ComboFix 14-02-05.02 - E14S 2014-02-06 8:29.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1250.48.1045.18.4066.1517 [GMT 1:00] Uruchomiony z: c:\users\E14S\Desktop\ComboFix.exe AV: AVG AntiVirus 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} SP: AVG AntiVirus 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\E14S\AppData\Local\Temp\_MEI14082\_ctypes.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\_elementtree.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\_hashlib.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\_multiprocessing.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\_socket.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\_ssl.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\pyexpat.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\pysqlite2._sqlite.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\python27.dll c:\users\E14S\AppData\Local\Temp\_MEI14082\pythoncom27.dll c:\users\E14S\AppData\Local\Temp\_MEI14082\PyWinTypes27.dll c:\users\E14S\AppData\Local\Temp\_MEI14082\select.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\unicodedata.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32api.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32com.shell.shell.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32crypt.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32event.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32file.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32inet.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32pdh.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32pipe.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32process.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32profile.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32security.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\win32ts.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\windows._lib_cacheinvalidation.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\wx._controls_.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\wx._core_.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\wx._gdi_.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\wx._html2.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\wx._misc_.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\wx._windows_.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\wx._wizard.pyd c:\users\E14S\AppData\Local\Temp\_MEI14082\wxbase294u_net_vc90.dll c:\users\E14S\AppData\Local\Temp\_MEI14082\wxbase294u_vc90.dll c:\users\E14S\AppData\Local\Temp\_MEI14082\wxmsw294u_adv_vc90.dll c:\users\E14S\AppData\Local\Temp\_MEI14082\wxmsw294u_core_vc90.dll c:\users\E14S\AppData\Local\Temp\_MEI14082\wxmsw294u_html_vc90.dll c:\users\E14S\AppData\Local\Temp\_MEI14082\wxmsw294u_webview_vc90.dll c:\users\E14S\Documents\Power2Go_9.0.0701.0_Essential_Essential_P2G130702-02.tmp c:\users\E14S\Documents\PrawkoB2013.tmp c:\windows\IsUn0415.exe c:\windows\msvcr100.dll c:\windows\SysWow64\Packet.dll c:\windows\SysWow64\pthreadVC.dll c:\windows\SysWow64\wpcap.dll . . ((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Legacy_NPF -------\Service_npf . . ((((((((((((((((((((((((( Pliki utworzone od 2014-01-06 do 2014-02-06 ))))))))))))))))))))))))))))))) . . 2014-02-06 07:42 . 2014-02-06 07:42 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-02-05 21:19 . 2014-02-05 21:19 110080 ----a-r- c:\users\E14S\AppData\Roaming\Microsoft\Installer\{1F7E4FF9-D2E5-4258-9AE1-E16E6CB3252A}\IconF7A21AF7.exe 2014-02-05 21:19 . 2014-02-05 21:19 110080 ----a-r- c:\users\E14S\AppData\Roaming\Microsoft\Installer\{1F7E4FF9-D2E5-4258-9AE1-E16E6CB3252A}\IconD7F16134.exe 2014-02-05 21:19 . 2014-02-05 21:19 110080 ----a-r- c:\users\E14S\AppData\Roaming\Microsoft\Installer\{1F7E4FF9-D2E5-4258-9AE1-E16E6CB3252A}\Icon1226A4C5.exe 2014-02-05 21:19 . 2014-02-05 21:19 -------- d-----w- C:\sh4ldr 2014-02-05 21:19 . 2014-02-05 21:19 -------- d-----w- c:\program files\Enigma Software Group 2014-02-05 21:17 . 2014-02-05 21:19 -------- d-----w- c:\windows\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP 2014-02-05 21:17 . 2014-02-05 21:17 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard 2014-02-01 11:17 . 2014-02-01 11:17 -------- d-----w- c:\program files (x86)\MediaPlayerV1 2014-01-17 10:41 . 2014-01-17 10:41 -------- d-----w- c:\program files (x86)\7-Zip 2014-01-17 10:40 . 2014-01-17 10:40 -------- d-----w- c:\program files (x86)\AmiExt 2014-01-17 10:40 . 2014-01-17 10:40 608080 ----a-w- c:\windows\msvcp100.dll 2014-01-17 10:40 . 2014-01-17 10:40 -------- d-----w- c:\users\E14S\AppData\Local\SwvUpdater 2014-01-17 10:37 . 2014-01-17 10:37 -------- d-----w- c:\users\E14S\AppData\Local\Power2Go9 2014-01-17 10:34 . 2013-11-13 10:53 91912 ----a-w- c:\windows\system32\drivers\CLVirtualDrive1_1.sys 2014-01-17 10:34 . 2014-01-17 10:34 -------- d-----w- c:\program files (x86)\Common Files\CyberLink 2014-01-17 10:30 . 2014-01-17 10:36 -------- d-----w- c:\programdata\install_clap 2014-01-15 14:25 . 2013-12-18 20:09 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2014-01-15 09:35 . 2013-11-27 01:41 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2014-01-15 09:35 . 2013-11-27 01:41 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2014-01-15 09:35 . 2013-11-27 01:41 53248 ----a-w- c:\windows\system32\drivers\usbehci.sys 2014-01-15 09:35 . 2013-11-27 01:41 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2014-01-15 09:35 . 2013-11-27 01:41 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2014-01-15 09:35 . 2013-11-27 01:41 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2014-01-15 09:35 . 2013-11-27 01:41 7808 ----a-w- c:\windows\system32\drivers\usbd.sys 2014-01-15 09:35 . 2013-11-26 11:40 376768 ----a-w- c:\windows\system32\drivers\netio.sys 2014-01-15 09:35 . 2013-11-26 10:32 3156480 ----a-w- c:\windows\system32\win32k.sys 2014-01-13 15:06 . 2014-02-06 07:17 -------- d-----r- c:\users\E14S\Dysk Google 2014-01-12 06:59 . 2014-01-12 06:59 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help 2014-01-10 13:38 . 2014-01-10 13:38 -------- d-----w- c:\program files (x86)\Microsoft Synchronization Services 2014-01-10 13:37 . 2014-01-10 13:37 -------- d-----w- c:\windows\PCHEALTH 2014-01-10 13:37 . 2014-01-10 13:37 -------- d-----w- c:\program files (x86)\Microsoft Sync Framework 2014-01-10 13:35 . 2014-01-10 13:35 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 8 2014-01-10 13:34 . 2014-01-10 13:34 -------- d-----w- c:\program files\Microsoft Office 2014-01-10 13:33 . 2014-01-10 13:33 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services 2014-01-10 13:32 . 2014-01-10 13:32 -------- d-----r- C:\MSOCache . . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-01-15 16:48 . 2013-02-16 15:49 86054176 ----a-w- c:\windows\system32\MRT.exe 2013-12-29 15:04 . 2012-04-13 14:02 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-12-29 15:04 . 2012-04-13 14:02 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-12-16 00:54 . 2014-01-03 09:42 10315576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{285B26EE-2C7F-4D5C-8376-2F80CC5C0330}\mpengine.dll 2013-12-03 10:38 . 2013-12-03 10:38 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-12-03 10:38 . 2013-12-03 10:38 194048 ----a-w- c:\windows\SysWow64\elshyph.dll 2013-12-03 10:38 . 2013-12-03 10:38 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe 2013-12-03 10:38 . 2013-12-03 10:38 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll 2013-12-03 10:38 . 2013-12-03 10:38 235008 ----a-w- c:\windows\system32\elshyph.dll 2013-12-03 10:38 . 2013-12-03 10:38 182272 ----a-w- c:\windows\SysWow64\msls31.dll 2013-12-03 10:38 . 2013-12-03 10:38 62464 ----a-w- c:\windows\SysWow64\tdc.ocx 2013-12-03 10:38 . 2013-12-03 10:38 34816 ----a-w- c:\windows\SysWow64\JavaScriptCollectionAgent.dll 2013-12-03 10:38 . 2013-12-03 10:38 337408 ----a-w- c:\windows\SysWow64\html.iec 2013-12-03 10:38 . 2013-12-03 10:38 61952 ----a-w- c:\windows\SysWow64\MshtmlDac.dll 2013-12-03 10:38 . 2013-12-03 10:38 61952 ----a-w- c:\windows\SysWow64\iesetup.dll 2013-12-03 10:38 . 2013-12-03 10:38 454656 ----a-w- c:\windows\SysWow64\vbscript.dll 2013-12-03 10:38 . 2013-12-03 10:38 36352 ----a-w- c:\windows\SysWow64\imgutil.dll 2013-12-03 10:38 . 2013-12-03 10:38 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll 2013-12-03 10:38 . 2013-12-03 10:38 151552 ----a-w- c:\windows\SysWow64\iexpress.exe 2013-12-03 10:38 . 2013-12-03 10:38 139264 ----a-w- c:\windows\SysWow64\wextract.exe 2013-12-03 10:38 . 2013-12-03 10:38 13312 ----a-w- c:\windows\SysWow64\mshta.exe 2013-12-03 10:38 . 2013-12-03 10:38 112128 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2013-12-03 10:38 . 2013-12-03 10:38 1051136 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll 2013-12-03 10:38 . 2013-12-03 10:38 942592 ----a-w- c:\windows\system32\jsIntl.dll 2013-12-03 10:38 . 2013-12-03 10:38 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll 2013-12-03 10:38 . 2013-12-03 10:38 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2013-12-03 10:38 . 2013-12-03 10:38 51200 ----a-w- c:\windows\SysWow64\ieetwproxystub.dll 2013-12-03 10:38 . 2013-12-03 10:38 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2013-12-03 10:38 . 2013-12-03 10:38 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2013-12-03 10:38 . 2013-12-03 10:38 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-12-03 10:38 . 2013-12-03 10:38 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2013-12-03 10:38 . 2013-12-03 10:38 81408 ----a-w- c:\windows\system32\icardie.dll 2013-12-03 10:38 . 2013-12-03 10:38 77312 ----a-w- c:\windows\system32\tdc.ocx 2013-12-03 10:38 . 2013-12-03 10:38 616104 ----a-w- c:\windows\system32\ieapfltr.dat 2013-12-03 10:38 . 2013-12-03 10:38 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2013-12-03 10:38 . 2013-12-03 10:38 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-12-03 10:38 . 2013-12-03 10:38 453120 ----a-w- c:\windows\system32\dxtmsft.dll 2013-12-03 10:38 . 2013-12-03 10:38 413696 ----a-w- c:\windows\system32\html.iec 2013-12-03 10:38 . 2013-12-03 10:38 40448 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll 2013-12-03 10:38 . 2013-12-03 10:38 296960 ----a-w- c:\windows\system32\dxtrans.dll 2013-12-03 10:38 . 2013-12-03 10:38 247808 ----a-w- c:\windows\system32\msls31.dll 2013-12-03 10:38 . 2013-12-03 10:38 195584 ----a-w- c:\windows\system32\msrating.dll 2013-12-03 10:38 . 2013-12-03 10:38 13312 ----a-w- c:\windows\system32\msfeedssync.exe 2013-12-03 10:38 . 2013-12-03 10:38 131072 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-12-03 10:38 . 2013-12-03 10:38 105984 ----a-w- c:\windows\system32\iesysprep.dll 2013-12-03 10:38 . 2013-12-03 10:38 84992 ----a-w- c:\windows\system32\mshtmled.dll 2013-12-03 10:38 . 2013-12-03 10:38 626176 ----a-w- c:\windows\system32\msfeeds.dll 2013-12-03 10:38 . 2013-12-03 10:38 548352 ----a-w- c:\windows\system32\vbscript.dll 2013-12-03 10:38 . 2013-12-03 10:38 30208 ----a-w- c:\windows\system32\licmgr10.dll 2013-12-03 10:38 . 2013-12-03 10:38 263376 ----a-w- c:\windows\system32\iedkcs32.dll 2013-12-03 10:38 . 2013-12-03 10:38 243200 ----a-w- c:\windows\system32\webcheck.dll 2013-12-03 10:38 . 2013-12-03 10:38 235520 ----a-w- c:\windows\system32\url.dll 2013-12-03 10:38 . 2013-12-03 10:38 167424 ----a-w- c:\windows\system32\iexpress.exe 2013-12-03 10:38 . 2013-12-03 10:38 143872 ----a-w- c:\windows\system32\wextract.exe 2013-12-03 10:38 . 2013-12-03 10:38 1228800 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-12-03 10:38 . 2013-12-03 10:38 101376 ----a-w- c:\windows\system32\inseng.dll 2013-12-03 10:38 . 2013-12-03 10:38 83968 ----a-w- c:\windows\system32\MshtmlDac.dll 2013-12-03 10:38 . 2013-12-03 10:38 774144 ----a-w- c:\windows\system32\jscript.dll 2013-12-03 10:38 . 2013-12-03 10:38 62464 ----a-w- c:\windows\system32\pngfilt.dll 2013-12-03 10:38 . 2013-12-03 10:38 48128 ----a-w- c:\windows\system32\imgutil.dll 2013-12-03 10:38 . 2013-12-03 10:38 147968 ----a-w- c:\windows\system32\occache.dll 2013-12-03 10:38 . 2013-12-03 10:38 13824 ----a-w- c:\windows\system32\mshta.exe 2013-12-03 10:38 . 2013-12-03 10:38 135680 ----a-w- c:\windows\system32\iepeers.dll 2013-11-26 11:54 . 2013-12-12 07:57 23183360 ----a-w- c:\windows\system32\mshtml.dll 2013-11-26 11:25 . 2010-11-21 03:27 267936 ------w- c:\windows\system32\MpSigStub.exe 2013-11-26 10:19 . 2013-12-12 07:57 2724864 ----a-w- c:\windows\system32\mshtml.tlb 2013-11-26 10:18 . 2013-12-12 07:57 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll 2013-11-26 09:48 . 2013-12-12 07:57 66048 ----a-w- c:\windows\system32\iesetup.dll 2013-11-26 09:46 . 2013-12-12 07:57 48640 ----a-w- c:\windows\system32\ieetwproxystub.dll 2013-11-26 09:41 . 2013-12-12 07:57 2764288 ----a-w- c:\windows\system32\iertutil.dll 2013-11-26 09:29 . 2013-12-12 07:57 53760 ----a-w- c:\windows\system32\jsproxy.dll 2013-11-26 09:27 . 2013-12-12 07:57 33792 ----a-w- c:\windows\system32\iernonce.dll 2013-11-26 09:23 . 2013-12-12 07:57 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb 2013-11-26 09:21 . 2013-12-12 07:57 574976 ----a-w- c:\windows\system32\ieui.dll 2013-11-26 09:18 . 2013-12-12 07:57 139264 ----a-w- c:\windows\system32\ieUnatt.exe 2013-11-26 09:18 . 2013-12-12 07:57 111616 ----a-w- c:\windows\system32\ieetwcollector.exe 2013-11-26 09:16 . 2013-12-12 07:57 708608 ----a-w- c:\windows\system32\jscript9diag.dll 2013-11-26 08:57 . 2013-12-12 07:57 218624 ----a-w- c:\windows\system32\ie4uinit.exe 2013-11-26 08:35 . 2013-12-12 07:56 5769216 ----a-w- c:\windows\system32\jscript9.dll 2013-11-26 08:28 . 2013-12-12 07:57 553472 ----a-w- c:\windows\SysWow64\jscript9diag.dll 2013-11-26 08:16 . 2013-12-12 07:56 4243968 ----a-w- c:\windows\SysWow64\jscript9.dll 2013-11-26 08:02 . 2013-12-12 07:57 1995264 ----a-w- c:\windows\system32\inetcpl.cpl 2013-11-26 07:48 . 2013-12-12 07:57 12996608 ----a-w- c:\windows\system32\ieframe.dll 2013-11-26 07:32 . 2013-12-12 07:57 1928192 ----a-w- c:\windows\SysWow64\inetcpl.cpl 2013-11-26 07:07 . 2013-12-12 07:57 2334208 ----a-w- c:\windows\system32\wininet.dll 2013-11-26 06:40 . 2013-12-12 07:57 1395200 ----a-w- c:\windows\system32\urlmon.dll 2013-11-26 06:34 . 2013-12-12 07:57 817664 ----a-w- c:\windows\system32\ieapfltr.dll 2013-11-26 06:33 . 2013-12-12 07:57 1820160 ----a-w- c:\windows\SysWow64\wininet.dll 2013-11-23 18:26 . 2013-12-11 14:50 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2013-11-23 17:47 . 2013-12-11 14:50 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2013-11-12 02:23 . 2013-12-11 14:50 2048 ----a-w- c:\windows\system32\tzres.dll 2013-11-12 02:07 . 2013-12-11 14:50 2048 ----a-w- c:\windows\SysWow64\tzres.dll . . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{56d01f9e-f774-4673-abe5-690784a8b3b2}] 2014-01-29 17:51 87040 ----a-w- c:\program files (x86)\MediaPlayerV1\MediaPlayerV1alpha1783\ie\MediaPlayerV1alpha1783.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{E4935D75-87EE-40C6-B430-7434FB685DEC}] 2014-01-12 08:33 177664 ----a-w- c:\program files (x86)\AmiExt\ZipEnhancer\ie\ZipEnhancer.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-01-08 3674320] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584] "NextLive"="c:\users\E14S\AppData\Roaming\newnext.me\nengine.dll" [2013-11-14 1283584] "GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2013-12-06 20203904] "Power2GoExpress9"="c:\program files (x86)\CyberLink\Power2Go9\Power2GoExpress9.exe" [2013-12-31 2380040] "uTorrent"="c:\users\E14S\AppData\Roaming\uTorrent\uTorrent.exe" [2014-01-24 905296] "GoogleChromeAutoLaunch_B9D252D571B0453B06DAB9595AECBCF2"="c:\program files (x86)\Google\Chrome\Application\chrome.exe" [2014-02-01 866632] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-02-10 343168] "IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440] "USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-02-22 291608] "PMBVolumeWatcher"="c:\program files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe" [2012-02-21 693608] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336] "AVG_UI"="c:\program files (x86)\AVG\AVG2014\avgui.exe" [2013-11-07 4956176] "BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2012-11-05 89184] "CLMLServer_For_P2G9"="c:\program files (x86)\CyberLink\Power2Go9\CLMLSvc_P2G9.exe" [2013-12-31 110344] "CLVirtualDrive9"="c:\program files (x86)\CyberLink\Power2Go9\VirtualDrive9.exe" [2013-12-31 983816] . c:\users\E14S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ EvernoteClipper.lnk - c:\program files (x86)\Evernote\Evernote\EvernoteClipper.exe [2012-12-3 1044320] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ desktop (1).ini [2012-4-20 174] desktop (2).ini [2012-4-30 404] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux2"=wdmaud.drv . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "ISBMgr.exe"="c:\program files (x86)\Sony\ISB Utility\ISBMgr.exe" "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" . 2;2 SampleCollector;VAIO Care Performance Service;c:\program files\Sony\VAIO Care\VCPerfService.exe;c:\program files\Sony\VAIO Care\VCPerfService.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] R3 ATHDFU;Atheros Valkyrie USB BootROM;c:\windows\System32\Drivers\AthDfu.sys;c:\windows\SYSNATIVE\Drivers\AthDfu.sys [x] R3 DCDhcpService;DCDhcpService;c:\program files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe;c:\program files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe [x] R3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\DRIVERS\e1y60x64.sys;c:\windows\SYSNATIVE\DRIVERS\e1y60x64.sys [x] R3 esgiguard;esgiguard;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys [x] R3 GamesAppIntegrationService;GamesAppIntegrationService;c:\program files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [x] R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 lehidmini;Bluetooth Low Energy Hid Device;c:\windows\system32\drivers\leath_hid.sys;c:\windows\SYSNATIVE\drivers\leath_hid.sys [x] R3 SmbDrv;SmbDrv;c:\windows\system32\drivers\Smb_driver.sys;c:\windows\SYSNATIVE\drivers\Smb_driver.sys [x] R3 SOHDs;VAIO Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 usbUDisc;usbUDisc;c:\windows\system32\DRIVERS\USBDrv_AMD64.sys;c:\windows\SYSNATIVE\DRIVERS\USBDrv_AMD64.sys [x] R3 VAIO Power Management;VAIO Power Management;c:\program files\Sony\VAIO Power Management\SPMService.exe;c:\program files\Sony\VAIO Power Management\SPMService.exe [x] R3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [x] R3 VCService;VCService;c:\program files\Sony\VAIO Care\VCService.exe;c:\program files\Sony\VAIO Care\VCService.exe [x] R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R3 xsherlock;xsherlock;c:\windows\system32\xsherlock.xem;c:\windows\SYSNATIVE\xsherlock.xem [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x] S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsha.sys [x] S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys;c:\windows\SYSNATIVE\DRIVERS\avgloga.sys [x] S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgmfx64.sys [x] S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgrkx64.sys [x] S0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;c:\windows\system32\drivers\iusb3hcs.sys;c:\windows\SYSNATIVE\drivers\iusb3hcs.sys [x] S1 Avgdiska;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiska.sys;c:\windows\SYSNATIVE\DRIVERS\avgdiska.sys [x] S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsdrivera.sys [x] S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgldx64.sys [x] S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys;c:\windows\SYSNATIVE\DRIVERS\avgtdia.sys [x] S1 CLVirtualDrive1.1;CLVirtualDrive1.1;c:\windows\system32\DRIVERS\CLVirtualDrive1_1.sys;c:\windows\SYSNATIVE\DRIVERS\CLVirtualDrive1_1.sys [x] S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\program files\HWiNFO64\HWiNFO64A.SYS;c:\program files\HWiNFO64\HWiNFO64A.SYS [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x] S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2014\avgidsagent.exe;c:\program files (x86)\AVG\AVG2014\avgidsagent.exe [x] S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2014\avgwdsvc.exe;c:\program files (x86)\AVG\AVG2014\avgwdsvc.exe [x] S2 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [x] S2 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE;c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE [x] S2 FreemakeVideoCapture;FreemakeVideoCapture;c:\program files (x86)\Freemake\CaptureLib\CaptureLibService.exe;c:\program files (x86)\Freemake\CaptureLib\CaptureLibService.exe [x] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] S2 IconMan_R;IconMan_R;c:\program files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe;c:\program files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 Intel(R) ME Service;Intel(R) ME Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe;c:\program files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [x] S2 SOHCImp;VAIO Content Importer;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [x] S2 uCamMonitor;CamMonitor;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [x] S2 VCFw;VAIO Content Folder Watcher;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [x] S2 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [x] S2 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [x] S2 VSNService;VSNService;c:\program files\Sony\VAIO Smart Network\VSNService.exe;c:\program files\Sony\VAIO Smart Network\VSNService.exe [x] S2 ZAtheros Bt&Wlan Coex Agent;ZAtheros Bt&Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x] S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys;c:\windows\SYSNATIVE\DRIVERS\ArcSoftKsUFilter.sys [x] S3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x] S3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x] S3 btath_avdt;Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\drivers\btath_bus.sys;c:\windows\SYSNATIVE\drivers\btath_bus.sys [x] S3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\drivers\btath_hcrp.sys;c:\windows\SYSNATIVE\drivers\btath_hcrp.sys [x] S3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x] S3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\drivers\btath_rcp.sys;c:\windows\SYSNATIVE\drivers\btath_rcp.sys [x] S3 BTATH_VDP;Bluetooth VDP Driver;c:\windows\system32\drivers\btath_vdp.sys;c:\windows\SYSNATIVE\drivers\btath_vdp.sys [x] S3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S3 iusb3hub;Intel(R) USB 3.0 Hub Driver;c:\windows\system32\drivers\iusb3hub.sys;c:\windows\SYSNATIVE\drivers\iusb3hub.sys [x] S3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;c:\windows\system32\drivers\iusb3xhc.sys;c:\windows\SYSNATIVE\drivers\iusb3xhc.sys [x] S3 RSPCIESTOR;Realtek PCIE CardReader Driver;c:\windows\system32\DRIVERS\RtsPStor.sys;c:\windows\SYSNATIVE\DRIVERS\RtsPStor.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\drivers\SFEP.sys;c:\windows\SYSNATIVE\drivers\SFEP.sys [x] S3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x] . . --- Inne Usługi/Sterowniki w Pamięci --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-02-04 06:56 1211720 ----a-w- c:\program files (x86)\Google\Chrome\Application\32.0.1700.107\Installer\chrmstp.exe . Zawartość folderu 'Zaplanowane zadania' . 2012-10-21 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-13 15:04] . 2014-02-06 c:\windows\Tasks\AmiUpdXp.job - c:\users\E14S\AppData\Local\SwvUpdater\Updater.exe [2014-01-17 10:39] . 2014-02-06 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-12-29 18:49] . 2014-02-05 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-12-29 18:49] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}] 2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}] 2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}] 2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}] 2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}] 2013-12-06 14:47 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2012-03-13 1156712] "AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2012-02-23 1020576] "AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2012-02-23 800416] . ------- Skan uzupełniający ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://vaioportal.sony.eu mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = IE: Add to Evernote 4.0 - c:\program files (x86)\Evernote\Evernote\EvernoteIE.dll/204 IE: E&ksportuj do programu Microsoft Excel - c:\progra~2\MICROS~2\Office14\EXCEL.EXE/3000 IE: Wyślij &do programu OneNote - c:\progra~2\MICROS~2\Office14\ONBttnIE.dll/105 TCP: DhcpNameServer = 62.179.1.62 62.179.1.63 . - - - - USUNIĘTO PUSTE WPISY - - - - . Wow6432Node-HKLM-Run-mobilegeni daemon - c:\program files (x86)\Mobogenie\DaemonProcess.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe AddRemove-Heroes III The Shadow of Death - c:\windows\IsUn0415.exe . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\SampleCollector] "ImagePath"="\"c:\program files\Sony\VAIO Care\VCPerfService.exe\" \"/service\" \"/sstates\" \"/sampleinterval=5000\" \"/procinterval=5\" \"/dllinterval=120\" \"/counter=\Processor(_Total)\% Processor Time:1/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1\" \"/counter=\Network Interface(*)\Bytes Total/sec:1\" \"/expandcounter=\Processor Information(*)\Processor Frequency:1\" \"&_\" \"/expandcounter=\Processor(*)\% Idle Time:1\" \"/expandcounter=\Processor(*)\% C1 Time:1\" \"/expandcounter=\Processor(*)\% C2 Time:1\" \"/expandcounter=\Processor(*)\%C3 &_ Time:1\" \"/expandcounter=\Processor(*)\% Processor Time:1\" \"/directory=c:\programdata\Sony Corporation\VAIO Care\inteldata\"" . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\xsherlock] "ImagePath"="c:\windows\system32\xsherlock.xem" . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_222_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_222_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_222.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_222.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_222.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_222.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe c:\program files (x86)\Sony\VAIO Control Center\VESMgr.exe c:\program files (x86)\Sony\VAIO Control Center\VESMgrSub.exe c:\program files (x86)\Sony\VAIO Control Center\VESMgrSub.exe c:\windows\SysWOW64\DllHost.exe c:\windows\SysWOW64\DllHost.exe c:\program files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe c:\program files\Sony\VAIO Care\listener.exe c:\program files\Sony\VAIO Care\listener.exe c:\program files\Sony\VAIO Personalization Manager\VpmLM.exe . ************************************************************************** . Czas ukończenia: 2014-02-06 08:54:05 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2014-02-06 07:54 . Przed: 385 559 285 760 bajtów wolnych Po: 386 037 583 872 bajtów wolnych . - - End Of File - - 689734DFC6486A8BA88982CEEA9D2D10