﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-06-2016
Ran by David (2016-06-29 19:01:58)
Running from C:\Users\David\Desktop
Windows 10 Home Version 1511 (X64) (2015-12-08 19:43:27)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2482947197-2486991742-923896988-500 - Administrator - Disabled)
David (S-1-5-21-2482947197-2486991742-923896988-1001 - Administrator - Enabled) => C:\Users\David
Davidson Okanginwa (S-1-5-21-2482947197-2486991742-923896988-1004 - Limited - Enabled) => C:\Users\Davidson Okanginwa
DefaultAccount (S-1-5-21-2482947197-2486991742-923896988-503 - Limited - Disabled)
Guest (S-1-5-21-2482947197-2486991742-923896988-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2482947197-2486991742-923896988-1003 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Smart Security 9.0.376.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 9.0.376.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personální firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 22.0.0.153 - Adobe Systems Incorporated)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.9 - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Photoshop CS5 (HKLM-x32\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.11.3.5 (Version: 2.11.3.5 - NVIDIA Corporation) Hidden
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM-x32\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - Bandisoft.com)
Crysis®3 (HKLM-x32\...\{4198AE83-A3C6-4C41-85C8-EC63E990696E}) (Version: 1.0.0.0 - Electronic Arts)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
ESET Smart Security (HKLM\...\{B7DE9695-00B8-4935-97B5-A2CBFBA6A3F8}) (Version: 9.0.376.1 - ESET, spol. s r.o.)
Far Cry 3 (HKLM-x32\...\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}) (Version: 1.05 - Ubisoft)
FarCry 4 (HKLM-x32\...\Uplay Install 420) (Version:  - Ubisoft)
FormatFactory 3.9.0.1 (HKLM-x32\...\FormatFactory) (Version: 3.9.0.1 - Free Time)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Google Drive (HKLM-x32\...\{709316AD-161C-4D5C-9AE7-0B3A822DA271}) (Version: 1.30.2170.0459 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.)
Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
Imperator Pro Gaming Keyboard (HKLM-x32\...\{EB7897BC-CC81-45D0-8F2F-654603107100}}_is1) (Version:  - )
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4331 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.0.3.1001 - Intel Corporation)
Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.14 - Oracle Corporation)
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mafia II (HKLM-x32\...\Steam App 50130) (Version:  - 2K Czech)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 2013 pro profesionály - cs-cz (HKLM\...\ProfessionalRetail - cs-cz) (Version: 15.0.4833.1001 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
NVIDIA GeForce Experience 2.11.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.3.5 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 368.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.39 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.14 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 368.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.39 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NVIDIA Virtuální audio Miracast 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 353.30 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4833.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4833.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (Version: 15.0.4833.1001 - Microsoft Corporation) Hidden
OpenOffice 4.1.1 (HKLM-x32\...\{C560D6E7-E40A-435D-8B71-62CBCF1701B2}) (Version: 4.11.9775 - Apache Software Foundation)
Origin (HKLM-x32\...\Origin) (Version: 9.1.10.2728 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 368.39 (Version: 368.39 - NVIDIA Corporation) Hidden
paint.net (HKLM\...\{DADC2AF6-DC9F-4BCF-BFCE-DCEC16EF507C}) (Version: 4.0.9 - dotPDN LLC)
PhotoScape (HKLM-x32\...\PhotoScape) (Version:  - )
Prohlížeč Seznam.cz (HKU\S-1-5-21-2482947197-2486991742-923896988-1001\...\Seznam Browser) (Version:  - Seznam.cz a.s.)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.29.314.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Seznam Software (HKU\S-1-5-21-2482947197-2486991742-923896988-1001\...\SeznamInstall) (Version:  - Seznam.cz)
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steel Ocean (HKLM\...\Steam App 390670) (Version:  - ICE Entertainment)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.40798 - TeamViewer)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.)
Vypínač na dobrou noc verze 2.0 (HKLM-x32\...\Vypínač na dobrou noc_is1) (Version:  - )
War Thunder Launcher 1.0.1.513 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version:  - Gaijin Entertainment)
WarThunder (HKLM-x32\...\WarThunder) (Version:  - ) <==== ATTENTION
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2482947197-2486991742-923896988-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {22A8C82C-2529-4E99-8309-23DA41717F18} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {2F074319-DF8A-455E-A0AA-5F712737A143} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {3F65A307-AB8A-445D-96A5-1E09BAC950A0} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {62BF3E87-3FC8-40BC-9A6B-D9D3B870BA3F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {63B36533-7012-446B-8516-7F0ABD61A3F4} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-04-12] (Microsoft Corporation)
Task: {63C23123-4E7F-4D4A-9119-8A5B0278048E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {66D40142-32BE-4114-8C57-74352A4C57A7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {76C00BBA-920D-4345-A7B4-30F24622D70A} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-david.koranda@seznam.cz => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)
Task: {8A8FFC3B-13BE-4528-877E-37104D237F67} - System32\Tasks\GoogleUpdateTaskMachineUA1d08f5f4415d5f => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {8AA937E7-3724-4CEE-9811-1E4B7F4F772D} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {A3FDA4BE-EAFC-450D-A023-A9F6F4D35859} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {AAF7F6B9-BEFA-4100-8ACC-1017068A6A57} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {B149D908-BE46-4CBB-A651-0BA76A6DC68A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-04-12] (Microsoft Corporation)
Task: {D5A60D38-674D-4851-B750-80FB26E8477F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {D73E1B50-34F9-48FD-A35E-D2CAC0993B52} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {D7B6D547-C954-4332-BCD0-37C24E5E4EC2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {E62C1069-198C-41F8-A21A-3EA9C3D4CE60} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-06-14] (Microsoft Corporation)
Task: {F236D73B-DCD2-435D-838F-1D18B43F8CAE} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08f5f4415d5f.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\David\Desktop\WarThunder.lnk -> hxxp://mmotraffic.com/catalog/goplay/1000932/MTE3NjYvLy8xMDAwOTMy/?subid=1&click_id=1b8fd6a296da8e684a37f9d560f5f4633740b7fd --app-window-size=1920,10800C:\Users\David\AppData\Roaming\WarThunder\wt.ico (No File)
Shortcut: C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\WarThunder.lnk -> hxxp://mmotraffic.com/catalog/goplay/1000932/MTE3NjYvLy8xMDAwOTMy/?subid=1&click_id=1b8fd6a296da8e684a37f9d560f5f4633740b7fd --app-window-size=1920,10800C:\Users\David\AppData\Roaming\WarThunder\wt.ico (No File)
Shortcut: C:\Users\David\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> hxxp://mmotraffic.com/catalog/goplay/1000932/MTE3NjYvLy8xMDAwOTMy/?subid=1&click_id=1b8fd6a296da8e684a37f9d560f5f4633740b7fd --app-window-size=1920,10800C:\Users\David\AppData\Roaming\WarThunder\wt.ico (No File)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-12-08 21:37 - 2016-06-03 05:59 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-04-03 00:20 - 2016-04-19 19:26 - 00114888 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2016-02-23 10:54 - 2016-05-02 07:54 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-02-12 16:36 - 2016-05-02 07:55 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-05-10 08:54 - 2016-05-02 07:54 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-02-23 10:54 - 2016-05-02 07:55 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2015-12-01 02:21 - 2015-12-01 02:21 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2016-05-10 08:54 - 2016-05-02 07:55 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-05-10 08:54 - 2016-05-02 07:55 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-05-10 08:54 - 2016-05-02 07:55 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-02-12 16:36 - 2016-05-02 07:55 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-05-10 08:54 - 2016-05-02 07:54 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-05-10 08:54 - 2016-05-02 07:54 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-04-13 18:33 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 18:33 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-05-14 18:53 - 2016-05-14 18:53 - 00959168 _____ () C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-01-04 00:19 - 2015-05-26 13:35 - 00079872 _____ () C:\Users\David\AppData\Roaming\Seznam.cz\bin\26131libfoxloader-x64.dll
2015-12-18 19:25 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-05-11 19:57 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-06-14 22:38 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-06-14 22:38 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-06-14 22:38 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-06-14 22:38 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-01-04 00:19 - 2015-05-26 13:38 - 00457384 _____ () C:\Users\David\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
2016-01-04 00:19 - 2015-05-26 13:36 - 00073896 _____ () C:\Users\David\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
2015-03-30 11:35 - 2016-05-02 08:00 - 00167480 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll
2015-03-30 11:35 - 2016-05-02 08:01 - 00862776 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll
2016-02-23 11:01 - 2016-02-23 11:01 - 00402624 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\AppVIsvStream64.dll
2016-02-23 11:00 - 2016-02-23 11:00 - 00402624 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream64.dll
2015-04-02 23:51 - 2016-05-02 08:02 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-05-14 18:52 - 2016-05-14 18:52 - 00679624 _____ () C:\Users\David\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll
2016-01-04 00:19 - 2015-05-26 13:37 - 00078504 _____ () C:\Users\David\AppData\Roaming\Seznam.cz\bin\26128libfoxloader.dll
2016-01-04 00:19 - 2015-05-26 13:38 - 00862888 _____ () C:\Users\David\AppData\Roaming\Seznam.cz\bin\lightspeed.dll
2016-06-16 19:38 - 2016-06-15 11:15 - 01745560 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\libglesv2.dll
2016-06-16 19:38 - 2016-06-15 11:15 - 00091288 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\libegl.dll
2015-03-30 11:23 - 2013-09-16 12:17 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2482947197-2486991742-923896988-1001\Control Panel\Desktop\\Wallpaper -> D:\programy\Bandicam\Bandicam kamera\FarCry4 2016-04-20 20-16-18-821.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2482947197-2486991742-923896988-1001\...\StartupApproved\Run: => "msnmsgr"
HKU\S-1-5-21-2482947197-2486991742-923896988-1001\...\StartupApproved\Run: => "WarThunderLauncher"
HKU\S-1-5-21-2482947197-2486991742-923896988-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-2482947197-2486991742-923896988-1001\...\StartupApproved\Run: => "Steam"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{101104AD-40AD-48C5-9B42-A1CFCCD91C5F}] => (Allow) D:\hry\Far Cry 3\bin\FC3Editor.exe
FirewallRules: [{8F160A98-2468-4A4F-A583-FB6C2428CAAA}] => (Allow) D:\hry\Far Cry 3\bin\FC3Editor.exe
FirewallRules: [{DF67B466-2432-482E-828C-FF97BA3C263E}] => (Allow) D:\hry\Far Cry 3\bin\FC3Updater.exe
FirewallRules: [{3D780B28-A724-4B5D-9B95-30BD3811890F}] => (Allow) D:\hry\Far Cry 3\bin\FC3Updater.exe
FirewallRules: [{68C638DE-F27C-4C6C-96BC-1626241F3A47}] => (Allow) D:\hry\Far Cry 3\bin\farcry3_d3d11.exe
FirewallRules: [{785A7978-8B76-48F4-BFC1-594D0799AE35}] => (Allow) D:\hry\Far Cry 3\bin\farcry3_d3d11.exe
FirewallRules: [{DD769BBC-D453-45B7-9149-D3D74304052E}] => (Allow) D:\hry\Far Cry 3\bin\farcry3.exe
FirewallRules: [{251149D4-532B-459C-9EE0-C3C20F080442}] => (Allow) D:\hry\Far Cry 3\bin\farcry3.exe
FirewallRules: [{CD59455D-410D-47D5-8B1F-588FB550F18C}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{BB6DF987-607F-4202-A078-D1BD19DC8671}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{79020AB7-F011-46DB-9BFE-06DFBA2127E2}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{F0B4B510-CD1B-4448-82B4-8DB316A2F87D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{3E650008-3113-47C6-824A-837FBDC9A91A}] => (Allow) D:\Steam\steamapps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{29240D6A-D5B4-496B-84A9-1CF0F0D8154F}] => (Allow) D:\Steam\steamapps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{9D4A337F-05AF-4E59-A0D1-4C999B9B239E}] => (Allow) D:\Steam\bin\steamwebhelper.exe
FirewallRules: [{0BBF9FF1-C233-491F-862B-388AB32AA4FB}] => (Allow) D:\Steam\bin\steamwebhelper.exe
FirewallRules: [{0D587D12-91D4-4BDA-B580-0673C8BBFF66}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{A65EF31E-2D12-4496-8165-211B114DDC58}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{E4CB6D72-D063-4905-A47E-892750C92AD7}] => (Allow) D:\hry\Mafia II\Steam.exe
FirewallRules: [{E15E7935-122F-4C13-86B7-3EF879B1751F}] => (Allow) D:\hry\Mafia II\Steam.exe
FirewallRules: [{2E584017-3228-4DBB-BF1D-40CF18AE44C0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0DF82970-B8A8-42B9-AD41-1FD15C2F1DFA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F7A891C2-F492-4080-9E67-F2BACF6D6F30}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{D9A5DF95-EE3F-46F8-8548-B8B807EDF50D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{20EF7D48-392D-4096-B9CA-04FBDE0DEB4E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{319A5726-0B44-4F5E-8E8F-F4FBB38D5E7C}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{77A72751-0285-46F3-AD1A-FE100227D020}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{86A1DF1B-D56C-491C-A049-B5D67FAFE5CF}] => (Allow) D:\hry\WarThunder\launcher.exe
FirewallRules: [{83DDCEE6-8C85-47F6-AD78-208A2582D24B}] => (Allow) D:\hry\WarThunder\launcher.exe
FirewallRules: [{45EF2CB7-32DA-441B-B2C8-432F6F8F5732}] => (Allow) D:\hry\WarThunder\bpreport.exe
FirewallRules: [{606B8522-D3C8-40C8-9635-273BAD55413F}] => (Allow) D:\hry\WarThunder\bpreport.exe
FirewallRules: [{F098FA53-49DC-4452-B6D9-C1A88D256821}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{A7376113-0550-431F-BBBB-0A860E5E70C6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{48D38E42-2F31-42A2-BB5C-770E6CF0AFC1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{13306566-978C-4521-9D20-5FBC5681E229}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{646CEE38-82FD-49B4-ACC2-7BB68EC533E0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{3D121D55-1CF5-4DCD-91FA-91695800E7BD}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{C0B99AC8-22FC-49AE-9DC7-0CD302297585}] => (Allow) LPort=2869
FirewallRules: [{CBE8A807-1A26-4E23-B25A-2E578D62296C}] => (Allow) LPort=1900
FirewallRules: [{AE5180A1-DAC0-40FC-B5EC-8D463E379DBF}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{F383A43C-EA4B-4BB3-AE5B-1A9DD2E0BC0A}] => (Allow) D:\Program Files (x86)\Origin Games\Crysis 3\Bin32\Crysis3.exe
FirewallRules: [{A8CD1C7E-D2F6-4A7C-B18B-15F54121854A}] => (Allow) D:\Program Files (x86)\Origin Games\Crysis 3\Bin32\Crysis3.exe
FirewallRules: [{399BAF9F-ACC2-4E22-8391-F06C0329E6FB}] => (Allow) D:\hry\FarCry 4\bin\FarCry4.exe
FirewallRules: [{AB10DDF1-CF77-4A36-857E-07F77751606B}] => (Allow) D:\hry\FarCry 4\bin\FarCry4.exe
FirewallRules: [{58DA79F4-3DA8-41E4-8CF2-AF3DFE03EF14}] => (Allow) D:\hry\FarCry 4\bin\IGE_WPF64.exe
FirewallRules: [{12627F4C-0DC2-4317-BE19-8E6D8016996A}] => (Allow) D:\hry\FarCry 4\bin\IGE_WPF64.exe
FirewallRules: [{81DF4C22-8405-4E03-A154-31C363A9A327}] => (Allow) D:\Steam\steamapps\common\Steel Ocean\Binaries\win32\SeaGame.exe
FirewallRules: [{4B28BE99-F2EC-4125-8B17-AFF3F7CB649D}] => (Allow) D:\Steam\steamapps\common\Steel Ocean\Binaries\win32\SeaGame.exe
FirewallRules: [{10262D82-95C3-4751-9403-0D033E2B6687}] => (Allow) D:\programy\FormatFactory\FormatFactory.exe
FirewallRules: [{B22142C8-20CC-4333-B84D-7CE42DF6784E}] => (Allow) D:\programy\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{3CFECF27-9CC0-449B-AF87-4495BB1628E5}] => (Allow) D:\programy\FormatFactory\FormatFactory.exe
FirewallRules: [{92B39463-B4A8-4C93-8D58-CFFED40D7F74}] => (Allow) D:\programy\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{486EB16B-62B5-4AE5-80B2-AC3113BD48E4}] => (Allow) D:\programy\FormatFactory\FFModules\Package\PTInstOnline.exe
FirewallRules: [{3724FF8F-821D-4F8D-830E-BD37444798D7}] => (Allow) C:\Program Files (x86)\PicosmosTools\PTInstOnline.exe
FirewallRules: [{79171D03-9B51-45CC-B111-51111A203513}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/29/2016 06:52:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:52:39 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:51:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:46:44 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:46:44 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:45:25 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:29:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:26:29 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:26:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/29/2016 06:24:27 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DAVIDSON2)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024809. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.


System errors:
=============
Error: (06/29/2016 06:54:19 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (06/29/2016 06:52:42 PM) (Source: DCOM) (EventID: 10001) (User: DAVIDSON2)
Description: "C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer87App.AppXtjcey7sh4wvcw7hy21b0nmp0bq18dyzd.mcaNení k dispoziciNení k dispozici

Error: (06/29/2016 06:52:39 PM) (Source: DCOM) (EventID: 10001) (User: DAVIDSON2)
Description: "C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer87App.AppXtjcey7sh4wvcw7hy21b0nmp0bq18dyzd.mcaNení k dispoziciNení k dispozici

Error: (06/29/2016 06:51:19 PM) (Source: DCOM) (EventID: 10001) (User: DAVIDSON2)
Description: "C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer87App.AppXck5aaxyarfx8gxrgfk6pvakmmxeqvepc.mcaNení k dispoziciNení k dispozici

Error: (06/29/2016 06:50:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_4a3fe byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (06/29/2016 06:50:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_4a3fe byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (06/29/2016 06:50:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_4a3fe byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (06/29/2016 06:50:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_4a3fe byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (06/29/2016 06:50:13 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (06/29/2016 06:48:26 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}


CodeIntegrity:
===================================
  Date: 2016-06-29 18:50:42.275
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:50:42.262
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:50:41.155
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:50:41.149
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:50:41.143
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:50:41.137
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:44:45.812
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:44:45.800
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:44:45.081
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-06-29 18:44:45.076
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz
Percentage of memory in use: 26%
Total physical RAM: 8088.29 MB
Available physical RAM: 5981.02 MB
Total Virtual: 9368.29 MB
Available Virtual: 7073.59 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:110.83 GB) (Free:53.63 GB) NTFS
Drive d: () (Fixed) (Total:931.39 GB) (Free:440.35 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================