13 Gru 2014, 00:31
13 Gru 2014, 15:42
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1667037747-964356151-747596387-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Toolbar: HKU\S-1-5-21-1667037747-964356151-747596387-1000No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FF Extension: No Name - C:\Users\Marek Nowy\AppData\Roaming\Mozilla\Firefox\Profiles\pj2q1nhd.default\Extensions\{7fabe7d9-ef57-fe53-7ab8-3703cb6b4ab5} [2014-12-04]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - No Path
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - No Path
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 EverestDriver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [X]
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
U3 uxtoapow; \??\C:\Users\MAREKN~1\AppData\Local\Temp\uxtoapow.sys [X]
2014-12-06 16:39 - 2014-12-06 16:40 - 00000000 ____D () C:\AdwCleaner
2014-12-06 16:51 - 2014-12-06 16:51 - 00029251 _____ () C:\ComboFix.txt
2014-12-06 16:47 - 2014-12-06 16:51 - 00000000 ____D () C:\Qoobox
2014-12-06 16:47 - 2014-12-06 16:50 - 00000000 ____D () C:\Windows\erdnt
2014-12-06 16:47 - 2011-06-26 06:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-12-06 16:47 - 2010-11-07 17:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-12-06 16:47 - 2009-04-20 04:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-12-06 16:47 - 2000-08-31 00:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-12-06 16:47 - 2000-08-31 00:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-12-06 16:47 - 2000-08-31 00:00 - 00098816 _____ () C:\Windows\sed.exe
2014-12-06 16:47 - 2000-08-31 00:00 - 00080412 _____ () C:\Windows\grep.exe
2014-12-06 16:47 - 2000-08-31 00:00 - 00068096 _____ () C:\Windows\zip.exe
2014-12-06 16:46 - 2014-12-06 16:46 - 05600479 ____R (Swearware) C:\Users\Marek Nowy\Downloads\ComboFix.exe
Task: {85646E81-C78F-4C95-9F24-CD0004D2F23A} - \Driver Booster Scan No Task File <==== ATTENTION
Task: {FB8B2C8E-E0D5-4659-A007-A067DDD5E20D} - \Driver Booster Update No Task File <==== ATTENTION
EmptyTemp:
13 Gru 2014, 20:50
13 Gru 2014, 22:06
13 Gru 2014, 22:58
14 Gru 2014, 14:45
SafeFinder pojawia się po odinstalowaniu
Brak akcji
14 Gru 2014, 15:39
15 Gru 2014, 16:31
ale znalazłem fixa z windowsa, ktory naprawił <dodaj usuń programy>/