﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version:10-04-2016 01
Ran by gg (2016-04-11 21:24:26)
Running from C:\Users\gg\Desktop
Windows 10 Pro (X64) (2016-01-18 11:12:11)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4153590791-3067097975-2695991599-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4153590791-3067097975-2695991599-503 - Limited - Disabled)
gg (S-1-5-21-4153590791-3067097975-2695991599-1001 - Administrator - Enabled) => C:\Users\gg
Guest (S-1-5-21-4153590791-3067097975-2695991599-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Dead Island" (HKLM-x32\...\{8740F475-EF62-402B-8B3A-CBD1017B7E6C}_is1) (Version:  - )
µTorrent (HKU\S-1-5-21-4153590791-3067097975-2695991599-1001\...\uTorrent) (Version: 3.4.6.42094 - BitTorrent Inc.)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.15) - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AB0000000001}) (Version: 11.0.15 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.10.2.40 (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Auta 2 (HKLM-x32\...\{FF10D622-7BFE-48C6-8DF6-40D8CB1D3C1B}) (Version: 1.00.0000 - Disney Interactive Studios)
Borderlands 2 GOTY verze v1.8.1.2014 (HKLM-x32\...\Borderlands 2 GOTY_is1) (Version: v1.8.1.2014 - (R.G.Danik1B9))
Conquer Online 3.0 (HKLM-x32\...\{78B51FD5-DA3F-4B48-8F3F-4E4068F25D89}_is1) (Version:  - TQ Digital Entertainment Inc.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.3.0.0154 - Disc Soft Ltd)
Dying Light (HKLM-x32\...\Dying Light_is1) (Version: 1.5.1.0 - Techland)
Dying Light: The Following - Enhanced Edition (HKLM\...\ZHlpbmdsaWdodHRoZWZvbGxvd2luZ2VuaGFuY2VkZWRpdGlvbg_is1) (Version: 1 - )
ELAN Touchpad 15.13.3.1_X64_WHQL (HKLM\...\Elantech) (Version: 15.13.3.1 - ELAN Microelectronic Corp.)
FlatOut2 (HKLM-x32\...\{D4006E71-FF32-44FF-AD5A-B5EE4389B825}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
GameRanger (HKU\S-1-5-21-4153590791-3067097975-2695991599-1001\...\GameRanger) (Version:  - GameRanger Technologies)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.112 - Spoločnosť Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Help Desk (HKLM-x32\...\InstallShield_{7E8181AF-9679-49B3-B133-C265709B6927}) (Version: 1.0.1508.1802 - Micro-Star International Co., Ltd.)
Help Desk (x32 Version: 1.0.1508.1802 - Micro-Star International Co., Ltd.) Hidden
Java 8 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218071F0}) (Version: 8.0.710.15 - Oracle Corporation)
Killing Floor v.1055 version 1.0.5.5 (HKLM-x32\...\Killing Floor v.1055_is1) (Version: 1.0.5.5 - ©SunriseProject)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 354.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 354.74 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
Ovládací panel NVIDIA 354.74 (Version: 354.74 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.16011.2 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.6.3.16011.2 - Samsung Electronics Co., Ltd.) Hidden
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.59.0 - Samsung Electronics Co., Ltd.)
SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16021.15 - Samsung Electronics Co., Ltd.)
Smart Switch (x32 Version: 4.1.16021.15 - Samsung Electronics Co., Ltd.) Hidden
Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.16.3.201602121455 - Sony Mobile Communications Inc.)
Sony PC Companion 2.10.303 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.303 - Sony)
Ulož.to File Manager verze 1.7 (HKLM-x32\...\{8190420D-F4BA-4744-8940-A466F81AF89C}_is1) (Version: 1.7 - Nodus Technologies s.r.o.)
uRage Gamepad (HKLM-x32\...\{61A994FF-D39B-4937-9DFF-F7EC4FF1B31F}) (Version: 1.00.0000 - )
uRage MMORPG Gaming Mouse version 1.1 (HKLM-x32\...\{3383154E-AFCB-4E9E-ABD2-E5CCDE339A4B}_is1) (Version: 1.1 - HAMA GmbH & Co KG)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
WinRAR 5.30 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
yessearches - Uninstall (HKLM-x32\...\Uninstall - dam) (Version:  - ) <==== ATTENTION

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4153590791-3067097975-2695991599-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\gg\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {346B191F-4B06-4819-A809-21EE6F085F1E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-08] (Google Inc.)
Task: {5320F066-42D6-408D-916A-DEC648F113AC} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-08] (Adobe Systems Incorporated)
Task: {8477CA02-58F0-419E-B417-709FD21A2E0F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-08] (Google Inc.)
Task: {ACA77272-2281-4A65-BABF-CA19ED59358B} - System32\Tasks\{74C3F927-5119-4D60-BCFC-12DB2283827F} => pcalua.exe -a "D:\Program Files (x86)\KillingFloor_v.1055\KF_launcher.exe" -d "D:\Program Files (x86)\KillingFloor_v.1055"
Task: {AEF3F7FA-00FD-4110-986D-88027A440E9B} - System32\Tasks\MSI_Help_Desk_Agent => C:\Program Files (x86)\MSI\Help Desk\MSI Update Agent.exe [2015-08-18] (Micro-Star International Co., Ltd.)
Task: {C1A9F6E8-96F6-4BB6-9016-A45E1F1180E5} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe [2016-04-08] (Adobe Systems Incorporated)
Task: {EF8EDE14-DB9C-4BDD-BE1D-F04D33046CBC} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-10] (Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-09-10 07:08 - 2015-09-10 07:08 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2016-01-18 21:54 - 2016-02-08 00:04 - 00125816 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-09-10 07:08 - 2015-09-10 07:08 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2016-03-19 23:48 - 2016-02-17 08:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-03-19 23:48 - 2016-02-17 08:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-03-19 23:48 - 2016-02-17 08:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-02-05 22:08 - 2012-04-24 19:42 - 01181544 _____ () C:\Program Files (x86)\uRage MMORPG Gaming Mouse\ETGMSrv.exe
2015-09-30 22:49 - 2015-09-17 08:48 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-09-30 22:49 - 2015-09-17 08:48 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-09-30 22:48 - 2015-09-17 07:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 05:13 - 2015-07-10 05:13 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-12-18 23:00 - 2015-11-25 06:20 - 06569472 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-18 22:59 - 2015-11-25 06:17 - 00471040 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-18 23:00 - 2015-11-25 06:17 - 01808384 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-09-30 22:49 - 2015-09-17 07:43 - 02274816 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 05:13 - 2015-09-10 07:08 - 00210432 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-07-10 05:16 - 2015-07-10 06:39 - 00215352 _____ () c:\windows\system32\WerEtw.dll
2016-03-19 23:48 - 2016-02-17 09:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\WINDOWS\system32\Drivers\qngvrlhd.sys:changelist [436]
AlternateDataStreams: C:\ProgramData\TEMP:56E2E879 [116]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-01-18 12:13 - 2016-01-18 12:11 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-4153590791-3067097975-2695991599-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\gg\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{28a7ad24-b587-41e3-87c4-58e72cb29ab4}.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "HUgmmouseRun"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "KiesTrayAgent"
HKU\S-1-5-21-4153590791-3067097975-2695991599-1001\...\StartupApproved\StartupFolder: => "GameRanger.lnk"
HKU\S-1-5-21-4153590791-3067097975-2695991599-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-4153590791-3067097975-2695991599-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-4153590791-3067097975-2695991599-1001\...\StartupApproved\Run: => "Sony PC Companion"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{BF378461-C372-4E9F-9D10-8184DD9F47B4}] => (Allow) D:\Program Files\Microvirt\MEmu\MEmu.exe
FirewallRules: [{2919D5CA-6E42-422B-A834-41D9194C763B}] => (Allow) D:\Program Files\Microvirt\MEmu\MEmu.exe
FirewallRules: [{5D5307B2-B0C0-4F4E-A093-32264650C201}] => (Allow) C:\Users\gg\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{04A7DD1F-7692-4E67-AB29-5315B2F065EB}] => (Allow) C:\Users\gg\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{9FB19F18-6783-4047-A85A-D84A2F00D61A}] => (Allow) C:\Users\gg\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B66F1242-0275-414F-9043-48D129ABBD57}] => (Allow) C:\Users\gg\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8641C2BF-4826-40FD-A18E-85000E31D8F1}] => (Allow) C:\Users\gg\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{1CBE321D-F8CF-4F2E-B6C3-4C4ED44E0676}] => (Allow) C:\Users\gg\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{8F1E488E-6C54-4D54-851D-30A3625D00AE}C:\program files (x86)\counter-strike 1.6\hl.exe] => (Allow) C:\program files (x86)\counter-strike 1.6\hl.exe
FirewallRules: [UDP Query User{5626047C-4F21-48BD-AF59-70D37991C07D}C:\program files (x86)\counter-strike 1.6\hl.exe] => (Allow) C:\program files (x86)\counter-strike 1.6\hl.exe
FirewallRules: [TCP Query User{0C8D33DF-D58A-4888-B3AC-19BCF3331FED}C:\users\gg\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\gg\appdata\roaming\gameranger\gameranger\gameranger.exe
FirewallRules: [UDP Query User{3AD656C1-D790-4FB2-925A-3248E96AD41A}C:\users\gg\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\gg\appdata\roaming\gameranger\gameranger\gameranger.exe
FirewallRules: [TCP Query User{A64DE938-64A5-4D69-BAEC-2BD9097C3D8F}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe
FirewallRules: [UDP Query User{4E312BC9-1C4A-4798-B9D6-8F30CE64BDF8}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe
FirewallRules: [{7570A253-36EB-4179-ACE8-F7ABDE0F44E3}] => (Allow) LPort=1886
FirewallRules: [{774DF35C-F1D4-499E-99B2-832399381637}] => (Allow) LPort=1886
FirewallRules: [TCP Query User{27296059-0A57-482C-8314-3E5812836720}C:\users\gg\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\gg\appdata\roaming\gameranger\gameranger\gameranger.exe
FirewallRules: [UDP Query User{41070096-7C1E-4DC0-B478-48FFC28DB33E}C:\users\gg\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\gg\appdata\roaming\gameranger\gameranger\gameranger.exe
FirewallRules: [TCP Query User{6957A571-4860-43DF-8751-A2C343437D57}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe
FirewallRules: [UDP Query User{5AE25E1B-2B8A-46E7-AA9B-67F51BE2FB78}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe
FirewallRules: [{0122390E-3BFD-49E3-92F6-3D2F0E417CD3}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
FirewallRules: [{26FF0B2A-6BC7-489C-99A9-3FC52231A844}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
FirewallRules: [TCP Query User{B2D7010A-E326-4CE7-8A51-947DD3417D0F}C:\program files (x86)\counter-strike 1.6\hl.exe] => (Allow) C:\program files (x86)\counter-strike 1.6\hl.exe
FirewallRules: [UDP Query User{13EBA213-30CF-4803-A92D-9E8E34A02827}C:\program files (x86)\counter-strike 1.6\hl.exe] => (Allow) C:\program files (x86)\counter-strike 1.6\hl.exe
FirewallRules: [TCP Query User{1002BC7B-9406-4476-9DA9-5DB1AB01F41D}C:\program files (x86)\java\jre1.8.0_71\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_71\bin\javaw.exe
FirewallRules: [UDP Query User{3F3F5E3B-23B0-451B-8F50-D27286BFDC02}C:\program files (x86)\java\jre1.8.0_71\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_71\bin\javaw.exe
FirewallRules: [{9537CC2D-538B-41E9-A489-21F9B1DEFB8E}] => (Allow) %systemroot%\system32\alg.exe
FirewallRules: [{87D98DE1-EF35-463B-9540-936EBB27ED94}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{6E9BA2DC-C204-4627-A45D-6A0FD86B33FE}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{57636FDC-8FD1-4E52-B8E4-EFA67CD751FF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{0E19F07D-4287-4976-815E-BAD8583563F4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{86E31636-9706-4257-8C62-6B699039843E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{499DD66F-4BD6-4716-BFBB-E1B05CFF463A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{9C60CE15-D292-4100-AD6E-9AD06B2978E1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{53F50C95-2E13-42EF-B81C-AABF2B3C2B4A}] => (Allow) D:\Hry\Dead Island\DeadIslandGame.exe
FirewallRules: [{1589DCBF-900D-449F-9535-2E54EA2BA9D5}] => (Allow) D:\Hry\Dead Island\DeadIslandGame.exe
FirewallRules: [{4AA9E697-692D-4DF5-90D8-248B13B868D1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============

Name: Zařízení PCI
Description: Zařízení PCI
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Sony sa0111 ADB Interface Driver
Description: Sony sa0111 ADB Interface Driver
Class Guid: {306b8322-b4ee-46e1-ae8d-523e1ba76a84}
Manufacturer: Sony
Service: WinUSB
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Sony sa0103 ADB Interface Driver
Description: Sony sa0103 ADB Interface Driver
Class Guid: {642badee-b0d9-43de-bde3-aa77f3b31611}
Manufacturer: Sony
Service: WinUSB
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Microsoft Hosted Network Virtual Adapter
Description: Virtuální adaptér Microsoft hostované sítě
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: vwifimp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/11/2016 09:22:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: FRSTLauncher.exe, verze: 30.9.13.1, časové razítko: 0x2a425e19
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10240.16683, časové razítko: 0x56ad9410
Kód výjimky: 0x0eedfade
Posun chyby: 0x000b3fc8
ID chybujícího procesu: 0x1bb0
Čas spuštění chybující aplikace: 0xFRSTLauncher.exe0
Cesta k chybující aplikaci: FRSTLauncher.exe1
Cesta k chybujícímu modulu: FRSTLauncher.exe2
ID zprávy: FRSTLauncher.exe3
Úplný název chybujícího balíčku: FRSTLauncher.exe4
ID aplikace související s chybujícím balíčkem: FRSTLauncher.exe5

Error: (04/08/2016 11:02:13 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Conquer.exe verze 2012.215.0.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 404

Čas spuštění: 01d191d9909c739c

Čas ukončení: 9

Cesta k aplikaci: D:\Program Files (x86)\NetDragon\Conquer Online 3.0\Conquer.exe

ID hlášení: ed58bb8e-fdcc-11e5-a3e6-240a649d0023

Úplný název balíčku s chybou: 

ID aplikace související s balíčkem s chybou:

Error: (04/08/2016 10:59:21 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Conquer.exe verze 2012.215.0.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: dd4

Čas spuštění: 01d191d8e03f10fc

Čas ukončení: 8

Cesta k aplikaci: D:\Program Files (x86)\NetDragon\Conquer Online 3.0\Conquer.exe

ID hlášení: c1408714-fdcc-11e5-a3e6-240a649d0023

Úplný název balíčku s chybou: 

ID aplikace související s balíčkem s chybou:

Error: (04/08/2016 10:54:38 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Conquer.exe verze 2012.215.0.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: b90

Čas spuštění: 01d191d896eaad23

Čas ukončení: 20

Cesta k aplikaci: D:\Program Files (x86)\NetDragon\Conquer Online 3.0\Conquer.exe

ID hlášení: 1628dd9d-fdcc-11e5-a3e6-240a649d0023

Úplný název balíčku s chybou: 

ID aplikace související s balíčkem s chybou:

Error: (04/08/2016 08:52:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: 91GameCheck.exe, verze: 2.0.0.3, časové razítko: 0x55adf9ee
Název chybujícího modulu: ntdll.dll, verze: 10.0.10240.16683, časové razítko: 0x56ad9358
Kód výjimky: 0xc0000005
Posun chyby: 0x0005ae54
ID chybujícího procesu: 0x1128
Čas spuštění chybující aplikace: 0x91GameCheck.exe0
Cesta k chybující aplikaci: 91GameCheck.exe1
Cesta k chybujícímu modulu: 91GameCheck.exe2
ID zprávy: 91GameCheck.exe3
Úplný název chybujícího balíčku: 91GameCheck.exe4
ID aplikace související s chybujícím balíčkem: 91GameCheck.exe5

Error: (04/08/2016 12:15:16 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: flashplayer21pp_fa_install.exe, verze: 2.0.0.109, časové razítko: 0x56e65a69
Název chybujícího modulu: flashplayer21pp_fa_install.exe, verze: 2.0.0.109, časové razítko: 0x56e65a69
Kód výjimky: 0xc0000005
Posun chyby: 0x00002729
ID chybujícího procesu: 0x94c
Čas spuštění chybující aplikace: 0xflashplayer21pp_fa_install.exe0
Cesta k chybující aplikaci: flashplayer21pp_fa_install.exe1
Cesta k chybujícímu modulu: flashplayer21pp_fa_install.exe2
ID zprávy: flashplayer21pp_fa_install.exe3
Úplný název chybujícího balíčku: flashplayer21pp_fa_install.exe4
ID aplikace související s chybujícím balíčkem: flashplayer21pp_fa_install.exe5

Error: (04/07/2016 06:01:07 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-J0MJNSR)
Description: Aplikaci Microsoft.WindowsStore_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (04/07/2016 02:04:05 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: 91GameCheck.exe, verze: 2.0.0.3, časové razítko: 0x55adf9ee
Název chybujícího modulu: ntdll.dll, verze: 10.0.10240.16683, časové razítko: 0x56ad9358
Kód výjimky: 0xc0000005
Posun chyby: 0x0005ae54
ID chybujícího procesu: 0x17ac
Čas spuštění chybující aplikace: 0x91GameCheck.exe0
Cesta k chybující aplikaci: 91GameCheck.exe1
Cesta k chybujícímu modulu: 91GameCheck.exe2
ID zprávy: 91GameCheck.exe3
Úplný název chybujícího balíčku: 91GameCheck.exe4
ID aplikace související s chybujícím balíčkem: 91GameCheck.exe5

Error: (04/06/2016 11:05:09 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-J0MJNSR)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (04/04/2016 09:23:42 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code.


System errors:
=============
Error: (04/11/2016 09:20:08 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:20:07 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:20:06 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:20:05 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:20:04 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:20:03 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:20:02 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:20:01 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:20:00 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/11/2016 09:19:59 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici


CodeIntegrity:
===================================
  Date: 2016-04-10 14:45:49.989
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-04-08 01:57:50.576
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-04-07 01:24:41.013
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-04-06 22:43:50.500
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-04-05 22:19:37.543
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-04-05 01:07:32.701
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-29 23:02:19.832
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-28 14:14:09.189
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-28 01:35:56.431
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-26 23:04:37.799
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-4200M CPU @ 2.50GHz
Percentage of memory in use: 14%
Total physical RAM: 12208.03 MB
Available physical RAM: 10452.31 MB
Total Virtual: 14064.03 MB
Available Virtual: 12415.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:97.14 GB) (Free:7.25 GB) NTFS
Drive d: (Dáta) (Fixed) (Total:368.1 GB) (Free:270.52 GB) NTFS
Drive g: (Cars2) (CDROM) (Total:1.79 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: A962E8F2)

Partition: GPT.

==================== End of Addition.txt ============================