368\U\@000000cf c:\windows\$NtUninstallKB27480$\1591200368\U\@80000000 c:\windows\$NtUninstallKB27480$\1591200368\U\@800000c0 c:\windows\$NtUninstallKB27480$\1591200368\U\@800000cb c:\windows\$NtUninstallKB27480$\1591200368\U\@800000cf c:\windows\$NtUninstallKB27480$\3914982741 c:\windows\1892341598 c:\windows\4117058816 c:\windows\isRS-000.tmp c:\windows\IsUn0415.exe c:\windows\pkunzip.pif c:\windows\pkzip.pif c:\windows\system32\ c:\windows\system32\c_21214.nls c:\windows\$NtUninstallKB27480$ . . . . nie udało się usunąć . . ((((((((((((((((((((((((( Pliki utworzone od 2011-09-28 do 2011-10-29 ))))))))))))))))))))))))))))))) . . 2011-10-29 09:59 . 2011-10-29 10:01 -------- d-----w- c:\users\Andrzej\AppData\Local\temp 2011-10-29 09:59 . 2011-10-29 09:59 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2011-10-28 17:09 . 2011-10-28 17:09 74240 ----a-w- c:\windows\system32\drivers\tdx.sys.vir 2011-10-28 16:32 . 2011-10-29 07:21 -------- d-----w- C:\sh4ldr 2011-10-28 16:32 . 2011-10-28 16:32 -------- d-----w- c:\program files\Enigma Software Group 2011-10-28 16:31 . 2011-10-29 07:21 -------- d-----w- c:\windows\1C7CC8E2CFCF41E6A8637C7A45CE8A78.TMP 2011-10-28 16:31 . 2011-10-28 16:31 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard 2011-10-28 15:05 . 2011-10-18 00:28 6668624 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{0D483804-4DEF-4B8E-8920-D23C76D16342}\mpengine.dll 2011-10-28 14:41 . 2011-10-28 19:44 -------- d-----w- C:\TDSSKiller_Quarantine 2011-10-28 14:36 . 2011-10-28 14:36 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2011-10-28 12:53 . 2011-10-29 07:35 -------- d-----w- c:\program files\Spyware Doctor 2011-10-28 12:53 . 2011-10-29 07:23 -------- d-----w- c:\programdata\PC Tools 2011-10-28 12:49 . 2011-10-28 15:10 -------- d-----w- c:\users\Andrzej\AppData\Roaming\GetRightToGo 2011-10-28 12:36 . 2011-10-28 12:36 -------- d-----w- c:\users\Andrzej\AppData\Roaming\SUPERAntiSpyware.com 2011-10-28 12:36 . 2011-10-28 12:36 -------- d-----w- c:\programdata\SUPERAntiSpyware.com 2011-10-28 11:43 . 2011-10-28 11:43 -------- d-----w- c:\users\Andrzej\Doctor Web 2011-10-28 11:41 . 2011-10-28 11:41 -------- d-----w- c:\program files\Common Files\Doctor Web 2011-10-28 11:40 . 2011-10-28 12:27 -------- d-----w- c:\program files\DrWeb 2011-10-28 11:40 . 2011-10-28 12:24 -------- d-----w- c:\programdata\Doctor Web 2011-10-28 10:24 . 2011-10-28 10:24 -------- d-----w- c:\programdata\NoVirusThanks 2011-10-28 09:29 . 2011-10-28 09:29 599144 ----a-w- c:\windows\system32\nvvsvc.exe 2011-10-28 09:21 . 2011-10-28 09:21 -------- d-----w- c:\program files\Common Files\iS3 2011-10-27 20:49 . 2011-10-29 07:35 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2011-10-27 20:14 . 2011-10-25 11:59 1564464 ----a-w- C:\TDSSKiller.exe 2011-10-27 20:07 . 2011-10-29 07:45 48016 --sha-w- c:\windows\system32\c_21214.nl_ 2011-10-27 20:04 . 2011-10-25 11:59 1564464 ----a-w- c:\windows\TDSSKiller.exe 2011-10-27 17:50 . 2011-08-17 04:26 465408 ----a-w- c:\windows\system32\psisdecd.dll 2011-10-27 17:50 . 2011-08-17 04:22 75776 ----a-w- c:\windows\system32\psisrndr.ax 2011-10-27 17:50 . 2011-08-17 04:22 72704 ----a-w- c:\windows\system32\Mpeg2Data.ax 2011-10-27 17:50 . 2011-08-17 04:22 59904 ----a-w- c:\windows\system32\MSDvbNP.ax 2011-10-27 17:50 . 2011-08-17 04:22 204288 ----a-w- c:\windows\system32\MSNP.ax 2011-10-27 17:50 . 2011-08-15 04:25 6144 ----a-w- c:\program files\Internet Explorer\iecompat.dll 2011-10-27 17:50 . 2011-08-27 04:43 571904 ----a-w- c:\windows\system32\oleaut32.dll 2011-10-27 17:50 . 2011-08-27 04:43 233472 ----a-w- c:\windows\system32\oleacc.dll 2011-10-27 17:50 . 2011-09-06 02:38 2332672 ----a-w- c:\windows\system32\win32k.sys 2011-10-27 17:38 . 2011-10-27 17:38 -------- d-----w- c:\users\Andrzej\AppData\Local\Microsoft Games 2011-10-27 17:24 . 2011-10-27 17:24 94040 ----a-w- c:\program files\Common Files\Windows Live\.cache\39074c531cc94cd05\DSETUP.dll 2011-10-27 17:24 . 2011-10-27 17:24 525656 ----a-w- c:\program files\Common Files\Windows Live\.cache\39074c531cc94cd05\DXSETUP.exe 2011-10-27 17:24 . 2011-10-27 17:24 1691480 ----a-w- c:\program files\Common Files\Windows Live\.cache\39074c531cc94cd05\dsetup32.dll 2011-10-27 14:35 . 2011-10-27 14:35 -------- d-sh--w- c:\users\Andrzej\AppData\Local\5ed7ca70 2011-10-27 13:49 . 2011-10-27 13:49 -------- d-----w- c:\users\Andrzej\AppData\Roaming\Thinstall 2011-10-27 13:49 . 2011-10-27 13:49 -------- d-----w- c:\users\Andrzej\AppData\Local\Thinstall 2011-10-27 10:54 . 2011-10-27 10:54 -------- d-----w- C:\OkiDriver 2011-10-20 09:51 . 2011-10-20 09:55 -------- d-----w- c:\users\Andrzej\AppData\Local\Pocket Mechanic Professional 2011-10-19 11:48 . 2011-10-19 11:48 372736 ----a-w- c:\windows\suinsta4001.exe 2011-10-16 12:59 . 2011-10-16 13:05 -------- d-----w- c:\program files\DAP 2011-10-14 12:37 . 2011-10-23 18:43 -------- d-----w- c:\windows\WindowsMobile . . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-10-29 07:45 . 2009-07-13 23:53 36352 ----a-w- c:\windows\system32\drivers\netbios.sys 2011-10-28 17:09 . 2011-10-28 17:09 74240 ----a-w- c:\windows\system32\drivers\tdx.sys.org 2011-10-28 15:27 . 2009-07-13 23:23 35328 ----a-w- c:\windows\system32\drivers\blbdrive.sys 2011-10-28 10:07 . 2009-07-13 23:12 74240 ----a-w- c:\windows\system32\drivers\tdx.sys 2011-10-28 05:39 . 2011-06-16 18:52 78336 ----a-w- c:\windows\system32\drivers\dfsc.sys 2011-10-27 20:18 . 2009-07-13 23:15 387584 ----a-w- c:\windows\system32\drivers\csc.sys 2011-10-27 20:02 . 2011-10-27 20:03 1545338 ----a-w- c:\windows\tdsskiller.zip 2011-10-27 19:30 . 2011-04-01 15:12 30256 ----a-w- c:\windows\system32\drivers\GRD.sys 2011-10-27 18:57 . 2011-04-01 13:36 52440 ----a-w- c:\windows\system32\drivers\gdwfpcd32.sys 2011-10-27 17:25 . 2010-06-24 09:33 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2011-09-28 10:08 . 2011-09-16 08:16 49016 ----a-w- c:\windows\system32\drivers\PktIcpt.sys 2011-09-28 10:08 . 2011-04-01 13:36 40440 ----a-w- c:\windows\system32\drivers\GDBehave.sys 2011-09-28 10:08 . 2011-04-01 13:13 79608 ----a-w- c:\windows\system32\drivers\MiniIcpt.sys 2011-09-18 15:54 . 2011-09-18 15:54 0 ----a-w- c:\windows\system32\ConduitEngine.tmp 2011-09-17 19:30 . 2011-09-17 19:30 57344 ----a-r- c:\users\Andrzej\AppData\Roaming\Microsoft\Installer\{9BAF043B-82FC-43E2-96EA-5F68015F4FA2}\ARPPRODUCTICON.exe 2011-09-17 14:50 . 2011-09-17 14:50 2560 ----a-w- c:\windows\_MSRSTRT.EXE 2011-08-29 08:00 . 2011-09-05 16:04 74752 ----a-w- c:\windows\system32\ff_vfw.dll 2011-08-20 10:26 . 2011-08-20 10:26 109216 ----a-w- c:\windows\system32\EasyHook64.dll 2011-08-03 11:50 . 2011-09-19 10:00 2560616 ----a-w- c:\windows\system32\nvsvcr.dll 2011-08-03 11:50 . 2011-09-19 10:00 600680 ----a-w- c:\windows\system32\easyupdatusapiu.dll 2011-08-03 11:50 . 2011-09-19 09:59 57960 ----a-w- c:\windows\system32\OpenCL.dll 2011-08-03 11:50 . 2011-09-19 09:59 875112 ----a-w- c:\windows\system32\nvgenco32.dll 2011-08-03 11:50 . 2011-09-19 09:59 16595560 ----a-w- c:\windows\system32\nvoglv32.dll 2011-08-03 11:50 . 2011-09-19 09:59 10304104 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys 2011-08-03 11:50 . 2011-09-19 09:59 914024 ----a-w- c:\windows\system32\nvdispco32.dll 2011-08-03 11:50 . 2011-09-19 09:59 5404776 ----a-w- c:\windows\system32\nvcuda.dll 2011-08-03 11:50 . 2011-09-19 09:59 2391656 ----a-w- c:\windows\system32\nvcuvid.dll 2011-08-03 11:50 . 2011-09-19 09:59 2090088 ----a-w- c:\windows\system32\nvcuvenc.dll 2011-08-03 11:50 . 2011-09-19 09:59 17193576 ----a-w- c:\windows\system32\nvcompiler.dll 2011-08-03 11:50 . 2011-09-19 09:59 12636776 ----a-w- c:\windows\system32\nvd3dum.dll 2011-08-03 11:50 . 2009-10-03 09:40 66664 ----a-w- c:\windows\system32\nvshext.dll 2011-08-03 11:50 . 2009-10-03 09:40 3730024 ----a-w- c:\windows\system32\nvcpl.dll 2011-08-03 11:50 . 2009-10-03 09:40 309352 ----a-w- c:\windows\system32\nvhotkey.dll 2011-08-03 11:50 . 2009-10-03 09:40 2558568 ----a-w- c:\windows\system32\nvsvc.dll 2011-08-03 11:50 . 2009-10-03 09:40 111208 ----a-w- c:\windows\system32\nvmctray.dll 2011-08-03 11:50 . 2009-10-03 04:02 6613096 ----a-w- c:\windows\system32\nvwgf2um.dll 2011-08-03 11:50 . 2008-12-03 14:12 2412136 ----a-w- c:\windows\system32\nvapi.dll 2011-09-20 15:13 . 2011-03-31 09:00 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll . . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{389943B0-C3A2-4E69-82CB-8596A84CB3DC}] 2011-06-28 15:41 498840 ----a-w- c:\program files\SearchPredict\SearchPredict.dll . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{92A9ACF4-9333-43AE-9698-DB283326F87F}] 2011-10-16 12:59 2660016 ----a-w- c:\program files\SpeedBit Video Downloader\Toolbar\tbcore3.dll . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616}] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ALLUpdate"="c:\program files\ALLPlayer\ALLUpdate.exe" [2011-08-16 1379840] "DownloadAccelerator"="c:\program files\DAP\DAP.EXE" [2011-10-16 2975920] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-06-09 10082920] "DpAgent"="c:\program files\DigitalPersona\Bin\dpagent.exe" [2009-07-17 842816] "Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE] @="" . [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-] "ALLUpdate"="c:\program files\ALLPlayer\ALLUpdate.exe" "sleep" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "hpqSRMon"=c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe "HP Software Update"=c:\program files\HP\HP Software Update\HPWuSchd2.exe "WinampAgent"="c:\program files\Winamp\winampa.exe" "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" . R0 SpiderG3;DrWeb file system scanner;c:\windows\system32\drivers\spiderg3.sys [x] R1 kncyasbj;kncyasbj;c:\windows\system32\drivers\kncyasbj.sys [x] R2 5016;5016;c:\users\Andrzej\AppData\Local\Temp\5016.sys [x] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2011-10-28 130384] R3 GDPkIcpt;GDPkIcpt;c:\windows\system32\drivers\PktIcpt.sys [2011-09-28 49016] R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-04-01 1343400] S1 ntiomin;ntiomin; [x] S2 ATService;AuthenTec Fingerprint Service;c:\program files\Fingerprint Sensor\AtService.exe [2011-10-28 1811704] S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-08-03 2255464] S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [2009-07-29 5120] S3 ATSwpWDF;AuthenTec TruePrint USB WDF Driver;c:\windows\system32\Drivers\ATSwpWDF.sys [2009-10-23 659328] S3 netw5v32;Sterownik karty Intel(R) Wireless WiFi Link 5000 Series dla systemu Windows Vista w wersji 32-bitowej;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168] S3 RTL8167;Sterownik Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776] . . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 hpdevmgmt REG_MULTI_SZ hpqcxs08 WindowsMobile REG_MULTI_SZ wcescomm rapimgr LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr . . ------- Skan uzupełniający ------- . uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT3031607/ mStart Page = IE: &Clean Traces - c:\program files\DAP\Privacy Package\dapcleanerie.htm IE: &Download with &DAP - c:\program files\DAP\dapextie.htm IE: Download &all with DAP - c:\program files\DAP\dapextie2.htm IE: E&ksport do programu Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.1.1 Name-Space Handler: ftp\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - c:\progra~1\DAP\dapie.dll Name-Space Handler: http\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - c:\progra~1\DAP\dapie.dll FF - ProfilePath - c:\users\Andrzej\AppData\Roaming\Mozilla\Firefox\Profiles\x84iee44.default\ FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3031607&SearchSource=3&q={searchTerms} FF - prefs.js: browser.search.selectedEngine - SFT_eng7 Customized Web Search FF - prefs.js: browser.startup.homepage - hxxp://www.google.pl/ . - - - - USUNIĘTO PUSTE WPISY - - - - . URLSearchHooks-{08d6b0b4-c132-470d-a8e2-aa2e9c3851c9} - (no file) WebBrowser-{08D6B0B4-C132-470D-A8E2-AA2E9C3851C9} - (no file) ShellExecuteHooks-{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - (no file) Notify-!SASWinLogon - c:\program files\SUPERAntiSpyware\SASWINLO.DLL SafeBoot-04498430.sys SafeBoot-15192549.sys SafeBoot-24327175.sys SafeBoot-27485970.sys SafeBoot-41333094.sys SafeBoot-41633867.sys SafeBoot-44782857.sys SafeBoot-46862641.sys SafeBoot-52310541.sys SafeBoot-66036263.sys SafeBoot-67586644.sys SafeBoot-70125901.sys SafeBoot-73695528.sys SafeBoot-74242989.sys SafeBoot-74576804.sys SafeBoot-79913859.sys . . . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_USERS\S-1-5-21-3975708457-3768675549-243452659-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.Email.1" . [HKEY_USERS\S-1-5-21-3975708457-3768675549-243452659-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.VCard.1" . [HKEY_USERS\S-1-5-21-3975708457-3768675549-243452659-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*] "??"=hex:f2,e9,79,1e,7b,90,a5,94,b2,de,a5,8a,9b,ac,21,1d,fe,94,55,a0,28,0a,f2, d0,ce,c7,60,27,48,1e,84,c1,1f,bc,ad,9d,8b,3e,8f,31,4d,9d,9a,1d,16,ec,46,89,\ "??"=hex:e3,d7,50,da,8c,f7,e0,97,4e,06,fb,b5,ea,8c,94,a8 . [HKEY_USERS\S-1-5-21-3975708457-3768675549-243452659-1001\Software\SecuROM\License information*] "datasecu"=hex:82,79,8a,cc,6a,83,46,ac,73,e5,d8,86,80,60,79,12,bc,60,f3,a0,5b, 87,5d,9f,13,01,03,dd,30,c5,ac,81,8a,e9,cb,65,7f,79,92,26,65,01,65,79,f2,2b,\ "rkeysecu"=hex:83,28,ef,e5,cd,aa,87,06,f4,d6,5c,b7,91,33,ee,49 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:000000b5 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\windows\system32\nvvsvc.exe c:\program files\NVIDIA Corporation\Display\nvxdsync.exe c:\windows\system32\nvvsvc.exe c:\program files\DigitalPersona\Bin\DpHostW.exe c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE c:\windows\system32\fxssvc.exe c:\windows\system32\taskhost.exe c:\windows\system32\conhost.exe c:\windows\system32\DllHost.exe c:\program files\Windows Media Player\wmpnetwk.exe c:\windows\system32\sppsvc.exe c:\\?\c:\windows\system32\wbem\WMIADAP.EXE . ************************************************************************** . Czas ukończenia: 2011-10-29 12:06:04 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2011-10-29 10:06 . Przed: 23 994 855 424 bajtów wolnych Po: 23 938 244 608 bajtów wolnych . - - End Of File - - F274E318C834722CE3C283326ABBA9E9