Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

vyskakování nežádoucích oken

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
scratch
Návštěvník
Návštěvník
Příspěvky: 75
Registrován: 27 srp 2008 18:20

vyskakování nežádoucích oken

#1 Příspěvek od scratch »

Dobrý den,
prosím o kontrolu.
Moc díky za pomoc

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-08-2016
Ran by Karel (administrator) on VAIO (28-08-2016 15:28:12)
Running from C:\Users\Karel\Desktop
Loaded Profiles: Karel (Available Profiles: Karel)
Platform: Windows 8.1 Pro (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQL_SMSGALAXY\MSSQL\Binn\sqlservr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel) C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\SmartConnectWork.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\SUSSoundProxy.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Clip.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
() C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAdmin.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe
(forum.viry.cz) C:\Users\Karel\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1307720 2013-05-07] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7770936 2013-04-12] (Motorola Solutions, Inc.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-02-13] (Apple Inc.)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [740376 2013-02-06] (Sony Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2016-06-23] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ATLauncher] => "C:\Program Files\McAfeeEx\McAfeeAntiTheft\ATLauncher.exe" /createshortcuts:1
HKLM-x32\...\Run: [ATUninstallIcon] => "C:\Program Files\McAfeeEx\McAfeeAntiTheft\ATLauncher.exe" /createuninstallentry:1
HKLM-x32\...\Run: [Intel AppUp(R) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2013-02-19] (Intel Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-07-20] (LogMeIn Inc.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [204560 2016-08-18] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6709008 2016-07-28] (AVG Technologies CZ, s.r.o.)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\...\Run: [BackgroundContainerV3] => C:\Users\Karel\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll [300352 2016-04-25] (ClientConnect Ltd.)
ShellIconOverlayIdentifiers: [MyOverlayIcon] -> {B41B3408-923F-4B8B-85F2-146C509FA18C} => No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

AutoConfigURL: [S-1-5-21-2084845001-1273888814-4204138584-1001] => hxxp://stoppblock.org/wpad.dat?2bbf59133961629e667824c7015a91ce14240587
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.222.100.1 8.8.8.8
Tcpip\..\Interfaces\{2FC8D9BA-EC3D-4DCF-8630-C45A94E7BC58}: [DhcpNameServer] 10.222.100.1 8.8.8.8
ManualProxies: 0hxxp://stoppblock.org/wpad.dat?2bbf59133961629e667824c7015a91ce14240587

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.cz/
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com/?pc=SEJB
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu
SearchScopes: HKLM-x32 -> DefaultScope {3B6D5A20-2331-412E-B136-F5ED492CB497} URL =
SearchScopes: HKU\S-1-5-21-2084845001-1273888814-4204138584-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2084845001-1273888814-4204138584-1001 -> {02FD0233-06BE-490D-B8F9-3F84459D62AD} URL = hxxp://rover.ebay.com/rover/1/14361-113527-36183-9/4?mpre=hxxp://search.eim.ebay.cz/?oemInLn=ieSrch-&kw={searchTerms}
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-19] (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-19] (Oracle Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\Sony\MSS\3.8.141\McAfeeMSS_IE.dll [2014-01-16] (McAfee, Inc.)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-19] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-19] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-12-19] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2013-12-19] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.20 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-04-02] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-04-02] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2013-12-19] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-12-19] (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin -> C:\Program Files\Sony\MSS\3.8.141\npMcAfeeMss.dll [2014-01-16] (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2012-10-12] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-06-23] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2084845001-1273888814-4204138584-1001: intel.com/AppUp -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll [2013-02-19] (Intel)
FF Plugin HKU\S-1-5-21-2084845001-1273888814-4204138584-1001: intel.com/AppUpx64 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll [2013-02-19] (Intel)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.com/
CHR DefaultSearchURL: Default -> hxxp://www.nicesearches.com/search.php?type=ds ... earchTerms}
CHR DefaultSearchKeyword: Default -> nice
CHR Profile: C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-09]
CHR Extension: (Disk Google) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-28]
CHR Extension: (YouTube) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-27]
CHR Extension: (Vyhledávání Google) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-06]
CHR Extension: (Gmail) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR Extension: (Chrome Media Router) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-02]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [674552 2016-07-28] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5267456 2016-07-28] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1097488 2016-08-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [760024 2016-07-28] (AVG Technologies CZ, s.r.o.)
R2 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [101536 2013-03-15] (Intel)
R2 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [413336 2015-08-26] ()
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2554376 2016-07-20] (LogMeIn Inc.)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-04-02] (Intel Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [156104 2013-05-16] (Intel Corporation)
R2 iSafeService; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [118048 2016-05-23] (Elex do Brasil Participações Ltda)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [196584 2013-06-27] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-04-02] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-07-20] (LogMeIn, Inc.)
S3 McComponentHostServiceSony; C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.)
R2 MSSQL$SQL_SMSGALAXY; c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQL_SMSGALAXY\MSSQL\Binn\sqlservr.exe [61913952 2010-04-03] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-02] ()
S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [629336 2013-09-28] (Sony Corporation)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [483864 2013-02-06] (Sony Corporation)
S4 SQLAgent$SQL_SMSGALAXY; c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQL_SMSGALAXY\MSSQL\Binn\SQLAGENT.EXE [428384 2010-04-03] (Microsoft Corporation)
S3 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [413336 2015-08-26] ()
S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2013-01-06] (Sony Corporation)
S3 vmicvss; C:\Windows\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1653272 2015-07-31] (Sony Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-02] (Intel® Corporation)
S2 BagbinP; "C:\ProgramData\Bagbin\Bagbin.exe" [X]
S3 Fecyfahetain Nodifier; "C:\Program Files (x86)\Atogoght\Fecyfahetain\fecyfahetainNdfbotighmerjither.exe" {511AFE50-C2D8-48D5-87EB-B2BCFEC5572C} [X]
S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21632 2016-01-07] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [314112 2016-06-30] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [261376 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-06-01] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [261888 2016-07-19] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [313088 2016-07-20] (AVG Technologies CZ, s.r.o.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1366328 2013-03-28] (Motorola Solutions, Inc.)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [146856 2013-06-04] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [21928 2013-06-04] (Windows (R) Win 7 DDK provider)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2016-07-20] (LogMeIn Inc.)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [116168 2013-05-16] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21920 2013-06-27] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21920 2013-06-27] ()
R3 INETMON; C:\Windows\System32\Drivers\INETMON.sys [29088 2013-06-12] ()
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [97368 2013-04-03] (Intel Corporation)
R1 iSafeKrnl; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [262344 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlKit; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [110112 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlMon; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [52440 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [103904 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeNetFilter; C:\Windows\System32\DRIVERS\iSafeNetFilter.sys [52392 2016-05-19] (Elex do Brasil Participações Ltda)
R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-06-12] ()
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-04-02] (Intel Corporation)
S3 Netaapl; C:\Windows\system32\DRIVERS\netaapl64.sys [23040 2014-06-10] (Apple Inc.) [File not signed]
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-25] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [3646432 2013-08-01] (Intel Corporation)
R3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [29352 2015-10-19] ()
S3 semav6thermal64ro; C:\Windows\system32\drivers\semav6thermal64ro.sys [13792 2015-08-04] ()
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-05-27] (Synaptics Incorporated)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [207256 2013-03-15] (Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-01-01 12:43 - 2020-01-01 12:43 - 00000983 _____ C:\Users\Karel\Desktop\Pošta a kancelář.lnk
2020-01-01 12:43 - 2020-01-01 12:43 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Posta
2020-01-01 12:43 - 2020-01-01 12:43 - 00000000 ____D C:\Users\Karel\AppData\Local\Programs
2020-01-01 12:43 - 2020-01-01 12:43 - 00000000 ____D C:\Program Files (x86)\Pošta 3
2020-01-01 12:43 - 2014-12-17 16:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pošta a kancelář 3
2016-08-28 15:28 - 2016-08-28 15:28 - 00026475 _____ C:\Users\Karel\Desktop\FRST.txt
2016-08-28 15:28 - 2016-08-28 15:28 - 00000000 ____D C:\FRST
2016-08-28 15:27 - 2016-08-28 15:27 - 00029696 _____ C:\Users\Karel\AppData\Local\MSGBOX.EXE
2016-08-28 15:27 - 2016-08-28 15:27 - 00015327 _____ C:\Users\Karel\Desktop\LM.bat
2016-08-28 15:24 - 2016-08-28 15:24 - 02396672 _____ (Farbar) C:\Users\Karel\Desktop\FRST64.exe
2016-08-28 15:24 - 2016-08-28 15:24 - 00112640 _____ (forum.viry.cz) C:\Users\Karel\Desktop\FRSTLauncher.exe
2016-08-28 15:20 - 2016-08-28 15:20 - 00388608 _____ (Trend Micro Inc.) C:\Users\Karel\Desktop\hijackthis.exe
2016-08-28 11:03 - 2016-05-19 08:42 - 00052392 _____ (Elex do Brasil Participações Ltda) C:\WINDOWS\system32\Drivers\iSafeNetFilter.sys
2016-08-28 10:56 - 2016-08-28 11:01 - 00000000 ____D C:\AdwCleaner
2016-08-28 10:56 - 2016-08-28 10:56 - 03826240 _____ C:\Users\Karel\Desktop\adwcleaner_6.010.exe
2016-08-28 10:55 - 2016-08-28 10:55 - 03784256 _____ C:\Users\Karel\Desktop\adwcleaner.exe
2016-08-28 10:43 - 2016-08-28 10:43 - 00001063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-08-28 10:39 - 2016-08-28 10:43 - 00003838 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1472373575
2016-08-28 10:39 - 2016-08-28 10:43 - 00000000 ____D C:\Program Files (x86)\Opera
2016-08-28 10:39 - 2016-08-28 10:39 - 00001151 _____ C:\Users\Public\Desktop\Opera.lnk
2016-08-28 10:39 - 2016-08-28 10:39 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Opera Software
2016-08-28 10:39 - 2016-08-28 10:39 - 00000000 ____D C:\Users\Karel\AppData\Local\Opera Software
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ___HD C:\$AVG
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ____D C:\Users\Karel\AppData\Roaming\TuneUp Software
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ____D C:\Users\Karel\AppData\Roaming\AVG
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ____D C:\Program Files\Common Files\AV
2016-08-28 10:31 - 2016-08-28 13:42 - 00000000 ____D C:\ProgramData\MFAData
2016-08-28 10:31 - 2016-08-28 10:31 - 00000000 ____D C:\Users\Karel\AppData\Local\MFAData
2016-08-28 10:30 - 2016-08-28 10:30 - 00001004 _____ C:\Users\Public\Desktop\AVG.lnk
2016-08-28 10:30 - 2016-08-28 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-08-28 10:29 - 2016-08-28 10:32 - 00000000 ____D C:\Program Files (x86)\AVG
2016-08-28 10:28 - 2016-08-28 10:33 - 00000000 ____D C:\ProgramData\Avg
2016-08-28 10:27 - 2016-08-28 10:33 - 00000000 ____D C:\Users\Karel\AppData\Local\Avg
2016-08-28 10:27 - 2016-08-28 10:31 - 00000000 ____D C:\Users\Karel\AppData\Local\AvgSetupLog
2016-08-28 10:18 - 2016-08-28 10:19 - 00000000 ____D C:\totalcmd
2016-08-28 10:18 - 2016-08-28 10:18 - 00000640 _____ C:\Users\Karel\Desktop\Total Commander.lnk
2016-08-28 10:18 - 2016-08-28 10:18 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2016-08-28 10:18 - 2016-08-28 10:18 - 00000000 ____D C:\Users\Karel\AppData\Roaming\GHISLER
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\UC.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\RAR.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\PKZIP.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\PKUNZIP.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\LHA.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\ARJ.PIF
2016-08-28 10:17 - 2016-08-28 10:17 - 02895464 _____ (AVG Technologies) C:\Users\Karel\Desktop\AVG_Protection_Free_1143.exe
2016-08-28 10:17 - 2016-08-28 10:17 - 00000000 _____ C:\Users\Karel\Desktop\Opera_39.0.2256.43_Setup.exe.0mc1831.partial
2016-08-26 13:23 - 2016-08-28 10:24 - 00000001 _____ C:\WINDOWS\SysWOW64\en.html
2016-08-26 11:07 - 2016-08-26 11:07 - 00070348 _____ C:\Users\Karel\Desktop\Modelace Kašparovi.pdf
2016-08-26 10:56 - 2016-08-26 10:56 - 00000000 ____D C:\Users\Karel\.oracle_jre_usage
2016-08-26 10:55 - 2016-08-26 10:55 - 00000779 _____ C:\Users\Public\Desktop\NN eKalkulačka SMS.lnk
2016-08-26 10:50 - 2016-08-26 10:51 - 227827272 _____ (NN pojistovna ) C:\Users\Karel\Downloads\setup-SMS-237.exe
2016-08-26 09:24 - 2016-08-26 09:24 - 00062958 _____ C:\Users\Karel\Downloads\Zal_faktura_26130093.pdf
2016-08-26 09:23 - 2016-08-26 09:23 - 00062958 _____ C:\Users\Karel\Downloads\Zal_faktura_26130092.pdf
2016-08-26 09:22 - 2016-08-26 09:22 - 00062958 _____ C:\Users\Karel\Downloads\Zal_faktura_26130091 (1).pdf
2016-08-25 14:02 - 2016-08-25 14:03 - 00019221 _____ C:\Users\Karel\Documents\7000112159_stav.pdf
2016-08-25 10:01 - 2016-08-25 10:01 - 00804774 _____ C:\Users\Karel\Downloads\KodisSkenPage.tif
2016-08-24 18:34 - 2016-08-24 18:34 - 00035662 _____ C:\Users\Karel\Desktop\RH_ELAN.pdf
2016-08-24 18:12 - 2016-08-24 18:12 - 08089083 _____ C:\Users\Karel\Desktop\fotky - 201608241741351.zip
2016-08-24 17:45 - 2016-08-24 17:45 - 00074398 _____ C:\Users\Karel\Desktop\SKEN_PETRZELA_CPP.pdf
2016-08-24 17:44 - 2016-08-24 17:44 - 00071889 _____ C:\Users\Karel\Downloads\SKMBT_C22016080515060.pdf
2016-08-24 14:05 - 2016-08-24 14:05 - 00850599 _____ C:\Users\Karel\Downloads\SKMBT_C224e16082407370.pdf
2016-08-24 10:36 - 2016-08-24 10:36 - 00663610 _____ C:\Users\Karel\Desktop\Struktura_PREZENTACE.pptx
2016-08-24 10:36 - 2016-08-24 10:36 - 00020556 _____ C:\Users\Karel\Downloads\Report ČERVEN 2016.xlsx
2016-08-24 10:35 - 2016-08-24 10:35 - 00660741 _____ C:\Users\Karel\Downloads\Struktura.pptx
2016-08-24 10:05 - 2016-08-24 10:05 - 00025334 _____ C:\Users\Karel\Downloads\Hodis Karel (2).xlsx
2016-08-23 09:21 - 2016-08-23 09:21 - 01093538 _____ C:\Users\Karel\Downloads\IMG_20160822_0001.pdf
2016-08-23 09:19 - 2016-08-23 09:19 - 00531968 _____ C:\Users\Karel\Downloads\report Červenec 2016.xls
2016-08-22 13:38 - 2016-08-22 13:38 - 00035711 _____ C:\Users\Karel\Downloads\dotaznik radka.pdf
2016-08-21 11:05 - 2016-08-21 11:05 - 00000000 ____D C:\Users\Public\Documents\chrome
2016-08-18 13:09 - 2016-08-28 10:34 - 00000000 ____D C:\ProgramData\Bagbin
2016-08-18 13:08 - 2016-08-18 13:08 - 00000000 ____D C:\Users\Karel\AppData\Local\Bagbin
2016-08-18 12:48 - 2016-08-28 11:01 - 00000000 ____D C:\WINDOWS\system32\log
2016-08-18 12:48 - 2016-08-18 12:48 - 00003544 _____ C:\WINDOWS\System32\Tasks\BagbinUpdateTaskMachineCore
2016-08-18 12:48 - 2016-08-18 12:48 - 00003458 _____ C:\WINDOWS\System32\Tasks\BagbinUpdateTaskMachineUA
2016-08-18 12:48 - 2016-08-18 12:48 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Elex-tech
2016-08-18 12:48 - 2016-08-18 12:48 - 00000000 ____D C:\Program Files (x86)\Elex-tech
2016-08-18 12:48 - 2016-08-18 12:48 - 00000000 ____D C:\Program Files (x86)\Bagbin
2016-08-18 12:47 - 2016-08-28 10:27 - 00000000 _____ C:\Users\Public\Documents\report1.dat
2016-08-18 12:47 - 2016-08-24 13:53 - 00000000 _____ C:\Users\Public\Documents\report.dat
2016-08-18 10:17 - 2016-08-18 10:17 - 00124032 _____ C:\Users\Karel\Downloads\8440747510.pdf
2016-08-18 09:49 - 2016-08-18 09:49 - 01134066 _____ C:\Users\Karel\Desktop\dotaznik.pdf
2016-08-17 13:37 - 2016-08-17 13:37 - 00068270 _____ C:\Users\Karel\Downloads\SKMBT_C22016081614570.pdf
2016-08-17 13:36 - 2016-08-17 13:36 - 00060066 _____ C:\Users\Karel\Downloads\SKMBT_C22016081614580.pdf
2016-08-17 09:41 - 2016-08-17 09:41 - 00019091 _____ C:\Users\Karel\Documents\7006869446_stav.pdf
2016-08-17 09:38 - 2016-08-17 09:38 - 00017895 _____ C:\Users\Karel\Documents\7008351034_stav.pdf
2016-08-17 08:03 - 2016-08-17 08:03 - 00711233 _____ C:\Users\Karel\Downloads\modelace musilovi FLEXI.pdf
2016-08-15 20:57 - 2016-08-15 20:57 - 00657327 _____ C:\Users\Karel\Downloads\Kanceláře_2Q2016_mimo_ADMIN (1).xlsx
2016-08-15 14:39 - 2016-08-28 10:33 - 00000000 ____D C:\Users\Karel\AppData\Roaming\setup1
2016-08-15 14:39 - 2016-08-15 14:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2016-08-15 14:39 - 2016-08-15 14:39 - 00000000 ____D C:\Program Files (x86)\cohrxx1n
2016-08-15 13:58 - 2016-08-15 13:58 - 00094189 _____ C:\Users\Karel\Downloads\Q-CZ-1629002-0.pdf
2016-08-15 10:06 - 2016-08-15 10:06 - 00010171 _____ C:\Users\Karel\Downloads\Sešit1 (2).xlsx
2016-08-15 08:04 - 2016-08-15 08:04 - 00488449 _____ C:\Users\Karel\Downloads\riz.prof. tes.pdf
2016-08-15 08:04 - 2016-08-15 08:04 - 00008829 _____ C:\Users\Karel\Downloads\Sešit1 (1).xlsx
2016-08-15 08:03 - 2016-08-15 08:03 - 00048837 _____ C:\Users\Karel\Downloads\PČS výpověd.pdf
2016-08-15 08:02 - 2016-08-15 08:02 - 00045520 _____ C:\Users\Karel\Downloads\infolist.pdf
2016-08-15 08:00 - 2016-08-15 08:00 - 01169939 _____ C:\Users\Karel\Downloads\čpp tes.pdf
2016-08-14 21:45 - 2016-08-14 21:45 - 00180942 _____ C:\Users\Karel\Downloads\Neoral_KNZ_GL2_6325216798_smlouva_160814_214505.pdf
2016-08-14 21:16 - 2016-08-14 21:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-08-14 21:15 - 2016-08-14 21:15 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-08-14 21:15 - 2016-08-14 21:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-08-14 18:30 - 2016-08-14 18:30 - 00010230 _____ C:\Users\Karel\Downloads\pan Martin Neoral HAV_upravené.xlsx
2016-08-14 18:08 - 2016-08-14 18:08 - 00011469 _____ C:\Users\Karel\Downloads\Třebíčsko.xlsx
2016-08-14 17:56 - 2016-08-14 17:56 - 00019758 _____ C:\Users\Karel\Documents\7009164898_stav.pdf
2016-08-12 15:19 - 2016-08-12 15:19 - 00010307 _____ C:\Users\Karel\Downloads\Sešit1.xlsx
2016-08-12 14:02 - 2016-08-12 14:02 - 04671488 _____ C:\Users\Karel\Downloads\Brother_Hl-11_Driver (1).iso
2016-08-12 14:00 - 2016-08-12 14:00 - 00000000 ___RD C:\Users\Karel\AppData\Roaming\Brother
2016-08-12 14:00 - 2016-08-12 14:00 - 00000000 ____D C:\Users\Karel\AppData\LocalLow\Brother
2016-08-12 13:18 - 2016-08-12 13:18 - 00000000 ____D C:\ProgramData\AVAST Software
2016-08-12 13:17 - 2016-08-28 10:52 - 00000000 ____D C:\Program Files (x86)\Atogoght
2016-08-12 13:17 - 2016-08-18 13:08 - 00000000 ____D C:\Users\Karel\AppData\Local\Qopusreebesy
2016-08-11 11:44 - 2016-08-11 11:44 - 00062958 _____ C:\Users\Karel\Downloads\Zal_faktura_26130091.pdf
2016-08-11 11:31 - 2016-08-11 11:31 - 00010230 _____ C:\Users\Karel\Desktop\pan Martin Neoral HAV_upravené.xlsx
2016-08-11 11:29 - 2016-08-11 11:29 - 00011423 _____ C:\Users\Karel\Downloads\pan Martin Neoral POV_HAV.xlsx
2016-08-11 11:10 - 2016-08-11 11:10 - 00081440 _____ C:\Users\Karel\Downloads\PS_8753328015_0425955578.pdf
2016-08-11 10:55 - 2016-06-18 22:06 - 00590688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-08-11 10:55 - 2016-06-18 22:06 - 00072408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2016-08-11 10:55 - 2016-06-11 21:52 - 00379232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-08-11 10:55 - 2016-06-11 21:52 - 00057184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-08-11 10:55 - 2016-06-11 20:05 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpresult.exe
2016-08-11 10:55 - 2016-06-11 19:14 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpresult.exe
2016-08-11 10:55 - 2016-06-11 18:50 - 00987136 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-08-11 10:55 - 2016-06-11 18:46 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll
2016-08-11 10:55 - 2016-06-11 18:44 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-08-11 10:55 - 2016-06-11 18:37 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-08-11 10:55 - 2016-06-11 18:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-08-11 10:55 - 2016-06-11 18:20 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2016-08-11 10:55 - 2016-06-11 18:16 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-08-11 10:55 - 2016-06-11 05:44 - 00107984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-08-11 10:55 - 2016-06-11 05:44 - 00091416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2016-08-11 10:55 - 2016-06-10 23:34 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsp.sys
2016-08-11 10:55 - 2016-06-10 22:07 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-08-11 10:55 - 2016-06-10 22:03 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-08-11 10:55 - 2016-06-10 21:04 - 03547136 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-08-11 10:55 - 2016-06-10 20:11 - 06521800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-08-11 10:55 - 2016-06-10 20:11 - 01487992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-08-11 10:55 - 2016-06-10 20:11 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-08-11 10:55 - 2016-06-10 20:11 - 00125024 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptxml.dll
2016-08-11 10:55 - 2016-06-10 20:10 - 00099136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptxml.dll
2016-08-11 10:55 - 2016-06-10 20:07 - 03273728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-08-11 10:55 - 2016-06-10 20:04 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-08-11 10:55 - 2016-06-09 21:32 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2016-08-11 10:55 - 2016-06-09 20:18 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
2016-08-11 10:55 - 2016-06-07 20:10 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\hbaapi.dll
2016-08-11 10:55 - 2016-06-07 19:13 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hbaapi.dll
2016-08-11 10:55 - 2016-06-04 02:38 - 01613528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-08-11 10:55 - 2016-06-04 02:37 - 01970968 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-08-11 10:55 - 2016-05-29 09:08 - 22361344 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-08-11 10:55 - 2016-05-28 20:31 - 19788688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-08-11 10:55 - 2016-05-18 23:54 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\certenc.dll
2016-08-11 10:55 - 2016-05-18 23:15 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certenc.dll
2016-08-11 10:55 - 2016-05-18 22:56 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2016-08-11 10:55 - 2016-05-18 22:33 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2016-08-11 10:55 - 2016-05-18 22:28 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-08-11 10:55 - 2016-05-18 22:16 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-08-11 10:55 - 2016-05-14 22:26 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-08-11 10:55 - 2016-05-14 07:19 - 01134768 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-08-11 10:55 - 2016-05-14 01:08 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-08-11 10:55 - 2016-05-14 01:08 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-08-11 10:55 - 2016-05-14 01:08 - 00032512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2016-08-11 10:55 - 2016-05-14 00:24 - 00862720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-08-11 10:55 - 2016-05-13 23:42 - 03667968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-08-11 10:55 - 2016-05-13 23:29 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2016-08-11 10:55 - 2016-05-13 23:27 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2016-08-11 10:55 - 2016-05-13 23:27 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2016-08-11 10:55 - 2016-05-13 23:26 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2016-08-11 10:55 - 2016-05-13 23:26 - 00897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-08-11 10:55 - 2016-05-13 23:18 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2016-08-11 10:55 - 2016-05-13 23:16 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-08-11 10:55 - 2016-05-13 23:16 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2016-08-11 10:55 - 2016-05-12 20:36 - 00034600 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
2016-08-11 10:55 - 2016-05-12 19:39 - 00030984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe
2016-08-11 10:55 - 2016-05-06 23:59 - 00331608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2016-08-11 10:55 - 2016-05-06 19:13 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-08-11 10:55 - 2016-05-05 20:28 - 01661072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-08-11 10:55 - 2016-05-05 19:39 - 01212256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-08-11 10:55 - 2016-05-05 19:18 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2016-08-11 10:55 - 2016-05-05 19:02 - 03320832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-08-11 10:55 - 2016-05-05 18:37 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2016-08-11 10:55 - 2016-05-05 18:34 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-08-11 10:55 - 2016-05-05 18:29 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-08-11 10:55 - 2016-05-05 17:28 - 02778624 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-08-11 10:55 - 2016-04-16 15:56 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-08-11 10:55 - 2016-04-10 07:35 - 00551256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2016-08-11 10:55 - 2016-04-10 00:15 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-08-11 10:55 - 2016-04-10 00:14 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Geolocation.dll
2016-08-11 10:55 - 2016-04-10 00:10 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2016-08-11 10:55 - 2016-04-10 00:09 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-08-11 10:55 - 2016-04-10 00:02 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2016-08-11 10:55 - 2016-04-09 23:59 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Geolocation.dll
2016-08-11 10:55 - 2016-04-09 23:59 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-08-11 10:55 - 2016-04-09 23:56 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-08-11 10:55 - 2016-04-09 23:55 - 00881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-08-11 10:55 - 2016-04-09 23:52 - 00281088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2016-08-11 10:55 - 2016-04-07 18:06 - 00927744 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-08-11 10:55 - 2016-04-06 23:21 - 00114528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys
2016-08-11 10:55 - 2016-04-06 20:20 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2016-08-11 10:55 - 2016-04-06 20:20 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-08-11 10:55 - 2016-04-06 20:17 - 18825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-11 10:55 - 2016-04-06 18:25 - 15158272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-08-11 10:55 - 2016-04-06 00:37 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2016-08-11 10:55 - 2016-04-02 15:58 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-08-11 10:55 - 2016-04-01 19:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-08-11 10:55 - 2016-04-01 18:53 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-08-11 10:55 - 2016-04-01 18:50 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-08-11 10:55 - 2016-02-04 18:57 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-08-11 10:55 - 2016-02-04 18:49 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2016-08-11 10:55 - 2016-02-04 18:39 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2016-08-11 10:54 - 2016-05-13 23:30 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2016-08-11 10:54 - 2016-05-13 23:18 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2016-08-11 10:54 - 2016-05-05 17:16 - 02464768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-08-11 10:54 - 2016-04-02 16:09 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfg.exe
2016-08-11 10:43 - 2016-08-11 10:43 - 01119100 _____ C:\Users\Karel\Downloads\IMG_20160810_0002.pdf
2016-08-11 10:42 - 2016-08-11 10:42 - 01131705 _____ C:\Users\Karel\Downloads\IMG_20160810_0001.pdf
2016-08-11 10:00 - 2016-08-11 10:00 - 07702513 _____ C:\Users\Karel\Downloads\h-350-14[1] HAV (1).pdf
2016-08-11 10:00 - 2016-08-11 10:00 - 00024972 _____ C:\Users\Karel\Downloads\Gajdusek_KNZ_GL2_6325180094_ZKSlozenka_160810_112217 (1).pdf
2016-08-10 21:33 - 2016-07-08 16:32 - 01753600 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-08-10 21:33 - 2016-07-08 16:25 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-08-10 21:33 - 2016-07-08 16:22 - 01445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-08-10 21:33 - 2016-07-08 16:18 - 04169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-08-10 21:33 - 2016-07-08 00:33 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-08-10 21:33 - 2016-07-07 23:53 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-08-10 21:33 - 2016-07-07 22:06 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-08-10 21:33 - 2016-05-19 01:18 - 00563024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-08-10 21:33 - 2016-05-19 01:18 - 00397232 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-08-10 21:33 - 2016-05-19 01:16 - 00178016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-08-10 21:33 - 2016-05-19 00:28 - 00340880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-08-10 21:32 - 2016-08-02 08:54 - 25808384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-08-10 21:32 - 2016-08-02 08:32 - 02894336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-08-10 21:32 - 2016-08-02 08:20 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-08-10 21:32 - 2016-08-02 08:18 - 06047744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-08-10 21:32 - 2016-08-02 07:55 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-08-10 21:32 - 2016-08-02 07:54 - 20343808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-08-10 21:32 - 2016-08-02 07:51 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-08-10 21:32 - 2016-08-02 07:47 - 02286592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-08-10 21:32 - 2016-08-02 07:46 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-08-10 21:32 - 2016-08-02 07:40 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-08-10 21:32 - 2016-08-02 07:39 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-08-10 21:32 - 2016-08-02 07:38 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-08-10 21:32 - 2016-08-02 07:38 - 00724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-08-10 21:32 - 2016-08-02 07:36 - 02131456 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-08-10 21:32 - 2016-08-02 07:28 - 15412224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-08-10 21:32 - 2016-08-02 07:23 - 02868224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-08-10 21:32 - 2016-08-02 07:21 - 04608000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-08-10 21:32 - 2016-08-02 07:20 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-08-10 21:32 - 2016-08-02 07:15 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-08-10 21:32 - 2016-08-02 07:14 - 02055680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-08-10 21:32 - 2016-08-02 07:11 - 13808128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-08-10 21:32 - 2016-08-02 07:10 - 01550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-08-10 21:32 - 2016-08-02 06:56 - 02393088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-08-10 21:32 - 2016-08-02 06:53 - 01316352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-08-10 21:32 - 2016-07-06 16:26 - 07793152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-10 21:32 - 2016-07-06 16:26 - 07075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2016-08-10 21:32 - 2016-07-06 16:23 - 05270016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2016-08-10 21:32 - 2016-07-06 16:21 - 05265920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-08-10 21:31 - 2016-08-02 08:31 - 00572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-08-10 21:31 - 2016-08-02 08:18 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-08-10 21:31 - 2016-08-02 07:41 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-08-10 21:31 - 2016-08-02 07:15 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-08-10 21:31 - 2016-08-02 06:59 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-08-10 21:31 - 2016-08-02 06:51 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-08-10 21:30 - 2016-07-09 02:09 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-08-10 21:30 - 2016-07-09 02:08 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-08-10 21:30 - 2016-07-08 16:19 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-08-10 21:30 - 2016-07-08 16:17 - 00696832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-08-10 15:06 - 2016-07-12 16:08 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-08-10 11:34 - 2016-08-10 11:34 - 00289949 _____ C:\Users\Karel\Downloads\Gajdusek_KNZ_GL2_6325180094_smlouva_160810_112217.pdf
2016-08-10 11:34 - 2016-08-10 11:34 - 00024972 _____ C:\Users\Karel\Downloads\Gajdusek_KNZ_GL2_6325180094_ZKSlozenka_160810_112217.pdf
2016-08-10 10:30 - 2016-08-10 10:30 - 07702513 _____ C:\Users\Karel\Downloads\h-350-14[1] HAV.pdf
2016-08-10 10:05 - 2016-08-10 10:05 - 00174386 _____ C:\Users\Karel\Downloads\Gajdusek_KNZ_GL2__smlouva_160810_091119.pdf
2016-08-08 12:09 - 2016-08-08 12:19 - 00011423 _____ C:\Users\Karel\Desktop\pan Martin Neoral POV_HAV.xlsx
2016-08-08 11:59 - 2016-08-08 11:59 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AXA Studio
2016-08-07 11:19 - 2016-08-07 11:19 - 00659375 _____ C:\Users\Karel\Downloads\Kanceláře_2Q2016_mimo_ADMIN.xlsx
2016-08-05 09:36 - 2016-08-05 09:36 - 00009459 _____ C:\Users\Karel\Downloads\seznam zonky.xlsx
2016-08-04 13:35 - 2016-08-04 13:35 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-08-04 13:35 - 2016-08-04 13:35 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-08-02 07:33 - 2016-08-03 17:26 - 00000000 ____D C:\Users\Default\AppData\Local\LogMeIn Hamachi
2016-08-02 07:33 - 2016-08-03 17:26 - 00000000 ____D C:\Users\Default User\AppData\Local\LogMeIn Hamachi
2016-08-02 07:33 - 2016-08-02 07:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2016-08-02 07:33 - 2016-08-02 07:33 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2016-07-29 13:48 - 2016-07-29 13:48 - 00017808 _____ C:\Users\Karel\Downloads\horný (1).xlsx

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-01-31 13:41 - 2012-07-26 10:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent
2016-08-28 15:23 - 2014-06-05 18:17 - 00000000 ____D C:\Users\Karel\AppData\Roaming\ClassicShell
2016-08-28 15:17 - 2014-09-24 18:23 - 01929746 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-28 15:17 - 2014-09-24 17:39 - 00805236 _____ C:\WINDOWS\system32\perfh005.dat
2016-08-28 15:17 - 2014-09-24 17:39 - 00176252 _____ C:\WINDOWS\system32\perfc005.dat
2016-08-28 15:17 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf
2016-08-28 15:16 - 2016-06-12 15:33 - 00000000 ____D C:\Users\Karel\AppData\Local\LogMeIn Hamachi
2016-08-28 12:56 - 2014-06-03 12:05 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2084845001-1273888814-4204138584-1001
2016-08-28 11:08 - 2014-12-17 16:59 - 00000000 ___RD C:\Users\Karel\OneDrive
2016-08-28 11:07 - 2015-08-30 21:41 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838.job
2016-08-28 11:07 - 2015-05-18 19:36 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0919123736844.job
2016-08-28 11:07 - 2014-06-24 09:22 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cf8f7d1085d091.job
2016-08-28 11:07 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-08-28 11:05 - 2013-12-19 19:26 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2016-08-28 11:02 - 2016-02-02 22:51 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c.job
2016-08-28 10:57 - 2014-06-04 07:17 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-28 10:56 - 2016-07-19 13:26 - 00056080 _____ C:\Users\Karel\Downloads\3D346C7884D5.docm
2016-08-28 10:40 - 2016-05-30 13:07 - 00000000 ____D C:\WePOS
2016-08-28 10:37 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2016-08-28 10:34 - 2013-08-22 15:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-08-28 10:33 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-08-28 10:31 - 2015-04-13 10:55 - 00000000 ____D C:\Users\Karel\Desktop\OLOMOUC_13.4.2015_PŘETAH
2016-08-28 10:24 - 2013-12-19 19:12 - 00000000 ____D C:\ProgramData\McAfee
2016-08-28 10:24 - 2013-12-19 19:12 - 00000000 ____D C:\Program Files\Common Files\mcafee
2016-08-28 10:24 - 2013-08-22 16:44 - 00517128 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-08-28 10:21 - 2016-06-21 22:45 - 00000000 ____D C:\Users\Karel\Desktop\Nabídka spolupráce Petr Kozák OVB
2016-08-28 10:13 - 2014-12-23 10:04 - 00000000 ____D C:\Users\HomeGroupUser$
2016-08-28 10:13 - 2014-06-16 14:44 - 00000000 ____D C:\Users\Guest
2016-08-28 10:13 - 2014-06-16 14:44 - 00000000 ____D C:\Users\Administrator
2016-08-28 10:13 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated
2016-08-28 10:10 - 2014-07-13 16:44 - 00000000 ____D C:\Einstein
2016-08-28 09:50 - 2014-12-17 17:23 - 00003954 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{ECC12E7E-264B-49B9-89E8-460A465966FD}
2016-08-26 14:06 - 2014-11-08 22:19 - 00000000 ____D C:\GALAXY
2016-08-26 12:37 - 2014-12-18 22:42 - 05754880 ___SH C:\Users\Karel\Downloads\Thumbs.db
2016-08-26 12:37 - 2014-12-17 23:34 - 03194880 ___SH C:\Users\Karel\Desktop\Thumbs.db
2016-08-26 10:56 - 2014-12-17 16:16 - 00000000 ____D C:\Users\Karel
2016-08-26 10:55 - 2016-01-08 13:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NN eKalkulačka SMS
2016-08-26 09:23 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-08-25 13:58 - 2014-12-17 17:17 - 00000000 ____D C:\Users\Karel\AppData\Local\Deployment
2016-08-25 13:46 - 2014-06-18 14:35 - 00000000 ____D C:\ProgramData\firebird
2016-08-25 12:53 - 2014-06-09 18:38 - 00000000 ____D C:\Users\Karel\Desktop\STARE PC
2016-08-21 20:05 - 2016-02-04 14:28 - 00000000 ____D C:\Users\Karel\Desktop\Kontakty 2016
2016-08-21 11:20 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-08-18 13:08 - 2014-06-04 07:18 - 00002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-08-18 13:08 - 2014-06-04 07:18 - 00002195 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-08-18 12:48 - 2014-12-17 16:58 - 00001636 _____ C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-08-15 14:06 - 2014-06-09 18:39 - 00000000 ____D C:\Users\Karel\Desktop\Ostatní
2016-08-14 21:55 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2016-08-14 21:17 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2016-08-14 17:24 - 2016-05-15 20:51 - 00000000 ____D C:\Users\Karel\Desktop\Radek Karas
2016-08-14 17:24 - 2016-01-19 20:09 - 00000000 ____D C:\Users\Karel\Desktop\PORADY 2016
2016-08-12 11:08 - 2014-06-03 22:40 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-08-12 11:00 - 2014-06-03 22:40 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-08-11 13:23 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-08-11 13:23 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-08-11 09:57 - 2015-03-19 13:49 - 00000000 ____D C:\GALAXYDATA
2016-08-10 21:39 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-08-08 11:59 - 2014-08-28 10:34 - 00009395 _____ C:\Users\Karel\Documents\AxaStudio_Log.txt
2016-08-08 11:59 - 2014-06-17 11:59 - 00000316 _____ C:\Users\Karel\Desktop\AXA Studio.appref-ms
2016-08-08 11:59 - 2014-06-13 08:31 - 00000000 ____D C:\Temp
2016-08-04 13:35 - 2014-08-26 18:58 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-08-04 13:34 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-07-29 13:57 - 2016-02-02 22:51 - 00003942 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c
2016-07-29 13:57 - 2015-08-30 21:41 - 00003706 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838

==================== Files in the root of some directories =======

2016-08-28 15:27 - 2016-08-28 15:27 - 0029696 _____ () C:\Users\Karel\AppData\Local\MSGBOX.EXE

Some files in TEMP:
====================
C:\Users\Karel\AppData\Local\Temp\0i_ad-mg.dll
C:\Users\Karel\AppData\Local\Temp\9mglga6c.dll
C:\Users\Karel\AppData\Local\Temp\ctbKGpyImt.exe
C:\Users\Karel\AppData\Local\Temp\gomhnlvy.dll
C:\Users\Karel\AppData\Local\Temp\gykrduwf.dll
C:\Users\Karel\AppData\Local\Temp\libeay32.dll
C:\Users\Karel\AppData\Local\Temp\msvcr120.dll
C:\Users\Karel\AppData\Local\Temp\pebpntum.dll
C:\Users\Karel\AppData\Local\Temp\q-v-fhz1.dll
C:\Users\Karel\AppData\Local\Temp\q7lzzrvs.dll
C:\Users\Karel\AppData\Local\Temp\qchigf6y.dll
C:\Users\Karel\AppData\Local\Temp\rgdgsgyn.dll
C:\Users\Karel\AppData\Local\Temp\slkjuvfe.dll
C:\Users\Karel\AppData\Local\Temp\sqlite3.dll
C:\Users\Karel\AppData\Local\Temp\utcaapn7.dll
C:\Users\Karel\AppData\Local\Temp\vkvrij5b.dll
C:\Users\Karel\AppData\Local\Temp\wkcbl6k1.dll
C:\Users\Karel\AppData\Local\Temp\wtqqrdir.dll
C:\Users\Karel\AppData\Local\Temp\wuubreet.dll
C:\Users\Karel\AppData\Local\Temp\y1_rkhqb.dll
C:\Users\Karel\AppData\Local\Temp\_oylpt0q.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-08-21 11:19

==================== End of FRST.txt ============================
Přílohy
Addition.7z
(11.58 KiB) Staženo 65 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakování nežádoucích oken

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

scratch
Návštěvník
Návštěvník
Příspěvky: 75
Registrován: 27 srp 2008 18:20

Re: vyskakování nežádoucích oken

#3 Příspěvek od scratch »

# AdwCleaner v6.010 - Log soubor vytvořen 28/08/2016 na 19:43:45
# Aktualizováno dne 12/08/2016 z ToolsLib
# Databáze : 2016-08-28.1 [Server]
# Operační systém : Windows 8.1 Pro (X64)
# Uživatelské jméno : Karel - VAIO
# Beží od : C:\Users\Karel\Desktop\adwcleaner_6.010.exe
# Mod: Čištění
# Podpora : https://toolslib.net/forum



***** [ Služby ] *****

[-] Služby smazány:iSafeKrnl
[-] Služby smazány:iSafeKrnlKit
[-] Služby smazány:iSafeKrnlMon
[-] Služby smazány:iSafeKrnlR3
[-] Služby smazány:iSafeNetFilter
[-] Služby smazány:iSafeService


***** [ Adresáře ] *****

[#] Adresář nelze smazat:C:\Users\Karel\AppData\Roaming\Elex-tech
[#] Adresář nelze smazat:C:\Program Files (x86)\Elex-tech


***** [ Soubory ] *****

[-] Soubor smazán:C:\WINDOWS\SysNative\drivers\iSafeNetFilter.sys


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupce ] *****



***** [ Plánovač úloh ] *****



***** [ Registry ] *****

[-] Klíč smazán:HKLM\SOFTWARE\Elex-tech
[-] Klíč smazán:HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iSafe
[-] Klíč smazán:HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com
[-] Klíč smazán:HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tlscdn.com


***** [ Prohlížeče ] *****



*************************

:: "Tracing" klíč smazán
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [17391 Bajtů] - [28/08/2016 11:01:53]
C:\AdwCleaner\AdwCleaner[C2].txt - [1583 Bajtů] - [28/08/2016 19:43:45]
C:\AdwCleaner\AdwCleaner[S0].txt - [16716 Bajtů] - [28/08/2016 11:00:32]
C:\AdwCleaner\AdwCleaner[S1].txt - [2009 Bajtů] - [28/08/2016 19:42:13]

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [1806 Bajtů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakování nežádoucích oken

#4 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

scratch
Návštěvník
Návštěvník
Příspěvky: 75
Registrován: 27 srp 2008 18:20

Re: vyskakování nežádoucích oken

#5 Příspěvek od scratch »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-08-2016
Ran by Karel (administrator) on VAIO (28-08-2016 21:19:45)
Running from C:\Users\Karel\Desktop
Loaded Profiles: Karel (Available Profiles: Karel)
Platform: Windows 8.1 Pro (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQL_SMSGALAXY\MSSQL\Binn\sqlservr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel) C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\SmartConnectWork.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\SUSSoundProxy.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Clip.exe
() C:\Program Files\Sony\VAIO Care\ESRV\esrv.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
() C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe
(forum.viry.cz) C:\Users\Karel\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1307720 2013-05-07] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7770936 2013-04-12] (Motorola Solutions, Inc.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-02-13] (Apple Inc.)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [740376 2013-02-06] (Sony Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2016-06-23] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ATLauncher] => "C:\Program Files\McAfeeEx\McAfeeAntiTheft\ATLauncher.exe" /createshortcuts:1
HKLM-x32\...\Run: [ATUninstallIcon] => "C:\Program Files\McAfeeEx\McAfeeAntiTheft\ATLauncher.exe" /createuninstallentry:1
HKLM-x32\...\Run: [Intel AppUp(R) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2013-02-19] (Intel Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-07-20] (LogMeIn Inc.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [204560 2016-08-18] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6709008 2016-07-28] (AVG Technologies CZ, s.r.o.)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\...\Run: [BackgroundContainerV3] => C:\Users\Karel\AppData\Local\Cctbplt\BackgroundContainer\BackgroundContainer.dll [300352 2016-04-25] (ClientConnect Ltd.)
ShellIconOverlayIdentifiers: [MyOverlayIcon] -> {B41B3408-923F-4B8B-85F2-146C509FA18C} => No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

AutoConfigURL: [S-1-5-21-2084845001-1273888814-4204138584-1001] => hxxp://stoppblock.org/wpad.dat?2bbf59133961629e667824c7015a91ce14240587
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.222.100.1 8.8.8.8
Tcpip\..\Interfaces\{2FC8D9BA-EC3D-4DCF-8630-C45A94E7BC58}: [DhcpNameServer] 10.222.100.1 8.8.8.8
ManualProxies: 0hxxp://stoppblock.org/wpad.dat?2bbf59133961629e667824c7015a91ce14240587

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.cz/
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com/?pc=SEJB
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu
SearchScopes: HKLM-x32 -> DefaultScope {3B6D5A20-2331-412E-B136-F5ED492CB497} URL =
SearchScopes: HKU\S-1-5-21-2084845001-1273888814-4204138584-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2084845001-1273888814-4204138584-1001 -> {02FD0233-06BE-490D-B8F9-3F84459D62AD} URL = hxxp://rover.ebay.com/rover/1/14361-113527-36183-9/4?mpre=hxxp://search.eim.ebay.cz/?oemInLn=ieSrch-&kw={searchTerms}
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-19] (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-19] (Oracle Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\Sony\MSS\3.8.141\McAfeeMSS_IE.dll [2014-01-16] (McAfee, Inc.)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-12-19] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-12-19] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-12-19] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2013-12-19] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.20 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-04-02] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-04-02] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2013-12-19] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-12-19] (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin -> C:\Program Files\Sony\MSS\3.8.141\npMcAfeeMss.dll [2014-01-16] (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2012-10-12] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-06-23] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2084845001-1273888814-4204138584-1001: intel.com/AppUp -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll [2013-02-19] (Intel)
FF Plugin HKU\S-1-5-21-2084845001-1273888814-4204138584-1001: intel.com/AppUpx64 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll [2013-02-19] (Intel)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.com/
CHR DefaultSearchURL: Default -> hxxp://www.nicesearches.com/search.php?type=ds ... earchTerms}
CHR DefaultSearchKeyword: Default -> nice
CHR Profile: C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-09]
CHR Extension: (Disk Google) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-28]
CHR Extension: (YouTube) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-27]
CHR Extension: (Vyhledávání Google) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-06]
CHR Extension: (Gmail) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR Extension: (Chrome Media Router) - C:\Users\Karel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-02]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [674552 2016-07-28] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5267456 2016-07-28] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1097488 2016-08-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [760024 2016-07-28] (AVG Technologies CZ, s.r.o.)
R2 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [101536 2013-03-15] (Intel)
R2 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [413336 2015-08-26] ()
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2554376 2016-07-20] (LogMeIn Inc.)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-04-02] (Intel Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [156104 2013-05-16] (Intel Corporation)
R2 iSafeService; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [118048 2016-05-23] (Elex do Brasil Participações Ltda)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [196584 2013-06-27] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-04-02] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-07-20] (LogMeIn, Inc.)
S3 McComponentHostServiceSony; C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.)
R2 MSSQL$SQL_SMSGALAXY; c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQL_SMSGALAXY\MSSQL\Binn\sqlservr.exe [61913952 2010-04-03] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-02] ()
S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [629336 2013-09-28] (Sony Corporation)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [483864 2013-02-06] (Sony Corporation)
S4 SQLAgent$SQL_SMSGALAXY; c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQL_SMSGALAXY\MSSQL\Binn\SQLAGENT.EXE [428384 2010-04-03] (Microsoft Corporation)
S3 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [413336 2015-08-26] ()
S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2013-01-06] (Sony Corporation)
S3 vmicvss; C:\Windows\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1653272 2015-07-31] (Sony Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-02] (Intel® Corporation)
S2 BagbinP; "C:\ProgramData\Bagbin\Bagbin.exe" [X]
S3 Fecyfahetain Nodifier; "C:\Program Files (x86)\Atogoght\Fecyfahetain\fecyfahetainNdfbotighmerjither.exe" {511AFE50-C2D8-48D5-87EB-B2BCFEC5572C} [X]
S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21632 2016-01-07] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [314112 2016-06-30] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [261376 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-06-01] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [261888 2016-07-19] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [313088 2016-07-20] (AVG Technologies CZ, s.r.o.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1366328 2013-03-28] (Motorola Solutions, Inc.)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [146856 2013-06-04] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [21928 2013-06-04] (Windows (R) Win 7 DDK provider)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2016-07-20] (LogMeIn Inc.)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [116168 2013-05-16] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21920 2013-06-27] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21920 2013-06-27] ()
R3 INETMON; C:\Windows\System32\Drivers\INETMON.sys [29088 2013-06-12] ()
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [97368 2013-04-03] (Intel Corporation)
R1 iSafeKrnl; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [262344 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlKit; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [110112 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlMon; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [52440 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [103904 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeNetFilter; C:\Windows\System32\DRIVERS\iSafeNetFilter.sys [52392 2016-05-19] (Elex do Brasil Participações Ltda)
R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-06-12] ()
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-04-02] (Intel Corporation)
S3 Netaapl; C:\Windows\system32\DRIVERS\netaapl64.sys [23040 2014-06-10] (Apple Inc.) [File not signed]
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-25] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [3646432 2013-08-01] (Intel Corporation)
R3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [29352 2015-10-19] ()
S3 semav6thermal64ro; C:\Windows\system32\drivers\semav6thermal64ro.sys [13792 2015-08-04] ()
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-05-27] (Synaptics Incorporated)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [207256 2013-03-15] (Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-01-01 12:43 - 2020-01-01 12:43 - 00000983 _____ C:\Users\Karel\Desktop\Pošta a kancelář.lnk
2020-01-01 12:43 - 2020-01-01 12:43 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Posta
2020-01-01 12:43 - 2020-01-01 12:43 - 00000000 ____D C:\Users\Karel\AppData\Local\Programs
2020-01-01 12:43 - 2020-01-01 12:43 - 00000000 ____D C:\Program Files (x86)\Pošta 3
2020-01-01 12:43 - 2014-12-17 16:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pošta a kancelář 3
2016-08-28 21:19 - 2016-08-28 21:19 - 00029696 _____ C:\Users\Karel\AppData\Local\MSGBOX.EXE
2016-08-28 21:19 - 2016-08-28 21:19 - 00015327 _____ C:\Users\Karel\Desktop\LM.bat
2016-08-28 21:17 - 2016-08-28 21:19 - 00026093 _____ C:\Users\Karel\Desktop\FRST.txt
2016-08-28 21:16 - 2016-08-28 21:16 - 00112640 _____ (forum.viry.cz) C:\Users\Karel\Desktop\FRSTLauncher.exe
2016-08-28 19:45 - 2016-05-19 08:42 - 00052392 _____ (Elex do Brasil Participações Ltda) C:\WINDOWS\system32\Drivers\iSafeNetFilter.sys
2016-08-28 19:40 - 2016-08-28 19:40 - 03826240 _____ C:\Users\Karel\Desktop\adwcleaner_6.010.exe
2016-08-28 15:28 - 2016-08-28 21:19 - 00000000 ____D C:\FRST
2016-08-28 15:24 - 2016-08-28 15:24 - 02396672 _____ (Farbar) C:\Users\Karel\Desktop\FRST64.exe
2016-08-28 15:20 - 2016-08-28 15:20 - 00388608 _____ (Trend Micro Inc.) C:\Users\Karel\Desktop\hijackthis.exe
2016-08-28 10:56 - 2016-08-28 19:43 - 00000000 ____D C:\AdwCleaner
2016-08-28 10:43 - 2016-08-28 10:43 - 00001063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-08-28 10:39 - 2016-08-28 10:43 - 00003838 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1472373575
2016-08-28 10:39 - 2016-08-28 10:43 - 00000000 ____D C:\Program Files (x86)\Opera
2016-08-28 10:39 - 2016-08-28 10:39 - 00001151 _____ C:\Users\Public\Desktop\Opera.lnk
2016-08-28 10:39 - 2016-08-28 10:39 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Opera Software
2016-08-28 10:39 - 2016-08-28 10:39 - 00000000 ____D C:\Users\Karel\AppData\Local\Opera Software
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ___HD C:\$AVG
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ____D C:\Users\Karel\AppData\Roaming\TuneUp Software
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ____D C:\Users\Karel\AppData\Roaming\AVG
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-08-28 10:33 - 2016-08-28 10:33 - 00000000 ____D C:\Program Files\Common Files\AV
2016-08-28 10:31 - 2016-08-28 19:45 - 00000000 ____D C:\ProgramData\MFAData
2016-08-28 10:31 - 2016-08-28 10:31 - 00000000 ____D C:\Users\Karel\AppData\Local\MFAData
2016-08-28 10:30 - 2016-08-28 10:30 - 00001004 _____ C:\Users\Public\Desktop\AVG.lnk
2016-08-28 10:30 - 2016-08-28 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-08-28 10:29 - 2016-08-28 10:32 - 00000000 ____D C:\Program Files (x86)\AVG
2016-08-28 10:28 - 2016-08-28 10:33 - 00000000 ____D C:\ProgramData\Avg
2016-08-28 10:27 - 2016-08-28 10:33 - 00000000 ____D C:\Users\Karel\AppData\Local\Avg
2016-08-28 10:27 - 2016-08-28 10:31 - 00000000 ____D C:\Users\Karel\AppData\Local\AvgSetupLog
2016-08-28 10:18 - 2016-08-28 10:19 - 00000000 ____D C:\totalcmd
2016-08-28 10:18 - 2016-08-28 10:18 - 00000640 _____ C:\Users\Karel\Desktop\Total Commander.lnk
2016-08-28 10:18 - 2016-08-28 10:18 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2016-08-28 10:18 - 2016-08-28 10:18 - 00000000 ____D C:\Users\Karel\AppData\Roaming\GHISLER
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\UC.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\RAR.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\PKZIP.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\PKUNZIP.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\LHA.PIF
2016-08-28 10:18 - 2015-09-17 08:52 - 00000545 _____ C:\WINDOWS\ARJ.PIF
2016-08-28 10:17 - 2016-08-28 10:17 - 02895464 _____ (AVG Technologies) C:\Users\Karel\Desktop\AVG_Protection_Free_1143.exe
2016-08-28 10:17 - 2016-08-28 10:17 - 00000000 _____ C:\Users\Karel\Desktop\Opera_39.0.2256.43_Setup.exe.0mc1831.partial
2016-08-26 13:23 - 2016-08-28 10:24 - 00000001 _____ C:\WINDOWS\SysWOW64\en.html
2016-08-26 11:07 - 2016-08-26 11:07 - 00070348 _____ C:\Users\Karel\Desktop\Modelace Kašparovi.pdf
2016-08-26 10:56 - 2016-08-26 10:56 - 00000000 ____D C:\Users\Karel\.oracle_jre_usage
2016-08-26 10:55 - 2016-08-26 10:55 - 00000779 _____ C:\Users\Public\Desktop\NN eKalkulačka SMS.lnk
2016-08-26 10:50 - 2016-08-26 10:51 - 227827272 _____ (NN pojistovna ) C:\Users\Karel\Downloads\setup-SMS-237.exe
2016-08-26 09:24 - 2016-08-26 09:24 - 00062958 _____ C:\Users\Karel\Downloads\Zal_faktura_26130093.pdf
2016-08-26 09:23 - 2016-08-26 09:23 - 00062958 _____ C:\Users\Karel\Downloads\Zal_faktura_26130092.pdf
2016-08-26 09:22 - 2016-08-26 09:22 - 00062958 _____ C:\Users\Karel\Downloads\Zal_faktura_26130091 (1).pdf
2016-08-25 14:02 - 2016-08-25 14:03 - 00019221 _____ C:\Users\Karel\Documents\7000112159_stav.pdf
2016-08-25 10:01 - 2016-08-25 10:01 - 00804774 _____ C:\Users\Karel\Downloads\KodisSkenPage.tif
2016-08-24 18:34 - 2016-08-24 18:34 - 00035662 _____ C:\Users\Karel\Desktop\RH_ELAN.pdf
2016-08-24 18:12 - 2016-08-24 18:12 - 08089083 _____ C:\Users\Karel\Desktop\fotky - 201608241741351.zip
2016-08-24 17:45 - 2016-08-24 17:45 - 00074398 _____ C:\Users\Karel\Desktop\SKEN_PETRZELA_CPP.pdf
2016-08-24 17:44 - 2016-08-24 17:44 - 00071889 _____ C:\Users\Karel\Downloads\SKMBT_C22016080515060.pdf
2016-08-24 14:05 - 2016-08-24 14:05 - 00850599 _____ C:\Users\Karel\Downloads\SKMBT_C224e16082407370.pdf
2016-08-24 10:36 - 2016-08-24 10:36 - 00663610 _____ C:\Users\Karel\Desktop\Struktura_PREZENTACE.pptx
2016-08-24 10:36 - 2016-08-24 10:36 - 00020556 _____ C:\Users\Karel\Downloads\Report ČERVEN 2016.xlsx
2016-08-24 10:35 - 2016-08-24 10:35 - 00660741 _____ C:\Users\Karel\Downloads\Struktura.pptx
2016-08-24 10:05 - 2016-08-24 10:05 - 00025334 _____ C:\Users\Karel\Downloads\Hodis Karel (2).xlsx
2016-08-23 09:21 - 2016-08-23 09:21 - 01093538 _____ C:\Users\Karel\Downloads\IMG_20160822_0001.pdf
2016-08-23 09:19 - 2016-08-23 09:19 - 00531968 _____ C:\Users\Karel\Downloads\report Červenec 2016.xls
2016-08-22 13:38 - 2016-08-22 13:38 - 00035711 _____ C:\Users\Karel\Downloads\dotaznik radka.pdf
2016-08-21 11:05 - 2016-08-21 11:05 - 00000000 ____D C:\Users\Public\Documents\chrome
2016-08-18 13:09 - 2016-08-28 10:34 - 00000000 ____D C:\ProgramData\Bagbin
2016-08-18 13:08 - 2016-08-18 13:08 - 00000000 ____D C:\Users\Karel\AppData\Local\Bagbin
2016-08-18 12:48 - 2016-08-28 11:01 - 00000000 ____D C:\WINDOWS\system32\log
2016-08-18 12:48 - 2016-08-18 12:48 - 00003544 _____ C:\WINDOWS\System32\Tasks\BagbinUpdateTaskMachineCore
2016-08-18 12:48 - 2016-08-18 12:48 - 00003458 _____ C:\WINDOWS\System32\Tasks\BagbinUpdateTaskMachineUA
2016-08-18 12:48 - 2016-08-18 12:48 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Elex-tech
2016-08-18 12:48 - 2016-08-18 12:48 - 00000000 ____D C:\Program Files (x86)\Elex-tech
2016-08-18 12:48 - 2016-08-18 12:48 - 00000000 ____D C:\Program Files (x86)\Bagbin
2016-08-18 12:47 - 2016-08-28 10:27 - 00000000 _____ C:\Users\Public\Documents\report1.dat
2016-08-18 12:47 - 2016-08-24 13:53 - 00000000 _____ C:\Users\Public\Documents\report.dat
2016-08-18 10:17 - 2016-08-18 10:17 - 00124032 _____ C:\Users\Karel\Downloads\8440747510.pdf
2016-08-18 09:49 - 2016-08-18 09:49 - 01134066 _____ C:\Users\Karel\Desktop\dotaznik.pdf
2016-08-17 13:37 - 2016-08-17 13:37 - 00068270 _____ C:\Users\Karel\Downloads\SKMBT_C22016081614570.pdf
2016-08-17 13:36 - 2016-08-17 13:36 - 00060066 _____ C:\Users\Karel\Downloads\SKMBT_C22016081614580.pdf
2016-08-17 09:41 - 2016-08-17 09:41 - 00019091 _____ C:\Users\Karel\Documents\7006869446_stav.pdf
2016-08-17 09:38 - 2016-08-17 09:38 - 00017895 _____ C:\Users\Karel\Documents\7008351034_stav.pdf
2016-08-17 08:03 - 2016-08-17 08:03 - 00711233 _____ C:\Users\Karel\Downloads\modelace musilovi FLEXI.pdf
2016-08-15 20:57 - 2016-08-15 20:57 - 00657327 _____ C:\Users\Karel\Downloads\Kanceláře_2Q2016_mimo_ADMIN (1).xlsx
2016-08-15 14:39 - 2016-08-28 10:33 - 00000000 ____D C:\Users\Karel\AppData\Roaming\setup1
2016-08-15 14:39 - 2016-08-15 14:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2016-08-15 14:39 - 2016-08-15 14:39 - 00000000 ____D C:\Program Files (x86)\cohrxx1n
2016-08-15 13:58 - 2016-08-15 13:58 - 00094189 _____ C:\Users\Karel\Downloads\Q-CZ-1629002-0.pdf
2016-08-15 10:06 - 2016-08-15 10:06 - 00010171 _____ C:\Users\Karel\Downloads\Sešit1 (2).xlsx
2016-08-15 08:04 - 2016-08-15 08:04 - 00488449 _____ C:\Users\Karel\Downloads\riz.prof. tes.pdf
2016-08-15 08:04 - 2016-08-15 08:04 - 00008829 _____ C:\Users\Karel\Downloads\Sešit1 (1).xlsx
2016-08-15 08:03 - 2016-08-15 08:03 - 00048837 _____ C:\Users\Karel\Downloads\PČS výpověd.pdf
2016-08-15 08:02 - 2016-08-15 08:02 - 00045520 _____ C:\Users\Karel\Downloads\infolist.pdf
2016-08-15 08:00 - 2016-08-15 08:00 - 01169939 _____ C:\Users\Karel\Downloads\čpp tes.pdf
2016-08-14 21:45 - 2016-08-14 21:45 - 00180942 _____ C:\Users\Karel\Downloads\Neoral_KNZ_GL2_6325216798_smlouva_160814_214505.pdf
2016-08-14 21:16 - 2016-08-14 21:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-08-14 21:15 - 2016-08-14 21:15 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-08-14 21:15 - 2016-08-14 21:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-08-14 18:30 - 2016-08-14 18:30 - 00010230 _____ C:\Users\Karel\Downloads\pan Martin Neoral HAV_upravené.xlsx
2016-08-14 18:08 - 2016-08-14 18:08 - 00011469 _____ C:\Users\Karel\Downloads\Třebíčsko.xlsx
2016-08-14 17:56 - 2016-08-14 17:56 - 00019758 _____ C:\Users\Karel\Documents\7009164898_stav.pdf
2016-08-12 15:19 - 2016-08-12 15:19 - 00010307 _____ C:\Users\Karel\Downloads\Sešit1.xlsx
2016-08-12 14:02 - 2016-08-12 14:02 - 04671488 _____ C:\Users\Karel\Downloads\Brother_Hl-11_Driver (1).iso
2016-08-12 14:00 - 2016-08-12 14:00 - 00000000 ___RD C:\Users\Karel\AppData\Roaming\Brother
2016-08-12 14:00 - 2016-08-12 14:00 - 00000000 ____D C:\Users\Karel\AppData\LocalLow\Brother
2016-08-12 13:18 - 2016-08-12 13:18 - 00000000 ____D C:\ProgramData\AVAST Software
2016-08-12 13:17 - 2016-08-28 10:52 - 00000000 ____D C:\Program Files (x86)\Atogoght
2016-08-12 13:17 - 2016-08-18 13:08 - 00000000 ____D C:\Users\Karel\AppData\Local\Qopusreebesy
2016-08-11 11:44 - 2016-08-11 11:44 - 00062958 _____ C:\Users\Karel\Downloads\Zal_faktura_26130091.pdf
2016-08-11 11:31 - 2016-08-11 11:31 - 00010230 _____ C:\Users\Karel\Desktop\pan Martin Neoral HAV_upravené.xlsx
2016-08-11 11:29 - 2016-08-11 11:29 - 00011423 _____ C:\Users\Karel\Downloads\pan Martin Neoral POV_HAV.xlsx
2016-08-11 11:10 - 2016-08-11 11:10 - 00081440 _____ C:\Users\Karel\Downloads\PS_8753328015_0425955578.pdf
2016-08-11 10:55 - 2016-06-18 22:06 - 00590688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-08-11 10:55 - 2016-06-18 22:06 - 00072408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2016-08-11 10:55 - 2016-06-11 21:52 - 00379232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-08-11 10:55 - 2016-06-11 21:52 - 00057184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-08-11 10:55 - 2016-06-11 20:05 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpresult.exe
2016-08-11 10:55 - 2016-06-11 19:14 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpresult.exe
2016-08-11 10:55 - 2016-06-11 18:50 - 00987136 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-08-11 10:55 - 2016-06-11 18:46 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll
2016-08-11 10:55 - 2016-06-11 18:44 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-08-11 10:55 - 2016-06-11 18:37 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-08-11 10:55 - 2016-06-11 18:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-08-11 10:55 - 2016-06-11 18:20 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2016-08-11 10:55 - 2016-06-11 18:16 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-08-11 10:55 - 2016-06-11 05:44 - 00107984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-08-11 10:55 - 2016-06-11 05:44 - 00091416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2016-08-11 10:55 - 2016-06-10 23:34 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsp.sys
2016-08-11 10:55 - 2016-06-10 22:07 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-08-11 10:55 - 2016-06-10 22:03 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-08-11 10:55 - 2016-06-10 21:04 - 03547136 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-08-11 10:55 - 2016-06-10 20:11 - 06521800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-08-11 10:55 - 2016-06-10 20:11 - 01487992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-08-11 10:55 - 2016-06-10 20:11 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-08-11 10:55 - 2016-06-10 20:11 - 00125024 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptxml.dll
2016-08-11 10:55 - 2016-06-10 20:10 - 00099136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptxml.dll
2016-08-11 10:55 - 2016-06-10 20:07 - 03273728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-08-11 10:55 - 2016-06-10 20:04 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-08-11 10:55 - 2016-06-09 21:32 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2016-08-11 10:55 - 2016-06-09 20:18 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
2016-08-11 10:55 - 2016-06-07 20:10 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\hbaapi.dll
2016-08-11 10:55 - 2016-06-07 19:13 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hbaapi.dll
2016-08-11 10:55 - 2016-06-04 02:38 - 01613528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-08-11 10:55 - 2016-06-04 02:37 - 01970968 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-08-11 10:55 - 2016-05-29 09:08 - 22361344 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-08-11 10:55 - 2016-05-28 20:31 - 19788688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-08-11 10:55 - 2016-05-18 23:54 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\certenc.dll
2016-08-11 10:55 - 2016-05-18 23:15 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certenc.dll
2016-08-11 10:55 - 2016-05-18 22:56 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2016-08-11 10:55 - 2016-05-18 22:33 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2016-08-11 10:55 - 2016-05-18 22:28 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-08-11 10:55 - 2016-05-18 22:16 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-08-11 10:55 - 2016-05-14 22:26 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-08-11 10:55 - 2016-05-14 07:19 - 01134768 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-08-11 10:55 - 2016-05-14 01:08 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-08-11 10:55 - 2016-05-14 01:08 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-08-11 10:55 - 2016-05-14 01:08 - 00032512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2016-08-11 10:55 - 2016-05-14 00:24 - 00862720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-08-11 10:55 - 2016-05-13 23:42 - 03667968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-08-11 10:55 - 2016-05-13 23:29 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2016-08-11 10:55 - 2016-05-13 23:27 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2016-08-11 10:55 - 2016-05-13 23:27 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2016-08-11 10:55 - 2016-05-13 23:26 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2016-08-11 10:55 - 2016-05-13 23:26 - 00897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-08-11 10:55 - 2016-05-13 23:18 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2016-08-11 10:55 - 2016-05-13 23:16 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-08-11 10:55 - 2016-05-13 23:16 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2016-08-11 10:55 - 2016-05-12 20:36 - 00034600 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
2016-08-11 10:55 - 2016-05-12 19:39 - 00030984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe
2016-08-11 10:55 - 2016-05-06 23:59 - 00331608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2016-08-11 10:55 - 2016-05-06 19:13 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-08-11 10:55 - 2016-05-05 20:28 - 01661072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-08-11 10:55 - 2016-05-05 19:39 - 01212256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-08-11 10:55 - 2016-05-05 19:18 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2016-08-11 10:55 - 2016-05-05 19:02 - 03320832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-08-11 10:55 - 2016-05-05 18:37 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2016-08-11 10:55 - 2016-05-05 18:34 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-08-11 10:55 - 2016-05-05 18:29 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-08-11 10:55 - 2016-05-05 17:28 - 02778624 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-08-11 10:55 - 2016-04-16 15:56 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-08-11 10:55 - 2016-04-10 07:35 - 00551256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2016-08-11 10:55 - 2016-04-10 00:15 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-08-11 10:55 - 2016-04-10 00:14 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Geolocation.dll
2016-08-11 10:55 - 2016-04-10 00:10 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2016-08-11 10:55 - 2016-04-10 00:09 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-08-11 10:55 - 2016-04-10 00:02 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2016-08-11 10:55 - 2016-04-09 23:59 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Geolocation.dll
2016-08-11 10:55 - 2016-04-09 23:59 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-08-11 10:55 - 2016-04-09 23:56 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-08-11 10:55 - 2016-04-09 23:55 - 00881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-08-11 10:55 - 2016-04-09 23:52 - 00281088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2016-08-11 10:55 - 2016-04-07 18:06 - 00927744 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-08-11 10:55 - 2016-04-06 23:21 - 00114528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys
2016-08-11 10:55 - 2016-04-06 20:20 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2016-08-11 10:55 - 2016-04-06 20:20 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-08-11 10:55 - 2016-04-06 20:17 - 18825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-08-11 10:55 - 2016-04-06 18:25 - 15158272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-08-11 10:55 - 2016-04-06 00:37 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2016-08-11 10:55 - 2016-04-02 15:58 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-08-11 10:55 - 2016-04-01 19:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-08-11 10:55 - 2016-04-01 18:53 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-08-11 10:55 - 2016-04-01 18:50 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-08-11 10:55 - 2016-02-04 18:57 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-08-11 10:55 - 2016-02-04 18:49 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2016-08-11 10:55 - 2016-02-04 18:39 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2016-08-11 10:54 - 2016-05-13 23:30 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2016-08-11 10:54 - 2016-05-13 23:18 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2016-08-11 10:54 - 2016-05-05 17:16 - 02464768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-08-11 10:54 - 2016-04-02 16:09 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfg.exe
2016-08-11 10:43 - 2016-08-11 10:43 - 01119100 _____ C:\Users\Karel\Downloads\IMG_20160810_0002.pdf
2016-08-11 10:42 - 2016-08-11 10:42 - 01131705 _____ C:\Users\Karel\Downloads\IMG_20160810_0001.pdf
2016-08-11 10:00 - 2016-08-11 10:00 - 07702513 _____ C:\Users\Karel\Downloads\h-350-14[1] HAV (1).pdf
2016-08-11 10:00 - 2016-08-11 10:00 - 00024972 _____ C:\Users\Karel\Downloads\Gajdusek_KNZ_GL2_6325180094_ZKSlozenka_160810_112217 (1).pdf
2016-08-10 21:33 - 2016-07-08 16:32 - 01753600 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-08-10 21:33 - 2016-07-08 16:25 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-08-10 21:33 - 2016-07-08 16:22 - 01445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-08-10 21:33 - 2016-07-08 16:18 - 04169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-08-10 21:33 - 2016-07-08 00:33 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-08-10 21:33 - 2016-07-07 23:53 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-08-10 21:33 - 2016-07-07 22:06 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-08-10 21:33 - 2016-05-19 01:18 - 00563024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-08-10 21:33 - 2016-05-19 01:18 - 00397232 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-08-10 21:33 - 2016-05-19 01:16 - 00178016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-08-10 21:33 - 2016-05-19 00:28 - 00340880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-08-10 21:32 - 2016-08-02 08:54 - 25808384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-08-10 21:32 - 2016-08-02 08:32 - 02894336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-08-10 21:32 - 2016-08-02 08:20 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-08-10 21:32 - 2016-08-02 08:18 - 06047744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-08-10 21:32 - 2016-08-02 07:55 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-08-10 21:32 - 2016-08-02 07:54 - 20343808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-08-10 21:32 - 2016-08-02 07:51 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-08-10 21:32 - 2016-08-02 07:47 - 02286592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-08-10 21:32 - 2016-08-02 07:46 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-08-10 21:32 - 2016-08-02 07:40 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-08-10 21:32 - 2016-08-02 07:39 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-08-10 21:32 - 2016-08-02 07:38 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-08-10 21:32 - 2016-08-02 07:38 - 00724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-08-10 21:32 - 2016-08-02 07:36 - 02131456 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-08-10 21:32 - 2016-08-02 07:28 - 15412224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-08-10 21:32 - 2016-08-02 07:23 - 02868224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-08-10 21:32 - 2016-08-02 07:21 - 04608000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-08-10 21:32 - 2016-08-02 07:20 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-08-10 21:32 - 2016-08-02 07:15 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-08-10 21:32 - 2016-08-02 07:14 - 02055680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-08-10 21:32 - 2016-08-02 07:11 - 13808128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-08-10 21:32 - 2016-08-02 07:10 - 01550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-08-10 21:32 - 2016-08-02 06:56 - 02393088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-08-10 21:32 - 2016-08-02 06:53 - 01316352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-08-10 21:32 - 2016-07-06 16:26 - 07793152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-08-10 21:32 - 2016-07-06 16:26 - 07075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2016-08-10 21:32 - 2016-07-06 16:23 - 05270016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2016-08-10 21:32 - 2016-07-06 16:21 - 05265920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-08-10 21:31 - 2016-08-02 08:31 - 00572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-08-10 21:31 - 2016-08-02 08:18 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-08-10 21:31 - 2016-08-02 07:41 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-08-10 21:31 - 2016-08-02 07:15 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-08-10 21:31 - 2016-08-02 06:59 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-08-10 21:31 - 2016-08-02 06:51 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-08-10 21:30 - 2016-07-09 02:09 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-08-10 21:30 - 2016-07-09 02:08 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-08-10 21:30 - 2016-07-08 16:19 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-08-10 21:30 - 2016-07-08 16:17 - 00696832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-08-10 15:06 - 2016-07-12 16:08 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-08-10 11:34 - 2016-08-10 11:34 - 00289949 _____ C:\Users\Karel\Downloads\Gajdusek_KNZ_GL2_6325180094_smlouva_160810_112217.pdf
2016-08-10 11:34 - 2016-08-10 11:34 - 00024972 _____ C:\Users\Karel\Downloads\Gajdusek_KNZ_GL2_6325180094_ZKSlozenka_160810_112217.pdf
2016-08-10 10:30 - 2016-08-10 10:30 - 07702513 _____ C:\Users\Karel\Downloads\h-350-14[1] HAV.pdf
2016-08-10 10:05 - 2016-08-10 10:05 - 00174386 _____ C:\Users\Karel\Downloads\Gajdusek_KNZ_GL2__smlouva_160810_091119.pdf
2016-08-08 12:09 - 2016-08-08 12:19 - 00011423 _____ C:\Users\Karel\Desktop\pan Martin Neoral POV_HAV.xlsx
2016-08-08 11:59 - 2016-08-08 11:59 - 00000000 ____D C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AXA Studio
2016-08-07 11:19 - 2016-08-07 11:19 - 00659375 _____ C:\Users\Karel\Downloads\Kanceláře_2Q2016_mimo_ADMIN.xlsx
2016-08-05 09:36 - 2016-08-05 09:36 - 00009459 _____ C:\Users\Karel\Downloads\seznam zonky.xlsx
2016-08-04 13:35 - 2016-08-04 13:35 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-08-04 13:35 - 2016-08-04 13:35 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-08-02 07:33 - 2016-08-03 17:26 - 00000000 ____D C:\Users\Default\AppData\Local\LogMeIn Hamachi
2016-08-02 07:33 - 2016-08-03 17:26 - 00000000 ____D C:\Users\Default User\AppData\Local\LogMeIn Hamachi
2016-08-02 07:33 - 2016-08-02 07:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2016-08-02 07:33 - 2016-08-02 07:33 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2016-07-29 13:48 - 2016-07-29 13:48 - 00017808 _____ C:\Users\Karel\Downloads\horný (1).xlsx

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-01-31 13:41 - 2012-07-26 10:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent
2016-08-28 21:14 - 2016-06-12 15:33 - 00000000 ____D C:\Users\Karel\AppData\Local\LogMeIn Hamachi
2016-08-28 19:56 - 2014-06-04 07:17 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-08-28 19:48 - 2014-09-24 18:23 - 01929746 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-08-28 19:48 - 2014-09-24 17:39 - 00805236 _____ C:\WINDOWS\system32\perfh005.dat
2016-08-28 19:48 - 2014-09-24 17:39 - 00176252 _____ C:\WINDOWS\system32\perfc005.dat
2016-08-28 19:48 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf
2016-08-28 19:45 - 2014-12-17 16:59 - 00000000 ___RD C:\Users\Karel\OneDrive
2016-08-28 19:44 - 2015-08-30 21:41 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838.job
2016-08-28 19:44 - 2015-05-18 19:36 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0919123736844.job
2016-08-28 19:44 - 2014-06-24 09:22 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cf8f7d1085d091.job
2016-08-28 19:44 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-08-28 19:39 - 2014-12-17 17:23 - 00003954 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{ECC12E7E-264B-49B9-89E8-460A465966FD}
2016-08-28 15:43 - 2014-06-03 12:05 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2084845001-1273888814-4204138584-1001
2016-08-28 15:23 - 2014-06-05 18:17 - 00000000 ____D C:\Users\Karel\AppData\Roaming\ClassicShell
2016-08-28 11:05 - 2013-12-19 19:26 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2016-08-28 11:02 - 2016-02-02 22:51 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c.job
2016-08-28 10:56 - 2016-07-19 13:26 - 00056080 _____ C:\Users\Karel\Downloads\3D346C7884D5.docm
2016-08-28 10:40 - 2016-05-30 13:07 - 00000000 ____D C:\WePOS
2016-08-28 10:37 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2016-08-28 10:34 - 2013-08-22 15:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-08-28 10:33 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-08-28 10:31 - 2015-04-13 10:55 - 00000000 ____D C:\Users\Karel\Desktop\OLOMOUC_13.4.2015_PŘETAH
2016-08-28 10:24 - 2013-12-19 19:12 - 00000000 ____D C:\ProgramData\McAfee
2016-08-28 10:24 - 2013-12-19 19:12 - 00000000 ____D C:\Program Files\Common Files\mcafee
2016-08-28 10:24 - 2013-08-22 16:44 - 00517128 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-08-28 10:21 - 2016-06-21 22:45 - 00000000 ____D C:\Users\Karel\Desktop\Nabídka spolupráce Petr Kozák OVB
2016-08-28 10:13 - 2014-12-23 10:04 - 00000000 ____D C:\Users\HomeGroupUser$
2016-08-28 10:13 - 2014-06-16 14:44 - 00000000 ____D C:\Users\Guest
2016-08-28 10:13 - 2014-06-16 14:44 - 00000000 ____D C:\Users\Administrator
2016-08-28 10:13 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated
2016-08-28 10:10 - 2014-07-13 16:44 - 00000000 ____D C:\Einstein
2016-08-26 14:06 - 2014-11-08 22:19 - 00000000 ____D C:\GALAXY
2016-08-26 12:37 - 2014-12-18 22:42 - 05754880 ___SH C:\Users\Karel\Downloads\Thumbs.db
2016-08-26 12:37 - 2014-12-17 23:34 - 03194880 ___SH C:\Users\Karel\Desktop\Thumbs.db
2016-08-26 10:56 - 2014-12-17 16:16 - 00000000 ____D C:\Users\Karel
2016-08-26 10:55 - 2016-01-08 13:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NN eKalkulačka SMS
2016-08-26 09:23 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-08-25 13:58 - 2014-12-17 17:17 - 00000000 ____D C:\Users\Karel\AppData\Local\Deployment
2016-08-25 13:46 - 2014-06-18 14:35 - 00000000 ____D C:\ProgramData\firebird
2016-08-25 12:53 - 2014-06-09 18:38 - 00000000 ____D C:\Users\Karel\Desktop\STARE PC
2016-08-21 20:05 - 2016-02-04 14:28 - 00000000 ____D C:\Users\Karel\Desktop\Kontakty 2016
2016-08-21 11:20 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-08-18 13:08 - 2014-06-04 07:18 - 00002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-08-18 13:08 - 2014-06-04 07:18 - 00002195 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-08-18 12:48 - 2014-12-17 16:58 - 00001636 _____ C:\Users\Karel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-08-15 14:06 - 2014-06-09 18:39 - 00000000 ____D C:\Users\Karel\Desktop\Ostatní
2016-08-14 21:55 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2016-08-14 21:17 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2016-08-14 17:24 - 2016-05-15 20:51 - 00000000 ____D C:\Users\Karel\Desktop\Radek Karas
2016-08-14 17:24 - 2016-01-19 20:09 - 00000000 ____D C:\Users\Karel\Desktop\PORADY 2016
2016-08-12 11:08 - 2014-06-03 22:40 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-08-12 11:00 - 2014-06-03 22:40 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-08-11 13:23 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-08-11 13:23 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-08-11 09:57 - 2015-03-19 13:49 - 00000000 ____D C:\GALAXYDATA
2016-08-10 21:39 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-08-08 11:59 - 2014-08-28 10:34 - 00009395 _____ C:\Users\Karel\Documents\AxaStudio_Log.txt
2016-08-08 11:59 - 2014-06-17 11:59 - 00000316 _____ C:\Users\Karel\Desktop\AXA Studio.appref-ms
2016-08-08 11:59 - 2014-06-13 08:31 - 00000000 ____D C:\Temp
2016-08-04 13:35 - 2014-08-26 18:58 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-08-04 13:34 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-07-29 13:57 - 2016-02-02 22:51 - 00003942 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c
2016-07-29 13:57 - 2015-08-30 21:41 - 00003706 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838

==================== Files in the root of some directories =======

2016-08-28 21:19 - 2016-08-28 21:19 - 0029696 _____ () C:\Users\Karel\AppData\Local\MSGBOX.EXE

Some files in TEMP:
====================
C:\Users\Karel\AppData\Local\Temp\0i_ad-mg.dll
C:\Users\Karel\AppData\Local\Temp\9mglga6c.dll
C:\Users\Karel\AppData\Local\Temp\ctbKGpyImt.exe
C:\Users\Karel\AppData\Local\Temp\gomhnlvy.dll
C:\Users\Karel\AppData\Local\Temp\gykrduwf.dll
C:\Users\Karel\AppData\Local\Temp\libeay32.dll
C:\Users\Karel\AppData\Local\Temp\msvcr120.dll
C:\Users\Karel\AppData\Local\Temp\pebpntum.dll
C:\Users\Karel\AppData\Local\Temp\q-v-fhz1.dll
C:\Users\Karel\AppData\Local\Temp\q7lzzrvs.dll
C:\Users\Karel\AppData\Local\Temp\qchigf6y.dll
C:\Users\Karel\AppData\Local\Temp\rgdgsgyn.dll
C:\Users\Karel\AppData\Local\Temp\slkjuvfe.dll
C:\Users\Karel\AppData\Local\Temp\sqlite3.dll
C:\Users\Karel\AppData\Local\Temp\utcaapn7.dll
C:\Users\Karel\AppData\Local\Temp\vkvrij5b.dll
C:\Users\Karel\AppData\Local\Temp\wkcbl6k1.dll
C:\Users\Karel\AppData\Local\Temp\wtqqrdir.dll
C:\Users\Karel\AppData\Local\Temp\wuubreet.dll
C:\Users\Karel\AppData\Local\Temp\y1_rkhqb.dll
C:\Users\Karel\AppData\Local\Temp\_oylpt0q.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-08-21 11:19

==================== End of FRST.txt ============================
Přílohy
Addition.7z
(11.82 KiB) Staženo 67 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakování nežádoucích oken

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
ShellIconOverlayIdentifiers: [MyOverlayIcon] -> {B41B3408-923F-4B8B-85F2-146C509FA18C} => No File
AutoConfigURL: [S-1-5-21-2084845001-1273888814-4204138584-1001] => hxxp://stoppblock.org/wpad.dat?2bbf5913 ... ce14240587
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\Sony\MSS\3.8.141\McAfeeMSS_IE.dll [2014-01-16] (McAfee, Inc.)
C:\Program Files\Sony\MSS
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
CHR DefaultSearchURL: Default -> hxxp://www.nicesearches.com/search.php? ... meo2c1z&q={searchTerms}
CHR DefaultSearchKeyword: Default -> nice
S3 McComponentHostServiceSony; C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.)
S2 BagbinP; "C:\ProgramData\Bagbin\Bagbin.exe" [X]
C:\ProgramData\Bagbin
S3 Fecyfahetain Nodifier; "C:\Program Files (x86)\Atogoght\Fecyfahetain\fecyfahetainNdfbotighmerjither.exe" {511AFE50-C2D8-48D5-87EB-B2BCFEC5572C} [X]
S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
C:\Program Files (x86)\Atogoght
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0919123736844.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cf8f7d1085d091.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838
C:\Users\Karel\AppData\Local\Temp
Task: {9EC3D49C-C1B6-4002-9DE4-043E4EB8AFCC} - System32\Tasks\BagbinUpdateTaskMachineCore => C:\Program Files (x86)\Bagbin\Update\BagbinUpdate.exe <==== ATTENTION
Task: {A0EF0688-FF35-4376-BE91-021DB9BB2A61} - System32\Tasks\BagbinUpdateTaskMachineUA => C:\Program Files (x86)\Bagbin\Update\BagbinUpdate.exe <==== ATTENTION

ResetHosts:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

scratch
Návštěvník
Návštěvník
Příspěvky: 75
Registrován: 27 srp 2008 18:20

Re: vyskakování nežádoucích oken

#7 Příspěvek od scratch »

Fix result of Farbar Recovery Scan Tool (x64) Version: 27-08-2016
Ran by Karel (28-08-2016 21:51:01) Run:1
Running from C:\Users\Karel\Desktop
Loaded Profiles: Karel (Available Profiles: Karel)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
ShellIconOverlayIdentifiers: [MyOverlayIcon] -> {B41B3408-923F-4B8B-85F2-146C509FA18C} => No File
AutoConfigURL: [S-1-5-21-2084845001-1273888814-4204138584-1001] => hxxp://stoppblock.org/wpad.dat?2bbf5913 ... ce14240587
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\Sony\MSS\3.8.141\McAfeeMSS_IE.dll [2014-01-16] (McAfee, Inc.)
C:\Program Files\Sony\MSS
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
CHR DefaultSearchURL: Default -> hxxp://www.nicesearches.com/search.php? ... meo2c1z&q={searchTerms}
CHR DefaultSearchKeyword: Default -> nice
S3 McComponentHostServiceSony; C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.)
S2 BagbinP; "C:\ProgramData\Bagbin\Bagbin.exe" [X]
C:\ProgramData\Bagbin
S3 Fecyfahetain Nodifier; "C:\Program Files (x86)\Atogoght\Fecyfahetain\fecyfahetainNdfbotighmerjither.exe" {511AFE50-C2D8-48D5-87EB-B2BCFEC5572C} [X]
S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
C:\Program Files (x86)\Atogoght
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0919123736844.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cf8f7d1085d091.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838
C:\Users\Karel\AppData\Local\Temp
Task: {9EC3D49C-C1B6-4002-9DE4-043E4EB8AFCC} - System32\Tasks\BagbinUpdateTaskMachineCore => C:\Program Files (x86)\Bagbin\Update\BagbinUpdate.exe <==== ATTENTION
Task: {A0EF0688-FF35-4376-BE91-021DB9BB2A61} - System32\Tasks\BagbinUpdateTaskMachineUA => C:\Program Files (x86)\Bagbin\Update\BagbinUpdate.exe <==== ATTENTION

ResetHosts:
End
*****************

"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\MyOverlayIcon" => key removed successfully
HKCR\CLSID\{B41B3408-923F-4B8B-85F2-146C509FA18C} => key not found.
HKU\S-1-5-21-2084845001-1273888814-4204138584-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigURL => value removed successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}" => key removed successfully
C:\Program Files\Sony\MSS => moved successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0" => key removed successfully
c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll => moved successfully
Chrome DefaultSearchURL => removed successfully
Chrome DefaultSearchKeyword => removed successfully
McComponentHostServiceSony => service removed successfully
BagbinP => service removed successfully
C:\ProgramData\Bagbin => moved successfully
Fecyfahetain Nodifier => service removed successfully
McMPFSvc => service removed successfully
C:\Program Files (x86)\Atogoght => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0919123736844.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cf8f7d1085d091.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c.job => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d15dfb73dd5c9c => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d0e35be6afb838 => moved successfully

"C:\Users\Karel\AppData\Local\Temp" folder move:

Could not move "C:\Users\Karel\AppData\Local\Temp" => Scheduled to move on reboot.

"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9EC3D49C-C1B6-4002-9DE4-043E4EB8AFCC}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9EC3D49C-C1B6-4002-9DE4-043E4EB8AFCC}" => key removed successfully
C:\WINDOWS\System32\Tasks\BagbinUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BagbinUpdateTaskMachineCore" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A0EF0688-FF35-4376-BE91-021DB9BB2A61}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A0EF0688-FF35-4376-BE91-021DB9BB2A61}" => key removed successfully
C:\WINDOWS\System32\Tasks\BagbinUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BagbinUpdateTaskMachineUA" => key removed successfully
ResetHosts: => Error: No automatic fix found for this entry.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 28-08-2016 21:52:59)

C:\Users\Karel\AppData\Local\Temp => moved successfully

==== End of Fixlog 21:52:59 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakování nežádoucích oken

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

scratch
Návštěvník
Návštěvník
Příspěvky: 75
Registrován: 27 srp 2008 18:20

Re: vyskakování nežádoucích oken

#9 Příspěvek od scratch »

Bohužel stále vyskakují reklamní okna.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: vyskakování nežádoucích oken

#10 Příspěvek od Rudy »

Zkuste tyto skeny:

1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět