U některých webpage dochází k otevírání reklamních panelů
Napsal: 11 pro 2016 11:44
Při činnosti nad některými stránkami dochází k otevírání reklamních panelů. Prosím proto o kontrolu logu z FRSTu:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-12-2016
Ran by Ivo Brož (administrator) on BROZ-NB (11-12-2016 11:28:56)
Running from C:\Users\Ivo Brož\Desktop
Loaded Profiles: Ivo Brož (Available Profiles: Ivo Brož)
Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 9 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Dropbox, Inc.) C:\Program Files\Dropbox\Client\Dropbox.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
() C:\Program Files\Atomic Alarm Clock\timeserv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
() C:\Program Files\Rainlendar2\Rainlendar2.exe
(BitTorrent, Inc.) C:\Users\Ivo Brož\AppData\Roaming\uTorrent\utorrent.exe
() C:\Users\Ivo Brož\Disk Mega\Správce\Timery\AlphaClock\aclock.exe
(Drive Software Company) C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Samsung) C:\Program Files\Samsung\Kies\Kies.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(Winstep Software Technologies) C:\Program Files\Winstep\WsxService.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Winstep Software Technologies) C:\Program Files\Winstep\Nexus.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(Mega Limited) C:\Users\Ivo Brož\AppData\Local\MEGAsync\MEGAsync.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmplayer.exe
(Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_23_0_0_207.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_23_0_0_207.exe
(Oracle Corporation) C:\Program Files\Java\jre1.8.0_111\launch4j-tmp\frd.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7289376 2015-12-07] (Realtek Semiconductor)
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [98304 2009-04-01] (ASUS)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1004064 2016-08-30] (Microsoft Corporation)
HKLM\...\Run: [Dropbox] => C:\Program Files\Dropbox\Client\Dropbox.exe [25838592 2016-11-28] (Dropbox, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2015-12-10] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCS5ServiceManager] => C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [402432 2010-07-22] (Adobe Systems Incorporated)
HKLM\...\Run: [Cm106Sound] => RunDll32 cm106.cpl,CMICtrlWnd
HKLM\...\Run: [DelaypluginInstall] => C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe [1960248 2015-10-26] ()
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation)
HKLM\...\Run: [KiesTrayAgent] => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [318248 2016-01-08] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [Rainlendar2] => C:\Program Files\Rainlendar2\Rainlendar2.exe [2739240 2015-11-13] ()
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [uTorrent] => C:\Users\Ivo Brož\AppData\Roaming\uTorrent\utorrent.exe [416168 2015-02-22] (BitTorrent, Inc.)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [Alpha Clock] => C:\Users\Ivo Brož\Disk Mega\Správce\Timery\AlphaClock\aclock.exe [69120 2003-10-23] ()
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [AtomicAlarmClock6] => C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe [3621376 2016-03-22] (Drive Software Company)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [KiesPreload] => C:\Program Files\Samsung\Kies\Kies.exe [1572648 2016-01-08] (Samsung)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [] => C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1021736 2016-01-08] (Samsung)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [Nexus] => C:\Program Files\Winstep\Nexus.exe [13556352 2016-12-09] (Winstep Software Technologies)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [NeXuS-Ultimate] => C:\Program Files\Winstep\Nexus.exe [13556352 2016-12-09] (Winstep Software Technologies)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [23819048 2016-11-11] (Google)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\MountPoints2: {e9e3f691-99c8-11e5-85a1-002243c6c20d} - E:\sources\SetupError.exe x64
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [10240 2006-11-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-11-11] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-11-11] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-11-11] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt9] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Ivo Brož\AppData\Local\MEGAsync\ShellExtX32.dll [2016-11-30] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Ivo Brož\AppData\Local\MEGAsync\ShellExtX32.dll [2016-11-30] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Ivo Brož\AppData\Local\MEGAsync\ShellExtX32.dll [2016-11-30] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\USB Multi-Channel Audio Device – zástupce.lnk [2016-01-20]
ShortcutTarget: USB Multi-Channel Audio Device – zástupce.lnk -> (No File)
Startup: C:\Users\Ivo Brož\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FreeRapid 0.9u4.lnk [2016-02-24]
ShortcutTarget: FreeRapid 0.9u4.lnk -> C:\Frd\frd.exe (Vity)
Startup: C:\Users\Ivo Brož\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2016-11-30]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Ivo Brož\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
GroupPolicy: Restriction - Windows Defender <======= ATTENTION
GroupPolicyScripts: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 02 C:\Windows\system32\napinsp.dll [50176 2008-01-21] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{8F985A02-AFC7-4F31-9AEB-B906A326FEEF}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{E4F7D5EC-A14C-4D43-80CC-AD22C07F8A51}: [DhcpNameServer] 10.10.15.1 10.10.15.10
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.asus.com
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617911&ResetID=131230232319602000&GUID=8055860F-EFF5-4C63-9C53-171B90716F95
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.asus.com
SearchScopes: HKU\S-1-5-21-698314851-3235763532-1396065412-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-12-11] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-12-11] (Oracle Corporation)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_111-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-00111-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_111-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_111-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation)
FireFox:
========
FF DefaultProfile: rxbgig8q.default
FF ProfilePath: C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default [2016-12-11]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\rxbgig8q.default -> Yahoo®
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\rxbgig8q.default -> Yahoo®
FF Homepage: Mozilla\Firefox\Profiles\rxbgig8q.default -> about:home
FF Session Restore: Mozilla\Firefox\Profiles\rxbgig8q.default -> is enabled.
FF Extension: (Flash Video Downloader - YouTube HD Download [4K]) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\artur.dubovoy@gmail.com [2016-11-13]
FF Extension: (Facefont) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\facefont@mc.com [2016-08-06]
FF Extension: (FaviconizeTab) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\faviconizetab@espion.just-size.jp.xpi [2016-11-17]
FF Extension: (IdentFavIcon) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\identfavicon@david.hanak.hu.xpi [2016-11-17]
FF Extension: (Big Emo For Facebook) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\jid0-3w5IeNyk2A0kYZWgtBwRAxwtyTo@jetpack.xpi [2016-07-19]
FF Extension: (Pin It button) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2016-07-19]
FF Extension: (Print Edit) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\printedit@DW-dev.xpi [2016-11-26]
FF Extension: (Save as PDF) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\save-as-pdf-ff@pdfcrowd.com.xpi [2016-08-06]
FF Extension: (pdfit) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\service@touchpdf.com.xpi [2016-08-06]
FF Extension: (FxIF) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{11483926-db67-4190-91b1-ef20fcec5f33}.xpi [2016-08-06]
FF Extension: (FireTray) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{9533f794-00b4-4354-aa15-c2bbda6989f8} [2016-08-06]
FF Extension: (SaveLink) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{BAFDF624-6BFC-4179-BE0A-925BC15ECFBA}.xpi [2016-08-07]
FF Extension: (Adblock Plus) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-23]
FF Extension: (Tab Mix Plus) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2016-10-28]
FF Extension: (Web2PDF converter) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{e8f509f0-b677-11de-8a39-0800200c9a66}.xpi [2016-08-06]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2015-12-07] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-08] ()
FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Windows\system32\npdeployJava1.dll [2016-12-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-12-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-12-11] (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [100920 2008-08-13] ()
R2 AtomicAlarmClock; C:\Program Files\Atomic Alarm Clock\timeserv.exe [2007040 2013-04-24] () [File not signed]
S2 dbupdate; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [35440 2016-11-28] (Dropbox, Inc.) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [931200 2016-02-17] (NVIDIA Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [104200 2016-08-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [280864 2016-08-30] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-02-17] (NVIDIA Corporation)
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-21] (Microsoft Corporation)
R2 Winstep Xtreme Service; C:\Program Files\Winstep\WsxService [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [190424 2009-04-10] (Společnost Microsoft)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [252808 2016-08-25] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2007-07-31] (ATK0100)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [114368 2015-10-08] (Power Software Ltd)
S3 ssudobex; C:\Windows\System32\DRIVERS\ssudobex.sys [191200 2016-01-08] (DEVGURU Co., LTD.(http://www.devguru.co.kr))
S3 USBMULCD; C:\Windows\System32\drivers\CM106.sys [3105280 2012-10-04] (C-Media Electronics Inc)
S3 dbx; system32\DRIVERS\dbx.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-11 11:28 - 2016-12-11 11:29 - 00020561 _____ C:\Users\Ivo Brož\Desktop\FRST.txt
2016-12-11 11:28 - 2016-12-11 11:28 - 00000000 ____D C:\FRST
2016-12-11 11:25 - 2016-12-11 11:26 - 01761792 _____ (Farbar) C:\Users\Ivo Brož\Desktop\FRST.exe
2016-12-11 11:03 - 2016-12-11 11:01 - 00908352 _____ (Oracle Corporation) C:\Windows\system32\npdeployJava1.dll
2016-12-11 11:03 - 2016-12-11 11:01 - 00826432 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2016-12-11 11:02 - 2016-12-11 11:02 - 00000000 ____D C:\Program Files\Common Files\Java
2016-12-11 11:01 - 2016-12-11 11:01 - 00095808 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2016-12-11 11:01 - 2016-12-11 11:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-12-11 09:56 - 2016-12-11 09:56 - 00278174 _____ C:\Users\Ivo Brož\Desktop\FN ZPS 8 - 20.pdf
2016-12-11 07:38 - 2016-12-11 07:38 - 00000000 ___HD C:\OneDriveTemp
2016-12-09 03:58 - 2016-12-09 03:58 - 79114461 _____ C:\Users\Ivo Brož\Desktop\Neo-Matrix_1.mp4
2016-12-09 03:33 - 2016-12-09 03:33 - 11322632 _____ C:\Users\Ivo Brož\Desktop\Neo-Matrix_2.mp4
2016-12-02 22:20 - 2016-12-02 22:20 - 01225577 _____ C:\Users\Ivo Brož\Desktop\Žicer.mp4
2016-12-02 09:50 - 2016-12-02 09:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2016-12-01 22:24 - 2016-12-01 22:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-12-01 03:18 - 2016-12-01 03:18 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Malý motor
2016-12-01 03:17 - 2016-12-01 03:17 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Ozubená tyč
2016-11-30 18:43 - 2016-12-11 07:38 - 00000000 ___RD C:\Users\Ivo Brož\OneDrive
2016-11-30 18:08 - 2016-11-30 18:08 - 00001989 _____ C:\Users\Ivo Brož\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-11-30 18:08 - 2016-11-30 18:08 - 00001928 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-11-30 18:08 - 2016-11-30 18:08 - 00001928 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-11-30 18:08 - 2016-11-30 18:08 - 00000000 ____D C:\Program Files\Microsoft OneDrive
2016-11-30 18:07 - 2016-11-30 18:07 - 00000000 ____D C:\Users\Ivo Brož\AppData\Roaming\Skype
2016-11-30 18:07 - 2016-11-30 18:07 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-11-28 15:05 - 2016-11-28 15:05 - 00063600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2016-11-28 15:05 - 2016-11-28 15:05 - 00063600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2016-11-28 15:05 - 2016-11-28 15:05 - 00063600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2016-11-28 15:05 - 2016-11-28 15:05 - 00035440 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2016-11-23 01:26 - 2016-11-30 22:15 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Obrázkové recepty
2016-11-22 15:55 - 2016-12-02 10:43 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2016-11-20 22:28 - 2016-11-20 22:28 - 74962220 _____ C:\Users\Ivo Brož\Desktop\_Symphonie pour un violon_ par ALAINJUNO (Artiste Peintre).mp4
2016-11-19 15:13 - 2016-11-19 15:14 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Zuzka
2016-11-17 10:32 - 2016-12-11 11:05 - 00000000 ____D C:\Users\Ivo Brož\AppData\LocalLow\Mozilla
2016-11-16 13:19 - 2016-12-11 11:03 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-11-16 00:21 - 2016-11-16 00:23 - 00000000 ____D C:\Users\Ivo Brož\Desktop\vyprazdnovani tlusteho streva
2016-11-12 03:47 - 2016-11-12 03:47 - 00028383 _____ C:\Users\Ivo Brož\Documents\formulář-1.xlsm
2016-11-12 03:15 - 2016-11-12 03:15 - 00044032 _____ C:\Users\Ivo Brož\Documents\indikator_pro_Koju.xls
2016-11-12 03:06 - 2016-11-12 03:06 - 00129024 _____ C:\Users\Ivo Brož\Documents\excel_prvky.xls
2016-11-11 12:52 - 2016-11-11 12:53 - 00011077 _____ C:\Users\Ivo Brož\Documents\Test - třídění.xlsx
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-11 11:28 - 2015-12-09 17:18 - 00000000 ____D C:\Users\Ivo Brož\AppData\Roaming\uTorrent
2016-12-11 11:24 - 2015-12-07 20:47 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-12-11 11:22 - 2016-07-28 21:17 - 00000940 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-12-11 11:20 - 2016-11-05 09:02 - 00000896 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-12-11 11:04 - 2016-01-21 12:38 - 00000000 ____D C:\ProgramData\Oracle
2016-12-11 11:01 - 2016-02-23 20:58 - 00269888 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2016-12-11 11:01 - 2016-01-21 12:38 - 00000000 ____D C:\Program Files\Java
2016-12-11 10:57 - 2016-10-30 10:53 - 00000000 ____D C:\Users\Ivo Brož\.rainlendar2
2016-12-11 09:36 - 2006-11-02 13:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2016-12-11 09:36 - 2006-11-02 13:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2016-12-11 07:39 - 2015-12-09 15:48 - 00000000 ___RD C:\Users\Ivo Brož\Dropbox
2016-12-11 07:38 - 2015-12-16 03:11 - 00000000 ___RD C:\Users\Ivo Brož\Disk Google
2016-12-11 07:37 - 2016-07-28 21:17 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-12-11 07:36 - 2016-11-05 09:02 - 00000892 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-12-11 07:36 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-12-11 05:21 - 2015-12-03 15:08 - 00002871 _____ C:\Windows\bthservsdp.dat
2016-12-11 05:21 - 2006-11-02 14:01 - 00032558 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-12-09 20:23 - 2016-02-24 21:04 - 00000000 ____D C:\Users\Ivo Brož\AppData\Local\CrashDumps
2016-12-09 05:05 - 2016-09-24 10:07 - 00000647 _____ C:\Users\Ivo Brož\Documents\Winstep.lnk
2016-12-09 05:05 - 2016-09-24 10:07 - 00000000 ____D C:\Users\Public\Documents\Winstep
2016-12-09 05:05 - 2016-09-24 10:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winstep
2016-12-09 05:05 - 2016-09-24 10:07 - 00000000 ____D C:\Program Files\Winstep
2016-12-04 06:55 - 2015-12-03 10:46 - 00000680 _____ C:\Users\Ivo Brož\AppData\Local\d3d9caps.dat
2016-12-03 12:24 - 2016-11-09 14:19 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Roztřídit
2016-12-02 17:23 - 2015-12-10 22:50 - 00000132 _____ C:\Users\Ivo Brož\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2016-12-02 10:43 - 2015-12-07 14:51 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-12-02 09:50 - 2015-12-16 03:08 - 00000000 ____D C:\Users\Ivo Brož\AppData\Local\Google
2016-12-01 22:25 - 2015-12-09 15:43 - 00000000 ____D C:\Program Files\Dropbox
2016-12-01 22:24 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\inf
2016-12-01 01:41 - 2016-01-22 18:41 - 00000000 ____D C:\Users\Ivo Brož\AppData\Roaming\AIMP3
2016-12-01 01:39 - 2016-07-15 20:43 - 00000811 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-11-30 18:46 - 2015-12-03 10:46 - 00000000 ____D C:\Users\Ivo Brož
2016-11-30 06:05 - 2016-01-29 18:15 - 00000000 ____D C:\Users\Ivo Brož\AppData\Local\MEGAsync
2016-11-17 21:20 - 2016-11-09 01:19 - 00071680 _____ C:\Users\Ivo Brož\Documents\Výdaje.xls
2016-11-15 13:17 - 2008-04-17 13:36 - 00644548 _____ C:\Windows\system32\perfh005.dat
2016-11-15 13:17 - 2008-04-17 13:36 - 00137186 _____ C:\Windows\system32\perfc005.dat
2016-11-15 13:17 - 2006-11-02 11:33 - 01530430 _____ C:\Windows\system32\PerfStringBackup.INI
==================== Files in the root of some directories =======
2015-12-10 22:50 - 2016-12-02 17:23 - 0000132 _____ () C:\Users\Ivo Brož\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2015-12-10 19:20 - 2015-12-10 19:20 - 0023888 _____ () C:\Users\Ivo Brož\AppData\Roaming\UserTile.png
2015-12-03 10:46 - 2016-12-04 06:55 - 0000680 _____ () C:\Users\Ivo Brož\AppData\Local\d3d9caps.dat
2015-12-04 03:15 - 2016-02-20 07:36 - 0109160 _____ () C:\ProgramData\nvModes.001
2015-12-04 03:15 - 2016-02-20 07:36 - 0109160 _____ () C:\ProgramData\nvModes.dat
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-12-11 07:42
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-12-2016
Ran by Ivo Brož (administrator) on BROZ-NB (11-12-2016 11:28:56)
Running from C:\Users\Ivo Brož\Desktop
Loaded Profiles: Ivo Brož (Available Profiles: Ivo Brož)
Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 9 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Dropbox, Inc.) C:\Program Files\Dropbox\Client\Dropbox.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
() C:\Program Files\Atomic Alarm Clock\timeserv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
() C:\Program Files\Rainlendar2\Rainlendar2.exe
(BitTorrent, Inc.) C:\Users\Ivo Brož\AppData\Roaming\uTorrent\utorrent.exe
() C:\Users\Ivo Brož\Disk Mega\Správce\Timery\AlphaClock\aclock.exe
(Drive Software Company) C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Samsung) C:\Program Files\Samsung\Kies\Kies.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(Winstep Software Technologies) C:\Program Files\Winstep\WsxService.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Winstep Software Technologies) C:\Program Files\Winstep\Nexus.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(Mega Limited) C:\Users\Ivo Brož\AppData\Local\MEGAsync\MEGAsync.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmplayer.exe
(Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_23_0_0_207.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_23_0_0_207.exe
(Oracle Corporation) C:\Program Files\Java\jre1.8.0_111\launch4j-tmp\frd.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7289376 2015-12-07] (Realtek Semiconductor)
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [98304 2009-04-01] (ASUS)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1004064 2016-08-30] (Microsoft Corporation)
HKLM\...\Run: [Dropbox] => C:\Program Files\Dropbox\Client\Dropbox.exe [25838592 2016-11-28] (Dropbox, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2015-12-10] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCS5ServiceManager] => C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [402432 2010-07-22] (Adobe Systems Incorporated)
HKLM\...\Run: [Cm106Sound] => RunDll32 cm106.cpl,CMICtrlWnd
HKLM\...\Run: [DelaypluginInstall] => C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe [1960248 2015-10-26] ()
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation)
HKLM\...\Run: [KiesTrayAgent] => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [318248 2016-01-08] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [Rainlendar2] => C:\Program Files\Rainlendar2\Rainlendar2.exe [2739240 2015-11-13] ()
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [uTorrent] => C:\Users\Ivo Brož\AppData\Roaming\uTorrent\utorrent.exe [416168 2015-02-22] (BitTorrent, Inc.)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [Alpha Clock] => C:\Users\Ivo Brož\Disk Mega\Správce\Timery\AlphaClock\aclock.exe [69120 2003-10-23] ()
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [AtomicAlarmClock6] => C:\Program Files\Atomic Alarm Clock\AtomicAlarmClock.exe [3621376 2016-03-22] (Drive Software Company)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [KiesPreload] => C:\Program Files\Samsung\Kies\Kies.exe [1572648 2016-01-08] (Samsung)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [] => C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1021736 2016-01-08] (Samsung)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [Nexus] => C:\Program Files\Winstep\Nexus.exe [13556352 2016-12-09] (Winstep Software Technologies)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [NeXuS-Ultimate] => C:\Program Files\Winstep\Nexus.exe [13556352 2016-12-09] (Winstep Software Technologies)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [23819048 2016-11-11] (Google)
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\...\MountPoints2: {e9e3f691-99c8-11e5-85a1-002243c6c20d} - E:\sources\SetupError.exe x64
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [10240 2006-11-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-11-11] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-11-11] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-11-11] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt9] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.3.0.dll [2016-11-28] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Ivo Brož\AppData\Local\MEGAsync\ShellExtX32.dll [2016-11-30] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Ivo Brož\AppData\Local\MEGAsync\ShellExtX32.dll [2016-11-30] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Ivo Brož\AppData\Local\MEGAsync\ShellExtX32.dll [2016-11-30] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\USB Multi-Channel Audio Device – zástupce.lnk [2016-01-20]
ShortcutTarget: USB Multi-Channel Audio Device – zástupce.lnk -> (No File)
Startup: C:\Users\Ivo Brož\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FreeRapid 0.9u4.lnk [2016-02-24]
ShortcutTarget: FreeRapid 0.9u4.lnk -> C:\Frd\frd.exe (Vity)
Startup: C:\Users\Ivo Brož\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2016-11-30]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Ivo Brož\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
GroupPolicy: Restriction - Windows Defender <======= ATTENTION
GroupPolicyScripts: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 02 C:\Windows\system32\napinsp.dll [50176 2008-01-21] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{8F985A02-AFC7-4F31-9AEB-B906A326FEEF}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{E4F7D5EC-A14C-4D43-80CC-AD22C07F8A51}: [DhcpNameServer] 10.10.15.1 10.10.15.10
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.asus.com
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617911&ResetID=131230232319602000&GUID=8055860F-EFF5-4C63-9C53-171B90716F95
HKU\S-1-5-21-698314851-3235763532-1396065412-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.asus.com
SearchScopes: HKU\S-1-5-21-698314851-3235763532-1396065412-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-12-11] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-12-11] (Oracle Corporation)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_111-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-00111-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_111-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_111-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation)
FireFox:
========
FF DefaultProfile: rxbgig8q.default
FF ProfilePath: C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default [2016-12-11]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\rxbgig8q.default -> Yahoo®
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\rxbgig8q.default -> Yahoo®
FF Homepage: Mozilla\Firefox\Profiles\rxbgig8q.default -> about:home
FF Session Restore: Mozilla\Firefox\Profiles\rxbgig8q.default -> is enabled.
FF Extension: (Flash Video Downloader - YouTube HD Download [4K]) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\artur.dubovoy@gmail.com [2016-11-13]
FF Extension: (Facefont) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\facefont@mc.com [2016-08-06]
FF Extension: (FaviconizeTab) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\faviconizetab@espion.just-size.jp.xpi [2016-11-17]
FF Extension: (IdentFavIcon) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\identfavicon@david.hanak.hu.xpi [2016-11-17]
FF Extension: (Big Emo For Facebook) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\jid0-3w5IeNyk2A0kYZWgtBwRAxwtyTo@jetpack.xpi [2016-07-19]
FF Extension: (Pin It button) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2016-07-19]
FF Extension: (Print Edit) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\printedit@DW-dev.xpi [2016-11-26]
FF Extension: (Save as PDF) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\save-as-pdf-ff@pdfcrowd.com.xpi [2016-08-06]
FF Extension: (pdfit) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\service@touchpdf.com.xpi [2016-08-06]
FF Extension: (FxIF) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{11483926-db67-4190-91b1-ef20fcec5f33}.xpi [2016-08-06]
FF Extension: (FireTray) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{9533f794-00b4-4354-aa15-c2bbda6989f8} [2016-08-06]
FF Extension: (SaveLink) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{BAFDF624-6BFC-4179-BE0A-925BC15ECFBA}.xpi [2016-08-07]
FF Extension: (Adblock Plus) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-23]
FF Extension: (Tab Mix Plus) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2016-10-28]
FF Extension: (Web2PDF converter) - C:\Users\Ivo Brož\AppData\Roaming\Mozilla\Firefox\Profiles\rxbgig8q.default\Extensions\{e8f509f0-b677-11de-8a39-0800200c9a66}.xpi [2016-08-06]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: (Microsoft .NET Framework Assistant) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2015-12-07] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-08] ()
FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Windows\system32\npdeployJava1.dll [2016-12-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-12-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-12-11] (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [100920 2008-08-13] ()
R2 AtomicAlarmClock; C:\Program Files\Atomic Alarm Clock\timeserv.exe [2007040 2013-04-24] () [File not signed]
S2 dbupdate; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [35440 2016-11-28] (Dropbox, Inc.) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [931200 2016-02-17] (NVIDIA Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [104200 2016-08-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [280864 2016-08-30] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-02-17] (NVIDIA Corporation)
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-21] (Microsoft Corporation)
R2 Winstep Xtreme Service; C:\Program Files\Winstep\WsxService [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [190424 2009-04-10] (Společnost Microsoft)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [252808 2016-08-25] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2007-07-31] (ATK0100)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [114368 2015-10-08] (Power Software Ltd)
S3 ssudobex; C:\Windows\System32\DRIVERS\ssudobex.sys [191200 2016-01-08] (DEVGURU Co., LTD.(http://www.devguru.co.kr))
S3 USBMULCD; C:\Windows\System32\drivers\CM106.sys [3105280 2012-10-04] (C-Media Electronics Inc)
S3 dbx; system32\DRIVERS\dbx.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-11 11:28 - 2016-12-11 11:29 - 00020561 _____ C:\Users\Ivo Brož\Desktop\FRST.txt
2016-12-11 11:28 - 2016-12-11 11:28 - 00000000 ____D C:\FRST
2016-12-11 11:25 - 2016-12-11 11:26 - 01761792 _____ (Farbar) C:\Users\Ivo Brož\Desktop\FRST.exe
2016-12-11 11:03 - 2016-12-11 11:01 - 00908352 _____ (Oracle Corporation) C:\Windows\system32\npdeployJava1.dll
2016-12-11 11:03 - 2016-12-11 11:01 - 00826432 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2016-12-11 11:02 - 2016-12-11 11:02 - 00000000 ____D C:\Program Files\Common Files\Java
2016-12-11 11:01 - 2016-12-11 11:01 - 00095808 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2016-12-11 11:01 - 2016-12-11 11:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-12-11 09:56 - 2016-12-11 09:56 - 00278174 _____ C:\Users\Ivo Brož\Desktop\FN ZPS 8 - 20.pdf
2016-12-11 07:38 - 2016-12-11 07:38 - 00000000 ___HD C:\OneDriveTemp
2016-12-09 03:58 - 2016-12-09 03:58 - 79114461 _____ C:\Users\Ivo Brož\Desktop\Neo-Matrix_1.mp4
2016-12-09 03:33 - 2016-12-09 03:33 - 11322632 _____ C:\Users\Ivo Brož\Desktop\Neo-Matrix_2.mp4
2016-12-02 22:20 - 2016-12-02 22:20 - 01225577 _____ C:\Users\Ivo Brož\Desktop\Žicer.mp4
2016-12-02 09:50 - 2016-12-02 09:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2016-12-01 22:24 - 2016-12-01 22:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-12-01 03:18 - 2016-12-01 03:18 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Malý motor
2016-12-01 03:17 - 2016-12-01 03:17 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Ozubená tyč
2016-11-30 18:43 - 2016-12-11 07:38 - 00000000 ___RD C:\Users\Ivo Brož\OneDrive
2016-11-30 18:08 - 2016-11-30 18:08 - 00001989 _____ C:\Users\Ivo Brož\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-11-30 18:08 - 2016-11-30 18:08 - 00001928 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-11-30 18:08 - 2016-11-30 18:08 - 00001928 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-11-30 18:08 - 2016-11-30 18:08 - 00000000 ____D C:\Program Files\Microsoft OneDrive
2016-11-30 18:07 - 2016-11-30 18:07 - 00000000 ____D C:\Users\Ivo Brož\AppData\Roaming\Skype
2016-11-30 18:07 - 2016-11-30 18:07 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-11-28 15:05 - 2016-11-28 15:05 - 00063600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2016-11-28 15:05 - 2016-11-28 15:05 - 00063600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2016-11-28 15:05 - 2016-11-28 15:05 - 00063600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2016-11-28 15:05 - 2016-11-28 15:05 - 00035440 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2016-11-23 01:26 - 2016-11-30 22:15 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Obrázkové recepty
2016-11-22 15:55 - 2016-12-02 10:43 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2016-11-20 22:28 - 2016-11-20 22:28 - 74962220 _____ C:\Users\Ivo Brož\Desktop\_Symphonie pour un violon_ par ALAINJUNO (Artiste Peintre).mp4
2016-11-19 15:13 - 2016-11-19 15:14 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Zuzka
2016-11-17 10:32 - 2016-12-11 11:05 - 00000000 ____D C:\Users\Ivo Brož\AppData\LocalLow\Mozilla
2016-11-16 13:19 - 2016-12-11 11:03 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-11-16 00:21 - 2016-11-16 00:23 - 00000000 ____D C:\Users\Ivo Brož\Desktop\vyprazdnovani tlusteho streva
2016-11-12 03:47 - 2016-11-12 03:47 - 00028383 _____ C:\Users\Ivo Brož\Documents\formulář-1.xlsm
2016-11-12 03:15 - 2016-11-12 03:15 - 00044032 _____ C:\Users\Ivo Brož\Documents\indikator_pro_Koju.xls
2016-11-12 03:06 - 2016-11-12 03:06 - 00129024 _____ C:\Users\Ivo Brož\Documents\excel_prvky.xls
2016-11-11 12:52 - 2016-11-11 12:53 - 00011077 _____ C:\Users\Ivo Brož\Documents\Test - třídění.xlsx
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-12-11 11:28 - 2015-12-09 17:18 - 00000000 ____D C:\Users\Ivo Brož\AppData\Roaming\uTorrent
2016-12-11 11:24 - 2015-12-07 20:47 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-12-11 11:22 - 2016-07-28 21:17 - 00000940 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-12-11 11:20 - 2016-11-05 09:02 - 00000896 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-12-11 11:04 - 2016-01-21 12:38 - 00000000 ____D C:\ProgramData\Oracle
2016-12-11 11:01 - 2016-02-23 20:58 - 00269888 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2016-12-11 11:01 - 2016-01-21 12:38 - 00000000 ____D C:\Program Files\Java
2016-12-11 10:57 - 2016-10-30 10:53 - 00000000 ____D C:\Users\Ivo Brož\.rainlendar2
2016-12-11 09:36 - 2006-11-02 13:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2016-12-11 09:36 - 2006-11-02 13:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2016-12-11 07:39 - 2015-12-09 15:48 - 00000000 ___RD C:\Users\Ivo Brož\Dropbox
2016-12-11 07:38 - 2015-12-16 03:11 - 00000000 ___RD C:\Users\Ivo Brož\Disk Google
2016-12-11 07:37 - 2016-07-28 21:17 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-12-11 07:36 - 2016-11-05 09:02 - 00000892 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-12-11 07:36 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-12-11 05:21 - 2015-12-03 15:08 - 00002871 _____ C:\Windows\bthservsdp.dat
2016-12-11 05:21 - 2006-11-02 14:01 - 00032558 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-12-09 20:23 - 2016-02-24 21:04 - 00000000 ____D C:\Users\Ivo Brož\AppData\Local\CrashDumps
2016-12-09 05:05 - 2016-09-24 10:07 - 00000647 _____ C:\Users\Ivo Brož\Documents\Winstep.lnk
2016-12-09 05:05 - 2016-09-24 10:07 - 00000000 ____D C:\Users\Public\Documents\Winstep
2016-12-09 05:05 - 2016-09-24 10:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winstep
2016-12-09 05:05 - 2016-09-24 10:07 - 00000000 ____D C:\Program Files\Winstep
2016-12-04 06:55 - 2015-12-03 10:46 - 00000680 _____ C:\Users\Ivo Brož\AppData\Local\d3d9caps.dat
2016-12-03 12:24 - 2016-11-09 14:19 - 00000000 ____D C:\Users\Ivo Brož\Desktop\Roztřídit
2016-12-02 17:23 - 2015-12-10 22:50 - 00000132 _____ C:\Users\Ivo Brož\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2016-12-02 10:43 - 2015-12-07 14:51 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-12-02 09:50 - 2015-12-16 03:08 - 00000000 ____D C:\Users\Ivo Brož\AppData\Local\Google
2016-12-01 22:25 - 2015-12-09 15:43 - 00000000 ____D C:\Program Files\Dropbox
2016-12-01 22:24 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\inf
2016-12-01 01:41 - 2016-01-22 18:41 - 00000000 ____D C:\Users\Ivo Brož\AppData\Roaming\AIMP3
2016-12-01 01:39 - 2016-07-15 20:43 - 00000811 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-11-30 18:46 - 2015-12-03 10:46 - 00000000 ____D C:\Users\Ivo Brož
2016-11-30 06:05 - 2016-01-29 18:15 - 00000000 ____D C:\Users\Ivo Brož\AppData\Local\MEGAsync
2016-11-17 21:20 - 2016-11-09 01:19 - 00071680 _____ C:\Users\Ivo Brož\Documents\Výdaje.xls
2016-11-15 13:17 - 2008-04-17 13:36 - 00644548 _____ C:\Windows\system32\perfh005.dat
2016-11-15 13:17 - 2008-04-17 13:36 - 00137186 _____ C:\Windows\system32\perfc005.dat
2016-11-15 13:17 - 2006-11-02 11:33 - 01530430 _____ C:\Windows\system32\PerfStringBackup.INI
==================== Files in the root of some directories =======
2015-12-10 22:50 - 2016-12-02 17:23 - 0000132 _____ () C:\Users\Ivo Brož\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
2015-12-10 19:20 - 2015-12-10 19:20 - 0023888 _____ () C:\Users\Ivo Brož\AppData\Roaming\UserTile.png
2015-12-03 10:46 - 2016-12-04 06:55 - 0000680 _____ () C:\Users\Ivo Brož\AppData\Local\d3d9caps.dat
2015-12-04 03:15 - 2016-02-20 07:36 - 0109160 _____ () C:\ProgramData\nvModes.001
2015-12-04 03:15 - 2016-02-20 07:36 - 0109160 _____ () C:\ProgramData\nvModes.dat
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-12-11 07:42
==================== End of FRST.txt ============================