ComboFix 13-05-20.01 - SYSTEM 2013-05-20 21:35:11.4.2 - x86 NETWORK Microsoft Windows 7 Ultimate 6.1.7600.0.1250.48.1045.18.3067.2302 [GMT 2:00] Uruchomiony z: c:\windows\system32\config\systemprofile\Downloads\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {C37D8F93-0602-E43C-40AA-47DAD597F308} SP: avast! Antivirus *Disabled/Updated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5} SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Utworzono nowy punkt przywracania . . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . C:\install.exe c:\programdata\Microsoft\Windows\Start Menu\Programs\MagnIPic c:\programdata\Microsoft\Windows\Start Menu\Programs\MagnIPic\MagnIPic.lnk c:\programdata\Microsoft\Windows\Start Menu\Programs\MagnIPic\Uninstall.lnk c:\users\Pecet\AppData\Roaming\skype.ini c:\windows\$NtUninstallKB51182$ c:\windows\system32\drivers\etc\hosts.ics c:\windows\system32\frapsvid.dll c:\windows\system32\logs c:\windows\system32\logs\Game - R3d Logs\2013-03-28_14-34-24_r3dlog.txt c:\windows\system32\muzapp.exe c:\windows\system32\SET3F94.tmp c:\windows\system32\URTTemp c:\windows\system32\URTTemp\regtlib.exe c:\windows\system32\Warning.txt c:\windows\wininit.ini . c:\windows\system32\drivers\netbt.sys . . . brak pliku!! . . ((((((((((((((((((((((((( Pliki utworzone od 2013-04-20 do 2013-05-20 ))))))))))))))))))))))))))))))) . . 2013-05-20 19:46 . 2013-05-20 19:46 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2013-05-20 19:46 . 2013-05-20 19:46 -------- d-----w- c:\users\Public\AppData\Local\temp 2013-05-20 19:46 . 2013-05-20 19:46 -------- d-----w- c:\users\Pecet\AppData\Local\temp 2013-05-20 19:46 . 2013-05-20 19:46 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-05-20 19:46 . 2013-05-20 19:46 -------- d-----w- c:\users\Bartek\AppData\Local\temp 2013-05-19 12:19 . 2013-05-19 12:19 -------- d-----w- c:\users\Default\AppData\Local\Mozilla 2013-05-19 11:11 . 2013-05-19 11:11 -------- d-sh--w- c:\windows\%APPDATA% 2013-05-08 17:39 . 2013-05-08 17:39 -------- d-----w- c:\users\Pecet\AppData\Local\B1E 2013-05-08 17:39 . 2013-05-08 17:39 -------- d-----w- c:\users\Pecet\AppData\Roaming\B1Toolbar 2013-05-08 17:13 . 2013-05-08 17:13 -------- d-----w- c:\program files\Eidos Interactive 2013-05-08 17:13 . 1996-01-09 08:38 283648 ----a-w- c:\windows\uninst.exe 2013-05-08 17:09 . 2013-05-08 17:10 -------- d-----w- c:\program files\commandos 2013-05-08 17:02 . 2013-05-08 18:44 -------- d-----w- C:\Commandos Behind Enemy Lines [PL] 2013-05-08 16:43 . 2013-05-08 16:43 -------- d-----w- C:\behind enemy lines 2013-05-07 10:51 . 2013-05-07 10:51 -------- d-----w- c:\windows\system32\searchplugins 2013-05-07 10:51 . 2013-05-07 10:51 -------- d-----w- c:\windows\system32\Extensions 2013-05-07 10:34 . 2013-05-07 12:57 -------- d-----w- C:\larry7 2013-05-07 09:24 . 2013-05-07 09:24 -------- d-----w- C:\commandos call of duty 2013-05-07 09:19 . 2013-05-07 11:17 -------- d-----w- C:\commandos 2013-04-24 17:11 . 2013-04-29 17:35 -------- d-----w- c:\program files\Mystiqe . . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-05-16 20:47 . 2012-12-09 18:33 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-05-16 20:47 . 2012-01-04 17:13 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-04-13 08:07 . 2013-04-13 08:07 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2013-04-04 12:50 . 2012-12-19 18:11 22856 ----a-w- c:\windows\system32\drivers\mbam.sys 2013-03-11 13:21 . 2013-03-11 13:21 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2013-03-11 13:21 . 2013-02-26 23:04 861088 ----a-w- c:\windows\system32\npDeployJava1.dll 2013-03-11 13:21 . 2012-02-11 09:48 782240 ----a-w- c:\windows\system32\deployJava1.dll 2013-02-26 23:08 . 2009-10-13 14:34 348160 ----a-w- c:\windows\system32\msvcr71.dll 2012-03-01 15:53 . 2012-03-19 13:21 36864 ----a-w- c:\program files\Diablo II.exe 2011-04-07 06:15 . 2012-12-23 10:34 349176 ----a-w- c:\program files\ashBase.dll 2013-04-12 12:12 . 2013-02-19 16:26 263064 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll . . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2011-02-23 15:04 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "GrpConv"="grpconv -o" [X] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\progra~2\BROWSE~1\261249~1.132\{C16C1~1\BrowserProtect.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "mixer"=wdmaud.drv . [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk backup=c:\windows\pss\McAfee Security Scan Plus.lnk.CommonStartup backupExtension=.CommonStartup . [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Scrybe.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Scrybe.lnk backup=c:\windows\pss\Scrybe.lnk.CommonStartup backupExtension=.CommonStartup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2012-12-18 19:08 946352 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ALLUpdate] 2009-06-04 21:56 869888 ----a-w- c:\program files\ALLPlayer\ALLUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\amd_dc_opt] 2006-11-17 14:49 77824 ----a-w- c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avast] 2011-02-23 15:04 3451496 ----a-w- c:\program files\AVAST Software\Avast\AvastUI.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] 2009-04-23 13:51 691656 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate] 2011-07-28 23:08 1259376 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DT_Poland_SEPANG ModemListener] 2011-06-20 07:00 102400 ----a-w- c:\program files\blueconnect\BackgroundService\ModemListener.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gadu-Gadu 10] 2010-09-12 23:09 12653152 ----a-w- c:\program files\Gadu-Gadu 10\gg.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update] 2010-07-04 12:19 136176 ----atw- c:\users\Pecet\AppData\Local\Google\Update\GoogleUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor] 2006-10-26 23:47 31016 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif] 2009-06-04 17:03 186904 ----a-w- c:\program files\Intel\Intel Matrix Storage Manager\IAAnotif.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IntelWireless] 2011-01-12 13:16 1210640 ----a-w- c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IPLA!] 2009-12-08 01:52 14067096 ----a-w- c:\program files\ipla\ipla.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper] 2011-12-27 22:21 937360 ----a-w- c:\program files\Samsung\Kies\KiesHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR] 2011-12-27 22:21 21392 ----a-w- c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] 2011-12-27 22:21 3508624 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] 2001-07-09 09:50 155648 ----a-w- c:\windows\System32\NeroCheck.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl] 2009-09-29 06:47 7703072 ------w- c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr] 2009-08-28 05:40 606208 ----a-w- c:\windows\Samsung\PanelMgr\SSMMgr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer] 2009-03-05 15:07 2260480 --sha-r- c:\program files\Spybot - Search & Destroy\TeaTimer.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam] 2012-08-19 10:08 1353080 ----a-w- c:\program files\Steam\Steam.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2012-07-03 08:04 252848 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh] 2011-03-31 17:30 2221352 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] 2013-02-26 23:08 295072 ----a-w- c:\program files\Real\RealPlayer\Update\realsched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yontoo Desktop] 2013-04-17 01:17 42784 ------w- c:\users\Pecet\AppData\Roaming\Yontoo\YontooDesktop.exe . R1 aswSnx;aswSnx; [x] R1 aswSP;aswSP; [x] R2 aswFsBlk;aswFsBlk; [x] R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x] R2 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x] R2 Modem Device Helper;Modem Device Helper;c:\program files\blueconnect\BackgroundService\ServiceManager.exe [x] R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service;c:\program files\RealNetworks\RealDownloader\rndlresolversvc.exe [x] R2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [x] R2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [x] R3 athur;Atheros AR9271 Wireless Network Adapter Service;c:\windows\system32\DRIVERS\athur.sys [x] R3 cpuz130;cpuz130;c:\users\Pecet\AppData\Local\Temp\cpuz130\cpuz_x32.sys [x] R3 EagleXNt;EagleXNt;c:\windows\system32\drivers\EagleXNt.sys [x] R3 jrdusbser;Modem Interface Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\jrdusbser.sys [x] R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x] R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [x] R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\3.0.318\McCHSvc.exe [x] R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [x] R3 NETw5s32;Sterownik karty Intel(R) Wireless WiFi Link dla systemu Windows 7 32 Bit;c:\windows\system32\DRIVERS\NETw5s32.sys [x] R3 netw5v32;Sterownik karty Intel(R) Wireless WiFi Link 5000 Series dla systemu Windows Vista w wersji 32-bitowej;c:\windows\system32\DRIVERS\netw5v32.sys [x] R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des [x] R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x] R3 RtsUIR;Realtek IR Driver;c:\windows\system32\DRIVERS\Rts516xIR.sys [x] R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys [x] R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys [x] R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys [x] R3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\DRIVERS\ss_bserd.sys [x] R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x] R3 XDva398;XDva398;c:\windows\system32\XDva398.sys [x] R3 XDva401;XDva401;c:\windows\system32\XDva401.sys [x] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x] S3 k57nd60x;Karta Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60x.sys [x] S3 NETwNs32;___ Sterownik karty Intel(R) Wireless WiFi Link 5000 Series dla systemu Windows 7 32 Bit;c:\windows\system32\DRIVERS\NETwNs32.sys [x] . . Zawartość folderu 'Zaplanowane zadania' . 2013-05-19 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-12-09 20:47] . 2013-05-20 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2012-01-22 20:02] . 2013-05-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2012-01-22 20:02] . 2013-05-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3441852442-2004521568-503359352-1001Core.job - c:\users\Pecet\AppData\Local\Google\Update\GoogleUpdate.exe [2010-07-04 12:19] . 2013-05-19 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3441852442-2004521568-503359352-1001UA.job - c:\users\Pecet\AppData\Local\Google\Update\GoogleUpdate.exe [2010-07-04 12:19] . . ------- Skan uzupełniający ------- . mStart Page = about:blank IE: E&ksportuj do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 213.158.199.1 213.158.199.5 FF - ProfilePath - . - - - - USUNIĘTO PUSTE WPISY - - - - . HKLM-RunOnce- - (no file) MSConfigStartUp-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe MSConfigStartUp-BitTorrent DNA - c:\program files\DNA\btdna.exe MSConfigStartUp-PrivitizeVPN - c:\program files\PrivitizeVPN\PrivitizeVPN.exe MSConfigStartUp-SecdrvUpdate - c:\users\Pecet\AppData\Roaming\tvkWo.exe AddRemove-avast - c:\program files\AVAST Software\Avast\aswRunDll.exe AddRemove-delta - c:\program files\Delta\delta\1.8.10.0\GUninstaller.exe AddRemove-Final LC - c:\program files\Final LC\Uninstal.exe AddRemove-WinAce Archiver - c:\program files\WinAce\SXUNINST.EXE AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe AddRemove-05_Sloan - c:\program files\Samsung\USB Drivers\05_Sloan\Uninstall.exe AddRemove-06_Spencer - c:\program files\Samsung\USB Drivers\06_Spencer\Uninstall.exe AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe AddRemove-08_EMPChipset - c:\program files\Samsung\USB Drivers\08_EMPChipset\Uninstall.exe AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe AddRemove-17_EMP_Chipset2 - c:\program files\Samsung\USB Drivers\17_EMP_Chipset2\Uninstall.exe AddRemove-18_Zinia_Serial_Driver - c:\program files\Samsung\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe AddRemove-19_VIA_driver - c:\program files\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe AddRemove-21_Searsburg - c:\program files\Samsung\USB Drivers\21_Searsburg\Uninstall.exe AddRemove-22_WiBro_WiMAX - c:\program files\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:000000b5 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\windows\system32\conhost.exe c:\windows\helppane.exe c:\\?\c:\windows\system32\wbem\WMIADAP.EXE . ************************************************************************** . Czas ukończenia: 2013-05-20 21:52:30 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2013-05-20 19:52 . Przed: 7 507 931 136 bajtów wolnych Po: 15 416 193 024 bajtów wolnych . - - End Of File - - 4751F8C6F662F15A4E5AB6B4DD7B5D1F