ComboFix 17-05-16.01 - Shevil 2017-06-05 7:04.1.4 - x64 Microsoft Windows 7 Professional 6.1.7601.1.1250.48.1045.18.4031.2191 [GMT 2:00] Uruchomiony z: c:\users\Shevil\Downloads\ComboFix.exe AV: Malwarebytes *Disabled/Updated* {23007AD3-69FE-687C-2629-D584AFFAF72B} SP: Malwarebytes *Disabled/Updated* {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\windows\security\Database\tmp.edb . . ((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Service_WiseBootAssistant . . ((((((((((((((((((((((((( Pliki utworzone od 2017-05-05 do 2017-06-05 ))))))))))))))))))))))))))))))) . . 2017-06-04 18:08 . 2017-06-04 18:08 -------- d-----w- C:\found.001 2017-06-04 17:40 . 2017-06-04 17:40 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{B3ADE0D5-3C2C-49CB-9434-B6B6EA14D5B9}\offreg.3780.dll 2017-06-04 15:20 . 2017-06-04 15:20 -------- d-----w- c:\programdata\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} 2017-06-04 15:19 . 2017-06-04 15:19 -------- d-----w- c:\programdata\{74E9F814-C737-42CC-B721-DBBC4059367A} 2017-06-04 15:19 . 2017-06-04 15:19 -------- d-----w- c:\program files (x86)\Common Files\IObit 2017-06-04 15:18 . 2017-06-04 16:47 -------- d-----w- c:\program files (x86)\IObit 2017-06-04 13:17 . 2017-06-04 13:17 -------- d-----w- c:\program files\Malwarebytes 2017-06-04 12:46 . 2017-06-04 12:46 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{B3ADE0D5-3C2C-49CB-9434-B6B6EA14D5B9}\offreg.2892.dll 2017-06-04 12:27 . 2017-06-04 12:27 1024 ---ha-w- C:\SYSTAG.BIN 2017-06-04 12:26 . 2017-06-04 12:29 -------- d-----w- c:\programdata\AomeiBR 2017-06-04 12:25 . 2016-12-23 06:24 51120 ----a-w- c:\windows\system32\ambakdrv.sys 2017-06-04 12:25 . 2016-12-23 06:24 38320 ----a-w- c:\windows\system32\amwrtdrv.sys 2017-06-04 12:25 . 2016-12-23 06:24 171952 ----a-w- c:\windows\system32\ammntdrv.sys 2017-06-04 10:20 . 2017-06-04 10:20 -------- d-----w- c:\program files (x86)\HD Tune 2017-06-02 11:18 . 2017-05-23 17:54 13020000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{B3ADE0D5-3C2C-49CB-9434-B6B6EA14D5B9}\mpengine.dll 2017-06-01 18:04 . 2017-06-03 21:27 -------- d-----w- C:\Fraps 2017-05-30 09:58 . 2017-05-30 09:58 1552144 ----a-w- c:\windows\is-CL6Q7.exe 2017-05-29 20:41 . 2017-05-29 20:41 -------- d-----w- c:\programdata\MacPaw 2017-05-29 20:41 . 2017-05-29 20:41 -------- d-----w- c:\programdata\MacPaw Inc 2017-05-29 19:19 . 2017-05-29 19:19 -------- d-----w- c:\program files\Common Files\iolo 2017-05-29 19:09 . 2017-06-04 15:19 -------- d-----w- c:\programdata\ProductData 2017-05-26 10:07 . 2017-04-11 17:00 430656 ----a-w- c:\windows\system32\PROUnstl.exe 2017-05-25 21:03 . 2017-05-25 21:04 -------- d-----w- c:\programdata\Intel 2017-05-25 21:03 . 2016-10-18 15:14 21984 ----a-w- c:\windows\system32\drivers\semav6msr64.sys 2017-05-25 21:03 . 2017-05-26 10:55 -------- d-----w- c:\program files\Intel 2017-05-25 21:03 . 2017-05-26 10:55 -------- d-----w- c:\program files\Intel Driver Update Utility 2017-05-25 12:10 . 2010-05-13 11:24 482816 ----a-w- c:\windows\system32\drivers\ADIHdAud.sys 2017-05-25 12:08 . 2017-05-30 07:47 -------- d-----w- c:\programdata\BSD 2017-05-24 16:10 . 2017-05-31 21:24 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information 2017-05-24 16:09 . 2017-05-31 21:24 -------- d-----w- c:\program files (x86)\Common Files\InstallShield 2017-05-24 07:47 . 2017-05-24 07:55 -------- d-----w- c:\windows\system32\oodag 2017-05-24 07:46 . 2017-05-24 07:46 -------- d-----w- c:\programdata\OO Software 2017-05-21 19:21 . 2017-05-21 19:21 -------- d-----w- c:\program files (x86)\Notepad++ 2017-05-21 13:52 . 2017-05-21 13:52 -------- d-----w- c:\program files (x86)\Common Files\Skype 2017-05-21 13:52 . 2017-05-21 13:52 -------- d-----r- c:\program files (x86)\Skype 2017-05-21 13:51 . 2017-05-21 13:52 -------- d-----w- c:\programdata\Skype 2017-05-21 08:30 . 2017-05-21 08:30 -------- d-----w- c:\windows\system32\appmgmt 2017-05-20 20:11 . 2017-06-04 18:38 -------- d-----w- c:\program files (x86)\SpeedFan 2017-05-19 11:00 . 2017-05-21 19:59 -------- d-----w- c:\programdata\Ashampoo 2017-05-18 14:27 . 2017-04-21 21:58 1804688 ----a-w- c:\windows\system32\WdfCoInstaller01011.dll 2017-05-18 14:27 . 2017-04-21 21:57 72792 ----a-w- c:\windows\system32\drivers\Smb_driver_Intel.sys 2017-05-18 14:24 . 2014-03-22 09:49 1983688 ----a-w- c:\windows\system32\drivers\ts_arnusbx.sys 2017-05-15 20:19 . 2017-05-15 20:19 -------- d-----w- c:\program files (x86)\Wise 2017-05-15 18:22 . 2016-11-17 16:21 42392 ----a-w- c:\windows\system32\drivers\pimou.sys 2017-05-15 18:22 . 2016-11-17 16:21 41368 ----a-w- c:\windows\system32\drivers\pikbd.sys 2017-05-15 18:14 . 2017-05-15 18:14 -------- d-----w- c:\program files\TeamSpeak 3 Client 2017-05-15 16:06 . 2017-05-15 16:06 -------- d-s---w- c:\windows\system32\CompatTel 2017-05-15 16:06 . 2017-05-15 16:06 -------- d-----w- c:\windows\system32\appraiser 2017-05-14 18:11 . 2016-05-12 15:18 90624 ----a-w- c:\windows\SysWow64\olepro32.dll 2017-05-14 18:07 . 2016-12-31 15:36 293376 ----a-w- c:\windows\system32\centel.dll 2017-05-14 18:07 . 2016-03-23 22:40 1239720 ----a-w- c:\windows\system32\aitstatic.exe 2017-05-14 18:07 . 2017-02-22 23:37 1285632 ----a-w- c:\windows\system32\aeinv.dll 2017-05-14 18:07 . 2017-02-18 14:05 646656 ----a-w- c:\windows\system32\generaltel.dll 2017-05-14 18:07 . 2016-12-31 15:36 335360 ----a-w- c:\windows\system32\invagent.dll 2017-05-14 18:07 . 2016-12-31 15:36 556544 ----a-w- c:\windows\system32\devinv.dll 2017-05-14 18:07 . 2016-12-31 15:36 233984 ----a-w- c:\windows\system32\aepic.dll 2017-05-14 18:07 . 2016-12-31 15:36 133632 ----a-w- c:\windows\system32\acmigration.dll 2017-05-14 18:06 . 2011-03-11 06:41 166272 ----a-w- c:\windows\system32\drivers\nvstor.sys 2017-05-14 18:06 . 2011-03-11 06:41 148352 ----a-w- c:\windows\system32\drivers\nvraid.sys 2017-05-14 18:06 . 2011-03-11 06:41 410496 ----a-w- c:\windows\system32\drivers\iaStorV.sys 2017-05-14 18:06 . 2011-03-11 06:41 27008 ----a-w- c:\windows\system32\drivers\amdxata.sys 2017-05-14 18:06 . 2011-03-11 06:41 107904 ----a-w- c:\windows\system32\drivers\amdsata.sys 2017-05-14 18:06 . 2011-03-11 06:33 2565632 ----a-w- c:\windows\system32\esent.dll 2017-05-14 18:06 . 2011-03-11 06:30 96768 ----a-w- c:\windows\system32\fsutil.exe 2017-05-14 18:06 . 2011-03-11 05:33 1699328 ----a-w- c:\windows\SysWow64\esent.dll 2017-05-14 18:06 . 2011-03-11 05:31 74240 ----a-w- c:\windows\SysWow64\fsutil.exe 2017-05-14 14:13 . 2009-09-18 12:33 70168 ----a-w- c:\windows\system32\drivers\HECIx64.sys 2017-05-14 14:07 . 2017-05-14 14:07 47672 ----a-w- c:\windows\system32\drivers\dtliteusbbus.sys 2017-05-14 14:07 . 2017-05-14 14:07 30264 ----a-w- c:\windows\system32\drivers\dtlitescsibus.sys 2017-05-14 14:07 . 2017-05-14 14:07 -------- d-----w- c:\program files\DAEMON Tools Lite 2017-05-14 14:06 . 2017-05-14 14:07 -------- d-----w- c:\programdata\DAEMON Tools Lite 2017-05-14 11:54 . 2017-05-14 11:54 36472 ----a-w- c:\windows\system32\NicCo36.dll 2017-05-14 11:54 . 2017-05-14 11:54 302464 ----a-w- c:\windows\system32\drivers\e1e6232e.sys 2017-05-14 11:54 . 2017-05-14 11:54 121440 ----a-w- c:\windows\system32\e1000msg.dll 2017-05-14 11:54 . 2017-05-14 11:54 101216 ----a-w- c:\windows\system32\NicInE6.dll 2017-05-14 11:53 . 2017-05-14 11:53 -------- d-----w- c:\program files\Synaptics 2017-05-14 11:41 . 2017-05-14 11:41 -------- d-----w- c:\windows\IObit 2017-05-14 11:39 . 2017-05-14 11:39 27552 ----a-w- c:\windows\SysWow64\drivers\HWiNFO64A.SYS 2017-05-14 10:38 . 2017-04-16 08:35 25741312 ----a-w- c:\windows\system32\mshtml.dll 2017-05-14 10:31 . 2015-07-30 18:06 2565120 ----a-w- c:\windows\system32\d3d10warp.dll 2017-05-14 10:28 . 2016-04-09 04:20 1230848 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll 2017-05-14 10:28 . 2016-04-09 03:52 1424896 ----a-w- c:\windows\system32\WindowsCodecs.dll 2017-05-14 10:28 . 2015-02-04 03:16 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2017-05-14 10:28 . 2015-02-04 02:54 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2017-05-14 10:09 . 2017-05-14 10:09 -------- d-----w- c:\windows\SysWow64\Wat 2017-05-14 10:09 . 2017-05-14 10:09 -------- d-----w- c:\windows\system32\Wat 2017-05-14 09:06 . 2015-07-30 13:13 103120 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll 2017-05-14 09:06 . 2015-07-30 13:13 124624 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2017-05-14 09:03 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE 2017-05-14 08:51 . 2017-05-14 08:51 194048 ----a-w- c:\windows\SysWow64\elshyph.dll 2017-05-14 08:14 . 2013-10-02 01:10 44544 ----a-w- c:\windows\system32\TsUsbGDCoInstaller.dll 2017-05-14 08:14 . 2013-10-02 04:38 3072 ----a-w- c:\windows\system32\drivers\en-US\tsusbflt.sys.mui 2017-05-14 08:14 . 2013-10-02 02:22 56832 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys 2017-05-14 08:14 . 2013-10-02 02:11 13824 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2017-05-14 08:14 . 2013-10-02 02:08 12800 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2017-05-14 08:14 . 2013-10-02 01:48 56832 ----a-w- c:\windows\system32\MsRdpWebAccess.dll 2017-05-14 08:14 . 2013-10-02 01:48 18944 ----a-w- c:\windows\system32\wksprtPS.dll 2017-05-14 08:14 . 2013-10-02 00:14 50176 ----a-w- c:\windows\SysWow64\MsRdpWebAccess.dll 2017-05-14 08:14 . 2013-10-02 00:14 17920 ----a-w- c:\windows\SysWow64\wksprtPS.dll 2017-05-14 08:14 . 2013-10-01 23:31 1147392 ----a-w- c:\windows\system32\mstsc.exe 2017-05-14 08:14 . 2013-10-01 22:34 1068544 ----a-w- c:\windows\SysWow64\mstsc.exe 2017-05-14 07:58 . 2017-05-23 12:45 -------- d-----w- c:\windows\system32\MRT 2017-05-14 07:41 . 2012-07-26 05:05 2560 ----a-w- c:\windows\system32\drivers\pl-PL\wdf01000.sys.mui 2017-05-14 07:31 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys 2017-05-14 07:31 . 2012-08-23 14:08 30208 ----a-w- c:\windows\system32\drivers\TsUsbGD.sys 2017-05-14 07:31 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll 2017-05-14 07:31 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll 2017-05-14 06:53 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll 2017-05-14 06:53 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll 2017-05-14 06:53 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys 2017-05-14 06:53 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys 2017-05-14 06:53 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe 2017-05-14 06:53 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll 2017-05-14 06:53 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll 2017-05-14 06:38 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys 2017-05-14 06:38 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll 2017-05-14 06:38 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll 2017-05-14 06:31 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll 2017-05-14 06:31 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe 2017-05-14 06:31 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll 2017-05-14 06:31 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe 2017-05-14 06:31 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll 2017-05-14 06:31 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll 2017-05-14 06:31 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe 2017-05-14 06:31 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2017-04-28 00:32 . 2017-05-14 10:38 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2017-04-11 07:33 . 2017-04-11 07:33 349696 ----a-w- c:\windows\system32\Ncs2Setp.dll 2017-04-11 07:16 . 2017-04-11 07:16 2284096 ----a-w- c:\windows\system32\accesor.dll 2017-04-11 07:16 . 2017-04-11 07:16 1573440 ----a-w- c:\windows\system32\ncs2dmix.dll 2017-04-11 07:16 . 2017-04-11 07:16 681024 ----a-w- c:\windows\system32\ncs2instutility.dll 2017-04-11 07:16 . 2017-04-11 07:16 4616256 ----a-w- c:\windows\system32\ncscolib.dll 2017-04-11 07:16 . 2017-04-11 07:16 516160 ----a-w- c:\windows\system32\IPROSetMonitor.exe 2017-04-07 11:23 . 2017-04-07 11:23 50152 ----a-w- c:\windows\system32\drivers\iqvw64e.sys . . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"="c:\program files\CCleaner\CCleaner64.exe" [2017-05-19 9773272] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2013-04-29 642304] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) "EnableLinkedConnections"= 1 (0x1) . [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoSimpleNetIDList"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux"=wdmaud.drv . R0 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 athur;Wireless Network Adapter Service;c:\windows\system32\DRIVERS\athurx.sys;c:\windows\SYSNATIVE\DRIVERS\athurx.sys [x] R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service;c:\program files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe;c:\program files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [x] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 pikbd;Pluralinput Keyboard 1.0;c:\windows\system32\DRIVERS\pikbd.sys;c:\windows\SYSNATIVE\DRIVERS\pikbd.sys [x] R3 pimou;Pluralinput Mouse 1.0;c:\windows\system32\DRIVERS\pimou.sys;c:\windows\SYSNATIVE\DRIVERS\pimou.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 semav6msr64;semav6msr64;c:\windows\system32\drivers\semav6msr64.sys;c:\windows\SYSNATIVE\drivers\semav6msr64.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R4 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\SysWOW64\drivers\HWiNFO64A.SYS;c:\windows\SysWOW64\drivers\HWiNFO64A.SYS [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service;c:\windows\system32\IProsetMonitor.exe;c:\windows\SYSNATIVE\IProsetMonitor.exe [x] S3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtlitescsibus.sys;c:\windows\SYSNATIVE\DRIVERS\dtlitescsibus.sys [x] S3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus;c:\windows\system32\DRIVERS\dtliteusbbus.sys;c:\windows\SYSNATIVE\DRIVERS\dtliteusbbus.sys [x] S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x] S3 SmbDrvI;SmbDrvI;c:\windows\system32\DRIVERS\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\DRIVERS\Smb_driver_Intel.sys [x] S3 ts_arnusb;[CommView] Atheros AR9271 Wireless Network Adapter Service;c:\windows\system32\DRIVERS\ts_arnusbx.sys;c:\windows\SYSNATIVE\DRIVERS\ts_arnusbx.sys [x] . . --- Inne Usługi/Sterowniki w Pamięci --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr QWAVE wcncsvc . Zawartość folderu 'Zaplanowane zadania' . 2017-05-26 c:\windows\Tasks\Wise Turbo Checker.job - c:\program files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2017-05-15 09:36] . . --------- X64 Entries ----------- . . ------- Skan uzupełniający ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm TCP: DhcpNameServer = 192.168.0.1 . - - - - USUNIĘTO PUSTE WPISY - - - - . SafeBoot-MBAMSwissArmy SafeBoot-MBAMService . . . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System*] "OODEFRAG20.00.00.02PROFESSIONAL"="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" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\program files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe . ************************************************************************** . Czas ukończenia: 2017-06-05 07:13:43 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2017-06-05 05:13 . Przed: 46 806 159 360 bajtów wolnych Po: 46 262 423 552 bajtów wolnych . - - End Of File - - D947C17B2F6A2B8E71FB11BE5406A52C A36C5E4F47E84449FF07ED3517B43A31