ComboFix 16-04-13.01 - Sidoruk 2016-04-18 19:45:31.3.2 - x86 Microsoft Windows 7 Professional 6.1.7601.1.1250.48.1045.18.3326.2349 [GMT 2:00] Uruchomiony z: c:\users\Sidoruk\Downloads\ComboFixnew.exe AV: ESET Smart Security 8.0 *Disabled/Updated* {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Spybot - Search and Destroy *Disabled/Outdated* {20A26C15-1AF0-7CA3-9380-FAB824A7EE0D} FW: COMODO Firewall *Disabled* {E8F7F446-E1BD-DFE6-38D1-54E0ADE01D89} FW: Zapora osobista ESET *Disabled* {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2} SP: Comodo Defense+ *Disabled/Updated* {6BAD9487-8DE8-D130-293E-C6A728B4104F} SP: ESET Smart Security 8.0 *Disabled/Updated* {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} SP: Spybot - Search and Destroy *Disabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Utworzono nowy punkt przywracania . . ((((((((((((((((((((((((( Pliki utworzone od 2016-03-18 do 2016-04-18 ))))))))))))))))))))))))))))))) . . 2016-04-18 17:53 . 2016-04-18 17:53 -------- d-----w- c:\users\Public\AppData\Local\temp 2016-04-18 17:53 . 2016-04-18 17:53 -------- d-----w- c:\users\Default\AppData\Local\temp 2016-04-18 14:26 . 2016-04-18 14:26 -------- d-----w- c:\programdata\edyzetosoryhyquq 2016-04-16 14:38 . 2016-04-16 14:38 -------- d-----w- C:\VTRoot 2016-04-16 14:38 . 2016-04-16 14:42 36798 ----a-w- c:\windows\system32\drivers\fvstore.dat 2016-04-16 14:18 . 2016-04-18 16:55 170200 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys 2016-04-16 14:18 . 2016-04-16 14:18 -------- d-----w- c:\program files\Malwarebytes Anti-Malware 2016-04-16 14:18 . 2016-04-16 14:18 53120 ----a-w- c:\windows\system32\drivers\mwac.sys 2016-04-16 14:18 . 2016-04-16 14:18 24448 ----a-w- c:\windows\system32\drivers\mbam.sys 2016-04-16 14:18 . 2016-04-16 14:18 126336 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2016-04-16 14:18 . 2016-04-16 14:18 -------- d-----w- c:\programdata\Malwarebytes 2016-04-16 13:38 . 2016-04-18 14:37 -------- d-----w- C:\AdwCleaner 2016-04-16 09:21 . 2016-04-16 09:41 -------- d-----w- c:\program files\COMODO 2016-04-16 09:14 . 2016-04-16 09:14 -------- d-----w- c:\programdata\Shared Space 2016-04-16 09:14 . 2016-04-16 09:22 -------- d-----w- c:\programdata\Comodo 2016-04-12 21:25 . 2009-07-06 08:48 11448 ----a-w- c:\windows\system32\drivers\AsUpIO.sys 2016-04-12 21:25 . 2009-09-30 09:33 24576 ----a-w- c:\windows\system32\AsIO.dll 2016-04-12 21:25 . 2009-08-04 08:28 11296 ----a-w- c:\windows\system32\drivers\AsIO.sys 2016-04-12 21:24 . 2016-04-12 21:27 -------- d-----w- c:\program files\ASUS 2016-04-10 12:34 . 2016-04-10 12:34 -------- d-----w- c:\program files\e-Deklaracje 2016-04-09 21:49 . 2015-08-11 10:22 2895360 ----a-w- c:\windows\system32\pwNative.exe 2016-04-09 21:49 . 2015-03-05 08:15 17160 ------w- c:\windows\system32\pwdrvio.sys 2016-04-09 21:49 . 2015-03-05 08:15 13064 ------w- c:\windows\system32\pwdspio.sys 2016-04-09 21:49 . 2016-04-09 21:49 -------- d-----w- c:\program files\MiniTool Partition Wizard Free 9.1 2016-04-09 19:44 . 2016-04-09 19:44 -------- d-----w- c:\users\Sidoruk\.swt 2016-04-09 19:44 . 2016-04-09 19:52 -------- d-----w- c:\users\Sidoruk\.flashTool 2016-04-06 11:18 . 2016-04-06 11:18 102184 ----a-w- c:\windows\system32\drivers\inspect.sys 2016-04-06 11:18 . 2016-04-06 11:18 52312 ----a-w- c:\windows\system32\drivers\cmdhlp.sys 2016-04-06 11:18 . 2016-04-06 11:18 643032 ----a-w- c:\windows\system32\drivers\cmdguard.sys 2016-04-06 11:18 . 2016-04-06 11:18 27488 ----a-w- c:\windows\system32\drivers\cmderd.sys 2016-04-06 11:17 . 2016-04-06 11:17 44000 ----a-w- c:\windows\system32\cmdcsr.dll 2016-04-06 11:16 . 2016-04-06 11:16 461648 ----a-w- c:\windows\system32\guard32.dll 2016-04-06 11:12 . 2016-04-06 11:12 296120 ----a-w- c:\windows\system32\cmdvrt32.dll 2016-04-06 11:11 . 2016-04-06 11:11 46776 ----a-w- c:\windows\system32\cmdkbd32.dll 2016-03-29 22:20 . 2016-03-29 22:20 -------- d-----w- c:\program files\ESET 2016-03-29 17:46 . 2016-03-29 17:46 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FA5714B8-5F43-42DC-B8F1-991CE17D5FB6}\offreg.400.dll 2016-03-24 18:44 . 2016-03-24 18:44 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FA5714B8-5F43-42DC-B8F1-991CE17D5FB6}\offreg.1984.dll 2016-03-22 15:51 . 2016-03-22 15:51 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FA5714B8-5F43-42DC-B8F1-991CE17D5FB6}\offreg.356.dll 2016-03-20 23:37 . 2016-03-20 23:37 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FA5714B8-5F43-42DC-B8F1-991CE17D5FB6}\offreg.2056.dll 2016-03-20 16:12 . 2016-04-18 17:53 -------- d-----w- c:\users\Sidoruk\AppData\Local\temp . . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2016-04-10 16:53 . 2015-01-26 23:38 797376 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2016-04-10 16:53 . 2015-01-26 23:38 142528 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2016-03-11 01:07 . 2016-03-11 01:07 26328 ----a-w- c:\windows\system32\drivers\ggsomc.sys 2016-03-11 01:07 . 2016-03-11 01:07 13528 ----a-w- c:\windows\system32\drivers\ggflt.sys 2016-03-07 16:48 . 2016-03-07 16:48 31832 ----a-w- c:\windows\system32\drivers\DrvAgent32.sys 2016-03-04 16:53 . 2016-03-06 20:26 800216 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys 2016-03-04 16:52 . 2016-03-06 20:26 121760 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys 2016-03-04 16:52 . 2016-03-04 16:52 174192 ----a-w- c:\windows\system32\drivers\VBoxNetLwf.sys 2016-03-04 16:52 . 2016-03-04 16:52 111912 ----a-w- c:\windows\system32\drivers\VBoxUSB.sys 2016-03-04 16:52 . 2016-03-04 16:52 108208 ----a-w- c:\windows\system32\drivers\VBoxNetAdp6.sys 2016-03-01 11:45 . 2016-03-01 11:45 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FA5714B8-5F43-42DC-B8F1-991CE17D5FB6}\offreg.2808.dll 2016-02-29 22:41 . 2016-02-29 22:41 62576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FA5714B8-5F43-42DC-B8F1-991CE17D5FB6}\offreg.2312.dll 2016-02-27 13:19 . 2016-02-27 13:19 281760 ----a-w- c:\windows\system32\drivers\atksgt.sys 2016-02-27 13:19 . 2016-02-27 13:19 25888 ----a-w- c:\windows\system32\drivers\lirsgt.sys 2016-01-22 06:00 . 2016-02-20 15:37 1498624 ----a-w- c:\windows\system32\ExplorerFrame.dll 2016-01-22 05:59 . 2016-02-20 15:37 1805824 ----a-w- c:\windows\system32\authui.dll 2016-01-22 05:12 . 2016-02-20 15:37 2973184 ----a-w- c:\windows\explorer.exe . . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Mobile Partner"="c:\program files\PLAY Web partner\PLAY Web partner" [X] "SoundMax"="c:\program files\Analog Devices\SoundMAX\SoundMAX.exe" [2009-05-18 3866624] "CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2016-02-12 6638296] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2014-10-01 5088456] "COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cistray.exe" [2016-04-06 1491128] "SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2009-06-05 1310720] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0sdnclean.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2015-12-13 22:48 1085656 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync] 2010-03-13 13:54 91520 ----a-w- c:\program files\Microsoft Office\Office14\BCSSync.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring] 2016-02-12 21:11 6638296 ----a-w- c:\program files\CCleaner\CCleaner.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess] 2010-03-16 01:58 718208 ----a-w- c:\program files\Microsoft Office\Office14\MSOSYNC.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SDTray] 2014-06-24 09:42 4101576 ----a-w- c:\program files\Spybot - Search & Destroy 2\SDTray.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony PC Companion] 2015-09-23 11:39 457088 ----a-w- c:\program files\Sony\Sony PC Companion\PCCompanion.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotPostWindows10UpgradeReInstall] 2015-07-28 17:17 1011200 ----a-w- c:\program files\Common Files\AV\Spybot - Search and Destroy\Test.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2014-12-17 21:12 508800 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe . R2 HWDeviceService.exe;HWDeviceService.exe;c:\programdata\DatacardService\HWDeviceService.exe [2011-03-14 271712] R3 ampa;ampa;c:\windows\system32\ampa.sys [2013-12-18 14448] R3 cmdvirth;COMODO Virtual Service Manager;c:\program files\COMODO\COMODO Internet Security\cmdvirth.exe [2016-04-06 1670840] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464] R3 DrvAgent32;DrvAgent32;c:\windows\system32\Drivers\DrvAgent32.sys [2016-03-07 31832] R3 EverestDriver;Lavalys EVEREST Kernel Driver;d:\everest home edition\kerneld.wnt [x] R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784] R3 ggflt;SOMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2016-03-11 13528] R3 ggsomc;SOMC USB Flash Driver;c:\windows\system32\DRIVERS\ggsomc.sys [2016-03-11 26328] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-01-12 102912] R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2016-04-16 24448] R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys [2016-04-16 53120] R3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2015-03-05 13064] R3 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-06-27 2088408] R3 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-04-25 171928] R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [2015-06-10 155520] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264] R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [x] R3 VBoxUSB;VirtualBox USB;c:\windows\system32\Drivers\VBoxUSB.sys [2016-03-04 111912] R4 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes Anti-Malware\mbamscheduler.exe [2016-04-16 1514464] R4 MBAMService;MBAMService;c:\program files\Malwarebytes Anti-Malware\mbamservice.exe [2016-04-16 1136608] R4 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [x] S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2014-10-10 51288] S0 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2015-03-05 17160] S1 AsUpIO;AsUpIO;c:\windows\system32\drivers\AsUpIO.sys [2009-07-06 11448] S1 cmderd;COMODO Internet Security Eradication Driver;c:\windows\system32\DRIVERS\cmderd.sys [2016-04-06 27488] S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [2016-04-06 643032] S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [2016-04-06 52312] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2015-01-26 243128] S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2014-10-10 191928] S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2014-10-10 135296] S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [2014-10-10 37928] S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys [2016-03-04 800216] S1 VBoxNetAdp;VirtualBox NDIS 6.0 Miniport Service;c:\windows\system32\DRIVERS\VBoxNetAdp6.sys [2016-03-04 108208] S1 VBoxNetLwf;VirtualBox NDIS6 Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetLwf.sys [2016-03-04 174192] S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys [2016-03-04 121760] S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe [2009-07-14 20992] S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2014-10-01 1349576] S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-06-24 1738168] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-07-02 413128] S3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys [2011-09-09 89856] S3 huawei_cdcecm;huawei_cdcecm;c:\windows\system32\DRIVERS\ew_jucdcecm.sys [2011-09-09 66688] S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-09-09 73984] S3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys [2011-09-09 26624] . . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] utcsvc REG_MULTI_SZ DiagTrack . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2016-04-08 19:39 1106072 ----a-w- c:\program files\Google\Chrome\Application\49.0.2623.112\Installer\chrmstp.exe . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{A6EADE66-0000-0000-484E-7E8A45000000}] 2015-12-18 15:42 286904 ----a-w- c:\program files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll . Zawartość folderu 'Zaplanowane zadania' . 2016-04-16 c:\windows\Tasks\Adobe Flash Player PPAPI Notifier.job - c:\windows\system32\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe [2016-04-10 16:53] . 2016-04-18 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2015-01-27 18:44] . 2016-04-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2015-01-27 18:44] . 2016-04-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d04326f80a238.job - c:\program files\Google\Update\GoogleUpdate.exe [2015-01-27 18:44] . . ------- Skan uzupełniający ------- . uStart Page = hxxp://google.pl/ uInternet Settings,ProxyServer = localhost:21320 IE: E&ksportuj do programu Microsoft Excel - c:\progra~1\MICROS~1\Office14\EXCEL.EXE/3000 IE: Wyślij &do programu OneNote - c:\progra~1\MICROS~1\Office14\ONBttnIE.dll/105 TCP: DhcpNameServer = 192.168.1.1 192.168.1.1 FF - ProfilePath - c:\users\Sidoruk\AppData\Roaming\Mozilla\Firefox\Profiles\0fctnb7p.default-1458320463235\ FF - prefs.js: network.proxy.type - 0 . - - - - USUNIĘTO PUSTE WPISY - - - - . MSConfigStartUp-ShadowPlay - c:\windows\system32\nvspcap.dll . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EverestDriver] "ImagePath"="\??\d:\everest home edition\kerneld.wnt" . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\COMODO\CIS\Installer\Sym_Cam\CIS] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CmdAgent\Mode\Configurations] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,59,00,53,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CmdAgent\Mode\Data] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CmdAgent\Mode\Options] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\Software\COMODO\Cam] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\Software\COMODO\Firewall Pro] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,59,00,53,00,\ . --------------------- Pliki DLL ładowane pod uruchomionymi procesami --------------------- . - - - - - - - > 'Explorer.exe'(1956) c:\windows\system32\timedate.cpl c:\windows\system32\msls31.dll c:\windows\ehome\ehSSO.dll . Czas ukończenia: 2016-04-18 19:57:07 ComboFix-quarantined-files.txt 2016-04-18 17:57 ComboFix2.txt 2016-03-20 16:12 ComboFix3.txt 2016-02-23 16:02 . Przed: 13 844 963 328 bajtów wolnych Po: 13 634 170 880 bajtów wolnych . - - End Of File - - 83B470260197F0D9B1379C2F0D734EEB A36C5E4F47E84449FF07ED3517B43A31