Vyskakující okna s reklamou
Napsal: 11 kvě 2015 22:04
Prosím o kontrolu logu. Začaly se mě samy otevírat reklamní okna na casíno atd. Předem díky za pomoc s odstraněním problému.
Zde je log:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-05-2015
Ran by Uživatel (administrator) on NTB1 on 11-05-2015 23:01:38
Running from C:\Users\Uživatel\Desktop
Loaded Profiles: Uživatel (Available profiles: Uživatel)
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
() C:\Program Files\IMPI\ExtensionUpdaterService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
() C:\Program Files (x86)\HP HD Webcam Driver\Monitor.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Windows NT\Accessories\wordpad.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\mstsc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-08-06] (IDT, Inc.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [334240 2012-08-29] (Hewlett-Packard Company)
HKLM-x32\...\Run: [BtTray] => c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [364032 2012-08-16] (IVT Corporation)
HKLM-x32\...\Run: [HP HD Webcam Driver_Monitor] => C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe [303480 2012-07-26] ()
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-09-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2330285332-1516996101-1209863040-1002\...\Run: [Facebook Update] => C:\Users\Uživatel\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-06-30] (Facebook Inc.)
HKU\S-1-5-21-2330285332-1516996101-1209863040-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssText3d.scr [217088 2014-10-29] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2015-05-02]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Darktek - Decibel Of The hell [Live 2011].lnk [2015-05-05]
ShortcutTarget: Darktek - Decibel Of The hell [Live 2011].lnk -> C:\ProgramData\{960b0f0f-fe47-88f7-960b-b0f0ffe43c3f}\Darktek - Decibel Of The hell [Live 2011].exe ()
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://websearch.goodforsearch.info/?pi ... Z&unqvl=86
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-2330285332-1516996101-1209863040-1002\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
HKU\S-1-5-21-2330285332-1516996101-1209863040-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKLM-x32 -> DefaultScope {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.goodforsearch.info/?l= ... Z&unqvl=86
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.goodforsearch.info/?l= ... Z&unqvl=86
SearchScopes: HKU\S-1-5-21-2330285332-1516996101-1209863040-1002 -> {2133ADB8-5C5C-4C65-A9D8-3A1A5AB1BE2E} URL = http://search.seznam.cz/?q={searchTerms ... chmodule_2
SearchScopes: HKU\S-1-5-21-2330285332-1516996101-1209863040-1002 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.goodforsearch.info/?l= ... Z&unqvl=86
BHO: IMPI -> {17E113E6-CD0E-4045-B154-65F0E57959EF} -> C:\Program Files\IMPI\Extension64.dll [2013-02-05] ()
BHO: bestadblocker -> {19bb3861-efe4-4649-8a37-cec463d3a2be} -> C:\Program Files (x86)\bestadblocker\t8WcmaxrO3quQF.x64.dll [2015-05-05] ()
BHO: UniDeals -> {79cf12f8-d484-4307-b845-4288ebf28417} -> C:\Program Files (x86)\UniDeals\Y4wJb0gCvQKaLa.x64.dll [2015-05-05] ()
BHO-x32: IMPI -> {17E113E6-CD0E-4045-B154-65F0E57959EF} -> C:\Program Files\IMPI\Extension32.dll [2013-02-05] ()
BHO-x32: bestadblocker -> {19bb3861-efe4-4649-8a37-cec463d3a2be} -> C:\Program Files (x86)\bestadblocker\t8WcmaxrO3quQF.dll [2015-05-05] ()
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2012-11-22] (pdfforge GbR)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-13] (Oracle Corporation)
BHO-x32: UniDeals -> {79cf12f8-d484-4307-b845-4288ebf28417} -> C:\Program Files (x86)\UniDeals\Y4wJb0gCvQKaLa.dll [2015-05-05] ()
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-13] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll No File
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2012-11-22] (pdfforge GbR)
DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://qtinstall.apple.com/qtactivex/qtplugin.cab
Handler-x32: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL [2001-01-22] (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-04-08] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-05-06] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-13] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-13] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2330285332-1516996101-1209863040-1002: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Uživatel\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF HKLM\...\Firefox\Extensions: [{17E113E6-CD0E-4045-B154-65F0E57959EF}] - C:\Program Files\IMPI\Firefox
FF Extension: IMPI - C:\Program Files\IMPI\Firefox [2013-02-14]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2012-12-10]
FF HKLM-x32\...\Firefox\Extensions: [{17E113E6-CD0E-4045-B154-65F0E57959EF}] - C:\Program Files\IMPI\Firefox
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR StartupUrls: Default -> "hxxp://websearch.goodforsearch.info/?pid=2921&r=2015/05/05&hid=12900859622322770595&lg=EN&cc=CZ&unqvl=86"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-03-02]
CHR Extension: (Google Drive) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-02]
CHR Extension: (YouTube) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-02]
CHR Extension: (Google Search) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-02]
CHR Extension: (Google Wallet) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-10]
CHR Extension: (Gmail) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-02]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 7af73c4b; c:\Program Files (x86)\SystemAugment\SystemAugment.dll [1625088 2015-05-05] () [File not signed]
R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1578496 2012-08-14] (IVT Corporation) [File not signed]
R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-08-14] (IVT Corporation) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [523680 2012-08-29] (Hewlett-Packard Company)
R2 IMPI Updater; C:\Program Files\IMPI\ExtensionUpdaterService.exe [185856 2013-02-05] () [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-07-19] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1522312 2012-11-22] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [905864 2012-11-22] (pdfforge GbR)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [321536 2012-08-06] (IDT, Inc.) [File not signed]
S3 vncserver; C:\Program Files\RealVNC\VNC Server\vncserver.exe [4773768 2012-10-02] (RealVNC Ltd)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
U4 BthAvrcpTg; No ImagePath
U4 bthhfhid; No ImagePath
S3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-20] (Ralink Corporation)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48736 2012-08-14] (Ralink Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 GemCCID; C:\Windows\system32\DRIVERS\GemCCID.sys [130944 2014-11-10] (Gemalto)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.)
R3 SensorsServiceDriver; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-15] (Synaptics Incorporated)
S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [43832 2012-08-15] (Synaptics Incorporated)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1062008 2012-08-03] (Sunplus)
S3 STIrUsb; C:\Windows\system32\DRIVERS\irstusb.sys [33792 2008-01-19] (SigmaTel, Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20288 2012-08-03] (Hewlett-Packard Development Company, L.P.)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-11 23:01 - 2015-05-11 23:02 - 00017895 _____ () C:\Users\Uživatel\Desktop\FRST.txt
2015-05-11 22:57 - 2015-05-11 22:58 - 02102784 _____ (Farbar) C:\Users\Uživatel\Desktop\FRST64.exe
2015-05-11 22:53 - 2015-05-11 22:53 - 00112107 _____ (forum.viry.cz) C:\Users\Uživatel\Downloads\Nepotvrzeno 840612.crdownload
2015-05-11 22:52 - 2015-05-11 22:52 - 00112107 _____ (forum.viry.cz) C:\Users\Uživatel\Downloads\Nepotvrzeno 728272.crdownload
2015-05-10 11:06 - 2015-05-10 11:06 - 00000020 _____ () C:\Users\Uživatel\AppData\Roaming\appdataFr3.bin
2015-05-10 11:06 - 2015-05-10 11:06 - 00000000 ____D () C:\ProgramData\Browser AdBlocker
2015-05-06 20:00 - 2015-05-06 22:18 - 00000000 ____D () C:\Users\Uživatel\Desktop\SOCIÁLNÍ LÉKAŘSTVÍ
2015-05-06 02:05 - 2014-06-03 03:08 - 00062386 _____ () C:\Users\Uživatel\Desktop\Palla logo s.r.o..bmp
2015-05-05 21:42 - 2015-05-05 21:42 - 00000362 _____ () C:\Users\Uživatel\Downloads\stažený soubor.vcf
2015-05-05 15:32 - 2015-05-05 15:32 - 00000000 ____D () C:\Program Files (x86)\SystemAugment
2015-05-05 15:30 - 2015-05-05 15:30 - 00000000 ____D () C:\ProgramData\{960b0f0f-fe47-88f7-960b-b0f0ffe43c3f}
2015-05-05 15:30 - 2015-05-05 15:30 - 00000000 ____D () C:\ProgramData\{6c21569f-732f-3fb3-6c21-1569f7325a7d}
2015-05-05 15:28 - 2015-05-05 15:28 - 00000570 _____ () C:\Users\Uivatel\Desktop\Darktek - Decibel Of The hell [Live 2011].mp4
2015-05-05 15:28 - 2015-05-05 15:28 - 00000000 ____D () C:\Users\Uivatel
2015-05-05 15:27 - 2015-05-05 15:32 - 00000000 ____D () C:\Program Files (x86)\BocaGeneration
2015-05-05 15:26 - 2015-05-05 15:26 - 00000000 ____D () C:\Program Files (x86)\Utime
2015-05-05 15:26 - 2015-05-05 15:26 - 00000000 ____D () C:\Program Files (x86)\bestadblocker
2015-05-05 15:25 - 2015-05-05 15:31 - 00000000 ____D () C:\ProgramData\7243239280829360841
2015-05-05 15:25 - 2015-05-05 15:31 - 00000000 ____D () C:\Program Files (x86)\UniDeals
2015-05-05 15:24 - 2015-05-11 03:24 - 00000412 _____ () C:\WINDOWS\Tasks\Bidaily Synchronize Task.job
2015-05-05 15:24 - 2015-05-06 03:24 - 00000000 ____D () C:\ProgramData\{ec21ab8e-2e90-3a63-ec21-1ab8e2e9ae38}
2015-05-05 15:24 - 2015-05-05 15:24 - 00003306 _____ () C:\WINDOWS\System32\Tasks\Bidaily Synchronize Task
2015-05-05 15:23 - 2015-05-05 15:23 - 00300544 _____ () C:\Users\Uživatel\Downloads\Darktek - Decibel Of The hell [Live 2011].exe
2015-05-05 14:29 - 2015-05-05 14:29 - 00000787 _____ () C:\Users\Uživatel\Documents\records.html
2015-05-04 15:57 - 2015-05-05 01:11 - 00000000 ____D () C:\Users\Uživatel\Desktop\PATOLOGIE
2015-05-02 15:12 - 2015-05-02 15:12 - 00002747 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Word.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002695 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Excel.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002693 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft FrontPage.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002685 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Otevřít dokument Office.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002661 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Nový dokument Office.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002639 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft PowerPoint.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002629 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Access.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00000384 _____ () C:\WINDOWS\ODBC.INI
2015-05-02 15:12 - 2015-05-02 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje sady Microsoft Office
2015-05-02 15:11 - 2015-05-02 15:11 - 00000000 ____D () C:\WINDOWS\Msagent
2015-05-01 21:23 - 2015-05-01 21:23 - 00016124 _____ () C:\Users\Uživatel\Downloads\Sešit1 (1).xlsx
2015-05-01 21:00 - 2015-05-01 21:00 - 00020170 _____ () C:\Users\Uživatel\Downloads\graf8.xlsx
2015-05-01 21:00 - 2015-05-01 21:00 - 00019312 _____ () C:\Users\Uživatel\Downloads\graf10.xlsx
2015-05-01 21:00 - 2015-05-01 21:00 - 00016739 _____ () C:\Users\Uživatel\Downloads\graf9.xlsx
2015-04-29 20:57 - 2015-04-29 20:57 - 00342251 _____ () C:\Users\Uživatel\Downloads\prilohy_1096.zip
2015-04-29 01:14 - 2015-04-29 01:14 - 00001130 _____ () C:\Users\Uživatel\Downloads\DPHDP3-0027742806-20150429-011407.xml
2015-04-27 09:27 - 2015-04-27 09:27 - 00001145 _____ () C:\Users\Uživatel\Downloads\DPHDP3-0027742806-20150427-092736.xml
2015-04-20 20:23 - 2015-04-20 20:27 - 14695130 _____ () C:\Users\Uživatel\Downloads\Laurent Wolf - No Stress.flv
2015-04-20 20:18 - 2015-04-20 20:19 - 38050716 _____ () C:\Users\Uživatel\Downloads\JAK NA STRES PRI UCENI [mp3s.nadruhou.net].mp4
2015-04-17 17:20 - 2015-04-17 19:03 - 1810354604 _____ () C:\Users\Uživatel\Downloads\Rychle-a-zběsile-7-cz-titulky.Novinka.2015..avi
2015-04-15 03:13 - 2015-03-23 23:59 - 07476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-04-15 03:13 - 2015-03-23 23:59 - 01733952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-04-15 03:13 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2015-04-15 03:13 - 2015-03-23 23:58 - 01498872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-04-15 03:13 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2015-04-15 03:13 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-15 03:13 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2015-04-15 03:13 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2015-04-15 03:13 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2015-04-15 03:13 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2015-04-15 03:13 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-04-15 03:13 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-04-15 03:12 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-04-15 03:12 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-04-15 03:12 - 2015-03-13 06:32 - 24980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-04-15 03:12 - 2015-03-13 06:08 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-04-15 03:12 - 2015-03-13 06:07 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-04-15 03:12 - 2015-03-13 05:53 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-04-15 03:12 - 2015-03-13 05:50 - 06025216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-04-15 03:12 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-04-15 03:12 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-04-15 03:12 - 2015-03-13 05:26 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-04-15 03:12 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-04-15 03:12 - 2015-03-13 05:17 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-04-15 03:12 - 2015-03-13 05:16 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-04-15 03:12 - 2015-03-13 05:08 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-04-15 03:12 - 2015-03-13 05:07 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-04-15 03:12 - 2015-03-13 05:00 - 14397440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-04-15 03:12 - 2015-03-13 04:50 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-04-15 03:12 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-04-15 03:12 - 2015-03-13 04:45 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-04-15 03:12 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-04-15 03:12 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-04-15 03:12 - 2015-03-13 04:33 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-04-15 03:12 - 2015-03-13 04:22 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-04-15 03:12 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-04-15 03:12 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-04-15 03:12 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-04-15 03:12 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-04-15 03:11 - 2015-03-23 00:45 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 01111552 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 00769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-04-15 03:11 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2015-04-15 03:11 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2015-04-15 03:11 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2015-04-15 03:11 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2015-04-15 03:11 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2015-04-15 03:11 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2015-04-15 03:10 - 2015-03-23 00:09 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-04-15 02:18 - 2015-04-15 02:18 - 00039064 _____ () C:\Users\Uživatel\Downloads\1100131375 (1).pdf.mb9l74f.partial
2015-04-15 02:12 - 2015-04-15 02:12 - 00039064 _____ () C:\Users\Uživatel\Downloads\1100056516 (2).pdf.ja9gzwn.partial
2015-04-14 22:34 - 2015-03-14 10:54 - 00133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-04-14 22:34 - 2015-03-14 03:56 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-04-14 22:34 - 2015-03-14 03:56 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-04-14 22:34 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-14 22:34 - 2015-03-14 03:37 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-04-14 22:34 - 2015-03-14 03:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-04-14 22:34 - 2015-03-14 02:22 - 03678720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-04-14 22:34 - 2015-03-14 02:12 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-04-14 22:34 - 2015-03-14 02:12 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-04-14 22:34 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-04-14 22:34 - 2015-03-14 02:08 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-14 22:34 - 2015-03-14 02:08 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-04-14 22:34 - 2015-03-14 02:06 - 02373632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-04-14 22:34 - 2015-03-14 02:06 - 00891392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-04-14 22:34 - 2015-03-14 02:02 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-04-14 22:34 - 2015-03-14 02:02 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-04-14 22:34 - 2015-03-14 01:59 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-04-14 22:34 - 2015-03-14 01:59 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-04-14 22:11 - 2015-04-14 22:11 - 10162330 _____ (Novuco ) C:\Users\Uživatel\Downloads\zavvyuka-install-1.0.01.exe
2015-04-14 22:11 - 2015-04-14 22:11 - 10162330 _____ (Novuco ) C:\Users\Uživatel\Downloads\zavvyuka-install-1.0.01 (1).exe
2015-04-13 00:51 - 2015-04-13 00:51 - 00634368 _____ () C:\Users\Uživatel\Downloads\cenikzs2007.xls
2015-04-11 20:33 - 2015-04-11 20:33 - 02217984 _____ () C:\Users\Uživatel\Downloads\adwcleaner_4.201.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-11 23:01 - 2013-07-21 23:07 - 00000000 ____D () C:\FRST
2015-05-11 23:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-05-11 22:56 - 2012-12-26 16:28 - 00000970 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-11 22:35 - 2013-12-15 17:31 - 01430797 _____ () C:\WINDOWS\WindowsUpdate.log
2015-05-11 22:34 - 2014-06-30 22:29 - 00000950 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2330285332-1516996101-1209863040-1002UA.job
2015-05-11 22:34 - 2014-06-30 22:29 - 00000928 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2330285332-1516996101-1209863040-1002Core.job
2015-05-11 22:25 - 2013-12-16 00:43 - 00003966 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A9C5D9F1-B7AB-4A59-B859-92F4CBFA12E1}
2015-05-11 22:17 - 2014-09-24 20:07 - 00004915 _____ () C:\Users\Uživatel\Documents\zav-report-veronika.pallova.html
2015-05-11 15:56 - 2012-12-26 16:28 - 00000966 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-11 08:31 - 2012-12-25 04:44 - 00002344 ____H () C:\Users\Uživatel\Documents\Default.rdp
2015-05-09 14:04 - 2012-12-10 16:42 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2330285332-1516996101-1209863040-1002
2015-05-09 13:40 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-05-09 02:48 - 2013-08-10 14:40 - 00826880 ___SH () C:\Users\Uživatel\Documents\Thumbs.db
2015-05-06 02:05 - 2012-12-28 03:21 - 00973312 ___SH () C:\Users\Uživatel\Desktop\Thumbs.db
2015-05-05 18:00 - 2013-11-14 14:40 - 01934988 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-05-05 18:00 - 2013-11-14 14:24 - 00802206 _____ () C:\WINDOWS\system32\perfh005.dat
2015-05-05 18:00 - 2013-11-14 14:24 - 00183700 _____ () C:\WINDOWS\system32\perfc005.dat
2015-05-05 17:58 - 2013-08-22 16:46 - 00365478 _____ () C:\WINDOWS\setupact.log
2015-05-05 16:27 - 2012-12-26 22:34 - 07830016 ___SH () C:\Users\Uživatel\Downloads\Thumbs.db
2015-05-03 17:23 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-05-02 15:12 - 2013-11-14 14:26 - 00000000 ____D () C:\WINDOWS\ShellNew
2015-05-02 15:12 - 2012-09-09 07:18 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-05-02 15:11 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Help
2015-05-02 15:08 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\System
2015-05-01 20:50 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-05-01 20:50 - 2012-08-16 02:46 - 00000787 _____ () C:\WINDOWS\SysWOW64\bscs.ini
2015-05-01 20:49 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-04-22 21:32 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2015-04-22 19:39 - 2013-12-15 17:25 - 00000000 ____D () C:\Users\Uživatel
2015-04-21 19:31 - 2014-10-10 15:15 - 00000000 ____D () C:\Users\Uživatel\Desktop\Avon
2015-04-16 15:32 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-04-15 10:55 - 2013-08-14 13:50 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-04-15 10:34 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppCompat
2015-04-15 10:30 - 2012-12-25 11:28 - 128913832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-04-15 10:08 - 2014-12-13 19:11 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2015-04-15 10:08 - 2014-07-09 09:04 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-04-14 22:29 - 2014-11-12 14:16 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2015-04-14 01:24 - 2015-03-13 02:37 - 00792056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-04-14 01:24 - 2015-03-13 02:37 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-12 15:35 - 2014-03-19 03:42 - 00000000 ____D () C:\Users\Uživatel\Documents\Mobil Lošťákovy
2015-04-12 10:06 - 2012-12-10 16:36 - 00000000 ____D () C:\Users\Uživatel\AppData\Roaming\Adobe
==================== Files in the root of some directories =======
2015-05-10 11:06 - 2015-05-10 11:06 - 0000020 _____ () C:\Users\Uživatel\AppData\Roaming\appdataFr3.bin
2015-01-25 22:29 - 2015-01-25 22:29 - 0000017 _____ () C:\Users\Uživatel\AppData\Local\resmon.resmoncfg
Some content of TEMP:
====================
C:\Users\Uživatel\AppData\Local\Temp\1B00.exe
C:\Users\Uživatel\AppData\Local\Temp\31E0.exe
C:\Users\Uživatel\AppData\Local\Temp\DE28.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-09 09:19
==================== End Of Log ============================
Zde je log:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-05-2015
Ran by Uživatel (administrator) on NTB1 on 11-05-2015 23:01:38
Running from C:\Users\Uživatel\Desktop
Loaded Profiles: Uživatel (Available profiles: Uživatel)
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
() C:\Program Files\IMPI\ExtensionUpdaterService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
() C:\Program Files (x86)\HP HD Webcam Driver\Monitor.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Windows NT\Accessories\wordpad.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\mstsc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-08-06] (IDT, Inc.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [334240 2012-08-29] (Hewlett-Packard Company)
HKLM-x32\...\Run: [BtTray] => c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [364032 2012-08-16] (IVT Corporation)
HKLM-x32\...\Run: [HP HD Webcam Driver_Monitor] => C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe [303480 2012-07-26] ()
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-09-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2330285332-1516996101-1209863040-1002\...\Run: [Facebook Update] => C:\Users\Uživatel\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-06-30] (Facebook Inc.)
HKU\S-1-5-21-2330285332-1516996101-1209863040-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssText3d.scr [217088 2014-10-29] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2015-05-02]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Darktek - Decibel Of The hell [Live 2011].lnk [2015-05-05]
ShortcutTarget: Darktek - Decibel Of The hell [Live 2011].lnk -> C:\ProgramData\{960b0f0f-fe47-88f7-960b-b0f0ffe43c3f}\Darktek - Decibel Of The hell [Live 2011].exe ()
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://websearch.goodforsearch.info/?pi ... Z&unqvl=86
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-2330285332-1516996101-1209863040-1002\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
HKU\S-1-5-21-2330285332-1516996101-1209863040-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKLM-x32 -> DefaultScope {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.goodforsearch.info/?l= ... Z&unqvl=86
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.goodforsearch.info/?l= ... Z&unqvl=86
SearchScopes: HKU\S-1-5-21-2330285332-1516996101-1209863040-1002 -> {2133ADB8-5C5C-4C65-A9D8-3A1A5AB1BE2E} URL = http://search.seznam.cz/?q={searchTerms ... chmodule_2
SearchScopes: HKU\S-1-5-21-2330285332-1516996101-1209863040-1002 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.goodforsearch.info/?l= ... Z&unqvl=86
BHO: IMPI -> {17E113E6-CD0E-4045-B154-65F0E57959EF} -> C:\Program Files\IMPI\Extension64.dll [2013-02-05] ()
BHO: bestadblocker -> {19bb3861-efe4-4649-8a37-cec463d3a2be} -> C:\Program Files (x86)\bestadblocker\t8WcmaxrO3quQF.x64.dll [2015-05-05] ()
BHO: UniDeals -> {79cf12f8-d484-4307-b845-4288ebf28417} -> C:\Program Files (x86)\UniDeals\Y4wJb0gCvQKaLa.x64.dll [2015-05-05] ()
BHO-x32: IMPI -> {17E113E6-CD0E-4045-B154-65F0E57959EF} -> C:\Program Files\IMPI\Extension32.dll [2013-02-05] ()
BHO-x32: bestadblocker -> {19bb3861-efe4-4649-8a37-cec463d3a2be} -> C:\Program Files (x86)\bestadblocker\t8WcmaxrO3quQF.dll [2015-05-05] ()
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2012-11-22] (pdfforge GbR)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-13] (Oracle Corporation)
BHO-x32: UniDeals -> {79cf12f8-d484-4307-b845-4288ebf28417} -> C:\Program Files (x86)\UniDeals\Y4wJb0gCvQKaLa.dll [2015-05-05] ()
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-13] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll No File
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2012-11-22] (pdfforge GbR)
DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://qtinstall.apple.com/qtactivex/qtplugin.cab
Handler-x32: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL [2001-01-22] (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-04-08] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-05-06] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-13] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-13] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2330285332-1516996101-1209863040-1002: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Uživatel\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF HKLM\...\Firefox\Extensions: [{17E113E6-CD0E-4045-B154-65F0E57959EF}] - C:\Program Files\IMPI\Firefox
FF Extension: IMPI - C:\Program Files\IMPI\Firefox [2013-02-14]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2012-12-10]
FF HKLM-x32\...\Firefox\Extensions: [{17E113E6-CD0E-4045-B154-65F0E57959EF}] - C:\Program Files\IMPI\Firefox
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR StartupUrls: Default -> "hxxp://websearch.goodforsearch.info/?pid=2921&r=2015/05/05&hid=12900859622322770595&lg=EN&cc=CZ&unqvl=86"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-03-02]
CHR Extension: (Google Drive) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-02]
CHR Extension: (YouTube) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-02]
CHR Extension: (Google Search) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-02]
CHR Extension: (Google Wallet) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-10]
CHR Extension: (Gmail) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-02]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 7af73c4b; c:\Program Files (x86)\SystemAugment\SystemAugment.dll [1625088 2015-05-05] () [File not signed]
R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1578496 2012-08-14] (IVT Corporation) [File not signed]
R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-08-14] (IVT Corporation) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [523680 2012-08-29] (Hewlett-Packard Company)
R2 IMPI Updater; C:\Program Files\IMPI\ExtensionUpdaterService.exe [185856 2013-02-05] () [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-07-19] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1522312 2012-11-22] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [905864 2012-11-22] (pdfforge GbR)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [321536 2012-08-06] (IDT, Inc.) [File not signed]
S3 vncserver; C:\Program Files\RealVNC\VNC Server\vncserver.exe [4773768 2012-10-02] (RealVNC Ltd)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
U4 BthAvrcpTg; No ImagePath
U4 bthhfhid; No ImagePath
S3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-20] (Ralink Corporation)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48736 2012-08-14] (Ralink Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 GemCCID; C:\Windows\system32\DRIVERS\GemCCID.sys [130944 2014-11-10] (Gemalto)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.)
R3 SensorsServiceDriver; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-15] (Synaptics Incorporated)
S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [43832 2012-08-15] (Synaptics Incorporated)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1062008 2012-08-03] (Sunplus)
S3 STIrUsb; C:\Windows\system32\DRIVERS\irstusb.sys [33792 2008-01-19] (SigmaTel, Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20288 2012-08-03] (Hewlett-Packard Development Company, L.P.)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-11 23:01 - 2015-05-11 23:02 - 00017895 _____ () C:\Users\Uživatel\Desktop\FRST.txt
2015-05-11 22:57 - 2015-05-11 22:58 - 02102784 _____ (Farbar) C:\Users\Uživatel\Desktop\FRST64.exe
2015-05-11 22:53 - 2015-05-11 22:53 - 00112107 _____ (forum.viry.cz) C:\Users\Uživatel\Downloads\Nepotvrzeno 840612.crdownload
2015-05-11 22:52 - 2015-05-11 22:52 - 00112107 _____ (forum.viry.cz) C:\Users\Uživatel\Downloads\Nepotvrzeno 728272.crdownload
2015-05-10 11:06 - 2015-05-10 11:06 - 00000020 _____ () C:\Users\Uživatel\AppData\Roaming\appdataFr3.bin
2015-05-10 11:06 - 2015-05-10 11:06 - 00000000 ____D () C:\ProgramData\Browser AdBlocker
2015-05-06 20:00 - 2015-05-06 22:18 - 00000000 ____D () C:\Users\Uživatel\Desktop\SOCIÁLNÍ LÉKAŘSTVÍ
2015-05-06 02:05 - 2014-06-03 03:08 - 00062386 _____ () C:\Users\Uživatel\Desktop\Palla logo s.r.o..bmp
2015-05-05 21:42 - 2015-05-05 21:42 - 00000362 _____ () C:\Users\Uživatel\Downloads\stažený soubor.vcf
2015-05-05 15:32 - 2015-05-05 15:32 - 00000000 ____D () C:\Program Files (x86)\SystemAugment
2015-05-05 15:30 - 2015-05-05 15:30 - 00000000 ____D () C:\ProgramData\{960b0f0f-fe47-88f7-960b-b0f0ffe43c3f}
2015-05-05 15:30 - 2015-05-05 15:30 - 00000000 ____D () C:\ProgramData\{6c21569f-732f-3fb3-6c21-1569f7325a7d}
2015-05-05 15:28 - 2015-05-05 15:28 - 00000570 _____ () C:\Users\Uivatel\Desktop\Darktek - Decibel Of The hell [Live 2011].mp4
2015-05-05 15:28 - 2015-05-05 15:28 - 00000000 ____D () C:\Users\Uivatel
2015-05-05 15:27 - 2015-05-05 15:32 - 00000000 ____D () C:\Program Files (x86)\BocaGeneration
2015-05-05 15:26 - 2015-05-05 15:26 - 00000000 ____D () C:\Program Files (x86)\Utime
2015-05-05 15:26 - 2015-05-05 15:26 - 00000000 ____D () C:\Program Files (x86)\bestadblocker
2015-05-05 15:25 - 2015-05-05 15:31 - 00000000 ____D () C:\ProgramData\7243239280829360841
2015-05-05 15:25 - 2015-05-05 15:31 - 00000000 ____D () C:\Program Files (x86)\UniDeals
2015-05-05 15:24 - 2015-05-11 03:24 - 00000412 _____ () C:\WINDOWS\Tasks\Bidaily Synchronize Task.job
2015-05-05 15:24 - 2015-05-06 03:24 - 00000000 ____D () C:\ProgramData\{ec21ab8e-2e90-3a63-ec21-1ab8e2e9ae38}
2015-05-05 15:24 - 2015-05-05 15:24 - 00003306 _____ () C:\WINDOWS\System32\Tasks\Bidaily Synchronize Task
2015-05-05 15:23 - 2015-05-05 15:23 - 00300544 _____ () C:\Users\Uživatel\Downloads\Darktek - Decibel Of The hell [Live 2011].exe
2015-05-05 14:29 - 2015-05-05 14:29 - 00000787 _____ () C:\Users\Uživatel\Documents\records.html
2015-05-04 15:57 - 2015-05-05 01:11 - 00000000 ____D () C:\Users\Uživatel\Desktop\PATOLOGIE
2015-05-02 15:12 - 2015-05-02 15:12 - 00002747 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Word.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002695 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Excel.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002693 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft FrontPage.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002685 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Otevřít dokument Office.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002661 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Nový dokument Office.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002639 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft PowerPoint.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00002629 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Access.lnk
2015-05-02 15:12 - 2015-05-02 15:12 - 00000384 _____ () C:\WINDOWS\ODBC.INI
2015-05-02 15:12 - 2015-05-02 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje sady Microsoft Office
2015-05-02 15:11 - 2015-05-02 15:11 - 00000000 ____D () C:\WINDOWS\Msagent
2015-05-01 21:23 - 2015-05-01 21:23 - 00016124 _____ () C:\Users\Uživatel\Downloads\Sešit1 (1).xlsx
2015-05-01 21:00 - 2015-05-01 21:00 - 00020170 _____ () C:\Users\Uživatel\Downloads\graf8.xlsx
2015-05-01 21:00 - 2015-05-01 21:00 - 00019312 _____ () C:\Users\Uživatel\Downloads\graf10.xlsx
2015-05-01 21:00 - 2015-05-01 21:00 - 00016739 _____ () C:\Users\Uživatel\Downloads\graf9.xlsx
2015-04-29 20:57 - 2015-04-29 20:57 - 00342251 _____ () C:\Users\Uživatel\Downloads\prilohy_1096.zip
2015-04-29 01:14 - 2015-04-29 01:14 - 00001130 _____ () C:\Users\Uživatel\Downloads\DPHDP3-0027742806-20150429-011407.xml
2015-04-27 09:27 - 2015-04-27 09:27 - 00001145 _____ () C:\Users\Uživatel\Downloads\DPHDP3-0027742806-20150427-092736.xml
2015-04-20 20:23 - 2015-04-20 20:27 - 14695130 _____ () C:\Users\Uživatel\Downloads\Laurent Wolf - No Stress.flv
2015-04-20 20:18 - 2015-04-20 20:19 - 38050716 _____ () C:\Users\Uživatel\Downloads\JAK NA STRES PRI UCENI [mp3s.nadruhou.net].mp4
2015-04-17 17:20 - 2015-04-17 19:03 - 1810354604 _____ () C:\Users\Uživatel\Downloads\Rychle-a-zběsile-7-cz-titulky.Novinka.2015..avi
2015-04-15 03:13 - 2015-03-23 23:59 - 07476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-04-15 03:13 - 2015-03-23 23:59 - 01733952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-04-15 03:13 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2015-04-15 03:13 - 2015-03-23 23:58 - 01498872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-04-15 03:13 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2015-04-15 03:13 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-04-15 03:13 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2015-04-15 03:13 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2015-04-15 03:13 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2015-04-15 03:13 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2015-04-15 03:13 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-04-15 03:13 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-04-15 03:12 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-04-15 03:12 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-04-15 03:12 - 2015-03-13 06:32 - 24980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-04-15 03:12 - 2015-03-13 06:08 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-04-15 03:12 - 2015-03-13 06:07 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-04-15 03:12 - 2015-03-13 05:53 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-04-15 03:12 - 2015-03-13 05:50 - 06025216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-04-15 03:12 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-04-15 03:12 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-04-15 03:12 - 2015-03-13 05:26 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-04-15 03:12 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-04-15 03:12 - 2015-03-13 05:17 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-04-15 03:12 - 2015-03-13 05:16 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-04-15 03:12 - 2015-03-13 05:08 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-04-15 03:12 - 2015-03-13 05:07 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-04-15 03:12 - 2015-03-13 05:00 - 14397440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-04-15 03:12 - 2015-03-13 04:50 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-04-15 03:12 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-04-15 03:12 - 2015-03-13 04:45 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-04-15 03:12 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-04-15 03:12 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-04-15 03:12 - 2015-03-13 04:33 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-04-15 03:12 - 2015-03-13 04:22 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-04-15 03:12 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-04-15 03:12 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-04-15 03:12 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-04-15 03:12 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-04-15 03:11 - 2015-03-23 00:45 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 01111552 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 00769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-04-15 03:11 - 2015-03-23 00:09 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-04-15 03:11 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2015-04-15 03:11 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2015-04-15 03:11 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2015-04-15 03:11 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2015-04-15 03:11 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2015-04-15 03:11 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2015-04-15 03:10 - 2015-03-23 00:09 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-04-15 02:18 - 2015-04-15 02:18 - 00039064 _____ () C:\Users\Uživatel\Downloads\1100131375 (1).pdf.mb9l74f.partial
2015-04-15 02:12 - 2015-04-15 02:12 - 00039064 _____ () C:\Users\Uživatel\Downloads\1100056516 (2).pdf.ja9gzwn.partial
2015-04-14 22:34 - 2015-03-14 10:54 - 00133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-04-14 22:34 - 2015-03-14 03:56 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-04-14 22:34 - 2015-03-14 03:56 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-04-14 22:34 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-04-14 22:34 - 2015-03-14 03:37 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-04-14 22:34 - 2015-03-14 03:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-04-14 22:34 - 2015-03-14 02:22 - 03678720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-04-14 22:34 - 2015-03-14 02:12 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-04-14 22:34 - 2015-03-14 02:12 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-04-14 22:34 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-04-14 22:34 - 2015-03-14 02:08 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-04-14 22:34 - 2015-03-14 02:08 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-04-14 22:34 - 2015-03-14 02:06 - 02373632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-04-14 22:34 - 2015-03-14 02:06 - 00891392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-04-14 22:34 - 2015-03-14 02:02 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-04-14 22:34 - 2015-03-14 02:02 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-04-14 22:34 - 2015-03-14 01:59 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-04-14 22:34 - 2015-03-14 01:59 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-04-14 22:11 - 2015-04-14 22:11 - 10162330 _____ (Novuco ) C:\Users\Uživatel\Downloads\zavvyuka-install-1.0.01.exe
2015-04-14 22:11 - 2015-04-14 22:11 - 10162330 _____ (Novuco ) C:\Users\Uživatel\Downloads\zavvyuka-install-1.0.01 (1).exe
2015-04-13 00:51 - 2015-04-13 00:51 - 00634368 _____ () C:\Users\Uživatel\Downloads\cenikzs2007.xls
2015-04-11 20:33 - 2015-04-11 20:33 - 02217984 _____ () C:\Users\Uživatel\Downloads\adwcleaner_4.201.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-11 23:01 - 2013-07-21 23:07 - 00000000 ____D () C:\FRST
2015-05-11 23:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-05-11 22:56 - 2012-12-26 16:28 - 00000970 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-11 22:35 - 2013-12-15 17:31 - 01430797 _____ () C:\WINDOWS\WindowsUpdate.log
2015-05-11 22:34 - 2014-06-30 22:29 - 00000950 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2330285332-1516996101-1209863040-1002UA.job
2015-05-11 22:34 - 2014-06-30 22:29 - 00000928 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2330285332-1516996101-1209863040-1002Core.job
2015-05-11 22:25 - 2013-12-16 00:43 - 00003966 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A9C5D9F1-B7AB-4A59-B859-92F4CBFA12E1}
2015-05-11 22:17 - 2014-09-24 20:07 - 00004915 _____ () C:\Users\Uživatel\Documents\zav-report-veronika.pallova.html
2015-05-11 15:56 - 2012-12-26 16:28 - 00000966 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-11 08:31 - 2012-12-25 04:44 - 00002344 ____H () C:\Users\Uživatel\Documents\Default.rdp
2015-05-09 14:04 - 2012-12-10 16:42 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2330285332-1516996101-1209863040-1002
2015-05-09 13:40 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-05-09 02:48 - 2013-08-10 14:40 - 00826880 ___SH () C:\Users\Uživatel\Documents\Thumbs.db
2015-05-06 02:05 - 2012-12-28 03:21 - 00973312 ___SH () C:\Users\Uživatel\Desktop\Thumbs.db
2015-05-05 18:00 - 2013-11-14 14:40 - 01934988 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-05-05 18:00 - 2013-11-14 14:24 - 00802206 _____ () C:\WINDOWS\system32\perfh005.dat
2015-05-05 18:00 - 2013-11-14 14:24 - 00183700 _____ () C:\WINDOWS\system32\perfc005.dat
2015-05-05 17:58 - 2013-08-22 16:46 - 00365478 _____ () C:\WINDOWS\setupact.log
2015-05-05 16:27 - 2012-12-26 22:34 - 07830016 ___SH () C:\Users\Uživatel\Downloads\Thumbs.db
2015-05-03 17:23 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-05-02 15:12 - 2013-11-14 14:26 - 00000000 ____D () C:\WINDOWS\ShellNew
2015-05-02 15:12 - 2012-09-09 07:18 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-05-02 15:11 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Help
2015-05-02 15:08 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\System
2015-05-01 20:50 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-05-01 20:50 - 2012-08-16 02:46 - 00000787 _____ () C:\WINDOWS\SysWOW64\bscs.ini
2015-05-01 20:49 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-04-22 21:32 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2015-04-22 19:39 - 2013-12-15 17:25 - 00000000 ____D () C:\Users\Uživatel
2015-04-21 19:31 - 2014-10-10 15:15 - 00000000 ____D () C:\Users\Uživatel\Desktop\Avon
2015-04-16 15:32 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-04-15 10:55 - 2013-08-14 13:50 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-04-15 10:34 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppCompat
2015-04-15 10:30 - 2012-12-25 11:28 - 128913832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-04-15 10:08 - 2014-12-13 19:11 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2015-04-15 10:08 - 2014-07-09 09:04 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-04-14 22:29 - 2014-11-12 14:16 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2015-04-14 01:24 - 2015-03-13 02:37 - 00792056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-04-14 01:24 - 2015-03-13 02:37 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-12 15:35 - 2014-03-19 03:42 - 00000000 ____D () C:\Users\Uživatel\Documents\Mobil Lošťákovy
2015-04-12 10:06 - 2012-12-10 16:36 - 00000000 ____D () C:\Users\Uživatel\AppData\Roaming\Adobe
==================== Files in the root of some directories =======
2015-05-10 11:06 - 2015-05-10 11:06 - 0000020 _____ () C:\Users\Uživatel\AppData\Roaming\appdataFr3.bin
2015-01-25 22:29 - 2015-01-25 22:29 - 0000017 _____ () C:\Users\Uživatel\AppData\Local\resmon.resmoncfg
Some content of TEMP:
====================
C:\Users\Uživatel\AppData\Local\Temp\1B00.exe
C:\Users\Uživatel\AppData\Local\Temp\31E0.exe
C:\Users\Uživatel\AppData\Local\Temp\DE28.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-09 09:19
==================== End Of Log ============================