ComboFix 14-02-12.01 - Laciaty 2014-02-13 19:05:05.5.4 - x64 Microsoft Windows 7 Professional 6.1.7600.0.1252.1.1045.18.4094.2757 [GMT 1:00] Running from: c:\users\Laciaty\Downloads\ComboFix.exe SP: Spybot - Search and Destroy *Enabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Created a new restore point . . ((((((((((((((((((((((((( Files Created from 2014-01-13 to 2014-02-13 ))))))))))))))))))))))))))))))) . . 2014-02-13 18:09 . 2014-02-13 18:09 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2014-02-13 18:09 . 2014-02-13 18:09 -------- d-----w- c:\users\Public\AppData\Local\temp 2014-02-13 18:09 . 2014-02-13 18:09 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-02-13 18:09 . 2014-02-13 18:09 -------- d-----w- c:\users\Administrator\AppData\Local\temp 2014-02-13 18:09 . 2014-02-13 18:09 -------- d-----w- c:\users\Administrator.Laciaty-PC\AppData\Local\temp 2014-02-12 15:25 . 2014-02-12 15:25 -------- d-----w- c:\users\Laciaty\AppData\Local\Aeria Games 2014-02-12 15:25 . 2014-02-12 15:25 -------- d-----w- c:\programdata\Aeria Games 2014-02-12 15:14 . 2014-02-12 15:14 -------- d-sh--w- c:\windows\SysWow64\AI_RecycleBin 2014-02-12 15:14 . 2014-02-12 15:14 -------- d-----w- c:\program files (x86)\Aeria Games 2014-02-12 15:14 . 2014-02-12 15:14 -------- d-----w- c:\users\Laciaty\AppData\Roaming\Aeria Games & Entertainment 2014-02-12 14:42 . 2014-02-12 14:42 -------- d-----w- c:\users\Laciaty\AppData\Local\EdgeOfReality 2014-02-12 14:42 . 2014-02-12 14:42 -------- d-----w- C:\AeriaGames 2014-02-08 10:21 . 2014-02-10 18:20 -------- d-----w- c:\users\Laciaty\AppData\Roaming\Awesomium 2014-02-06 21:58 . 2014-02-06 21:58 -------- d-----w- c:\programdata\Elder Scrolls Online 2014-02-06 13:24 . 2014-02-06 13:24 -------- d-----w- c:\programdata\SystemRequirementsLab 2014-02-06 13:24 . 2014-02-06 13:24 -------- d-----w- c:\program files (x86)\SystemRequirementsLab 2014-02-06 13:24 . 2014-02-06 13:24 -------- d-----w- c:\windows\Sun 2014-02-06 13:23 . 2013-12-18 20:09 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2014-02-05 12:38 . 2014-02-05 13:25 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird 2014-01-30 12:22 . 2014-01-30 12:22 -------- d-----w- c:\users\Laciaty\AppData\Local\Skyrim 2014-01-26 20:42 . 2014-01-26 20:42 -------- d-----w- c:\users\Laciaty\AppData\Roaming\AVG 2014-01-26 20:41 . 2014-01-26 20:42 -------- d-----w- c:\programdata\AVG 2014-01-26 20:41 . 2014-01-26 20:41 -------- d-sh--w- c:\programdata\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} 2014-01-26 20:41 . 2014-01-26 20:41 -------- d--h--w- c:\programdata\Common Files 2014-01-26 20:40 . 2014-01-26 20:41 -------- d-----w- c:\users\Laciaty\AppData\Roaming\DVDVideoSoft 2014-01-26 20:40 . 2014-01-26 20:41 -------- d-----w- c:\program files (x86)\DVDVideoSoft 2014-01-26 20:40 . 2014-01-26 20:41 -------- d-----w- c:\program files (x86)\Common Files\DVDVideoSoft 2014-01-26 20:04 . 2014-01-26 20:04 -------- d-----w- c:\programdata\Nexon 2014-01-26 18:27 . 2014-02-12 14:28 -------- d-----w- c:\users\Laciaty\AppData\Local\Akamai 2014-01-26 18:13 . 2014-01-26 18:13 -------- d-----w- c:\users\Laciaty\AppData\Roaming\AC3Filter 2014-01-26 17:14 . 2014-01-26 18:13 -------- d-----w- c:\programdata\Tunngle 2014-01-26 17:14 . 2014-01-26 17:15 -------- d-----w- c:\program files (x86)\Tunngle 2014-01-25 15:55 . 2014-01-25 15:55 -------- d-----w- c:\users\Laciaty\AppData\Local\id Software 2014-01-25 13:13 . 2014-01-25 13:14 -------- d-----w- c:\users\Laciaty\AppData\Roaming\Tlen.pl 2014-01-23 20:14 . 2014-01-23 20:14 -------- d-----w- c:\users\Laciaty\AppData\Local\SKIDROW 2014-01-20 21:30 . 2004-08-19 13:42 619008 ----a-w- c:\windows\SysWow64\dx7vb.dll 2014-01-20 21:30 . 2004-03-08 23:00 260880 ----a-w- c:\windows\SysWow64\msflxgrd.ocx 2014-01-20 21:30 . 2004-03-08 23:00 212240 ----a-w- c:\windows\SysWow64\richtx32.ocx 2014-01-18 22:38 . 2014-01-28 16:08 -------- d-----w- c:\users\Laciaty\AppData\Roaming\.minecraft 2014-01-18 22:26 . 2014-01-18 22:38 -------- d-----w- c:\users\Laciaty\AppData\Roaming\.minecraft - Kopia 2014-01-18 22:26 . 2014-01-18 22:37 -------- d-----w- c:\users\Laciaty\AppData\Roaming\1.minecraft 2014-01-18 19:01 . 2014-01-18 19:03 -------- d-----w- c:\users\Laciaty\AppData\Roaming\Tibia 2014-01-17 08:11 . 2014-01-17 08:11 36680 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys . . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-02-12 18:00 . 2013-11-17 14:38 268952 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2014-02-12 18:00 . 2013-11-17 14:38 268952 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2014-02-12 16:09 . 2013-11-17 14:38 268952 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2013-12-25 00:19 . 2013-11-17 14:38 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2013-12-01 13:10 . 2013-12-27 01:10 257624 ----a-w- c:\windows\system32\unrar64.dll 2013-12-01 13:10 . 2013-12-27 01:10 218200 ----a-w- c:\windows\SysWow64\unrar.dll 2013-11-30 09:15 . 2013-11-30 09:15 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys 2013-11-17 10:54 . 2013-11-17 10:54 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-11-17 10:54 . 2013-11-17 10:54 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-11-16 09:44 . 2013-11-16 09:44 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll 2013-11-16 09:44 . 2013-11-16 09:44 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll 2013-11-16 09:44 . 2013-11-16 09:44 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll 2013-11-16 09:39 . 2013-11-16 09:39 2560 ----a-w- c:\windows\SysWow64\drivers\pl-PL\qwavedrv.sys.mui 2013-11-16 09:39 . 2013-11-16 09:39 2560 ----a-w- c:\windows\SysWow64\drivers\pl-PL\scfilter.sys.mui 2013-11-16 09:39 . 2013-11-16 09:39 6144 ----a-w- c:\windows\SysWow64\drivers\pl-PL\ndiscap.sys.mui 2013-11-16 09:39 . 2013-11-16 09:39 50688 ----a-w- c:\windows\SysWow64\drivers\pl-PL\tcpip.sys.mui 2013-11-16 09:39 . 2013-11-16 09:39 35840 ----a-w- c:\windows\SysWow64\drivers\pl-PL\bfe.dll.mui 2013-11-16 09:39 . 2013-11-16 09:39 16384 ----a-w- c:\windows\SysWow64\drivers\pl-PL\pacer.sys.mui 2013-11-15 22:43 . 2013-11-15 22:43 1732 ----a-w- C:\lol3.reg 2013-11-15 22:42 . 2013-11-15 22:42 582 ----a-w- C:\lol2.reg 2013-11-15 22:42 . 2013-11-15 22:42 1564 ----a-w- C:\lol.reg . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] 2013-12-23 12:37 294456 ----a-w- c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Bloody2"="c:\program files (x86)\Bloody2\Bloody2\Bloody2.exe" [2012-08-10 4255232] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-10-28 3675352] "Akamai NetSession Interface"="c:\users\Laciaty\AppData\Local\Akamai\netsession_win.exe" [2013-06-05 4489472] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2009-10-28 2763776] "SDTray"="c:\program files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [2013-07-25 5624784] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336] "Aeria Ignite"="c:\program files (x86)\Aeria Games\Ignite\aeriaignite.exe" [2013-06-06 1925656] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x] R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x] R3 mbamchameleon;mbamchameleon;c:\windows\system32\drivers\mbamchameleon.sys;c:\windows\SYSNATIVE\drivers\mbamchameleon.sys [x] R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] R3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys;c:\windows\SYSNATIVE\pwdrvio.sys [x] R3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys;c:\windows\SYSNATIVE\pwdspio.sys [x] R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x] R3 TunngleService;TunngleService;c:\program files (x86)\Tunngle\TnglCtrl.exe;c:\program files (x86)\Tunngle\TnglCtrl.exe [x] R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM);c:\windows\system32\DRIVERS\vcsvad.sys;c:\windows\SYSNATIVE\DRIVERS\vcsvad.sys [x] R3 xhunter1;xhunter1;c:\windows\xhunter1.sys;c:\windows\xhunter1.sys [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [x] S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [x] S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x] S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\DRIVERS\tap0901t.sys;c:\windows\SYSNATIVE\DRIVERS\tap0901t.sys [x] S3 USBPNPA;USB PnP Sound Device Interface;c:\windows\system32\drivers\CM10864.sys;c:\windows\SYSNATIVE\drivers\CM10864.sys [x] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys;c:\windows\SYSNATIVE\drivers\viahduaa.sys [x] . . Contents of the 'Scheduled Tasks' folder . 2014-02-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-12-22 10:40] . 2014-02-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-12-22 10:40] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] 2013-12-23 12:37 357432 ----a-w- c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-10-18 1028384] "Cm108Sound"="c:\windows\Syswow64\cm108.dll" [2013-01-16 8757248] . ------- Supplementary Scan ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = IE: E&ksportuj do programu Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube to MP3 Converter - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm IE: {{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll TCP: DhcpNameServer = 192.168.1.1 FF - ProfilePath - c:\users\Laciaty\AppData\Roaming\Mozilla\Firefox\Profiles\drt38851.default\ . - - - - ORPHANS REMOVED - - - - . Notify-SDWinLogon - SDWinLogon.dll . . . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Completion time: 2014-02-13 19:10:25 ComboFix-quarantined-files.txt 2014-02-13 18:10 . Pre-Run: 12 101 779 456 bajtów wolnych Post-Run: 12 011 806 720 bajtów wolnych . - - End Of File - - B77076A8EFB05CA19E2832C98DF862A3 A36C5E4F47E84449FF07ED3517B43A31