﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version:20-07-2015
Ran by Ilpeva at 2015-07-25 13:35:27
Running from C:\Users\Ilpeva\Desktop
Boot Mode: Safe Mode (with Networking)
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-417826297-2065636235-3177541415-500 - Administrator - Disabled)
Guest (S-1-5-21-417826297-2065636235-3177541415-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-417826297-2065636235-3177541415-1002 - Limited - Enabled)
Ilpeva (S-1-5-21-417826297-2065636235-3177541415-1001 - Administrator - Enabled) => C:\Users\Ilpeva

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Might & Magic X - Legacy" (HKLM-x32\...\{D8844ACB-1A60-463A-BDF5-F820BA353008}_is1) (Version: 1.5.0.16336 - )
"XCOM - Enemy Within" (HKLM-x32\...\{EE377223-72A9-4995-B3B6-8A056CA4CE5D}_is1) (Version: 1.0.0.926 - )
Act of Aggression (HKLM-x32\...\{51A7177D-D726-4E65-A816-3DC8778FEC02}_is1) (Version: 1.0.0.1 - Focus Home Interactive)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated)
Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
aktivator-pro-windows-7-ultimate version for Windows (HKLM-x32\...\{51D3E654-AC4F-9DFE-7D55-52D3CB4563E8}_is1) (Version: for Windows - )
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version:  - Microsoft)
Alien Isolation Digital Deluxe Edition version Alien Isolation Digital Deluxe Edition (HKLM-x32\...\Alien Isolation Digital Deluxe Edition_is1) (Version: Alien Isolation Digital Deluxe Edition - )
Alternative Look for Triss (HKLM-x32\...\Alternative Look for Triss_is1) (Version: 1.0.0.0 - GOG.com)
Alternative Look for Yennefer (HKLM-x32\...\Alternative Look for Yennefer_is1) (Version: 1.0.0.0 - GOG.com)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software)
Ballad Heroes - Neutral Gwent Card Set (HKLM-x32\...\Ballad Heroes - Neutral Gwent Card Set_is1) (Version: 1.0.0.0 - GOG.com)
Batman Arkham Origins (HKLM-x32\...\QmF0bWFuQXJraGFtT3JpZ2lucw==_is1) (Version: 1 - )
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.0.0.0 - Electronic Arts)
Beard and Hairstyle Set (HKLM-x32\...\Beard and Hairstyle Set_is1) (Version: 1.0.0.0 - GOG.com)
BioShock Infinite (HKLM-x32\...\BioShock Infinite_is1) (Version: 1.1.25.5165 - Decepticon)
BitLord 2.3 (HKLM-x32\...\BitLord) (Version: 2.3.2-245 - House of Life)
Blackguards 2 (HKLM-x32\...\Blackguards2_is1) (Version: 1.0 - Daedalic Entertainment GmbH)
Brothers - A Tale of Two Sons (HKLM-x32\...\Brothers - A Tale of Two Sons_is1) (Version: 1.0 - Релиз от R.G. Steamgames)
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
ConaveurTApups (HKLM-x32\...\{9490A9E7-B0E9-D9EA-365C-3EE2B532055E}) (Version:  - "")
coolsoft (HKLM-x32\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{ff39eb65}) (Version:  - Software Publisher) <==== ATTENTION
CPUID CPU-Z 1.71.1 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Deus.Ex.Human.Revolution.Directors.Cut (HKLM-x32\...\RGV1c0V4SHVtYW5SZXZvbHV0aW9uRGlyZWN0b3JzQ3V0_is1) (Version: 1 - )
Dex (HKLM-x32\...\Dex_is1) (Version:  - )
Divinity Original Sin version 1.0.81.0 (HKLM-x32\...\Divinity Original Sin_is1) (Version: 1.0.81.0 - GMT-MAX.ORG)
DoWar2R (HKLM-x32\...\DoWar2R_is1) (Version: RePack - Ultra)
Elite Crossbow Set (HKLM-x32\...\Elite Crossbow Set_is1) (Version: 1.0.0.0 - GOG.com)
Endless Legend (HKLM-x32\...\RW5kbGVzc0xlZ2VuZA==_is1) (Version: 1 - )
Grey Goo (HKLM-x32\...\Grey Goo_is1) (Version:  - )
Homeworld Remastered Collection (HKLM-x32\...\SG9tZXdvcmxkUmVtYXN0ZXJlZENvbGxlY3Rpb24=_is1) (Version: 1 - )
Child of Light (HKLM-x32\...\Q2hpbGRvZkxpZ2h0_is1) (Version: 1 - )
Joe Devers Lone Wolf HD Remastered (HKLM-x32\...\Joe Devers Lone Wolf HD Remastered_is1) (Version:  - )
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
MonsoonReuvuenue (HKLM-x32\...\{34F9B822-7033-30EF-18C1-D999278F8053}) (Version:  - )
Mozilla Firefox 39.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 39.0 (x86 cs)) (Version: 39.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
MPC-HC 1.7.6 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.6 - MPC-HC Team)
Murdered - Soul Suspect (HKLM-x32\...\Murdered - Soul Suspect_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
New Quest - Contract - Skellige's Most Wanted (HKLM-x32\...\New Quest - Contract: Skellige's Most Wanted_is1) (Version: 1.0.0.0 - GOG.com)
New Quest - Contract Missing Miners (HKLM-x32\...\New Quest - Contract Missing Miners_is1) (Version: 1.0.0.0 - GOG.com)
New Quest - Fool's Gold (HKLM-x32\...\New Quest - Fool's Gold_is1) (Version: 1.0.0.0 - GOG.com)
New Quest - Scavenger Hunt - Wolf School Gear (HKLM-x32\...\New Quest - Scavenger Hunt: Wolf School Gear_is1) (Version: 1.0.0.0 - GOG.com)
New Quest - Where the Cat and Wolf Play... (HKLM-x32\...\New Quest - Where the Cat and Wolf Play..._is1) (Version: 1.0.0.0 - GOG.com)
Nilfgaardian Armor Set (HKLM-x32\...\Nilfgaardian Armor Set_is1) (Version: 1.0.0.0 - GOG.com)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.30 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.5.11.45 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.11.45 - NVIDIA Corporation)
NVIDIA Graphics Driver 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Order of Battle: Pacific (HKLM-x32\...\T3JkZXJvZkJhdHRsZVBhY2lmaWM=_is1) (Version: 1 - )
Ori and the Blind Forest (HKLM-x32\...\Ori and the Blind Forest_is1) (Version:  - )
Pillars of Eternity (HKLM-x32\...\1207666813_is1) (Version: 2.0.0.1 - GOG.com)
Pillars of Eternity Kickstarter Item (HKLM-x32\...\Pillars of Eternity Kickstarter Item_is1) (Version: 2.0.0.1 - GOG.com)
Pillars of Eternity Kickstarter Pet (HKLM-x32\...\Pillars of Eternity Kickstarter Pet_is1) (Version: 2.0.0.1 - GOG.com)
ReplliApp (HKLM-x32\...\{969FB8EF-38D0-4607-CFDE-397D08A961A3}) (Version:  - )
Revo Uninstaller Pro 3.0.8 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.8 - VS Revo Group, Ltd.)
Seznam Software (HKU\S-1-5-21-417826297-2065636235-3177541415-1001\...\SeznamInstall) (Version:  - Seznam.cz)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.11.45 - NVIDIA Corporation) Hidden
Sid Meiers Civilization Beyond Earth (HKLM-x32\...\U2lkTWVpZXJzQ2l2aWxpemF0aW9uQmV5b25kRWFydGg=_is1) (Version: 1 - )
Sid Meier's Civilization V (HKLM-x32\...\Sid Meier's Civilization V_is1) (Version:  - )
Skellige Armor Set (HKLM-x32\...\Skellige Armor Set_is1) (Version: 1.0.0.0 - GOG.com)
Temerian Armor Set (HKLM-x32\...\Temerian Armor Set_is1) (Version: 1.0.0.0 - GOG.com)
The Witcher 2 - Assassins of Kings Enhanced Edition (HKLM-x32\...\GOGPACKTHEWITCHER2EE_is1) (Version: 3.4.0.25 - GOG.com)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com)
The Witcher Adventure Game v1.0 / RePack by Azaq (HKLM-x32\...\The Witcher Adventure Game_is1) (Version:  - )
This War of Mine (HKLM-x32\...\1207666873_is1) (Version: 2.0.0.2 - GOG.com)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Valkyria Chronicles (HKLM-x32\...\Valkyria Chronicles_is1) (Version:  - )
Warhammer 40000 - Armageddon ver. 1.03 (HKLM-x32\...\{33224466-21HJ-19NB-01C0-41KL5M686AC}_is1) (Version: 1.03 - Slitherine Ltd.)
Wolfenstein - The Old Blood (HKLM-x32\...\Wolfenstein - The Old Blood_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
Wolfenstein.The New Order.v 1.0.0.1 (HKLM-x32\...\Wolfenstein.The New Order.v 1.0.0.1_is1) (Version: Wolfenstein.The New Order.v 1.0.0.1 - Repack by Fenixx (21.05.2014))
World in Conflict: Soviet Assault (HKLM-x32\...\{F11ADC64-C89E-47F4-A0B3-3665FF859397}) (Version: 1.0.1.0 - Ubisoft Entertainment)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

16-07-2015 09:33:36 Windows Update
19-07-2015 21:52:41 Windows Update
20-07-2015 12:36:57 Windows Defender Checkpoint
21-07-2015 16:12:56 Windows Update
25-07-2015 09:40:40 Windows Update

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {6A63F336-45A5-4C86-8E51-9C9D27635BB5} - System32\Tasks\{67319CDC-D191-42B5-82E4-2B652466938A} => D:\Games\BF3\Battlefield 3™\bf3.exe
Task: {9637D164-2E8F-46D0-BB6C-E52C667A30B1} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-18] (Avast Software s.r.o.)
Task: {E9373F4C-4937-455B-A2D2-B0620FB143B8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-15] (Adobe Systems Incorporated)
Task: {EBDB288B-5F39-49EE-ACD5-6F423C074E10} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {F4561ADF-7A38-4EFA-8C33-265748565D11} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (Whitelisted) ==============

2015-07-15 07:43 - 2015-07-15 07:43 - 17448624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-417826297-2065636235-3177541415-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ilpeva\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 83.240.0.215 - 83.240.0.136
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: BDESVC => 3
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: cz.seznam.software.autoupdate => "C:\Users\Ilpeva\AppData\Roaming\Seznam.cz\szninstall.exe" -c
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "C:\Users\Ilpeva\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe"  -q
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{C7047FEA-BE62-475B-8BD1-022206B3F1E0}C:\program files (x86)\bitlord 2\bitlord files\bitlord.exe] => (Allow) C:\program files (x86)\bitlord 2\bitlord files\bitlord.exe
FirewallRules: [UDP Query User{72656825-96E5-4896-81A9-8C3A20B6BB40}C:\program files (x86)\bitlord 2\bitlord files\bitlord.exe] => (Allow) C:\program files (x86)\bitlord 2\bitlord files\bitlord.exe
FirewallRules: [{14330F0D-8333-4D1D-AC88-1EAF25299E42}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{5B1278AF-1DBB-468F-9BC5-D709DAFE6504}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [TCP Query User{1370165F-31ED-49FC-9CF6-1FAF1D7B10BF}D:\games\murdered - soul suspect\murdered - soul suspect\binaries\win64\murdered.exe] => (Block) D:\games\murdered - soul suspect\murdered - soul suspect\binaries\win64\murdered.exe
FirewallRules: [UDP Query User{DF60B96F-E94A-4F32-8526-D4BDC5A46FD1}D:\games\murdered - soul suspect\murdered - soul suspect\binaries\win64\murdered.exe] => (Block) D:\games\murdered - soul suspect\murdered - soul suspect\binaries\win64\murdered.exe
FirewallRules: [TCP Query User{E1F068E1-6CCE-4394-966B-2C8E59907BB5}D:\games\divinity\divinity original sin\shipping\eocapp.exe] => (Block) D:\games\divinity\divinity original sin\shipping\eocapp.exe
FirewallRules: [UDP Query User{A75C000E-D4C2-4255-8817-FBB085E79448}D:\games\divinity\divinity original sin\shipping\eocapp.exe] => (Block) D:\games\divinity\divinity original sin\shipping\eocapp.exe
FirewallRules: [{CEB1859F-170A-43BD-AB64-C47BF21BAB32}] => (Allow) D:\Games\XCOM\XCOM - Enemy Within\Binaries\Win32\XComEW.exe
FirewallRules: [{BCE2A7B0-95A7-4CC8-AE4E-E7F83B427969}] => (Allow) D:\Games\XCOM\XCOM - Enemy Within\Binaries\Win32\XComEW.exe
FirewallRules: [{85B12B05-FD99-4C91-A7E3-DC0293A8FC06}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{161BA74C-76B8-4AFE-A994-F6E80F09F880}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{CB48F589-E34B-4048-9B05-8C862CF017A7}D:\games\alien - isolation\alien isolation digital deluxe edition\ai.exe] => (Block) D:\games\alien - isolation\alien isolation digital deluxe edition\ai.exe
FirewallRules: [UDP Query User{82B95A0A-2B73-4F03-A0F3-CCF3678E0BEB}D:\games\alien - isolation\alien isolation digital deluxe edition\ai.exe] => (Block) D:\games\alien - isolation\alien isolation digital deluxe edition\ai.exe
FirewallRules: [TCP Query User{6AD0F684-E384-4A30-95B9-26A8F2839B02}D:\games\grey goo\grey goo\instanceserverg.exe] => (Block) D:\games\grey goo\grey goo\instanceserverg.exe
FirewallRules: [UDP Query User{05207A0F-72BF-49FC-9B91-0D3F9E3C2940}D:\games\grey goo\grey goo\instanceserverg.exe] => (Block) D:\games\grey goo\grey goo\instanceserverg.exe
FirewallRules: [TCP Query User{FDA6EDC6-D782-404B-B863-C1162FBA8561}D:\games\grey goo\grey goo\goog.exe] => (Block) D:\games\grey goo\grey goo\goog.exe
FirewallRules: [UDP Query User{35A2093F-8FEA-4C27-B795-2210F4481111}D:\games\grey goo\grey goo\goog.exe] => (Block) D:\games\grey goo\grey goo\goog.exe
FirewallRules: [TCP Query User{02CC1350-31AB-4B04-9881-AD71B7DC6E52}D:\games\brothers\brothers - a tale of two sons\binaries\win32\brothers.exe] => (Block) D:\games\brothers\brothers - a tale of two sons\binaries\win32\brothers.exe
FirewallRules: [UDP Query User{C809DB8F-3869-4057-87D2-CAB9E23C474A}D:\games\brothers\brothers - a tale of two sons\binaries\win32\brothers.exe] => (Block) D:\games\brothers\brothers - a tale of two sons\binaries\win32\brothers.exe
FirewallRules: [TCP Query User{DB0B7CFA-11BF-4ADD-9849-05FF85BA4B1E}D:\games\wolfenstein\wolfenstein.the new order.v 1.0.0.1\wolfneworder_x64.exe] => (Block) D:\games\wolfenstein\wolfenstein.the new order.v 1.0.0.1\wolfneworder_x64.exe
FirewallRules: [UDP Query User{15519E8D-B3C4-456D-A6BB-C29391663875}D:\games\wolfenstein\wolfenstein.the new order.v 1.0.0.1\wolfneworder_x64.exe] => (Block) D:\games\wolfenstein\wolfenstein.the new order.v 1.0.0.1\wolfneworder_x64.exe
FirewallRules: [{E8D91A0F-35CD-455F-97D4-6E0125FD5C10}] => (Allow) D:\Games\World In Conflict\wic.exe
FirewallRules: [{8F410F21-33CB-42C5-AB7E-9C366FD0491A}] => (Allow) D:\Games\World In Conflict\wic.exe
FirewallRules: [{81B14AB1-0815-461D-85AA-2C89187D970E}] => (Allow) D:\Games\World In Conflict\wic_online.exe
FirewallRules: [{481B078E-9D5C-41EA-8C6F-BF1319A170AE}] => (Allow) D:\Games\World In Conflict\wic_online.exe
FirewallRules: [{ED36527F-0D72-4A03-AD32-5B836F08C323}] => (Allow) D:\Games\World In Conflict\wic_ds.exe
FirewallRules: [{802B9C98-CCA5-4E81-93F2-6AB20E36C78F}] => (Allow) D:\Games\World In Conflict\wic_ds.exe
FirewallRules: [TCP Query User{7E1991F8-B8C7-40AB-95B0-C7F5517DD39D}D:\games\wtcher 2\the witcher 2 enhanced edition\bin\witcher2.exe] => (Allow) D:\games\wtcher 2\the witcher 2 enhanced edition\bin\witcher2.exe
FirewallRules: [UDP Query User{601AE1A3-C02C-4ECC-BD2F-6BC831F001D4}D:\games\wtcher 2\the witcher 2 enhanced edition\bin\witcher2.exe] => (Allow) D:\games\wtcher 2\the witcher 2 enhanced edition\bin\witcher2.exe
FirewallRules: [TCP Query User{3D9369D5-2079-44A3-8B41-18488250DF34}C:\users\ilpeva\desktop\věci\starcrawlers.exe] => (Allow) C:\users\ilpeva\desktop\věci\starcrawlers.exe
FirewallRules: [UDP Query User{B894139D-3EF1-45A1-9644-B257822ABF18}C:\users\ilpeva\desktop\věci\starcrawlers.exe] => (Allow) C:\users\ilpeva\desktop\věci\starcrawlers.exe
FirewallRules: [TCP Query User{93C390CC-CDAC-4AD0-AF78-F95D72C2D4D2}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{EAFED11D-5C15-48A4-8A1F-749E15DDF483}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{8B549DB8-A556-4E5D-A7FA-0B0034442CB9}D:\games\warhammer\dowar2r\dow2.exe] => (Block) D:\games\warhammer\dowar2r\dow2.exe
FirewallRules: [UDP Query User{AB161E38-6492-4873-9543-172D481E9071}D:\games\warhammer\dowar2r\dow2.exe] => (Block) D:\games\warhammer\dowar2r\dow2.exe
FirewallRules: [{01DC512C-4FD4-46CF-A835-1E8D67E6CF62}] => (Allow) D:\Games\Might & Magic X Legacy\Might & Magic X - Legacy\Might and Magic X Legacy.exe
FirewallRules: [{AB0A2289-5BDD-4D3F-82BD-75EBF8369F28}] => (Allow) D:\Games\Might & Magic X Legacy\Might & Magic X - Legacy\Might and Magic X Legacy.exe
FirewallRules: [{DD866E0A-D082-4898-AA49-5C715D4E0460}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{D596D379-D5D5-4248-8575-F91CADFCF9E2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{AECEDE81-A2DF-4CEF-95D7-9FAD335A250E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{344626C4-F172-4534-9E59-98F699789602}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{EF00B98E-C21A-470A-A5DC-021CC19731EC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{017548A9-DE37-4FF1-A7D6-84696DE1FBB1}] => (Allow) C:\Users\Ilpeva\AppData\Roaming\Google\downloader.exe
FirewallRules: [{3A4E12D5-44CC-4A7B-BD33-6B0506CC7936}] => (Allow) C:\Users\Ilpeva\AppData\Roaming\Google\downloader.exe

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: avast! Revert
Description: avast! Revert
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: aswRvrt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Security Processor Loader Driver
Description: Security Processor Loader Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: spldr
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: avast! VM Monitor
Description: avast! VM Monitor
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: aswVmm
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/25/2015 11:53:28 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/25/2015 11:45:46 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/25/2015 11:26:22 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/25/2015 09:36:05 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/24/2015 06:51:13 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/23/2015 06:32:08 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/22/2015 07:35:05 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/22/2015 06:48:26 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/21/2015 08:05:17 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (07/21/2015 04:19:15 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (07/25/2015 01:34:08 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:34:08 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:34:08 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:33:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:33:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:33:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:33:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:33:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:33:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068

Error: (07/25/2015 01:31:44 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error: 
%%1068


Microsoft Office:
=========================

CodeIntegrity Errors:
===================================
  Date: 2014-12-06 15:56:01.390
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Ilpeva\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-06 15:56:01.296
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Ilpeva\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-06 15:56:01.016
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2014-12-06 15:56:00.922
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 CPU 6300 @ 1.86GHz
Percentage of memory in use: 22%
Total physical RAM: 4094.49 MB
Available physical RAM: 3190.42 MB
Total Virtual: 8187.19 MB
Available Virtual: 7319.44 MB

==================== Drives ================================

Drive c: (Nový svazek) (Fixed) (Total:244.14 GB) (Free:29.2 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (Nový svazek) (Fixed) (Total:687.37 GB) (Free:106.74 GB) NTFS
Drive f: () (Fixed) (Total:55.89 GB) (Free:14.54 GB) NTFS
Drive h: (ČERVENÁ2) (Removable) (Total:3.77 GB) (Free:1.24 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 55.9 GB) (Disk ID: 80368036)
Partition 1: (Active) - (Size=55.9 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 84FB1F93)
Partition 1: (Not Active) - (Size=687.4 GB) - (Type=07 NTFS)
Partition 2: (Active) - (Size=244.1 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 3.8 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=3.8 GB) - (Type=0B)

==================== End of log ============================