Vyskakujú mi reklamy v chrome
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:25-12-2015
Ran by Tomocofon (administrator) on MOGBUG (25-12-2015 13:57:21)
Running from C:\Users\Tomocofon\Desktop
Loaded Profiles: Tomocofon (Available Profiles: Tomocofon)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Connectify\ConnectifyService.exe
(Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
() C:\Program Files (x86)\LuckyBrowse\app\LuckyBrowse.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(Společnost TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2052392 2010-03-10] (Synaptics Incorporated)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [595816 2010-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1050072 2010-02-11] (Toshiba Europe GmbH)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SAIICpl.exe [307768 2009-11-19] ()
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [521272 2010-03-22] (Conexant Systems, Inc.)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505696 2009-11-05] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [570680 2009-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [913720 2010-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-10-19] (TOSHIBA Corporation)
HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1489760 2010-03-17] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705368 2010-02-23] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba Registration] => C:\Program Files\Toshiba\Registration\ToshibaReminder.exe [136136 2010-04-19] (Toshiba Europe GmbH)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-08-13] (Apple Inc.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595848 2015-07-08] (ESET)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2009-12-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-03-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ITSecMng] => %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-02-24] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [ToshibaServiceStation] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [1298816 2011-07-11] (TOSHIBA Corporation)
HKU\S-1-5-21-1185020117-3015452351-802645411-1000\...\Run: [Connectify] => C:\Program Files (x86)\Connectify\Connectify.exe [4004864 2015-10-03] (Connectify)
HKU\S-1-5-21-1185020117-3015452351-802645411-1000\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3035968 2012-02-02] (DT Soft Ltd)
HKU\S-1-5-18\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth Manager.lnk [2015-12-21]
ShortcutTarget: Bluetooth Manager.lnk -> C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2010-05-14]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2010-05-14]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{8D9A57D9-5B90-4EB2-BBEE-24BAB9579832}: [DhcpNameServer] 158.193.86.1 158.193.86.50
Tcpip\..\Interfaces\{AA4CA338-3629-49E6-BC1D-C375794C267B}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{E24AFFA8-B1F9-43D2-ACA2-5B4B1715B44E}: [DhcpNameServer] 172.20.10.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-1185020117-3015452351-802645411-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1185020117-3015452351-802645411-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1185020117-3015452351-802645411-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://houmpage.com/?src=hp&ssid=1450896269&a=1040872&uuid=0a87770d-67ff-40be-a552-8aad25bdf44e
SearchScopes: HKLM -> DefaultScope {E0C1B0BA-145A-4B8D-8601-4893457708CD} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {E0C1B0BA-145A-4B8D-8601-4893457708CD} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {8CB218C3-D17E-46D9-BB07-0AF89B9E364F} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {8CB218C3-D17E-46D9-BB07-0AF89B9E364F} URL = hxxp://www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-1185020117-3015452351-802645411-1000 -> DefaultScope {cf34d395-9ff1-49a0-98a5-8db1636431b1} URL = hxxp://houmpage.com/search/?src=ds&q={searchTerms}&ssid=1450896269&a=1040872&uuid=0a87770d-67ff-40be-a552-8aad25bdf44e
SearchScopes: HKU\S-1-5-21-1185020117-3015452351-802645411-1000 -> {8CB218C3-D17E-46D9-BB07-0AF89B9E364F} URL =
SearchScopes: HKU\S-1-5-21-1185020117-3015452351-802645411-1000 -> {8E6B295B-1604-4F03-B553-33997C5F9FE3} URL = hxxp://www.amazon.co.uk/gp/search?ie=UTF8&keyw ... nkCode=ur2
SearchScopes: HKU\S-1-5-21-1185020117-3015452351-802645411-1000 -> {933E4118-B16E-4791-B2B3-A2678D78DBEF} URL = hxxp://rover.ebay.com/rover/1/710-71511-9400-6/4?satitle={searchTerms}
SearchScopes: HKU\S-1-5-21-1185020117-3015452351-802645411-1000 -> {cf34d395-9ff1-49a0-98a5-8db1636431b1} URL = hxxp://houmpage.com/search/?src=ds&q={searchTerms}&ssid=1450896269&a=1040872&uuid=0a87770d-67ff-40be-a552-8aad25bdf44e
SearchScopes: HKU\S-1-5-21-1185020117-3015452351-802645411-1000 -> {E0C1B0BA-145A-4B8D-8601-4893457708CD} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-05-14] (Sun Microsystems, Inc.)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-03-19] (<TOSHIBA>)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2010-02-22] (Skype Technologies)
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-07-30] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\3.0.40818.0\npctrl.dll [2009-08-17] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)
Chrome:
=======
CHR HomePage: Default -> hxxp://google.sk/
CHR StartupUrls: Default -> "hxxps://www.google.sk/"
CHR Profile: C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentácie Google) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-11-17]
CHR Extension: (Dokumenty Google) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-11-17]
CHR Extension: (Disk Google) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-17]
CHR Extension: (YouTube) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-17]
CHR Extension: (Adblock Plus) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-11-24]
CHR Extension: (Google Search) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-17]
CHR Extension: (Tabuľky Google) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-11-17]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-17]
CHR Extension: (Gmail) - C:\Users\Tomocofon\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-17]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [65536 2012-10-25] () [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1353720 2015-07-08] (ESET)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-02-11] (Toshiba Europe GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 cnnctfy2; C:\Windows\System32\DRIVERS\cnnctfy2.sys [31344 2015-10-03] (Connectify)
R3 CnxtHdmiAudService; C:\Windows\System32\drivers\CHDMI64.sys [720952 2010-03-05] (Conexant Systems Inc.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [255240 2015-07-14] (ESET)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [251632 2015-07-14] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [178520 2015-07-14] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [168208 2015-07-14] (ESET)
U5 ew_hwusbdev; C:\Windows\System32\Drivers\ew_hwusbdev.sys [109568 2015-12-02] (Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\Windows\System32\DRIVERS\ew_cdcacm.sys [121728 2015-12-02] (Huawei Technologies Co., Ltd.)
S3 hwusb_wwanecm; C:\Windows\System32\DRIVERS\ew_wwanecm.sys [375040 2015-12-02] (Huawei Technologies Co., Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381608 2015-11-10] (Duplex Secure Ltd.)
U3 a36o6xmk; C:\Windows\System32\Drivers\a36o6xmk.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-25 13:57 - 2015-12-25 13:57 - 00019928 _____ C:\Users\Tomocofon\Desktop\FRST.txt
2015-12-25 13:56 - 2015-12-25 13:57 - 00000000 ____D C:\FRST
2015-12-25 13:55 - 2015-12-25 13:55 - 02370560 _____ (Farbar) C:\Users\Tomocofon\Desktop\FRST64.exe
2015-12-24 16:40 - 2015-12-24 16:40 - 00029226 _____ C:\ComboFix.txt
2015-12-24 16:31 - 2015-12-24 16:48 - 00000000 ____D C:\Windows\erdnt
2015-12-23 19:46 - 2015-12-23 19:46 - 00000000 ____D C:\Users\Tomocofon\AppData\Roaming\SimpleFiles
2015-12-23 19:45 - 2015-12-23 19:45 - 00003066 _____ C:\Windows\System32\Tasks\LuckyBrowse
2015-12-23 19:45 - 2015-12-23 19:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\LuckyBrowse
2015-12-23 19:45 - 2015-12-23 19:45 - 00000000 ____D C:\ProgramData\LuckyBrowse
2015-12-23 19:45 - 2015-12-23 19:45 - 00000000 ____D C:\Program Files (x86)\LuckyBrowse
2015-12-21 01:18 - 2015-12-21 01:19 - 727408640 _____ C:\Users\Tomocofon\Downloads\spaceballs-cz.avi
2015-12-21 01:01 - 2015-12-21 01:04 - 1715738624 _____ C:\Users\Tomocofon\Downloads\Guardians.of.the.Galaxy.2014.480p.BRRip.XviD.AC3.CZ.avi
2015-12-19 23:30 - 2015-12-19 23:37 - 1883904066 _____ C:\Users\Tomocofon\Downloads\Meda.2_Ted.2_2015.BDRip.x264.FullHD.AC3.CZ.dab.2000-BIGbob.mkv
2015-12-17 18:02 - 2015-12-17 18:02 - 00032321 _____ C:\Users\Tomocofon\Desktop\American.Horror.Story.S05E10.REPACK.720p.HDTV.x264-KILLERS.zip
2015-12-17 18:02 - 2015-12-17 16:25 - 00035728 _____ C:\Users\Tomocofon\Desktop\American.Horror.Story.S05E10.REPACK.720p.HDTV.x264-KILLERS.srt
2015-12-17 18:02 - 2015-12-17 16:19 - 00035739 _____ C:\Users\Tomocofon\Desktop\American.Horror.Story.S05E10.HDTV.x264-KILLERS.srt
2015-12-17 17:17 - 2015-12-17 17:35 - 310477442 _____ C:\Users\Tomocofon\Downloads\American.Horror.Story.S05E10.XviD-AFG.avi
2015-12-16 23:12 - 2015-12-16 23:12 - 00140112 _____ C:\Users\Tomocofon\Downloads\THE UNIVERSITY OF ŽILINA (2).pdf
2015-12-16 23:12 - 2015-12-16 23:12 - 00123579 _____ C:\Users\Tomocofon\Downloads\PRESENTATION (2).pdf
2015-12-16 23:12 - 2015-12-16 23:12 - 00123579 _____ C:\Users\Tomocofon\Downloads\PRESENTATION (1).pdf
2015-12-16 19:10 - 2015-12-16 19:10 - 00683802 _____ C:\Users\Tomocofon\Downloads\Irregular Verbs.pdf
2015-12-16 18:34 - 2015-12-16 18:34 - 06437608 _____ C:\Users\Tomocofon\Downloads\present forms.pdf
2015-12-16 18:34 - 2015-12-16 18:34 - 00123579 _____ C:\Users\Tomocofon\Downloads\PRESENTATION.pdf
2015-12-16 18:33 - 2015-12-16 18:33 - 00140112 _____ C:\Users\Tomocofon\Downloads\THE UNIVERSITY OF ŽILINA (1).pdf
2015-12-16 18:31 - 2015-12-16 18:31 - 00140112 _____ C:\Users\Tomocofon\Downloads\THE UNIVERSITY OF ŽILINA.pdf
2015-12-15 23:37 - 2015-12-16 15:15 - 00000000 ____D C:\Users\Tomocofon\Desktop\hudba
2015-12-14 10:33 - 2015-12-14 10:33 - 00000000 ____D C:\Users\Tomocofon\AppData\LocalLow\Temp
2015-12-14 10:32 - 2015-12-14 10:32 - 00000000 ____D C:\Users\Tomocofon\Desktop\Nová složka
2015-12-13 20:07 - 2015-12-13 20:07 - 00000000 ____D C:\Users\Tomocofon\Documents\Vlastní šablony Office
2015-12-13 19:46 - 2015-12-25 12:57 - 00003490 _____ C:\Windows\System32\Tasks\AutoKMS
2015-12-13 19:46 - 2015-12-14 19:46 - 00000000 ____D C:\Windows\AutoKMS
2015-12-13 19:46 - 2015-12-13 19:46 - 00000000 ____D C:\Users\Tomocofon\AppData\Local\Microsoft Toolkit
2015-12-13 19:45 - 2015-12-13 19:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2015-12-13 19:42 - 2015-12-13 19:42 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-12-13 19:41 - 2015-12-13 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-12-13 19:41 - 2015-12-13 19:41 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-12-13 19:40 - 2015-12-13 19:40 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-12-13 19:40 - 2015-12-13 19:40 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-12-13 19:39 - 2015-12-13 19:40 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-12-13 19:39 - 2015-12-13 19:39 - 00000000 ____D C:\Windows\PCHEALTH
2015-12-13 19:39 - 2015-12-13 19:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-12-13 19:38 - 2015-12-13 19:39 - 00000000 ____D C:\Program Files\Microsoft Office
2015-12-13 19:38 - 2015-12-13 19:38 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-12-13 19:38 - 2015-12-13 19:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-12-13 19:38 - 2015-12-13 19:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-12-13 19:37 - 2015-12-13 19:37 - 00000000 ___RD C:\MSOCache
2015-12-13 19:15 - 2015-12-13 19:15 - 00175499 _____ C:\Users\Tomocofon\Downloads\Správy_Madeja_Tomas.pptx
2015-12-10 23:17 - 2015-12-10 23:17 - 00035910 _____ C:\Users\Tomocofon\Downloads\Split Second (1).pin
2015-12-10 23:16 - 2015-12-13 17:20 - 00119296 _____ C:\Windows\SysWOW64\zlib.dll
2015-12-10 23:16 - 2015-12-10 23:16 - 00000000 ____D C:\Users\Tomocofon\AppData\Roaming\PowerUp Software
2015-12-10 23:16 - 2015-12-10 23:16 - 00000000 ____D C:\ProgramData\PowerUp Software
2015-12-10 23:16 - 2015-08-06 10:36 - 01227264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dx8vb.dll
2015-12-10 23:16 - 2015-08-06 10:36 - 00511328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capicom.dll
2015-12-10 23:16 - 2015-08-06 10:36 - 00212240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RICHTX32.OCX
2015-12-10 23:16 - 2015-08-06 10:36 - 00164144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comct232.ocx
2015-12-10 23:16 - 2015-08-06 10:36 - 00109248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswinsck.ocx
2015-12-10 23:16 - 2015-08-06 10:36 - 00091632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsofile.dll
2015-12-10 23:16 - 2015-08-06 10:36 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2015-12-10 23:16 - 2015-08-06 10:36 - 00057344 _____ () C:\Windows\SysWOW64\ADsSecurity.dll
2015-12-10 23:16 - 2015-08-06 10:36 - 00045056 _____ (vbAccelerator) C:\Windows\SysWOW64\SSubTmr6.dll
2015-12-10 23:16 - 2015-08-06 10:36 - 00045056 _____ (Microsoft) C:\Windows\SysWOW64\NTSVC.ocx
2015-12-10 23:16 - 2001-04-05 05:43 - 00094208 ___RS (Microsoft Corporation) C:\Windows\SysWOW64\msstkprp.dll
2015-12-10 23:16 - 1998-06-17 22:00 - 00089360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB5DB.DLL
2015-12-10 23:14 - 2015-12-10 23:14 - 00035910 _____ C:\Users\Tomocofon\Downloads\Split Second.pin
2015-12-10 22:46 - 2015-12-10 22:46 - 00000000 ____D C:\Users\Tomocofon\Documents\Disney Interactive Studios
2015-12-10 22:42 - 2015-12-10 22:42 - 00002260 _____ C:\Users\Public\Desktop\Split Second.lnk
2015-12-10 22:39 - 2015-12-10 22:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Disney Interactive Studios
2015-12-10 22:39 - 2015-12-10 22:39 - 00000000 ____D C:\Program Files (x86)\Disney Interactive Studios
2015-12-10 20:10 - 2015-12-10 20:10 - 00000000 ____D C:\Users\Tomocofon\Downloads\Subs
2015-12-10 20:06 - 2015-12-10 20:06 - 00038695 _____ C:\Users\Tomocofon\Desktop\American.Horror.Story.S05E09.HDTV.x264-FLEET.srt
2015-12-10 20:06 - 2015-12-10 20:06 - 00038685 _____ C:\Users\Tomocofon\Desktop\American.Horror.Story.S05E09.720p.HDTV.x264-KILLERS.srt
2015-12-10 17:13 - 2015-12-10 17:33 - 366404832 _____ C:\Users\Tomocofon\Desktop\American.Horror.Story.S05E09.HDTV.XviD-FUM.avi
2015-12-09 12:16 - 2015-11-20 19:54 - 03170304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-12-09 12:16 - 2015-11-20 19:54 - 02609152 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-12-09 12:16 - 2015-11-20 19:54 - 00709632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-12-09 12:16 - 2015-11-20 19:54 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-12-09 12:16 - 2015-11-20 19:54 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-12-09 12:16 - 2015-11-20 19:54 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-12-09 12:16 - 2015-11-20 19:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-12-09 12:16 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-12-09 12:16 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-12-09 12:16 - 2015-11-20 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-12-09 12:16 - 2015-11-20 19:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-12-09 12:16 - 2015-11-20 19:34 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-12-09 12:16 - 2015-11-20 19:34 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-12-09 12:16 - 2015-11-20 19:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-12-09 12:16 - 2015-11-20 19:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-12-09 12:16 - 2015-11-20 19:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-12-09 12:16 - 2015-11-11 22:12 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-12-09 12:16 - 2015-11-11 21:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-12-09 12:16 - 2015-11-11 19:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2015-12-09 12:16 - 2015-11-11 19:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2015-12-09 12:16 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2015-12-09 12:16 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2015-12-09 12:16 - 2015-11-11 17:21 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-12-09 12:16 - 2015-11-11 17:00 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-12-09 12:16 - 2015-11-11 16:44 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-12-09 12:16 - 2015-11-11 16:44 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-12-09 12:16 - 2015-11-11 16:41 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-12-09 12:16 - 2015-11-11 16:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-12-09 12:16 - 2015-11-11 15:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-12-09 12:16 - 2015-11-10 19:55 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-12-09 12:16 - 2015-11-10 19:55 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-12-09 12:16 - 2015-11-10 19:55 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-12-09 12:16 - 2015-11-10 19:39 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-12-09 12:16 - 2015-11-10 19:37 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-12-09 12:16 - 2015-11-10 18:47 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-12-09 12:16 - 2015-11-10 01:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-12-09 12:16 - 2015-11-10 01:13 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-12-09 12:16 - 2015-11-10 01:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-12-09 12:16 - 2015-11-10 01:12 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-12-09 12:16 - 2015-11-10 01:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-12-09 12:16 - 2015-11-10 01:11 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-12-09 12:16 - 2015-11-10 01:08 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-12-09 12:16 - 2015-11-10 01:06 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-12-09 12:16 - 2015-11-10 01:06 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-12-09 12:16 - 2015-11-10 01:04 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-12-09 12:16 - 2015-11-10 01:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-12-09 12:16 - 2015-11-10 01:02 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-12-09 12:16 - 2015-11-10 01:02 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-12-09 12:16 - 2015-11-10 00:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-12-09 12:16 - 2015-11-10 00:47 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-12-09 12:16 - 2015-11-10 00:46 - 04514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-12-09 12:16 - 2015-11-10 00:44 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-12-09 12:16 - 2015-11-10 00:37 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-12-09 12:16 - 2015-11-10 00:36 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-12-09 12:16 - 2015-11-10 00:36 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-12-09 12:16 - 2015-11-10 00:35 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-12-09 12:16 - 2015-11-10 00:17 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-12-09 12:16 - 2015-11-10 00:14 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-12-09 12:16 - 2015-11-10 00:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-12-09 12:16 - 2015-11-08 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-12-09 12:16 - 2015-11-08 23:32 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-12-09 12:16 - 2015-11-08 23:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-12-09 12:16 - 2015-11-08 23:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-12-09 12:16 - 2015-11-08 23:15 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-12-09 12:16 - 2015-11-08 23:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-12-09 12:16 - 2015-11-08 23:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-12-09 12:16 - 2015-11-08 23:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-12-09 12:16 - 2015-11-08 23:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-12-09 12:16 - 2015-11-08 23:06 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-12-09 12:16 - 2015-11-08 23:04 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-12-09 12:16 - 2015-11-08 23:02 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-12-09 12:16 - 2015-11-08 23:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-12-09 12:16 - 2015-11-08 23:01 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-12-09 12:16 - 2015-11-08 23:01 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-12-09 12:16 - 2015-11-08 23:01 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-12-09 12:16 - 2015-11-08 22:52 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-09 12:16 - 2015-11-08 22:48 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-12-09 12:16 - 2015-11-08 22:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-09 12:16 - 2015-11-08 22:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-12-09 12:16 - 2015-11-08 22:32 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-12-09 12:16 - 2015-11-08 22:29 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-12-09 12:16 - 2015-11-08 22:18 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-12-09 12:16 - 2015-11-08 22:15 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-12-09 12:16 - 2015-11-08 22:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-12-09 12:16 - 2015-11-08 22:14 - 14456832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-12-09 12:16 - 2015-11-08 22:14 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-12-09 12:16 - 2015-11-08 22:13 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-12-09 12:16 - 2015-11-08 21:53 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-12-09 12:16 - 2015-11-08 21:41 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-12-09 12:16 - 2015-11-08 21:30 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-12-09 12:16 - 2015-11-05 20:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-12-09 12:16 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
2015-12-09 12:16 - 2015-11-05 20:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-12-09 12:16 - 2015-11-05 20:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-12-09 12:16 - 2015-11-05 10:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-12-09 12:16 - 2015-11-03 20:04 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-12-09 12:16 - 2015-11-03 20:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2015-12-09 12:16 - 2015-11-03 19:56 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-12-09 12:16 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2015-12-09 12:16 - 2015-10-09 00:22 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2015-12-09 12:16 - 2015-10-09 00:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZE.DLL
2015-12-09 12:16 - 2015-10-09 00:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdgeoqw.dll
2015-12-09 12:16 - 2015-10-09 00:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZEL.DLL
2015-12-09 12:16 - 2015-10-09 00:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZE.DLL
2015-12-09 12:16 - 2015-10-09 00:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdgeoqw.dll
2015-12-09 12:16 - 2015-10-09 00:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZEL.DLL
2015-12-09 12:16 - 2015-10-09 00:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2015-12-09 12:16 - 2015-10-08 20:13 - 00419928 _____ C:\Windows\SysWOW64\locale.nls
2015-12-09 12:16 - 2015-10-08 19:52 - 00419928 _____ C:\Windows\system32\locale.nls
2015-12-07 20:18 - 2015-12-07 20:18 - 11820733 _____ C:\Users\Tomocofon\Downloads\past tenses.pdf
2015-12-07 20:03 - 2015-12-07 20:03 - 00103673 _____ C:\Users\Tomocofon\Downloads\FORMAL LETTERS-2.pdf
2015-12-07 10:44 - 2015-12-07 10:44 - 28610227 _____ C:\Users\Tomocofon\Desktop\MVI_7988_1.mp4
2015-12-07 10:34 - 2015-12-07 10:35 - 00000000 ____D C:\Users\Tomocofon\Desktop\Nemcina
2015-12-02 16:43 - 2015-12-02 16:43 - 00079152 _____ C:\Users\Tomocofon\Downloads\[SkT]Adventure_Time-_Finn_and_Jake_Investigations_(2015).torrent
2015-12-02 16:38 - 2015-12-02 16:38 - 00000000 ____D C:\Users\Tomocofon\AppData\Roaming\Paradoxx
2015-12-02 16:38 - 2015-12-02 16:38 - 00000000 ____D C:\ProgramData\Paradoxx
2015-12-02 16:38 - 2015-12-02 16:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\T-Mobile Communication Center
2015-12-02 16:38 - 2011-02-16 14:15 - 00880640 _____ (DMSoft Technologies) C:\Windows\SysWOW64\SkinCrafter3_vs2005.dll
2015-12-02 16:37 - 2015-12-02 16:37 - 00000000 ____D C:\ProgramData\DatacardService
2015-12-02 16:36 - 2015-12-02 16:38 - 00000000 ____D C:\Program Files (x86)\T-Mobile Communication Center
2015-12-02 16:36 - 2015-12-02 16:36 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll
2015-12-02 16:36 - 2015-12-02 16:36 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00455680 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00375040 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_wwanecm.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00246272 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00226048 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00121728 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_cdcacm.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00110592 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00109568 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00091648 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00077312 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00030720 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00014976 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys
2015-12-02 16:36 - 2015-12-02 16:36 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf
2015-12-01 21:46 - 2015-12-01 21:46 - 00000000 ____D C:\Users\Tomocofon\Documents\Adobe
2015-12-01 21:41 - 2015-12-01 21:41 - 00001525 _____ C:\Users\Public\Desktop\Adobe Application Manager.lnk
2015-11-30 16:47 - 2015-11-30 16:47 - 00095515 _____ C:\Users\Tomocofon\Downloads\CV-Example-1-cs_CZ.pdf
2015-11-30 16:43 - 2015-11-30 16:43 - 00092886 _____ C:\Users\Tomocofon\Downloads\CV-Example-1-en-GB (1).pdf
2015-11-30 16:42 - 2015-11-30 16:42 - 00089071 _____ C:\Users\Tomocofon\Downloads\Europass-CV-Example-1-en_IE.pdf
2015-11-30 16:42 - 2015-11-30 16:42 - 00089071 _____ C:\Users\Tomocofon\Downloads\Europass-CV-Example-1-en_IE (1).pdf
2015-11-30 11:23 - 2015-11-30 11:23 - 00390440 _____ C:\Users\Tomocofon\Downloads\nemdzina.aII.pdf
2015-11-30 11:20 - 2015-11-30 11:20 - 00000000 ____D C:\Users\Tomocofon\AppData\Local\Microsoft Help
2015-11-30 00:46 - 2015-11-30 00:46 - 00609805 _____ C:\Users\Tomocofon\Downloads\zaverecna_prace.pdf
2015-11-29 22:00 - 2015-11-29 22:00 - 00092886 _____ C:\Users\Tomocofon\Downloads\CV-Example-1-en-GB.pdf
2015-11-25 21:07 - 2015-11-25 21:07 - 186024808 _____ C:\Users\Tomocofon\Desktop\Nemcina kniha.rar
2015-11-25 14:21 - 2015-11-25 14:21 - 00000000 ____D C:\Users\Tomocofon\Desktop\Nová složka (2)
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-25 13:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows
2015-12-25 13:27 - 2015-09-15 10:17 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-25 13:12 - 2009-07-14 05:45 - 00020368 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-12-25 13:12 - 2009-07-14 05:45 - 00020368 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-12-25 13:07 - 2015-09-25 18:32 - 00000000 ____D C:\Users\Tomocofon\AppData\Local\Adobe
2015-12-25 13:01 - 2009-07-14 16:18 - 00660644 _____ C:\Windows\system32\perfh005.dat
2015-12-25 13:01 - 2009-07-14 16:18 - 00141294 _____ C:\Windows\system32\perfc005.dat
2015-12-25 13:01 - 2009-07-14 06:13 - 01583226 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-25 13:01 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2015-12-25 12:57 - 2015-09-15 10:17 - 00000932 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-25 12:57 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-24 16:38 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2015-12-24 10:03 - 2015-09-15 10:17 - 00002299 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-12-23 19:45 - 2015-09-14 15:15 - 00001590 _____ C:\Users\Tomocofon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-12-21 12:55 - 2015-09-15 21:36 - 00000000 ____D C:\Users\Tomocofon\AppData\Local\CrashDumps
2015-12-20 18:40 - 2015-10-11 20:10 - 00000507 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2015-12-19 23:27 - 2015-09-21 12:51 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-12-19 23:27 - 2015-09-21 12:51 - 00000000 ___SD C:\Windows\system32\GWX
2015-12-18 14:43 - 2015-11-16 11:48 - 00000000 ____D C:\Users\Tomocofon\Desktop\kačka škola
2015-12-18 14:43 - 2009-07-14 05:45 - 05106944 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-18 13:32 - 2015-10-14 09:20 - 00000000 ____D C:\Users\Tomocofon\Documents\StrongDC++
2015-12-18 03:01 - 2015-09-16 21:47 - 01550602 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-12-13 20:14 - 2015-11-17 22:20 - 00000000 ____D C:\Users\Tomocofon\Documents\My Games
2015-12-13 19:46 - 2015-09-14 15:12 - 00111520 _____ C:\Users\Tomocofon\AppData\Local\GDIPFONTCACHEV1.DAT
2015-12-13 19:45 - 2015-09-14 15:04 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-12-13 19:45 - 2009-07-14 16:36 - 00000000 ____D C:\Windows\ShellNew
2015-12-13 19:45 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-12-13 19:45 - 2009-07-14 03:34 - 00000478 _____ C:\Windows\win.ini
2015-12-13 19:38 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-12-13 19:30 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-12-13 19:29 - 2015-09-14 15:06 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-12-13 19:15 - 2015-10-25 16:20 - 00000000 ___RD C:\Users\Tomocofon\Desktop\Škola
2015-12-10 23:16 - 2010-05-14 06:26 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-12-10 16:07 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2015-12-09 17:56 - 2015-09-15 12:49 - 00000000 ____D C:\Windows\system32\MRT
2015-12-09 17:52 - 2015-09-15 12:49 - 140158008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-12-07 10:37 - 2015-09-21 10:21 - 00000000 ____D C:\Users\Tomocofon\AppData\Roaming\vlc
2015-12-07 10:34 - 2015-10-02 10:13 - 00000000 ___RD C:\Users\Tomocofon\Desktop\Videa
2015-12-07 10:26 - 2015-09-29 14:05 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-12-06 02:26 - 2015-10-02 17:17 - 00000000 ____D C:\Users\Tomocofon\AppData\Roaming\uTorrent
2015-12-04 09:22 - 2015-09-15 10:17 - 00003932 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-04 09:22 - 2015-09-15 10:17 - 00003680 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-02 16:39 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\ModemLogs
2015-12-02 16:36 - 2008-03-27 22:51 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01007.dll
2015-12-02 13:18 - 2015-09-15 10:19 - 00301728 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-12-01 21:47 - 2015-11-24 19:25 - 00000000 ____D C:\Users\Tomocofon\AppData\Roaming\Adobe
2015-12-01 21:46 - 2015-11-02 10:55 - 00001113 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk
2015-12-01 21:41 - 2015-11-02 10:51 - 00001537 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
==================== Files in the root of some directories =======
2015-11-19 14:52 - 2015-11-24 09:54 - 0000132 _____ () C:\Users\Tomocofon\AppData\Roaming\Adobe PNG Format CS6 Prefs
2015-10-14 15:38 - 2015-10-14 15:38 - 225111747 _____ () C:\Users\Tomocofon\AppData\Local\ACCCx3_3_0_151.zip.aamdownload
2015-10-14 15:38 - 2015-10-14 15:38 - 0002615 _____ () C:\Users\Tomocofon\AppData\Local\ACCCx3_3_0_151.zip.aamdownload.aamd
2015-11-10 20:52 - 2015-11-10 20:52 - 0000098 _____ () C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
Files to move or delete:
====================
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-12-21 06:15
==================== End of FRST.txt ============================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu
Krasny den Vam preju 
V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).
Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )



- ukoncete vsechny programy
- kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
- kliknete na Scan, pote na Cleaning
- po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner[Cx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.