Dobry den,
zacal me velice zlobit pocitac,pravdepodobne jsem chytil nejaky virus. Prosim Vas o pomoc.
Log z RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by kurd centre at 2014-06-04 16:43:42
Microsoft Windows XP Professional Service Pack 2
System drive C: has 51 GB (67%) free of 76 GB
Total RAM: 1015 MB (42% free)
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\At1.job - C:\DOCUME~1\KURDCE~1\APPLIC~1\PRICEM~1\UPDATE~1\UPDATE~1.EXE /Check
C:\WINDOWS\tasks\At3.job - C:\DOCUME~1\NETWOR~1\APPLIC~1\MYSEAR~1\UPDATE~1\UPDATE~1.EXE /Check
C:\WINDOWS\tasks\At4.job - C:\DOCUME~1\LOCALS~1\APPLIC~1\Speedial\UPDATE~1\UPDATE~1.EXE /Check
C:\WINDOWS\tasks\bench-sys.job - C:\Program Files\Bench\Updater\updater.exe -runmode=checkupdate
C:\WINDOWS\tasks\bench-Updater removing.job - /verysilent
C:\WINDOWS\tasks\Driver Robot.job - C:\Program Files\Driver Robot\Driver Robot.lnk --scan --stack=from-scheduler
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-823518204-261903793-839522115-1003Core.job - C:\Documents and Settings\kurd centre\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-823518204-261903793-839522115-1003UA.job - C:\Documents and Settings\kurd centre\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-823518204-261903793-839522115-1005Core.job - C:\Documents and Settings\user\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-823518204-261903793-839522115-1005UA.job - C:\Documents and Settings\user\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Norton Product Installer.job - C:\WINDOWS\system32\Adobe\Shockwave 12\SymInstallStub.exe /partnerid=adobe /productlist=nis /staging=false /delay=0 /launchedby=2
C:\WINDOWS\tasks\Norton Product InstallerIdle.job - C:\WINDOWS\system32\Adobe\Shockwave 12\SymInstallStub.exe /partnerid=adobe /productlist=nis /staging=false /delay=0 /launchedby=4
C:\WINDOWS\tasks\PriceMeterLiveUpdateUpdateTaskMachineCore.job - C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe /c
C:\WINDOWS\tasks\PriceMeterLiveUpdateUpdateTaskMachineUA.job - C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\PrivacyDr_Splash.job - C:\Program Files\Privacy Dr\Splash.exe
C:\WINDOWS\tasks\User_Feed_Synchronization-{77B726D2-AAA8-4742-8CB5-1802677E8E69}.job - C:\WINDOWS\system32\msfeedssync.exe sync
C:\WINDOWS\tasks\User_Feed_Synchronization-{82B846B6-486E-4074-86DC-67E86ED30A5F}.job - C:\WINDOWS\system32\msfeedssync.exe sync
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\kurd centre\Application Data\Mozilla\Firefox\Profiles\o1vwhv45.default
"irobinhood@irobinhood.org"=C:\Program Files\iRobinHood\iRobinHood Addon\irobinhood@irobinhood.org.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
C:\Documents and Settings\kurd centre\Application Data\Mozilla\Firefox\Profiles\o1vwhv45.default\extensions\
eo7uyo@xbwmrhjjaai.co.uk
C:\Documents and Settings\kurd centre\Application Data\Mozilla\Firefox\Profiles\o1vwhv45.default\searchplugins\
Web Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53}]
ReWinUpProduct Object - C:\Documents and Settings\kurd centre\Application Data\ReWinUp\IE\ReWinUp.dll [2014-05-14 169984]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{ae07101b-46d4-4a98-af68-0333ea26e113}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-04 208952]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-04 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-04 455168]
"SetRefresh"=C:\Program Files\COMPAQ\SetRefresh\\SetRefresh.exe [2003-11-20 525824]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"EM_EXEC"=C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE [2002-05-01 28672]
"ofmdpzixgofn"=C:\WINDOWS\system32\zzppkdvtlcctsoapnsemd.exe [2014-06-04 598016]
"mjwtlbqlaolzvoxjeg"=C:\DOCUME~1\KURDCE~1\LOCALS~1\Temp\mjwtlbqlaolzvoxjeg.exe [2014-06-04 598016]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2008-02-15 135168]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2008-02-15 159744]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2008-02-15 131072]
"fst_gb_5"= []
"upfst_gb_5.exe"=C:\Documents and Settings\kurd centre\Local Settings\Application Data\fst_gb_5\upfst_gb_5.exe -runhelper []
"High Definition Audio Property Page Shortcut"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
"DWQueuedReporting"=C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe [2006-10-26 434528]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nfnfsdndnwoxo"=C:\WINDOWS\system32\xvjharhdtigvsmwjfis.exe . [2014-06-04 598016]
"dzlhynbvjwsfasalf"=C:\DOCUME~1\KURDCE~1\LOCALS~1\Temp\zzppkdvtlcctsoapnsemd.exe [2014-06-04 598016]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"ohqjxjulwgzjbq"=C:\WINDOWS\system32\zzppkdvtlcctsoapnsemd.exe [2014-06-04 598016]
"rhndoxftbiy"=C:\DOCUME~1\KURDCE~1\LOCALS~1\Temp\xvjharhdtigvsmwjfis.exe [2014-06-04 598016]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
"Caffe-Client"=C:\Program Files\Caffe\Client.exe [2012-10-17 847872]
"Tweak UI"=TWEAKUI.CPL,TweakMeUp []
"Facebook Update"=C:\Documents and Settings\kurd centre\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe [2013-04-20 138096]
"rlvperdvhsmxqgm"=C:\WINDOWS\system32\mjwtlbqlaolzvoxjeg.exe [2014-06-04 598016]
"ofmdpzixgofn"=C:\DOCUME~1\KURDCE~1\LOCALS~1\Temp\kjyxrjaxoedtrmxlimxe.exe [2014-06-04 598016]
"Optimizer Pro"=C:\Program Files\Optimizer Pro\OptProLauncher.exe []
"OutfoxTV"=C:\Program Files\OutfoxTV\OutfoxTV\DesktopContainer.exe []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2014-01-14 20728480]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"wrcxnbohugbnhyfp"=C:\WINDOWS\system32\xvjharhdtigvsmwjfis.exe . [2014-06-04 598016]
"nfnfsdndnwoxo"=C:\DOCUME~1\KURDCE~1\LOCALS~1\Temp\dzlhynbvjwsfasalf.exe [2014-06-04 598016]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Edimax 11n USB Wireless LAN Utility.lnk - C:\Program Files\Edimax\11n USB Wireless LAN Utility\RtWLan.exe
smartbar_3312014.exe.lnk - C:\Documents and Settings\kurd centre\Local Settings\Temp\nsi4A.tmp\93\smartbar_3312014.exe
C:\Documents and Settings\kurd centre\Start Menu\Programs\Startup
OneNote 2007 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2008-11-28 208896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
nwprovau
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=1
"DisableRegistryTools"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"DisableRegistryTools"=1
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=0
"EnableInstallerDetection"=0
"EnableSecureUIAPaths"=0
"EnableVirtualization"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=1
"NoTrayContextMenu"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\Program Files\Caffe\Client.exe"="C:\Program Files\Caffe\Client.exe:*:Enabled:Client"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Documents and Settings\All Users\Documents\Caffe\Client.exe"="C:\Documents and Settings\All Users\Documents\Caffe\Client.exe:*:Disabled:Client"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\kurd centre\Local Settings\Application Data\Facebook\Video\Skype\FacebookVideoCalling.exe"="C:\Documents and Settings\kurd centre\Local Settings\Application Data\Facebook\Video\Skype\FacebookVideoCalling.exe:*:Enabled:Facebook Video Calling Plugin"
"C:\Program Files\Battle.net\Battle.net.exe"="C:\Program Files\Battle.net\Battle.net.exe:*:Enabled:Battle.net"
"C:\Program Files\Hearthstone\Hearthstone.exe"="C:\Program Files\Hearthstone\Hearthstone.exe:*:Enabled:Hearthstone"
"C:\Documents and Settings\All Users\Application Data\Battle.net\Agent\Agent.2816\Agent.exe"="C:\Documents and Settings\All Users\Application Data\Battle.net\Agent\Agent.2816\Agent.exe:*:Enabled:Battle.net Update Agent"
"c:\program files\premieropinion\pmropn.exe"="c:\program files\premieropinion\pmropn.exe:*:Enabled:pmropn.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe]
"Debugger="tasklist.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======List of files/folders created in the last 1 month======
2014-06-04 16:43:42 ----D---- C:\rsit
2014-06-04 16:43:42 ----D---- C:\Program Files\trend micro
2014-06-04 15:01:41 ----D---- C:\Program Files\FinndBestDEaal
2014-06-04 15:00:58 ----D---- C:\Program Files\NewSaVaer
2014-06-04 14:43:47 ----D---- C:\Program Files\System Optimizer Pro
2014-05-29 06:24:57 ----D---- C:\Documents and Settings\All Users\Application Data\NewSaVaer
2014-05-28 07:14:52 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2014-05-28 07:14:52 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2014-05-28 07:14:51 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2014-05-28 07:14:51 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2014-05-28 07:14:49 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2014-05-28 07:14:41 ----D---- C:\WINDOWS\Logs
2014-05-28 07:14:37 ----SHD---- C:\WINDOWS\system32\AI_RecycleBin
2014-05-28 07:14:33 ----D---- C:\Riot Games
2014-05-28 07:13:34 ----D---- C:\Program Files\Pando Networks
2014-05-28 07:12:56 ----D---- C:\Documents and Settings\kurd centre\Application Data\Riot Games
2014-05-27 05:38:13 ----D---- C:\Documents and Settings\kurd centre\Application Data\MSNInstaller
2014-05-27 05:37:30 ----D---- C:\Program Files\SuperFastPC
2014-05-27 04:59:41 ----D---- C:\Program Files\Common Files\Skype
2014-05-27 04:59:39 ----RD---- C:\Program Files\Skype
2014-05-26 05:14:55 ----D---- C:\Documents and Settings\kurd centre\Application Data\.mono
2014-05-26 04:00:29 ----D---- C:\Program Files\Mozilla Firefox
2014-05-26 02:48:12 ----D---- C:\Documents and Settings\kurd centre\Application Data\Mozilla
2014-05-26 02:46:39 ----D---- C:\Documents and Settings\All Users\Application Data\Mozilla
2014-05-26 02:46:38 ----D---- C:\Program Files\Mozilla Maintenance Service
2014-05-24 17:49:26 ----A---- C:\WINDOWS\system32\drivers\{0782648b-1717-4fef-ac58-8cb3ce03adb3}t.sys
2014-05-23 14:32:18 ----D---- C:\WINDOWS\system32\Adobe
2014-05-22 05:43:01 ----D---- C:\Documents and Settings\All Users\Application Data\FinndBestDEaal
2014-05-21 20:02:40 ----D---- C:\Program Files\Systweak Support Dock
2014-05-21 19:38:26 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2014-05-15 20:54:03 ----D---- C:\Program Files\globalUpdate
2014-05-15 20:51:38 ----D---- C:\Documents and Settings\kurd centre\Application Data\5482
2014-05-15 20:51:07 ----D---- C:\Documents and Settings\All Users\Application Data\SaveClicker
2014-05-15 20:51:07 ----D---- C:\Documents and Settings\All Users\Application Data\21b7779b56294ff0
2014-05-15 20:51:06 ----D---- C:\Program Files\SaveClicker
2014-05-15 20:48:58 ----D---- C:\Program Files\HomeTab
2014-05-15 15:48:38 ----D---- C:\Documents and Settings\kurd centre\Application Data\BACS.exe
2014-05-14 08:55:00 ----A---- C:\WINDOWS\system32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gt.sys
2014-05-10 22:15:14 ----D---- C:\Documents and Settings\All Users\Application Data\Allmyapps
2014-05-10 07:22:56 ----D---- C:\Documents and Settings\kurd centre\Application Data\{E0445864-8AF4-434F-B0AA-467617D42C05}
2014-05-10 07:22:48 ----D---- C:\Documents and Settings\kurd centre\Application Data\iRobinHood
2014-05-10 07:22:36 ----D---- C:\Documents and Settings\kurd centre\Application Data\rightbackup
2014-05-10 07:22:29 ----D---- C:\Documents and Settings\kurd centre\Application Data\PC TEKNIX
2014-05-09 21:45:36 ----D---- C:\Program Files\iRobinHood
2014-05-09 21:10:50 ----D---- C:\Program Files\Bench
2014-05-09 21:09:47 ----D---- C:\Documents and Settings\kurd centre\Application Data\ReWinUp
2014-05-09 20:47:38 ----A---- C:\WINDOWS\unins000.exe
2014-05-09 20:47:38 ----A---- C:\WINDOWS\unins000.dat
2014-05-09 20:47:32 ----D---- C:\Program Files\EZ Software Updater
2014-05-09 16:54:38 ----D---- C:\Documents and Settings\All Users\Application Data\CDB
2014-05-09 16:38:05 ----A---- C:\WINDOWS\Reimage.ini
2014-05-05 00:47:01 ----D---- C:\Documents and Settings\kurd centre\Application Data\Activeris
2014-05-05 00:36:54 ----N---- C:\WINDOWS\system32\spmsg.dll
2014-05-05 00:36:34 ----A---- C:\WINDOWS\system32\msisip.dll
2014-05-05 00:36:34 ----A---- C:\WINDOWS\system32\msimsg.dll
2014-05-05 00:36:34 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-05-05 00:36:34 ----A---- C:\WINDOWS\system32\msiexec.exe
2014-05-05 00:36:34 ----A---- C:\WINDOWS\system32\msi.dll
======List of files/folders modified in the last 1 month======
2014-06-04 16:43:42 ----RD---- C:\Program Files
2014-06-04 16:42:16 ----RSH---- C:\WINDOWS\zzppkdvtlcctsoapnsemd.exe
2014-06-04 16:42:16 ----RSH---- C:\WINDOWS\xvjharhdtigvsmwjfis.exe
2014-06-04 16:42:16 ----RSH---- C:\WINDOWS\wrcxnbohugbnhyfp.exe
2014-06-04 16:42:16 ----RSH---- C:\WINDOWS\qrijfzsrkcdvvsfvuanwop.exe
2014-06-04 16:42:16 ----RSH---- C:\WINDOWS\mjwtlbqlaolzvoxjeg.exe
2014-06-04 16:42:16 ----RSH---- C:\WINDOWS\kjyxrjaxoedtrmxlimxe.exe
2014-06-04 16:42:16 ----RSH---- C:\WINDOWS\dzlhynbvjwsfasalf.exe
2014-06-04 16:40:41 ----SHD---- C:\System Volume Information
2014-06-04 16:34:27 ----D---- C:\WINDOWS\system32
2014-06-04 16:34:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-06-04 16:30:26 ----RSH---- C:\WINDOWS\system32\zzppkdvtlcctsoapnsemd.exe
2014-06-04 16:30:26 ----RSH---- C:\WINDOWS\system32\xvjharhdtigvsmwjfis.exe
2014-06-04 16:30:26 ----RSH---- C:\WINDOWS\system32\wrcxnbohugbnhyfp.exe
2014-06-04 16:30:26 ----RSH---- C:\WINDOWS\system32\qrijfzsrkcdvvsfvuanwop.exe
2014-06-04 16:30:26 ----RSH---- C:\WINDOWS\system32\mjwtlbqlaolzvoxjeg.exe
2014-06-04 16:30:26 ----RSH---- C:\WINDOWS\system32\dzlhynbvjwsfasalf.exe
2014-06-04 16:30:23 ----D---- C:\WINDOWS
2014-06-04 16:30:23 ----A---- C:\WINDOWS\RTacDbg.txt
2014-06-04 16:29:21 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-06-04 15:16:43 ----RSH---- C:\WINDOWS\system32\kjyxrjaxoedtrmxlimxe.exe
2014-06-04 15:16:43 ----D---- C:\WINDOWS\Prefetch
2014-06-04 15:15:13 ----D---- C:\WINDOWS\system32\Restore
2014-06-04 15:08:15 ----SHD---- C:\WINDOWS\Installer
2014-06-04 15:07:40 ----SHD---- C:\Config.Msi
2014-06-04 15:07:40 ----RSD---- C:\WINDOWS\assembly
2014-06-04 14:59:28 ----SD---- C:\WINDOWS\Tasks
2014-06-04 14:37:43 ----D---- C:\WINDOWS\Temp
2014-06-04 13:20:49 ----D---- C:\Documents and Settings\kurd centre\Application Data\Adobe
2014-06-04 01:09:10 ----D---- C:\Program Files\Hearthstone
2014-06-04 01:08:46 ----D---- C:\Documents and Settings\kurd centre\Application Data\Battle.net
2014-06-01 16:29:26 ----D---- C:\Program Files\Battle.net
2014-05-31 21:02:57 ----D---- C:\WINDOWS\system32\CatRoot2
2014-05-28 07:27:03 ----D---- C:\WINDOWS\Help
2014-05-28 07:14:53 ----D---- C:\WINDOWS\system32\DirectX
2014-05-28 07:14:52 ----HD---- C:\WINDOWS\inf
2014-05-28 07:14:18 ----D---- C:\WINDOWS\WinSxS
2014-05-27 05:38:14 ----D---- C:\Program Files\MSN
2014-05-27 05:30:52 ----D---- C:\Program Files\Nosibay
2014-05-27 05:05:17 ----D---- C:\Program Files\RegClean Pro
2014-05-27 05:05:16 ----D---- C:\Documents and Settings\kurd centre\Application Data\systweak
2014-05-27 05:01:39 ----A---- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-05-27 04:59:45 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2014-05-27 04:59:41 ----D---- C:\Program Files\Common Files
2014-05-27 04:54:45 ----D---- C:\Documents and Settings\kurd centre\Application Data\Nosibay
2014-05-26 13:12:55 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-05-25 05:36:09 ----D---- C:\Program Files\Electronic Arts
2014-05-25 05:36:08 ----D---- C:\Documents and Settings\All Users\Application Data\Electronic Arts
2014-05-25 01:12:43 ----A---- C:\WINDOWS\win.ini
2014-05-24 17:49:26 ----D---- C:\WINDOWS\system32\drivers
2014-05-21 19:38:49 ----A---- C:\WINDOWS\imsins.BAK
2014-05-21 19:38:45 ----RSHDC---- C:\WINDOWS\system32\dllcache
2014-05-16 07:39:24 ----D---- C:\Documents and Settings\kurd centre\Application Data\vlc
2014-05-16 07:31:36 ----SD---- C:\Documents and Settings\kurd centre\Application Data\Microsoft
2014-05-15 21:01:00 ----D---- C:\Documents and Settings\kurd centre\Application Data\dvdcss
2014-05-15 20:51:04 ----D---- C:\Documents and Settings
2014-05-15 10:33:51 ----HD---- C:\Program Files\InstallShield Installation Information
2014-05-14 05:55:36 ----D---- C:\Program Files\Common Files\Adobe
2014-05-10 06:45:25 ----D---- C:\WINDOWS\system32\config
2014-05-09 21:19:14 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2014-05-08 12:31:19 ----D---- C:\Program Files\JustCloud
2014-05-05 02:59:54 ----D---- C:\WINDOWS\Microsoft.NET
2014-05-05 00:39:45 ----D---- C:\Program Files\Internet Explorer
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 {0782648b-1717-4fef-ac58-8cb3ce03adb3}t;{0782648b-1717-4fef-ac58-8cb3ce03adb3}t; C:\WINDOWS\system32\drivers\{0782648b-1717-4fef-ac58-8cb3ce03adb3}t.sys [2014-05-22 55232]
R1 {2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gt;{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gt; C:\WINDOWS\system32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gt.sys [2014-05-12 55232]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-04 36096]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-03 14848]
R1 Tcpip6;Microsoft IPv6 Protocol Driver; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2004-08-04 223616]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.7.5.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2014-04-29 21361]
R2 NwlnkIpx;NWLink IPX/SPX/NetBIOS Compatible Transport Protocol; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2004-08-04 88448]
R2 NwlnkNb;NWLink NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2001-08-23 63232]
R2 NwlnkSpx;NWLink SPX/SPXII Protocol; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2001-08-23 55936]
R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-02-15 5854752]
R3 LHidFlt2;Logitech HID/USB Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFlt2.sys [2002-04-15 23328]
R3 LKbdFlt2;Logitech Keyboard Class Filter Driver; C:\WINDOWS\system32\DRIVERS\LKbdFlt2.sys [2002-04-15 5840]
R3 LMouFlt2;Logitech Mouse Class Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFlt2.sys [2002-04-15 68816]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 RTL8192cu;Realtek RTL8192CU Wireless LAN 802.11n USB 2.0 Network Adapter; C:\WINDOWS\system32\DRIVERS\RTL8192cu.sys [2010-08-06 907496]
R3 tunmp;Microsoft Tun Miniport Adapter Driver; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2004-08-04 12416]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys []
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
S3 Blfp;Broadcom Advanced Server Program Driver; C:\WINDOWS\system32\DRIVERS\baspxp32.sys [2008-06-06 98816]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys []
S3 l8042pr2;Logitech PS/2 Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\L8042Pr2.sys [2002-04-15 52224]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2004-08-04 163584]
S3 RimUsb;BlackBerry Smartphone; C:\WINDOWS\System32\Drivers\RimUsb.sys [2011-07-25 64512]
S3 RimVSerPort;RIM Virtual Serial Port v2; C:\WINDOWS\system32\DRIVERS\RimSerial.sys [2011-07-20 35328]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-08-23 5888]
S3 rt2870;Ralink 802.11n USB Wireless LAN Card Driver; C:\WINDOWS\system32\DRIVERS\rt2870.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S3 usbvideo;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-03 78464]
S3 vulfnths;VIA USB Host Controller Lower Filter; C:\WINDOWS\System32\Drivers\vulfnth.sys [2003-08-04 6912]
S3 vulfntrs;VIA USB Roothub Lower Filter; C:\WINDOWS\System32\Drivers\vulfntr.sys [2003-08-04 11392]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2008-03-27 503008]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S4 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-08-23 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 6to4;IPv6 Helper Service; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]
R2 buuoujqmrk32;buuoujqmrk32; C:\Program Files\003\buuoujqmrk32.exe [2014-04-30 541696]
R2 EZ Software Updater;EZ Software Updater; C:\Program Files\EZ Software Updater\EZ Software Updater.exe [2014-05-05 202752]
R2 NwSapAgent;SAP Agent; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-04-18 116648]
S2 NWCWorkstation;Client Service for NetWare; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
S2 srvReWinUpProtect;The best protection for your browser's extensions; C:\Documents and Settings\kurd centre\Application Data\ReWinUp\protect\ReWinUpProtect.exe [2014-05-09 73216]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-26 257712]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-04-18 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-05-26 119408]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosim o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosim o kontrolu
Zdravim 
Tak tohle uz jsem dlouho nevidel
Haveti je tam pozehnane. Se divim, ze to jeste jede.
Proc neni pc aktualizovany? Pouzivate nejaky antivir?
V nouzovem rezimu udelejte !!!kompletni!!! kontrolu s MBAM http://www.bleepingcomputer.com/downloa ... re/dl/241/ a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce. Navod zde http://forum.viry.cz/viewtopic.php?f=29&t=115222

Tak tohle uz jsem dlouho nevidel

Haveti je tam pozehnane. Se divim, ze to jeste jede.


Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
-
- Návštěvník
- Příspěvky: 2
- Registrován: 04 čer 2014 14:49
Re: Prosim o kontrolu
Mili Marty,
velky dik za tvuj zajem. Velice si tiho vazim - jsem v zoufale situaci.
K veci:
Nemohu spustit Nouzovy rezim. Pokazde se akorat restartuje.
Takze co navrhujes? :]
velky dik za tvuj zajem. Velice si tiho vazim - jsem v zoufale situaci.
K veci:
Nemohu spustit Nouzovy rezim. Pokazde se akorat restartuje.
Takze co navrhujes? :]
Re: Prosim o kontrolu
Jakoze se nedostanete ani k nabidce vyberu, nebo vyberete nouzak, ale ten nenajede?
Zkuste to takto http://forum.viry.cz/viewtopic.php?f=46&t=7554
Kdyz to nepujde, spustte test v normalnim rezimu.
Ale jinak je tam toho tolik, ze by asi byla rychlejsi preinstalace. System muze byt naboreny. Snad mate zalohovana data.
21.6. pro neaktivitu
http://forum.viry.cz/viewtopic.php?f=12&t=123975
Zkuste to takto http://forum.viry.cz/viewtopic.php?f=46&t=7554
Kdyz to nepujde, spustte test v normalnim rezimu.
Ale jinak je tam toho tolik, ze by asi byla rychlejsi preinstalace. System muze byt naboreny. Snad mate zalohovana data.
21.6. pro neaktivitu

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).