ComboFix 13-12-04.04 - Jablonna 2013-12-05 18:45:56.2.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1250.48.1045.18.2979.1414 [GMT 1:00] Uruchomiony z: c:\users\Jablonna\Downloads\ComboFix.exe AV: Avira Desktop *Enabled/Outdated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Enabled/Outdated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Jablonna\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eooncjejnppfjjklapaamhcdmjbilmde_0.localstorage c:\users\Jablonna\AppData\Roaming\skype.ini c:\users\Jablonna\Desktop\Internet Security.lnk . . ((((((((((((((((((((((((( Pliki utworzone od 2013-11-05 do 2013-12-05 ))))))))))))))))))))))))))))))) . . 2013-12-05 17:57 . 2013-12-05 17:57 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2013-12-05 17:57 . 2013-12-05 17:57 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-12-05 17:42 . 2013-11-18 00:28 10285968 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{9041D48A-0C8E-4CB0-A1C3-C5C001D6EA05}\mpengine.dll 2013-11-28 07:12 . 2013-11-28 07:12 -------- d-----w- c:\windows\Sun 2013-11-24 05:50 . 2013-11-24 05:50 0 ----a-w- c:\windows\SysWow64\sho423D.tmp 2013-11-15 12:56 . 2013-10-12 08:43 3959808 ----a-w- c:\windows\system32\jscript9.dll 2013-11-15 09:00 . 2013-10-05 20:25 1474048 ----a-w- c:\windows\system32\crypt32.dll 2013-11-12 20:02 . 2013-11-12 20:02 0 ----a-w- c:\windows\SysWow64\shoBE5F.tmp 2013-11-08 14:52 . 2013-11-08 14:52 0 ----a-w- c:\windows\SysWow64\shoD0FC.tmp . . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-12-05 17:42 . 2013-03-31 07:12 107416 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2013-11-25 17:51 . 2013-03-31 07:12 132600 ----a-w- c:\windows\system32\drivers\avipbb.sys 2013-11-19 02:33 . 2011-11-21 17:40 267936 ------w- c:\windows\system32\MpSigStub.exe 2013-11-15 12:52 . 2011-10-23 08:34 82896128 ----a-w- c:\windows\system32\MRT.exe 2013-11-01 20:06 . 2013-11-01 20:06 0 ----a-w- c:\windows\SysWow64\shoAC94.tmp 2013-11-01 19:17 . 2013-11-01 19:17 0 ----a-w- c:\windows\SysWow64\shoF4BD.tmp 2013-10-26 18:55 . 2013-10-26 18:55 0 ----a-w- c:\windows\SysWow64\sho2A4B.tmp 2013-10-22 13:06 . 2013-10-22 13:06 0 ----a-w- c:\windows\SysWow64\sho19D9.tmp 2013-10-22 07:48 . 2013-10-22 07:48 0 ----a-w- c:\windows\SysWow64\sho891D.tmp 2013-10-13 15:20 . 2013-10-13 15:20 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2013-10-13 15:20 . 2013-10-13 15:20 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll 2013-10-13 15:20 . 2013-10-13 15:20 523264 ----a-w- c:\windows\SysWow64\vbscript.dll 2013-10-13 15:20 . 2013-10-13 15:20 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2013-10-13 15:20 . 2013-10-13 15:20 38400 ----a-w- c:\windows\SysWow64\imgutil.dll 2013-10-13 15:20 . 2013-10-13 15:20 226304 ----a-w- c:\windows\system32\elshyph.dll 2013-10-13 15:20 . 2013-10-13 15:20 185344 ----a-w- c:\windows\SysWow64\elshyph.dll 2013-10-13 15:20 . 2013-10-13 15:20 158720 ----a-w- c:\windows\SysWow64\msls31.dll 2013-10-13 15:20 . 2013-10-13 15:20 150528 ----a-w- c:\windows\SysWow64\iexpress.exe 2013-10-13 15:20 . 2013-10-13 15:20 138752 ----a-w- c:\windows\SysWow64\wextract.exe 2013-10-13 15:20 . 2013-10-13 15:20 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2013-10-13 15:20 . 2013-10-13 15:20 12800 ----a-w- c:\windows\SysWow64\mshta.exe 2013-10-13 15:20 . 2013-10-13 15:20 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2013-10-13 15:20 . 2013-10-13 15:20 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-10-13 15:20 . 2013-10-13 15:20 97280 ----a-w- c:\windows\system32\mshtmled.dll 2013-10-13 15:20 . 2013-10-13 15:20 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-10-13 15:20 . 2013-10-13 15:20 81408 ----a-w- c:\windows\system32\icardie.dll 2013-10-13 15:20 . 2013-10-13 15:20 762368 ----a-w- c:\windows\system32\ieapfltr.dll 2013-10-13 15:20 . 2013-10-13 15:20 61952 ----a-w- c:\windows\SysWow64\tdc.ocx 2013-10-13 15:20 . 2013-10-13 15:20 599552 ----a-w- c:\windows\system32\vbscript.dll 2013-10-13 15:20 . 2013-10-13 15:20 452096 ----a-w- c:\windows\system32\dxtmsft.dll 2013-10-13 15:20 . 2013-10-13 15:20 441856 ----a-w- c:\windows\system32\html.iec 2013-10-13 15:20 . 2013-10-13 15:20 361984 ----a-w- c:\windows\SysWow64\html.iec 2013-10-13 15:20 . 2013-10-13 15:20 281600 ----a-w- c:\windows\system32\dxtrans.dll 2013-10-13 15:20 . 2013-10-13 15:20 27648 ----a-w- c:\windows\system32\licmgr10.dll 2013-10-13 15:20 . 2013-10-13 15:20 270848 ----a-w- c:\windows\system32\iedkcs32.dll 2013-10-13 15:20 . 2013-10-13 15:20 247296 ----a-w- c:\windows\system32\webcheck.dll 2013-10-13 15:20 . 2013-10-13 15:20 235008 ----a-w- c:\windows\system32\url.dll 2013-10-13 15:20 . 2013-10-13 15:20 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll 2013-10-13 15:20 . 2013-10-13 15:20 216064 ----a-w- c:\windows\system32\msls31.dll 2013-10-13 15:20 . 2013-10-13 15:20 197120 ----a-w- c:\windows\system32\msrating.dll 2013-10-13 15:20 . 2013-10-13 15:20 173568 ----a-w- c:\windows\system32\ieUnatt.exe 2013-10-13 15:20 . 2013-10-13 15:20 167424 ----a-w- c:\windows\system32\iexpress.exe 2013-10-13 15:20 . 2013-10-13 15:20 1509376 ----a-w- c:\windows\system32\inetcpl.cpl 2013-10-13 15:20 . 2013-10-13 15:20 144896 ----a-w- c:\windows\system32\wextract.exe 2013-10-13 15:20 . 2013-10-13 15:20 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl 2013-10-13 15:20 . 2013-10-13 15:20 1400416 ----a-w- c:\windows\system32\ieapfltr.dat 2013-10-13 15:20 . 2013-10-13 15:20 102912 ----a-w- c:\windows\system32\inseng.dll 2013-10-13 15:20 . 2013-10-13 15:20 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-10-13 15:20 . 2013-10-13 15:20 77312 ----a-w- c:\windows\system32\tdc.ocx 2013-10-13 15:20 . 2013-10-13 15:20 62976 ----a-w- c:\windows\system32\pngfilt.dll 2013-10-13 15:20 . 2013-10-13 15:20 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2013-10-13 15:20 . 2013-10-13 15:20 51200 ----a-w- c:\windows\system32\imgutil.dll 2013-10-13 15:20 . 2013-10-13 15:20 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-10-13 15:20 . 2013-10-13 15:20 149504 ----a-w- c:\windows\system32\occache.dll 2013-10-13 15:20 . 2013-10-13 15:20 13824 ----a-w- c:\windows\system32\mshta.exe 2013-10-13 15:20 . 2013-10-13 15:20 136192 ----a-w- c:\windows\system32\iepeers.dll 2013-10-13 15:20 . 2013-10-13 15:20 135680 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-10-13 15:20 . 2013-10-13 15:20 12800 ----a-w- c:\windows\system32\msfeedssync.exe 2013-10-13 15:18 . 2013-10-13 15:18 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll 2013-10-13 15:18 . 2013-10-13 15:18 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2013-10-13 15:18 . 2013-10-13 15:18 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll 2013-10-13 15:18 . 2013-10-13 15:18 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 2284544 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll 2013-10-13 15:18 . 2013-10-13 15:18 1682432 ----a-w- c:\windows\system32\XpsPrint.dll 2013-10-13 15:18 . 2013-10-13 15:18 1158144 ----a-w- c:\windows\SysWow64\XpsPrint.dll 2013-10-13 15:18 . 2013-10-13 15:18 10752 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-10-13 15:18 . 2013-10-13 15:18 648192 ----a-w- c:\windows\system32\d3d10level9.dll 2013-10-13 15:18 . 2013-10-13 15:18 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll 2013-10-13 15:18 . 2013-10-13 15:18 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2013-10-13 15:18 . 2013-10-13 15:18 3928064 ----a-w- c:\windows\system32\d2d1.dll 2013-10-13 15:18 . 2013-10-13 15:18 363008 ----a-w- c:\windows\system32\dxgi.dll 2013-10-13 15:18 . 2013-10-13 15:18 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll 2013-10-13 15:18 . 2013-10-13 15:18 333312 ----a-w- c:\windows\system32\d3d10_1core.dll 2013-10-13 15:18 . 2013-10-13 15:18 296960 ----a-w- c:\windows\system32\d3d10core.dll 2013-10-13 15:18 . 2013-10-13 15:18 293376 ----a-w- c:\windows\SysWow64\dxgi.dll 2013-10-13 15:18 . 2013-10-13 15:18 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll 2013-10-13 15:18 . 2013-10-13 15:18 2565120 ----a-w- c:\windows\system32\d3d10warp.dll 2013-10-13 15:18 . 2013-10-13 15:18 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll 2013-10-13 15:18 . 2013-10-13 15:18 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll 2013-10-13 15:18 . 2013-10-13 15:18 221184 ----a-w- c:\windows\system32\UIAnimation.dll 2013-10-13 15:18 . 2013-10-13 15:18 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll 2013-10-13 15:18 . 2013-10-13 15:18 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll 2013-10-13 15:18 . 2013-10-13 15:18 1988096 ----a-w- c:\windows\SysWow64\d3d10warp.dll 2013-10-13 15:18 . 2013-10-13 15:18 194560 ----a-w- c:\windows\system32\d3d10_1.dll . . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks] "{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2012-06-06 1519304] "{35662f81-9532-4f78-8e0c-5950ec958f91}"= "c:\program files (x86)\wegemaluch\prxtbwege.dll" [2013-04-10 231712] . [HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}] . [HKEY_CLASSES_ROOT\clsid\{35662f81-9532-4f78-8e0c-5950ec958f91}] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{35662f81-9532-4f78-8e0c-5950ec958f91}] 2013-04-10 10:19 231712 ----a-w- c:\program files (x86)\wegemaluch\prxtbwege.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] 2012-06-06 19:33 1519304 ----a-w- c:\program files (x86)\Ask.com\GenericAskToolbar.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2012-06-06 1519304] "{35662f81-9532-4f78-8e0c-5950ec958f91}"= "c:\program files (x86)\wegemaluch\prxtbwege.dll" [2013-04-10 231712] . [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1] [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd] . [HKEY_CLASSES_ROOT\clsid\{35662f81-9532-4f78-8e0c-5950ec958f91}] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" [2010-08-19 487562] "IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-11-06 283160] "NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-11-17 113288] "RoxWatchTray"="c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" [2010-11-25 240112] "Desktop Disc Tool"="c:\program files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" [2010-11-17 514544] "Dell Registration"="c:\program files (x86)\System Registration\prodreg.exe" [2010-08-23 3926528] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2013-09-03 40312] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] "AccuWeatherWidget"="c:\program files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" [2012-02-01 968048] "VirtualCloneDrive"="c:\program files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2011-03-07 89456] "BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520] "ApnUpdater"="c:\program files (x86)\Ask.com\Updater\Updater.exe" [2012-06-06 1564872] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-09-17 254896] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-11-25 683576] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\3.8.130\SSScheduler.exe [2013-9-6 324320] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon] "Userinit"="userinit.exe" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . R2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 RoxWatch12;Roxio Hard Drive Watcher 12;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.exe;c:\program files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.exe [x] R3 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [x] R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\3.8.130\McCHSvc.exe;c:\program files\McAfee Security Scan\3.8.130\McCHSvc.exe [x] R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [x] R3 RoxMediaDB12OEM;RoxMediaDB12OEM;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [x] R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x] S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x] S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe;c:\program files\IDT\WDM\AESTSr64.exe [x] S2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x] S2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.exe;c:\program files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.exe [x] S2 BitGuard;BitGuard;c:\programdata\BitGuard\2.7.1832.68\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe;c:\programdata\BitGuard\2.7.1832.68\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe [x] S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [x] S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x] S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys;c:\windows\SYSNATIVE\DRIVERS\btmaux.sys [x] S3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys;c:\windows\SYSNATIVE\DRIVERS\btmhsf.sys [x] S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys;c:\windows\SYSNATIVE\DRIVERS\CtClsFlt.sys [x] S3 iBtFltCoex;iBtFltCoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys;c:\windows\SYSNATIVE\DRIVERS\iBtFltCoex.sys [x] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x] S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x] S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x] S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x] S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x] S3 wdkmd;Intel WiDi KMD;c:\windows\system32\DRIVERS\WDKMD.sys;c:\windows\SYSNATIVE\DRIVERS\WDKMD.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-11-15 09:28 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.57\Installer\chrmstp.exe . Zawartość folderu 'Zaplanowane zadania' . 2013-11-29 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-29 17:20] . 2013-11-24 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2719447833-2834008836-2811427480-1002Core.job - c:\users\Jablonna\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-06-07 09:48] . 2013-11-24 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2719447833-2834008836-2811427480-1002UA.job - c:\users\Jablonna\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-06-07 09:48] . 2013-12-05 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-10-19 11:22] . 2013-12-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-10-19 11:22] . 2013-12-03 c:\windows\Tasks\User_Feed_Synchronization-{8208CF02-6D9C-4720-85E2-C3107F2BCAAC}.job - c:\windows\system32\msfeedssync.exe [2013-10-13 15:20] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-01-20 167960] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-01-20 391704] "Persistence"="c:\windows\system32\igfxpers.exe" [2011-01-20 418328] "NVHotkey"="c:\windows\system32\nvHotkey.dll" [2010-11-29 312936] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2011-01-21 525312] "Apoint"="c:\program files\DellTPad\Apoint.exe" [2010-12-08 592240] "IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2010-12-17 1933584] "BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2010-11-03 10228224] "DellStage"="c:\program files (x86)\Dell Stage\Dell Stage\stage_primary.exe" [2012-02-01 2195824] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=c:\progra~3\BitGuard\271832~1.68\{C16C1~1\loader.dll c:\windows\System32\nvinitx.dll . ------- Skan uzupełniający ------- . uStart Page = hxxp://www.wp.pl/ uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm IE: E&ksportuj do programu Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000 TCP: DhcpNameServer = 95.160.170.92 88.156.222.92 82.139.8.40 . - - - - USUNIĘTO PUSTE WPISY - - - - . Wow6432Node-HKLM-Run- - (no file) ShellIconOverlayIdentifiers-{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - (no file) ShellIconOverlayIdentifiers-{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - (no file) ShellIconOverlayIdentifiers-{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - (no file) ShellIconOverlayIdentifiers-{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - (no file) AddRemove-{08234a0d-cf39-4dca-99f0-0c5cb496da81} - c:\program files (x86)\Bing Bar Installer\InstallManager.exe . . . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_USERS\S-1-5-21-2719447833-2834008836-2811427480-1002\Software\Microsoft\Internet Explorer\Approved Extensions] @DACL=(02 0000) "{32004B8A-44A9-43E7-84E9-808838809519}"=hex:51,66,7a,6c,4c,1d,3b,1b,9a,57,15, 2a,97,13,8c,09,90,e1,c1,c8,3a,cb,d3,01 "{4D2D3B0F-69BE-477A-90F5-FDDB05357975}"=hex:51,66,7a,6c,4c,1d,3b,1b,1f,27,38, 55,80,3e,11,0d,84,fd,bc,9b,07,7e,3f,6d "{2318C2B1-4965-11D4-9B18-009027A5CD4F}"=hex:51,66,7a,6c,4c,1d,3b,1b,a1,de,0d, 3b,5b,1e,bf,5b,8f,10,41,d0,25,ee,8b,57 "{9030D464-4C02-4ABF-8ECC-5164760863C6}"=hex:51,66,7a,6c,4c,1d,3b,1b,74,c8,25, 88,3c,1b,d4,00,9a,c4,10,24,74,43,25,de "{AA58ED58-01DD-4D91-8333-CF10577473F7}"=hex:51,66,7a,6c,4c,1d,3b,1b,48,f1,4d, b2,e3,56,fa,07,97,3b,8e,50,55,3f,35,ef "{D4027C7F-154A-4066-A1AD-4243D8127440}"=hex:51,66,7a,6c,4c,1d,3b,1b,6f,60,17, cc,74,42,0d,0a,b5,a5,03,03,da,59,32,58 "{35662f81-9532-4f78-8e0c-5950ec958f91}"=hex:51,66,7a,6c,4c,1d,3b,1b,91,33,73, 2d,0c,c2,13,05,9a,04,18,10,ee,de,c9,89 "{8DCB7100-DF86-4384-8842-8FA844297B3F}"=hex:51,66,7a,6c,4c,1d,3b,1b,10,6d,de, 95,b8,88,ef,09,9c,4a,ce,e8,46,62,3d,27 "{2A541AE1-5BF6-4665-A8A3-CFA9672E4291}"=hex:51,66,7a,6c,4c,1d,3b,1b,f1,06,41, 32,c8,0c,0e,0c,bc,ab,8e,e9,65,65,04,89 "{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}"=hex:51,66,7a,6c,4c,1d,3b,1b,bd,95,9f, 16,e9,c2,80,0a,99,95,49,7e,f5,4d,2c,19 "{27B4851A-3207-45A2-B947-BE8AFE6163AB}"=hex:51,66,7a,6c,4c,1d,3b,1b,0a,99,a1, 3f,39,65,c9,0f,ad,4f,ff,ca,fc,2a,25,b3 "{72853161-30C5-4D22-B7F9-0BBC1D38A37E}"=hex:51,66,7a,6c,4c,1d,3b,1b,71,2d,90, 6a,fb,67,49,07,a3,f1,4a,fc,1f,73,e5,66 "{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}"=hex:51,66,7a,6c,4c,1d,3b,1b,ab,8b,01, 6e,ce,81,47,0c,a2,e3,95,9a,f3,92,6b,5b "{9FDDE16B-836F-4806-AB1F-1455CBEFF289}"=hex:51,66,7a,6c,4c,1d,3b,1b,7b,fd,c8, 87,51,d4,6d,02,bf,17,55,15,c9,a4,b4,91 "{B4F3A835-0E21-4959-BA22-42B3008E02FF}"=hex:51,66,7a,6c,4c,1d,3b,1b,25,b4,e6, ac,1f,59,32,03,ae,2a,03,f3,02,c5,44,e7 "{D2CE3E00-F94A-4740-988E-03DC2F38C34F}"=hex:51,66,7a,6c,4c,1d,3b,1b,10,22,db, ca,74,ae,2b,0d,8c,86,42,9c,2d,73,85,57 "{DBC80044-A445-435B-BC74-9C25C1C588A9}"=hex:51,66,7a,6c,4c,1d,3b,1b,54,1c,dd, c3,7b,f3,30,09,a8,7c,dd,65,c3,8e,ce,b1 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_117_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_117_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Czas ukończenia: 2013-12-05 19:02:24 ComboFix-quarantined-files.txt 2013-12-05 18:02 ComboFix2.txt 2013-12-03 21:31 . Przed: 216 772 091 904 bajtów wolnych Po: 218 198 118 400 bajtów wolnych . - - End Of File - - 19E72518C3A1529FDE0E50F9CF647208