ComboFix 16-04-01.01 - Daro 2016-04-02 1:15.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1250.48.1045.18.16330.12575 [GMT 2:00] Uruchomiony z: c:\users\Daro\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} AV: AVG Internet Security *Disabled/Updated* {4D41356F-32AD-7C42-C820-63775EE4F413} AV: Norton Internet Security *Disabled/Outdated* {53C7D717-52E2-B95E-FA61-6F32ECC805DB} FW: AVG Internet Security *Disabled* {757AB44A-78C2-7D1A-E37F-CA42A037B368} FW: Norton Internet Security *Disabled* {6BFC5632-188D-B806-D13E-C607121B42A0} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: AVG Internet Security *Disabled/Updated* {F620D48B-1497-73CC-F290-58052563BEAE} SP: Norton Internet Security *Disabled/Outdated* {E8A636F3-74D8-B6D0-C0D1-5440974F4F66} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Daro\AppData\Local\assembly\tmp c:\users\Daro\AppData\Roaming\SpeedRunnersLog.txt c:\windows\TEMP\irstrtsv\scrncap.exe . . ((((((((((((((((((((((((( Pliki utworzone od 2016-03-01 do 2016-04-01 ))))))))))))))))))))))))))))))) . . 2016-04-01 23:26 . 2016-04-01 23:26 -------- d-----w- c:\users\Default\AppData\Local\temp 2016-04-01 21:08 . 2016-04-01 21:08 -------- d-----w- c:\windows\SysWow64\Wat 2016-04-01 21:08 . 2016-04-01 21:08 -------- d-----w- c:\windows\system32\Wat 2016-04-01 21:06 . 2016-03-17 01:45 11686560 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2305895A-09B2-4738-A898-4144202B164E}\mpengine.dll 2016-04-01 20:56 . 2016-03-21 20:01 56384 ----a-w- c:\windows\system32\drivers\nvvad64v.sys 2016-04-01 20:56 . 2016-03-21 20:01 109632 ----a-w- c:\windows\system32\nvaudcap64v.dll 2016-04-01 20:56 . 2016-03-21 20:01 100416 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll 2016-03-29 14:21 . 2016-03-29 14:21 -------- d-----w- c:\users\Daro\AppData\Local\RzStats 2016-03-29 14:09 . 2016-03-29 14:20 -------- d-----w- c:\users\Daro\AppData\Local\Razer 2016-03-29 14:09 . 2015-12-14 21:24 130880 ----a-w- c:\windows\system32\drivers\rzpnk.sys 2016-03-29 14:08 . 2015-09-22 21:36 37184 ----a-w- c:\windows\system32\drivers\rzpmgrk.sys 2016-03-29 14:06 . 2016-03-29 14:09 -------- d-----w- c:\programdata\Razer 2016-03-29 14:06 . 2016-03-30 07:48 -------- d-----w- c:\program files (x86)\Razer 2016-03-27 10:17 . 2016-03-27 10:17 -------- d-----w- c:\program files (x86)\00000000-1459073821-0000-0000-D8CB8A5D7F97 2016-03-27 10:15 . 2016-04-01 23:15 -------- d-----w- c:\users\Daro\AppData\Local\app 2016-03-27 10:14 . 2016-03-27 10:17 -------- d-----w- c:\program files (x86)\CleanBrowser 2016-03-27 10:14 . 2016-03-27 10:22 -------- d-----w- c:\users\Daro\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108 2016-03-27 10:14 . 2016-03-27 10:14 -------- d-----w- c:\program files (x86)\WinTaske 2016-03-27 10:14 . 2016-03-27 10:14 -------- d-----w- c:\program files (x86)\Winsere 2016-03-27 10:14 . 2016-04-01 21:45 -------- d-----w- c:\program files (x86)\SearchesToYesbnd 2016-03-27 09:52 . 2016-03-27 09:52 -------- d-----w- c:\programdata\HPSSUPPLY 2016-03-27 09:02 . 2016-03-27 09:02 -------- d-----w- c:\program files\CCleaner 2016-03-26 16:34 . 2016-03-26 16:34 -------- d-----w- c:\program files (x86)\iTunes 2016-03-26 16:34 . 2016-03-26 16:34 -------- d-----w- c:\program files\iPod 2016-03-26 16:33 . 2016-03-26 16:33 -------- d-----w- c:\program files (x86)\Apple Software Update 2016-03-21 21:08 . 2016-03-22 07:55 -------- d-----w- c:\windows\system32\drivers\NISx64\1606000.08E 2016-03-17 20:00 . 2016-02-14 01:47 125720 ----a-w- c:\windows\SysWow64\vulkan-1.dll 2016-03-17 20:00 . 2016-02-14 01:46 126232 ----a-w- c:\windows\system32\vulkan-1.dll 2016-03-17 20:00 . 2016-02-14 01:45 42264 ----a-w- c:\windows\SysWow64\vulkaninfo.exe 2016-03-17 20:00 . 2016-02-14 01:45 45848 ----a-w- c:\windows\system32\vulkaninfo.exe 2016-03-17 20:00 . 2016-03-17 20:00 -------- d-----w- c:\program files (x86)\VulkanRT 2016-03-10 08:29 . 2016-03-10 08:30 -------- d-----w- c:\users\Daro\OSBuddy 2016-03-09 23:26 . 2016-03-09 23:26 -------- d-----w- c:\users\Daro\AppData\Roaming\InnkeeperUI 2016-03-09 23:26 . 2016-03-12 09:26 -------- d-----w- c:\users\Daro\AppData\Local\Innkeeper 2016-03-09 10:15 . 2016-02-09 06:53 387792 ----a-w- c:\windows\system32\iedkcs32.dll 2016-03-08 14:12 . 2016-03-08 14:12 71456 ----a-w- c:\windows\system32\drivers\avguniva.sys 2016-03-08 14:12 . 2016-03-08 14:12 306976 ----a-w- c:\windows\system32\drivers\avgidsdrivera.sys 2016-03-07 11:39 . 2016-03-07 11:39 246560 ----a-w- c:\windows\system32\drivers\avgmfx64.sys . . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2016-03-30 01:06 . 2015-08-26 21:30 1373680 ----a-w- c:\windows\SysWow64\nvspcap.dll 2016-03-30 01:06 . 2015-08-26 21:30 1316000 ----a-w- c:\windows\SysWow64\nvspbridge.dll 2016-03-30 01:05 . 2015-12-15 22:40 112216 ----a-w- c:\windows\system32\NvRtmpStreamer64.dll 2016-03-30 01:05 . 2015-08-26 21:30 1767248 ----a-w- c:\windows\system32\nvspcap64.dll 2016-03-30 01:05 . 2015-08-26 21:30 1756424 ----a-w- c:\windows\system32\nvspbridge64.dll 2016-03-24 15:09 . 2015-08-06 10:07 797376 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2016-03-24 15:09 . 2015-08-06 10:07 142528 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2016-03-09 14:02 . 2015-08-01 10:03 143659408 ----a-w- c:\windows\system32\MRT.exe 2016-03-08 10:07 . 2015-12-23 17:31 16439328 ----a-w- c:\windows\SysWow64\nvwgf2um.dll 2016-03-08 10:07 . 2015-08-26 21:28 3711024 ----a-w- c:\windows\system32\nvapi64.dll 2016-03-08 10:07 . 2015-07-31 10:43 3283896 ----a-w- c:\windows\SysWow64\nvapi.dll 2016-03-08 10:07 . 2015-07-31 10:43 18990976 ----a-w- c:\windows\system32\nvwgf2umx.dll 2016-03-08 10:07 . 2015-07-31 10:43 14128496 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2016-03-08 06:27 . 2015-07-31 10:43 2994232 ----a-w- c:\windows\system32\nvsvc64.dll 2016-03-08 06:27 . 2015-07-31 10:43 6369728 ----a-w- c:\windows\system32\nvcpl.dll 2016-03-08 06:27 . 2015-07-31 10:43 2561472 ----a-w- c:\windows\system32\nvsvcr.dll 2016-03-08 06:27 . 2015-07-31 10:43 1264064 ----a-w- c:\windows\system32\nvvsvc.exe 2016-03-08 06:27 . 2015-12-23 17:32 83512 ----a-w- c:\windows\system32\nv3dappshextr.dll 2016-03-08 06:27 . 2015-12-23 17:32 532536 ----a-w- c:\windows\system32\nv3dappshext.dll 2016-03-08 06:27 . 2015-07-31 10:43 69568 ----a-w- c:\windows\system32\nvshext.dll 2016-03-08 06:27 . 2015-07-31 10:43 392128 ----a-w- c:\windows\system32\nvmctray.dll 2016-03-07 04:23 . 2015-07-31 10:43 6203411 ----a-w- c:\windows\system32\nvcoproc.bin 2016-03-01 08:50 . 2016-03-01 08:50 1058 ----a-w- c:\windows\run.vbs 2016-02-16 13:07 . 2016-02-16 13:07 162592 ----a-w- c:\windows\system32\drivers\avgdiska.sys 2016-02-16 13:05 . 2016-02-16 13:05 360736 ----a-w- c:\windows\system32\drivers\avgloga.sys 2016-02-14 01:47 . 2016-02-14 01:47 125720 ----a-w- c:\windows\SysWow64\vulkan-1-1-0-3-0.dll 2016-02-14 01:46 . 2016-02-14 01:46 126232 ----a-w- c:\windows\system32\vulkan-1-1-0-3-0.dll 2016-02-14 01:45 . 2016-02-14 01:45 42264 ----a-w- c:\windows\SysWow64\vulkaninfo-1-1-0-3-0.exe 2016-02-14 01:45 . 2016-02-14 01:45 45848 ----a-w- c:\windows\system32\vulkaninfo-1-1-0-3-0.exe 2016-02-11 18:30 . 2016-03-09 10:15 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2016-02-08 23:20 . 2016-02-08 23:21 398152 ----a-w- c:\windows\system32\aswBoot.exe 2016-02-08 23:20 . 2016-02-08 23:20 52184 ----a-w- c:\windows\avastSS.scr 2016-01-26 09:04 . 2016-01-26 09:04 272304 ----a-w- c:\windows\system32\drivers\avgidsha.sys 2016-01-23 03:42 . 2016-02-11 18:46 1924152 ----a-w- c:\windows\system32\nvdispco6436175.dll 2016-01-23 03:42 . 2016-02-11 18:46 1573432 ----a-w- c:\windows\system32\nvdispgenco6436175.dll 2016-01-22 06:19 . 2016-02-09 18:15 14179840 ----a-w- c:\windows\system32\shell32.dll 2016-01-22 06:18 . 2016-02-09 18:15 723968 ----a-w- c:\windows\system32\EncDec.dll 2016-01-22 06:18 . 2016-02-09 18:15 961024 ----a-w- c:\windows\system32\CPFilters.dll 2016-01-22 06:17 . 2016-02-09 18:15 159744 ----a-w- c:\windows\system32\mtxoci.dll 2016-01-22 06:15 . 2016-02-09 18:15 1866752 ----a-w- c:\windows\system32\ExplorerFrame.dll 2016-01-22 06:04 . 2016-02-09 18:15 642048 ----a-w- c:\windows\SysWow64\CPFilters.dll 2016-01-22 06:04 . 2016-02-09 18:15 535040 ----a-w- c:\windows\SysWow64\EncDec.dll 2016-01-22 06:02 . 2016-02-09 18:15 114176 ----a-w- c:\windows\SysWow64\mtxoci.dll 2016-01-22 06:02 . 2016-02-09 18:15 176128 ----a-w- c:\windows\SysWow64\msorcl32.dll 2016-01-22 06:00 . 2016-02-09 18:15 1498624 ----a-w- c:\windows\SysWow64\ExplorerFrame.dll 2016-01-22 05:19 . 2016-02-09 18:15 3231232 ----a-w- c:\windows\explorer.exe 2016-01-22 05:12 . 2016-02-09 18:15 2973184 ----a-w- c:\windows\SysWow64\explorer.exe 2016-01-16 19:01 . 2016-02-09 18:16 2085888 ----a-w- c:\windows\system32\ole32.dll 2016-01-16 18:36 . 2016-02-09 18:16 1413632 ----a-w- c:\windows\SysWow64\ole32.dll 2016-01-09 15:39 . 2016-01-23 20:23 3916368 ----a-w- c:\windows\SysWow64\GameMon.des 2016-01-07 17:42 . 2016-02-09 18:16 141312 ----a-w- c:\windows\system32\drivers\mrxdav.sys 2016-01-06 19:02 . 2016-02-09 18:16 24576 ----a-w- c:\windows\system32\jnwmon.dll 2016-01-06 19:02 . 2016-02-09 18:16 275456 ----a-w- c:\windows\system32\InkEd.dll 2016-01-06 18:41 . 2016-02-09 18:16 216064 ----a-w- c:\windows\SysWow64\InkEd.dll . . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Steam"="d:\gry\Steam\steam.exe" [2016-03-31 3077712] "CCleaner Monitoring"="c:\program files\CCleaner\CCleaner64.exe" [2016-03-11 8686296] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040] "USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2014-06-27 292848] "Super Charger"="c:\program files (x86)\MSI\Super Charger\Super Charger.exe" [2014-11-26 1014736] "Fast Boot"="c:\program files (x86)\MSI\Fast Boot\StartFastBoot.exe" [2012-09-19 764472] "Live Update"="c:\program files (x86)\MSI\Live Update\Live Update.exe" [2015-07-30 3458728] "Command Center"="c:\program files (x86)\MSI\Command Center\StartCommandCenter.exe" [2015-08-03 830416] "Razer Synapse"="c:\program files (x86)\Razer\Synapse\RzSynapse.exe" [2016-01-13 594240] "AvgUi"="c:\program files (x86)\AVG\Framework\Common\avguirnx.exe" [2016-02-18 179624] "AVG_UI"="c:\program files (x86)\AVG\Av\avuirunnerx.exe" [2016-03-22 32528] . c:\users\Daro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ CurseClientStartup.ccip [2016-3-21 0] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ HP Digital Imaging Monitor.lnk - c:\program files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-11-18 275072] TP-LINK Wireless Configuration Utility.lnk - c:\program files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe -nogui [2015-8-1 848384] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) "SoftwareSASGeneration"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "HP Software Update"=c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe . R2 avgfws;AVG Firewall;c:\program files (x86)\AVG\Av\avgfws.exe;c:\program files (x86)\AVG\Av\avgfws.exe [x] R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\Av\avgidsagent.exe;c:\program files (x86)\AVG\Av\avgidsagent.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R2 Winsere;Winsere;c:\program files (x86)\Winsere\Winsere\Winsere.exe {79740E79-A383-47A7-B513-3DF6563D007F} {A16B1AF7-982D-40C3-B5C1-633E1A6A6678};c:\program files (x86)\Winsere\Winsere\Winsere.exe {79740E79-A383-47A7-B513-3DF6563D007F} {A16B1AF7-982D-40C3-B5C1-633E1A6A6678} [x] R3 AvgAMPS;AvgAMPS;c:\program files (x86)\AVG\Av\avgamps.exe;c:\program files (x86)\AVG\Av\avgamps.exe [x] R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x] R3 EasyAntiCheat;EasyAntiCheat;c:\windows\system32\EasyAntiCheat.exe;c:\windows\SYSNATIVE\EasyAntiCheat.exe [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x] R3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\DRIVERS\MijXfilt.sys;c:\windows\SYSNATIVE\DRIVERS\MijXfilt.sys [x] R3 MSIBIOSData_CC;MSIBIOSData_CC;c:\program files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe;c:\program files (x86)\MSI\Command Center\BIOSData\MSIBIOSDataService.exe [x] R3 MSICDSetup;MSICDSetup;i:\cdriver64.sys;i:\CDriver64.sys [x] R3 MSIClock_CC;MSIClock_CC;c:\program files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe;c:\program files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe [x] R3 MSICOMM_CC;MSICOMM_CC;c:\program files (x86)\MSI\Command Center\MSICommService.exe;c:\program files (x86)\MSI\Command Center\MSICommService.exe [x] R3 MSICPU_CC;MSICPU_CC;c:\program files (x86)\MSI\Command Center\CPU\MSICPUService.exe;c:\program files (x86)\MSI\Command Center\CPU\MSICPUService.exe [x] R3 MSISMB_CC;MSISMB_CC;c:\program files (x86)\MSI\Command Center\SMBus\MSISMBService.exe;c:\program files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [x] R3 MSISuperIO_CC;MSISuperIO_CC;c:\program files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe;c:\program files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [x] R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des;c:\windows\SYSNATIVE\GameMon.des [x] R3 NTIOLib_1_0_C;NTIOLib_1_0_C;i:\ntiolib_x64.sys;i:\NTIOLib_X64.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RtlWlanu;Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\rtwlanu.sys;c:\windows\SYSNATIVE\DRIVERS\rtwlanu.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsha.sys [x] S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys;c:\windows\SYSNATIVE\DRIVERS\avgloga.sys [x] S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgmfx64.sys [x] S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgrkx64.sys [x] S0 avguniva;AVG Universal Driver;c:\windows\system32\DRIVERS\avguniva.sys;c:\windows\SYSNATIVE\DRIVERS\avguniva.sys [x] S0 iusb3hcs;Sterownik przełącznika kontrolera hosta Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys;c:\windows\SYSNATIVE\Drivers\sptd.sys [x] S1 Avgdiska;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiska.sys;c:\windows\SYSNATIVE\DRIVERS\avgdiska.sys [x] S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6a.sys;c:\windows\SYSNATIVE\DRIVERS\avgfwd6a.sys [x] S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsdrivera.sys [x] S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgldx64.sys [x] S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys;c:\windows\SYSNATIVE\DRIVERS\avgtdia.sys [x] S1 ndisrd;WinpkFilter LightWeight Filter;c:\windows\system32\DRIVERS\ndisrd.sys;c:\windows\SYSNATIVE\DRIVERS\ndisrd.sys [x] S2 Apple Mobile Device Service;Apple Mobile Device Service;c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe;c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [x] S2 avgsvc;AVG Service;c:\program files (x86)\AVG\Framework\Common\avgsvca.exe;c:\program files (x86)\AVG\Framework\Common\avgsvca.exe [x] S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\Av\avgwdsvcx.exe;c:\program files (x86)\AVG\Av\avgwdsvcx.exe [x] S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x] S2 iocbios2;iocbios2;c:\program files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys;c:\program files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [x] S2 irstrtsv;Intel(R) Rapid Start Technology Service;c:\windows\SysWOW64\irstrtsv.exe;c:\windows\SysWOW64\irstrtsv.exe [x] S2 ISCTAgent;Intel(R) Smart Connect Technology Agent;c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe ;c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 MSI_FastBoot;MSI_FastBoot;c:\program files (x86)\MSI\Fast Boot\FastBootService.exe;c:\program files (x86)\MSI\Fast Boot\FastBootService.exe [x] S2 MSI_LiveUpdate_Service;MSI_LiveUpdate_Service;c:\program files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe;c:\program files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [x] S2 MSI_SuperCharger;MSI_SuperCharger;c:\program files (x86)\MSI\Super Charger\ChargeService.exe;c:\program files (x86)\MSI\Super Charger\ChargeService.exe [x] S2 MSICTL_CC;MSICTL_CC;c:\program files (x86)\MSI\Command Center\MSIControlService.exe;c:\program files (x86)\MSI\Command Center\MSIControlService.exe [x] S2 MSIDDR_CC;MSIDDR_CC;c:\program files (x86)\MSI\Command Center\DDR\MSIDDRService.exe;c:\program files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [x] S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe;c:\program files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe [x] S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [x] S2 Razer Game Scanner Service;Razer Game Scanner;c:\program files (x86)\Razer\Razer Services\GSS\GameScannerService.exe;c:\program files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [x] S2 rzpmgrk;rzpmgrk;c:\windows\system32\drivers\rzpmgrk.sys;c:\windows\SYSNATIVE\drivers\rzpmgrk.sys [x] S2 rzpnk;rzpnk;c:\windows\system32\drivers\rzpnk.sys;c:\windows\SYSNATIVE\drivers\rzpnk.sys [x] S2 SuperRAIDSvc;SuperRAIDSvc;c:\msi\Smart Utilities\SuperRAIDSvc.exe;c:\msi\Smart Utilities\SuperRAIDSvc.exe [x] S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [x] S2 XTU3SERVICE;Intel(R) Extreme Tuning Utility Service;c:\program files (x86)\Intel\Extreme Tuning Utility\XtuService.exe;c:\program files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [x] S3 AcpiCtlDrv;AcpiCtlDrv;c:\windows\system32\DRIVERS\AcpiCtlDrv.sys;c:\windows\SYSNATIVE\DRIVERS\AcpiCtlDrv.sys [x] S3 BHDrvx64;BHDrvx64;c:\program files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\BASHDefs\20151022.001\BHDrvx64.sys;c:\program files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\BASHDefs\20151022.001\BHDrvx64.sys [x] S3 ccSet_NIS;NIS Settings Manager;c:\windows\system32\drivers\NISx64\1606000.08E\ccSetx64.sys;c:\windows\SYSNATIVE\drivers\NISx64\1606000.08E\ccSetx64.sys [x] S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [x] S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x] S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys;c:\windows\SYSNATIVE\DRIVERS\ICCWDT.sys [x] S3 IDSVia64;IDSVia64;c:\program files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\IPSDefs\20151023.001\IDSvia64.sys;c:\program files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\IPSDefs\20151023.001\IDSvia64.sys [x] S3 ikbevent;Intel Upper keyboard Class Filter Driver;c:\windows\system32\DRIVERS\ikbevent.sys;c:\windows\SYSNATIVE\DRIVERS\ikbevent.sys [x] S3 imsevent;Intel Upper Mouse Class Filter Driver;c:\windows\system32\DRIVERS\imsevent.sys;c:\windows\SYSNATIVE\DRIVERS\imsevent.sys [x] S3 INETMON;INETMON;c:\windows\System32\Drivers\INETMON.sys;c:\windows\SYSNATIVE\Drivers\INETMON.sys [x] S3 irstrtdv;Intel(R) Rapid Start Technology Driver;c:\windows\system32\DRIVERS\irstrtdv.sys;c:\windows\SYSNATIVE\DRIVERS\irstrtdv.sys [x] S3 ISCT;Intel(R) Smart Connect Technology Device Driver;c:\windows\system32\DRIVERS\ISCTD.sys;c:\windows\SYSNATIVE\DRIVERS\ISCTD.sys [x] S3 iusb3hub;Sterownik koncentratora Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x] S3 iusb3xhc;Sterownik kontrolera hosta Intel(R) USB 3.0 eXtensible;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x] S3 NTIOLib_1_0_3;NTIOLib_1_0_3;c:\program files (x86)\MSI\Super Charger\NTIOLib_X64.sys;c:\program files (x86)\MSI\Super Charger\NTIOLib_X64.sys [x] S3 NTIOLib_FastBoot;NTIOLib_FastBoot;c:\program files (x86)\MSI\Fast Boot\NTIOLib_X64.sys;c:\program files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [x] S3 NTIOLib_MSI_RAID;NTIOLib_MSI_RAID;c:\msi\Smart Utilities\NTIOLib_X64.sys;c:\msi\Smart Utilities\NTIOLib_X64.sys [x] S3 NTIOLib_MSIDDR_CC;NTIOLib_MSIDDR_CC;c:\program files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys;c:\program files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys [x] S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x] S3 NvStreamNetworkSvc;NVIDIA Streamer Network Service;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 rzendpt;rzendpt;c:\windows\system32\DRIVERS\rzendpt.sys;c:\windows\SYSNATIVE\DRIVERS\rzendpt.sys [x] S3 rzudd;Razer Mouse Driver;c:\windows\system32\DRIVERS\rzudd.sys;c:\windows\SYSNATIVE\DRIVERS\rzudd.sys [x] S3 SymEFASI;Symantec Extended File Attributes (SI);c:\windows\system32\drivers\NISx64\1606000.08E\SYMEFASI64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1606000.08E\SYMEFASI64.SYS [x] S3 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NISx64\1606000.08E\Ironx64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1606000.08E\Ironx64.SYS [x] S3 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\NISx64\1606000.08E\SYMNETS.SYS;c:\windows\SYSNATIVE\Drivers\NISx64\1606000.08E\SYMNETS.SYS [x] S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [x] . . --- Inne Usługi/Sterowniki w Pamięci --- . *NewlyCreated* - NTIOLIB_1_0_3 *NewlyCreated* - NTIOLIB_FASTBOOT *NewlyCreated* - NTIOLIB_MSIDDR_CC *NewlyCreated* - NTIOLIB_MSI_RAID . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr QWAVE wcncsvc hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2016-03-30 21:11 1106072 ----a-w- c:\program files (x86)\Google\Chrome\Application\49.0.2623.110\Installer\chrmstp.exe . Zawartość folderu 'Zaplanowane zadania' . 2016-04-01 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-06 15:09] . 2016-04-01 c:\windows\Tasks\AVG_SYS_TASK_0216piz.job - c:\programdata\Avg_Update_0216piz\AVG-Secure-Search-Update_0216piz.exe [2016-04-01 09:06] . 2016-04-01 c:\windows\Tasks\AVG_SYS_TASK_0216piz_DELETE.job - c:\programdata\Avg_Update_0216piz\AVG-Secure-Search-Update_0216piz.exe [2016-04-01 09:06] . 2016-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-08-01 10:48] . 2016-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-08-01 10:48] . 2016-04-01 c:\windows\Tasks\RtlNetworkGenieVistaStart.job - c:\program files (x86)\MSI\NetworkGenie\NetworkGenie.exe [2015-08-04 07:48] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveBlacklisted] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}] 2016-02-24 21:39 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSynced] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}] 2016-02-24 21:39 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSyncing] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}] 2016-02-24 21:39 775064 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2014-07-15 7637208] "ISCT Tray"="c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe" [2014-08-25 5860656] "NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2016-03-30 2396096] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2016-03-30 1767248] . ------- Skan uzupełniający ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = https://www.google.pl/ mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local IE: E&ksportuj do programu Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 Trusted Zone: clonewarsadventures.com Trusted Zone: freerealms.com Trusted Zone: soe.com Trusted Zone: sony.com TCP: DhcpNameServer = 62.179.1.61 62.179.1.63 FF - ProfilePath - c:\users\Daro\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F\ FF - prefs.js: browser.search.selectedEngine - hohosearch FF - prefs.js: browser.startup.homepage - hxxp://www.hohosearch.com/?ts=AHEpCH0rAnMqB0..&v=20160323&uid=AEA29903FD2D9E5733B59D6D92F36732&ptid=amz&mode=ffseng user_pref(extensions.autoDisableScopes,14); . - - - - USUNIĘTO PUSTE WPISY - - - - . Wow6432Node-HKLM-Run- - (no file) Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file) . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NIS] "ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\22.6.0.142\NIS.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\22.6.0.142\diMaster.dll\" /prefetch:1" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" "ImagePath"="\SystemRoot\System32\Drivers\NISx64\1606000.08E\SYMNETS.SYS" "TrustedImagePaths"="c:\program files (x86)\Norton Internet Security\Engine\22.6.0.142;c:\program files (x86)\Norton Internet Security\Engine64\22.6.0.142" . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_21_0_0_197_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_21_0_0_197_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_21_0_0_197_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_21_0_0_197_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_21_0_0_197.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.21" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_21_0_0_197.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_21_0_0_197.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_21_0_0_197.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Czas ukończenia: 2016-04-02 01:31:05 ComboFix-quarantined-files.txt 2016-04-01 23:31 . Przed: 12 648 415 232 bajtów wolnych Po: 13 333 745 664 bajtów wolnych . - - End Of File - - 6462C2B35A4583D68F6F5C79EAFEF95E A36C5E4F47E84449FF07ED3517B43A31