ComboFix 17-01-13.01 - Daniel 2017-01-17 17:29:50.1.4 - x64 MINIMAL Microsoft Windows 7 Ultimate 6.1.7601.1.1250.48.1045.18.8133.7111 [GMT 1:00] Uruchomiony z: c:\users\Daniel\Downloads\ComboFix.exe AV: Avira Antivirus *Enabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859} SP: Avira Antivirus *Enabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Utworzono nowy punkt przywracania . . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\1443638658_00000000_base c:\programdata\1443638658_00000000_base\360base.dll c:\programdata\1455830509_00000000_base c:\programdata\1455830509_00000000_base\360base.dll c:\programdata\1466515237_00000000_base c:\programdata\1466515237_00000000_base\360base.dll c:\programdata\ntuser.pol c:\users\Daniel\AppData\Local\nsdF45C.tmp c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Recent\_oceanofgames.com_gang_beasts.zip.lnk.danger c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Recent\car mechanic simulator 2015.zip.lnk.danger c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Recent\downloads.lnk.danger c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Recent\garrys_mod_10.rar.lnk.danger c:\windows\SysWow64\DEBUG.log c:\windows\wininit.ini . . ((((((((((((((((((((((((( Pliki utworzone od 2016-12-17 do 2017-01-17 ))))))))))))))))))))))))))))))) . . 2017-01-17 16:33 . 2017-01-17 16:33 -------- d-----w- c:\users\Default\AppData\Local\temp 2017-01-17 14:49 . 2017-01-17 14:49 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies 2017-01-17 14:49 . 2017-01-17 14:49 -------- d-----w- c:\program files (x86)\AMD AVT 2017-01-17 14:48 . 2014-02-16 16:23 60640 ----a-w- c:\windows\system32\drivers\usbfilter.sys 2017-01-17 14:47 . 2017-01-17 14:47 -------- d-----w- c:\program files\Common Files\ATI Technologies 2017-01-17 14:47 . 2017-01-17 14:49 -------- d-----w- c:\program files\AMD 2017-01-17 14:47 . 2017-01-17 14:49 -------- d-----w- c:\program files (x86)\AMD 2017-01-17 14:42 . 2017-01-17 14:42 -------- d-----w- C:\2e89c8f026f6de19245dcee32d86d6 2017-01-17 14:12 . 2017-01-17 14:14 135657872 -c--a-w- c:\windows\system32\MRT.exe 2017-01-17 14:02 . 2017-01-17 16:22 -------- d-----w- c:\users\Public\Speedup Sessions 2017-01-17 12:32 . 2016-12-06 15:01 35864 ----a-w- c:\windows\system32\drivers\avusbflt.sys 2017-01-17 12:32 . 2016-12-06 15:01 79696 ----a-w- c:\windows\system32\drivers\avnetflt.sys 2017-01-17 12:32 . 2016-12-06 15:01 28600 ----a-w- c:\windows\system32\drivers\avkmgr.sys 2017-01-17 12:32 . 2016-12-06 15:01 176464 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2017-01-17 12:32 . 2016-12-06 15:01 148032 ----a-w- c:\windows\system32\drivers\avipbb.sys 2017-01-17 12:31 . 2017-01-17 12:31 -------- d-----w- c:\users\Daniel\AppData\Local\Avira 2017-01-17 10:58 . 2017-01-17 14:02 -------- d-----w- c:\program files (x86)\Avira 2017-01-17 10:58 . 2017-01-17 12:31 -------- d-----w- c:\programdata\Avira 2017-01-17 10:35 . 2017-01-17 10:35 -------- d-----w- c:\windows\SysWow64\wbem\Logs 2017-01-16 14:34 . 2017-01-17 10:42 -------- d-----w- C:\AdwCleaner 2017-01-16 14:27 . 2014-06-05 06:59 936664 ----a-w- c:\windows\system32\drivers\Rt64win7.sys 2017-01-16 14:27 . 2014-06-05 06:59 73800 ----a-w- c:\windows\system32\RtNicProp64.dll 2017-01-16 14:27 . 2014-06-05 06:59 107552 ----a-w- c:\windows\system32\RTNUninst64.dll 2017-01-14 14:26 . 2014-01-19 11:37 9728 ----a-w- C:\garrysmod.exe 2017-01-14 12:39 . 2017-01-14 12:39 -------- d-----w- c:\programdata\LumaEmu_SteamCloud 2017-01-14 12:31 . 2017-01-17 12:37 -------- d-----w- c:\programdata\{3CBF6F0A-8B14-D8A1-A6CE-787CD6BF47EB} 2017-01-14 12:31 . 2017-01-17 12:37 -------- d-----w- c:\programdata\{61B1ADEF-D61A-1A44-8FC7-68BC96737A6D} 2017-01-14 10:46 . 2017-01-14 10:46 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ED732A3B-D984-476F-89C8-855F63964331}\offreg.2388.dll 2017-01-13 18:31 . 2017-01-13 18:31 -------- d-----w- c:\programdata\{1B189817-ACB3-2FBC-847B-29E53B2E8C8B} 2017-01-13 18:31 . 2017-01-13 18:31 -------- d-----w- c:\programdata\{2AD2427D-9D79-F5D6-35C2-A039B37B293D} 2017-01-13 17:06 . 2017-01-13 17:06 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ED732A3B-D984-476F-89C8-855F63964331}\offreg.2492.dll 2017-01-12 18:31 . 2017-01-17 12:38 -------- d-----w- c:\programdata\{C7ECE7C1-7047-506A-734D-D819462375E3} 2017-01-12 18:31 . 2017-01-17 12:37 -------- d-----w- c:\programdata\{9F5FBD80-28F4-0A2B-45AF-8E62EE08D39B} 2017-01-12 15:33 . 2017-01-12 15:33 -------- d-----w- C:\gmod9 2017-01-12 15:06 . 2017-01-12 15:06 -------- d-----w- c:\program files (x86)\Steam 2017-01-12 08:41 . 2017-01-17 14:14 -------- d-----w- c:\programdata\{9B6FE889-2CC4-5F22-EED0-326D7C444ADD} 2017-01-12 08:41 . 2017-01-17 13:22 -------- d-----w- c:\programdata\{8F561E7B-38FD-A9D0-4401-077EE17E4401} 2017-01-12 08:41 . 2017-01-17 13:22 -------- d-----w- c:\programdata\{21790356-96D2-B4FD-AD61-2F4CF17A9B81} 2017-01-12 08:41 . 2017-01-17 13:21 -------- d-----w- c:\programdata\{15AF8F5C-A204-38F7-4E79-336FE397B38C} 2017-01-11 10:39 . 2017-01-11 10:39 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ED732A3B-D984-476F-89C8-855F63964331}\offreg.2392.dll 2017-01-10 20:49 . 2017-01-12 20:01 -------- d-----w- c:\program files (x86)\Farming Simulator 15 2017-01-05 14:34 . 2017-01-05 14:37 -------- d-----w- c:\program files (x86)\American Truck Simulator 2016-12-31 20:08 . 2016-12-31 20:08 -------- d-----w- c:\users\Gość 2016-12-31 20:01 . 2016-12-31 20:01 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ED732A3B-D984-476F-89C8-855F63964331}\offreg.2676.dll . . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2017-01-14 20:23 . 2016-09-25 16:59 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ED732A3B-D984-476F-89C8-855F63964331}\offreg.2396.dll 2017-01-10 20:48 . 2015-09-14 15:13 802904 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2017-01-10 20:48 . 2015-09-14 15:13 144472 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2016-11-02 21:01 . 2016-11-02 21:01 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ED732A3B-D984-476F-89C8-855F63964331}\offreg.2292.dll . . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Avira SystrayStartTrigger"="c:\program files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe" [2016-12-29 61896] "Avira System Speedup User Starter"="c:\program files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe" [2016-12-13 26832] "avgnt"="c:\program files (x86)\Avira\Antivirus\avgnt.exe" [2016-12-06 917576] "Avira System Speedup Tray"="c:\program files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe" [2016-12-13 159568] "StartCCC"="c:\program files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2015-03-04 767176] . c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ zSpeedup.lnk - c:\program files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe -systemready [2017-1-17 26832] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . R1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x] R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] R2 AMD FUEL Service;AMD FUEL Service;c:\program files\AMD\ATI.ACE\Fuel\Fuel.Service.exe;c:\program files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [x] R2 AntiVirMailService;Avira Mail Protection;c:\program files (x86)\Avira\Antivirus\avmailc7.exe;c:\program files (x86)\Avira\Antivirus\avmailc7.exe [x] R2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\Antivirus\sched.exe;c:\program files (x86)\Avira\Antivirus\sched.exe [x] R2 AntiVirWebService;Avira Web Protection;c:\program files (x86)\Avira\Antivirus\avwebg7.exe;c:\program files (x86)\Avira\Antivirus\avwebg7.exe [x] R2 AODDriver4.2.0;AODDriver4.2.0;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [x] R2 AODDriver4.3;AODDriver4.3;c:\program files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys;c:\program files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [x] R2 Avira.ServiceHost;Avira Service Host;c:\program files (x86)\Avira\Launcher\Avira.ServiceHost.exe;c:\program files (x86)\Avira\Launcher\Avira.ServiceHost.exe [x] R2 avnetflt;avnetflt;c:\windows\system32\DRIVERS\avnetflt.sys;c:\windows\SYSNATIVE\DRIVERS\avnetflt.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 MachineHelper;MachineHelper service;c:\programdata\MachineHelper\MachineHelper;c:\programdata\MachineHelper\MachineHelper [x] R2 SpeedupService;Avira System Speedup;c:\program files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe;c:\program files (x86)\Avira\System Speedup\Avira.SystemSpeedup.SpeedupService.exe [x] R3 ACTION_SVC;Action! service;c:\program files (x86)\Mirillis\Action!\action_svc.exe;c:\program files (x86)\Mirillis\Action!\action_svc.exe [x] R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x] R3 cpuz134;cpuz134;c:\users\Daniel\AppData\Local\Temp\cpuz134\cpuz134_x64.sys;c:\users\Daniel\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [x] R3 GDPkIcpt;GDPkIcpt;c:\windows\system32\drivers\PktIcpt.sys;c:\windows\SYSNATIVE\drivers\PktIcpt.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x] R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x] R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R4 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot;c:\program files (x86)\Common Files\LENOVO\easyplussdk\bin\EPHotspot64.exe;c:\program files (x86)\Common Files\LENOVO\easyplussdk\bin\EPHotspot64.exe [x] R4 Origin Client Service;Origin Client Service;c:\program files (x86)\Origin\OriginClientService.exe;c:\program files (x86)\Origin\OriginClientService.exe [x] S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_sata.sys [x] S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_xata.sys [x] S0 amdkmpfd;AMD PCI Root Bus Lower Filter;c:\windows\system32\DRIVERS\amdkmpfd.sys;c:\windows\SYSNATIVE\DRIVERS\amdkmpfd.sys [x] S0 avusbflt;avusbflt;c:\windows\System32\Drivers\avusbflt.sys;c:\windows\SYSNATIVE\Drivers\avusbflt.sys [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys;c:\windows\SYSNATIVE\DRIVERS\asmthub3.sys [x] S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys;c:\windows\SYSNATIVE\DRIVERS\asmtxhci.sys [x] S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x] . . Zawartość folderu 'Zaplanowane zadania' . 2017-01-17 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-09-14 20:48] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2013-10-22 7203032] . ------- Skan uzupełniający ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = about:blank mStart Page = about:blank mLocal Page = c:\windows\SysWOW64\blank.htm TCP: DhcpNameServer = 192.168.168.1 FF - ProfilePath - c:\users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\4fugecho.default-1428517240791\ FF - prefs.js: browser.startup.homepage - www.google.pl FF - user.js: extensions.blocklist.enabled - false FF - user.js: extensions.blocklist.interval - 31536000 FF - user.js: extensions.blocklist.url - FF - user.js: extensions.blocklist.itemURL - FF - user.js: extensions.blocklist.detailsURL - FF - user.js: security.mixed_content.block_active_content - false FF - user.js: security.mixed_content.block_display_content - false FF - user.js: app.update.staging.enabled - true FF - user.js: browser.safebrowsing.appRepURL - FF - user.js: app.update.silent - true FF - user.js: xpinstall.signatures.required - false FF - user.js: browser.safebrowsing.updateURL - FF - user.js: browser.safebrowsing.reportURL - FF - user.js: browser.safebrowsing.reportMalwareURL - FF - user.js: browser.safebrowsing.reportMalwareErrorURL - FF - user.js: browser.safebrowsing.malware.reportURL - FF - user.js: services.sync.prefs.sync.browser.safebrowsing.enabled - false FF - user.js: services.sync.prefs.sync.browser.safebrowsing.malware.enabled - false . - - - - USUNIĘTO PUSTE WPISY - - - - . ShellIconOverlayIdentifiers-{056D528D-CE28-4194-9BA3-BA2E9197FF8C} - c:\users\Daniel\AppData\Local\MEGAsync\ShellExtX32.dll ShellIconOverlayIdentifiers-{05B38830-F4E9-4329-978B-1DD28605D202} - c:\users\Daniel\AppData\Local\MEGAsync\ShellExtX32.dll ShellIconOverlayIdentifiers-{0596C850-7BDD-4C9D-AFDF-873BE6890637} - c:\users\Daniel\AppData\Local\MEGAsync\ShellExtX32.dll Wow6432Node-HKLM-Run-fst_pl_192 - (no file) Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe ShellIconOverlayIdentifiers-{056D528D-CE28-4194-9BA3-BA2E9197FF8C} - c:\users\Daniel\AppData\Local\MEGAsync\ShellExtX64.dll ShellIconOverlayIdentifiers-{05B38830-F4E9-4329-978B-1DD28605D202} - c:\users\Daniel\AppData\Local\MEGAsync\ShellExtX64.dll ShellIconOverlayIdentifiers-{0596C850-7BDD-4C9D-AFDF-873BE6890637} - c:\users\Daniel\AppData\Local\MEGAsync\ShellExtX64.dll . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\MachineHelper] "ImagePath"="c:\programdata\MachineHelper\MachineHelper" . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_USERS\S-1-5-21-1404913608-3918273747-3791568628-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*] "??"=hex:83,1a,2c,89,f8,35,00,ff,8e,33,74,a7,73,07,3a,74,a0,da,2e,53,11,ac,1c, bc,56,cb,3e,e5,e9,52,6f,92,ed,50,7c,27,2b,2b,c5,31,df,8a,cd,c4,27,3f,09,3f,\ "??"=hex:69,3e,43,58,9f,64,ba,75,fe,6b,77,07,2a,78,dd,74 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Flash\\Flash32_11_8_800_94.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Flash\\Flash32_11_8_800_94.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Flash\\Flash32_11_8_800_94.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Flash\\Flash32_11_8_800_94.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Czas ukończenia: 2017-01-17 17:34:54 ComboFix-quarantined-files.txt 2017-01-17 16:34 . Przed: 245 786 423 296 bajtów wolnych Po: 245 751 664 640 bajtów wolnych . - - End Of File - - 5B0946B6037763BD9C93EB1F3003977E A36C5E4F47E84449FF07ED3517B43A31