﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-08-2016 01
Ran by Matúš (21-08-2016 17:58:20)
Running from C:\Users\Matúš\Desktop
Windows 10 Home Version 1607 (X64) (2016-08-03 13:28:55)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-261918569-4590217-2918759245-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-261918569-4590217-2918759245-503 - Limited - Disabled)
Guest (S-1-5-21-261918569-4590217-2918759245-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-261918569-4590217-2918759245-1005 - Limited - Enabled)
Matúš (S-1-5-21-261918569-4590217-2918759245-1001 - Administrator - Enabled) => C:\Users\Matúš

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Smart Security 9.0.385.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 9.0.385.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personálny firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.)
5-Mode Oscar Editor (HKLM-x32\...\OscarX7Mouse5Mode) (Version: 13.02.0001 - A4Tech)
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 22.0.0.153 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.242 - Adobe Systems Incorporated)
AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.60.1503, 26.09.2015 - AIMP DevTeam)
AirDroid 3.1.4.1 (HKLM-x32\...\AirDroid) (Version: 3.1.4.1 - Sand Studio)
Aktualizácie NVIDIA 2.11.4.0 (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Ansel (Version: 372.54 - NVIDIA Corporation) Hidden
Application Verifier x64 External Package (Version: 8.100.26936 - Microsoft) Hidden
Ashampoo Burning Studio 15 v.15.0.0 (HKLM-x32\...\{91B33C97-5B38-0A92-D04A-A0F26F3F87D4}_is1) (Version: 15.0.0 - Ashampoo GmbH & Co. KG)
Ask Mr. Robot Client (HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\4061668647.www.askmrrobot.com) (Version:  - www.askmrrobot.com)
Assassin's Creed IV Black Flag (HKLM\...\Steam App 242050) (Version:  - Ubisoft Montreal)
Autodesk MapGuide(R) Viewer ActiveX Control Release 6.5 (HKLM-x32\...\{E031338C-839D-4EDD-9537-99B653C39D81}) (Version: 6.5.5.24 - Autodesk, Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bonjour (HKLM-x32\...\{07287123-B8AC-41CE-8346-3D777245C35B}) (Version: 1.0.106 - Apple Inc.)
BUSB (HKLM-x32\...\{0AADC50C-C4F8-49A7-8699-AFE46875CA67}) (Version: 1.14.0819.1 -  GIGABYTE)
CCleaner (HKLM\...\CCleaner) (Version: 5.19 - Piriform)
Centrum zariadení Windows Mobile (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation)
Common Desktop Agent (Version: 1.62.0 - OEM) Hidden
Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse)
Curse Client (HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0115 - Disc Soft Ltd)
DayZ (HKLM\...\Steam App 221100) (Version:  - Bohemia Interactive)
Dishonored (HKLM\...\Steam App 205100) (Version:  - Arkane Studios)
Dying Light (HKLM\...\Steam App 239140) (Version:  - Techland)
Dynafleet Stand Alone Card Reader Application (HKLM-x32\...\{AB6DBAB5-5B64-445B-95F2-BBFA58AA4F7A}) (Version: 1.2.11 - Volvo IT)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON XP-205 207 Series Printer Uninstall (HKLM\...\EPSON XP-205 207 Series) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.6.0 - SEIKO EPSON CORPORATION)
ESET Smart Security (HKLM\...\{F2958FE7-48D0-4B2D-B9EF-4CF7B7264AB6}) (Version: 9.0.385.1 - ESET, spol. s r.o.)
Evernote v. 5.9.1 (HKLM-x32\...\{5EA1DED0-5285-11E5-8AA1-0050569584E9}) (Version: 5.9.1.8742 - Evernote Corp.)
Google Drive (HKLM-x32\...\{709316AD-161C-4D5C-9AE7-0B3A822DA271}) (Version: 1.30.2170.0459 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 52.0.2743.116 - Spoločnosť Google Inc.)
Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Grand Theft Auto V (HKLM\...\Steam App 271590) (Version:  - Rockstar North)
H1Z1: Just Survive (HKLM\...\Steam App 295110) (Version:  - Daybreak Game Company)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4331 - Intel Corporation)
Intel® Chipset Device Software (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.42 - Irfan Skiljan)
Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Kits Configuration Installer (x32 Version: 8.100.25984 - Microsoft) Hidden
LanOptimizer (HKLM-x32\...\{B416A23D-C2BD-4956-8BAE-5C3BAFF1AC1E}) (Version: 1.00.0000 - Realtek)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Left 4 Dead 2 (HKLM\...\Steam App 550) (Version:  - Valve)
LibreOffice 5.1.4.2 (HKLM-x32\...\{D5D4AC5C-C757-4EB2-857C-B021DB22482C}) (Version: 5.1.4.2 - The Document Foundation)
LIMBO (HKLM\...\Steam App 48000) (Version:  - Playdead)
Mad Max (HKLM\...\Steam App 234140) (Version:  - Avalanche Studios)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{D1D37853-0004-3E36-A7AA-74F4EEA35F64}) (Version: 4.5.50930 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Middle-earth: Shadow of Mordor (HKLM\...\Steam App 241930) (Version:  - Monolith Productions, Inc.)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
MiniTool Partition Wizard Free 9.1 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version:  - MiniTool Solution Ltd.)
Mozilla Firefox 48.0 (x86 sk) (HKLM-x32\...\Mozilla Firefox 48.0 (x86 sk)) (Version: 48.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 48.0.0.6051 - Mozilla)
Mozilla Thunderbird 45.2.0 (x86 sk) (HKLM-x32\...\Mozilla Thunderbird 45.2.0 (x86 sk)) (Version: 45.2.0 - Mozilla)
MSI Development Tools (x32 Version: 8.100.26898 - Microsoft Corporation) Hidden
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 3.0.0.12 - MSI)
MSI Kombustor 2.5.9 (HKLM-x32\...\{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1) (Version:  - MSI Co., LTD)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
NVIDIA 3D Vision radič ovládača 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation)
NVIDIA Grafický ovládač 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.54 - NVIDIA Corporation)
NVIDIA Ovládač 3D Vision 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.54 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NVIDIA Virtuálny zvuk Miracast 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 355.60 - NVIDIA Corporation)
OCCT 4.4.1 (HKLM-x32\...\OCCT) (Version: 4.4.1 - Ocbase.com)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
Opera Stable 39.0.2256.48 (HKLM-x32\...\Opera 39.0.2256.48) (Version: 39.0.2256.48 - Opera Software)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.96.218.0 - Overwolf Ltd.)
Ovládací panel NVIDIA 372.54 (Version: 372.54 - NVIDIA Corporation) Hidden
PAYDAY 2 (HKLM\...\Steam App 218620) (Version:  - OVERKILL - a Starbreeze Studio.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.34.617.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7553 - Realtek Semiconductor Corp.)
Rocket League (HKLM-x32\...\Steam App 252950) (Version:  - Psyonix)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.8 - Rockstar Games)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 1.05.81.00(25.5.2015) - Samsung Electronics Co., Ltd.)
Samsung M2020 Series (HKLM-x32\...\Samsung M2020 Series) (Version: 1.23 (24.12.2014) - Samsung Electronics Co., Ltd.)
Samsung Printer Diagnostics (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.1.6.02 - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
SDK Debuggers (x32 Version: 8.100.26936 - Microsoft Corporation) Hidden
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Simulationcraft(x64) version 6.2.3.01 (HKLM-x32\...\{AC025546-B7C5-45A7-B16A-80AE482CBB01}_is1) (Version: 6.2.3.01 - Simulationcraft)
Smart TimeLock B15.0626.1 (x32 Version: 1.00.0001 - GIGABYTE) Hidden
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Spotify (HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\Spotify) (Version: 1.0.33.106.g60b5d1f0 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.17 - TeamSpeak Systems GmbH)
The Culling (HKLM\...\Steam App 437220) (Version:  - Xaviant)
The Witcher 3: Wild Hunt (HKLM\...\Steam App 292030) (Version:  - CD PROJEKT RED)
Thief (HKLM\...\Steam App 239160) (Version:  - Eidos-Montréal)
Tukui Client (HKLM-x32\...\{BAD6EBBD-A6A9-41C9-898A-8C868A552E4C}) (Version: 2.4.6 - Tukui)
Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.)
Warcraft Logs Uploader (HKLM-x32\...\com.warcraft.logs) (Version: 4.01 - UNKNOWN)
Warcraft Logs Uploader (x32 Version: 4.01 - UNKNOWN) Hidden
Windows Software Development Kit for Windows 8.1 (HKLM-x32\...\{ed3a6e6d-9661-4357-abe4-fcc03dc57a07}) (Version: 8.100.26936 - Microsoft Corporation)
WinRAR 5.21 (64-bitová verzia) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
World of Warcraft Public Test (HKLM-x32\...\World of Warcraft Public Test) (Version:  - Blizzard Entertainment)
WPT Redistributables (x32 Version: 8.100.26936 - Microsoft) Hidden
WPTx64 (x32 Version: 8.100.26936 - Microsoft) Hidden
XSplit Gamecaster (HKLM-x32\...\{7CBDC2CD-F5C7-4DD3-91C8-1E4D68924955}) (Version: 1.9.1409.2308 - SplitmediaLabs)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-261918569-4590217-2918759245-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Matúš\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {013C8743-1936-498C-A5B3-4A2AF2D71EAB} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {22110C1E-F3CE-45F5-8220-58F3CAA14057} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2016-07-17] (Overwolf LTD)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe
Task: {3AF6335B-5A8E-4FD2-9240-B3ABAA2EA917} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {3D7D01B4-A6F1-4D52-967C-7018BDA584BF} - System32\Tasks\Ashampoo Burning Studio Update => Wscript.exe //nologo //B //E:jscript "C:\Users\Matúš\AppData\Roaming\Ashampoo Burning Studio\settings.ini" <==== ATTENTION
Task: {407465A6-9E04-4C96-8FF1-E19C98EEE122} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {4541428D-BF13-4543-8EB7-F60A8C45FA34} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {5B25FBB4-3BA8-4518-80CD-C2A1A8752188} - System32\Tasks\ReasonSecurityScheduledScan => C:\Program Files\Reason\Security\rsUI.exe
Task: {5F4DAC82-E3EF-48A7-AE50-7255F418AF46} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {5FB0422C-2199-4BEB-8665-7B3C3654DAC7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {65707986-923A-4DA7-BB09-55DC72D5DB4F} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {663EA3CA-0384-4C11-9595-477CD14C78E0} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {669E5299-2704-4770-BCD5-0D7B2F9E9BD3} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-08-10] (Microsoft Corporation)
Task: {6F1E64F6-0365-4EBB-8249-8A4B4C7E59B5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated)
Task: {76A9D00B-1514-46A2-838C-7DA141EBEBF9} - System32\Tasks\Opera scheduled Autoupdate 1440538626 => C:\Program Files (x86)\Opera\launcher.exe [2016-08-03] (Opera Software)
Task: {7C916E99-3123-4FF8-85D0-D4599B99278B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {88780EF3-1CE8-4B46-B73D-245ECFD463CA} - System32\Tasks\ReasonSecurityStart => C:\Program Files\Reason\Security\rsUI.exe
Task: {9D95BEE5-4972-4A7D-8C76-8A958E2255EF} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {A98FDB9A-8345-429E-906A-5B2A1C4436C0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {ADAB5331-2A46-48E1-92D8-E26985E78605} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-06-10] (Piriform Ltd)
Task: {BA4F3169-D322-43C1-80B9-7FFE5551EB3E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {C0FA9B97-DC47-4E88-ADEE-21AC924926B3} - System32\Tasks\RtlLanOptimizerVistaStart => C:\Program Files (x86)\Realtek\LanOptimizer\LanOptimizer.exe [2014-07-10] (Realtek Semiconductor)
Task: {CA3881A5-9A4F-4325-8D66-07697E371DBC} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Ashampoo Burning Studio Update.job => Wscript.exe _/nologo /B /E:jscript C:\Users\Matúa\AppData\Roaming\Ashampoo Burning Studio\settings.ini <==== ATTENTION
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\RtlLanOptimizerVistaStart.job => C:\Program Files (x86)\Realtek\LanOptimizer\LanOptimizer.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Matúš\Desktop\Ask Mr. Robot Client.lnk -> C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe (Microsoft Corporation) -> 4061668647.www.askmrrobot.com
ShortcutWithArgument: C:\Users\Matúš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ask Mr. Robot Client.lnk -> C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe (Microsoft Corporation) -> 4061668647.www.askmrrobot.com

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-08-03 15:23 - 2016-08-11 14:27 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-09-07 12:40 - 2014-10-30 14:18 - 00029184 _____ () C:\WINDOWS\System32\ssj2mlm.dll
2016-02-28 13:12 - 2016-06-14 22:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2015-12-22 09:45 - 2016-06-14 22:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-04-01 10:12 - 2016-06-14 22:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-02-28 13:12 - 2016-06-14 22:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-04-01 10:12 - 2016-06-14 22:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-04-01 10:12 - 2016-06-14 22:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-04-01 10:12 - 2016-06-14 22:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-01-17 15:55 - 2016-06-14 22:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-04-01 10:12 - 2016-06-14 22:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-04-01 10:12 - 2016-06-14 22:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-08-03 17:06 - 2016-08-03 17:06 - 00959168 _____ () C:\Users\Matúš\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64\ClientTelemetry.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00130048 _____ () C:\WINDOWS\SYSTEM32\CHARTV.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-08-10 17:18 - 2016-08-02 10:15 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-08-10 17:18 - 2016-08-02 10:01 - 09761280 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-08-10 17:18 - 2016-08-02 09:53 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-08-10 17:18 - 2016-08-02 09:53 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-08-10 17:18 - 2016-08-02 09:54 - 02438144 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-08-10 17:18 - 2016-08-02 09:56 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-09-08 13:39 - 2014-09-08 13:39 - 00464608 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
2014-09-08 13:38 - 2014-09-08 13:38 - 00051200 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
2015-10-30 21:16 - 2013-01-19 02:20 - 00148992 _____ () C:\Program Files (x86)\Realtek\LanOptimizer\gep.dll
2015-08-27 18:41 - 2016-06-14 22:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-08-25 23:23 - 2016-08-09 01:27 - 00785920 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-08-25 23:23 - 2015-07-02 00:06 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-08-25 23:23 - 2016-08-16 22:54 - 02321184 _____ () C:\Program Files (x86)\Steam\video.dll
2015-08-25 23:23 - 2016-01-27 09:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-08-25 23:23 - 2016-01-27 09:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-08-25 23:23 - 2016-01-27 09:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-08-25 23:23 - 2016-01-27 09:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-08-25 23:23 - 2016-01-27 09:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-08-25 23:23 - 2015-07-02 00:06 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-08-25 23:23 - 2015-07-02 00:06 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-08-25 23:23 - 2016-08-16 22:54 - 00835360 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-03-09 13:53 - 2016-07-05 00:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2016-08-03 17:06 - 2016-08-03 17:06 - 00679624 _____ () C:\Users\Matúš\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\ClientTelemetry.dll
2015-09-03 15:45 - 2015-09-03 15:45 - 00439304 _____ () C:\Program Files (x86)\Evernote\Evernote\libxml2.dll
2015-09-03 15:45 - 2015-09-03 15:45 - 00321032 _____ () C:\Program Files (x86)\Evernote\Evernote\libtidy.dll
2015-08-25 23:23 - 2016-08-04 22:56 - 49825056 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Mount:$WIMMOUNTDATA [802]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\hola.org -> hxxp://hola.org

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2016-06-05 23:19 - 00002024 ____A C:\WINDOWS\system32\Drivers\etc\hosts

0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly
0.0.0.0 tracking.opencandy.com.s3.amazonaws.com
0.0.0.0 media.opencandy.com
0.0.0.0 cdn.opencandy.com
0.0.0.0 tracking.opencandy.com
0.0.0.0 api.opencandy.com
0.0.0.0 api.recommendedsw.com
0.0.0.0 installer.betterinstaller.com
0.0.0.0 installer.filebulldog.com
0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net
0.0.0.0 inno.bisrv.com
0.0.0.0 nsis.bisrv.com
0.0.0.0 cdn.file2desktop.com
0.0.0.0 cdn.goateastcach.us
0.0.0.0 cdn.guttastatdk.us
0.0.0.0 cdn.inskinmedia.com
0.0.0.0 cdn.insta.oibundles2.com
0.0.0.0 cdn.insta.playbryte.com
0.0.0.0 cdn.llogetfastcach.us
0.0.0.0 cdn.montiera.com
0.0.0.0 cdn.msdwnld.com
0.0.0.0 cdn.mypcbackup.com
0.0.0.0 cdn.ppdownload.com
0.0.0.0 cdn.riceateastcach.us
0.0.0.0 cdn.shyapotato.us
0.0.0.0 cdn.solimba.com
0.0.0.0 cdn.tuto4pc.com
0.0.0.0 cdn.appround.biz
0.0.0.0 cdn.bigspeedpro.com
0.0.0.0 cdn.bispd.com

There are 4 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-261918569-4590217-2918759245-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Matúš\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\pozadie plochy.bmp
DNS Servers: 192.168.2.1 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\StartupApproved\StartupFolder: => "CurseClientStartup.ccip"
HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\StartupApproved\Run: => "AirDroid 3"
HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-261918569-4590217-2918759245-1001\...\StartupApproved\Run: => "Spotify Web Helper"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{BEAA6DAC-E2F7-40F2-973A-298F0A5E7A3F}] => (Allow) D:\SteamLibrary\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{4F902B42-BF87-4BEA-B57F-B5E9F3420615}] => (Allow) D:\SteamLibrary\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{04919230-AFD5-4919-A449-EF0DF5961C7F}] => (Allow) D:\SteamLibrary\steamapps\common\Mad Max\MadMax.exe
FirewallRules: [{DB3691EB-53B0-4875-A100-1703A7156E9F}] => (Allow) D:\SteamLibrary\steamapps\common\Mad Max\MadMax.exe
FirewallRules: [{61086B1B-826C-4B04-BE20-8CDA63815864}] => (Allow) D:\SteamLibrary\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{BEB649DA-F495-43A2-B40D-0D2109FD920B}] => (Allow) D:\SteamLibrary\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{35F12566-AE7A-4FB1-A562-D233713E36A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{EBC5D811-88AA-4CA1-AAAF-09367959D8EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{AF07394F-0ED0-4E83-A86C-93F0C066316E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{3809896E-18EF-456E-83CE-6E1FD4AAD041}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{FA0A6B38-8643-474A-B2BD-6B75E0D0A4A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{383CC0FA-9A96-44E0-B724-F2903708B670}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{8CA52DE3-0115-4E2C-9E34-8BFA66AD0A71}] => (Allow) D:\SteamLibrary\steamapps\common\Limbo\limbo.exe
FirewallRules: [{08607ECD-5E35-4361-A7AF-F816663D362C}] => (Allow) D:\SteamLibrary\steamapps\common\Limbo\limbo.exe
FirewallRules: [{99DAB474-FC22-470E-88A1-DDDB87B4FE03}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{25C7DB92-2607-441F-A894-B4B623F4738A}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{8A1C0F69-E370-4A03-82CD-B458AD47600B}] => (Allow) D:\SteamLibrary\steamapps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{A2D29805-CB98-4AC4-829E-29EFC08CDDCC}] => (Allow) D:\SteamLibrary\steamapps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{8FD38225-D1E6-444F-BE03-09D07DE4423A}] => (Allow) D:\SteamLibrary\steamapps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe
FirewallRules: [{5745E02C-458B-4FB4-8EC7-F257C44CBB72}] => (Allow) D:\SteamLibrary\steamapps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe
FirewallRules: [{CF9030D9-1A55-4F42-B1DB-BC333682DC98}] => (Allow) D:\SteamLibrary\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{2E1383A6-86C2-4BDF-B60B-8FA7C7A53EEB}] => (Allow) D:\SteamLibrary\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{1A0AB332-4CE9-42D5-989A-B0C301165F77}] => (Allow) D:\SteamLibrary\steamapps\common\H1Z1\LaunchPad.exe
FirewallRules: [{749EEF4A-EB68-4145-AB42-E0A8B5913442}] => (Allow) D:\SteamLibrary\steamapps\common\H1Z1\LaunchPad.exe
FirewallRules: [{D1811164-B25A-4D54-ABCD-7479A7F6C1C5}] => (Allow) D:\SteamLibrary\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{2ECE5B14-2D9D-4A24-BBF2-98E0C6547D9A}] => (Allow) D:\SteamLibrary\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{0702CE58-3C80-48DB-BA13-41079BDB8D58}] => (Allow) D:\SteamLibrary\steamapps\common\TheCulling\TheCulling_Launcher.exe
FirewallRules: [{FD92B0C5-423B-443E-920D-6B001AE3EC09}] => (Allow) D:\SteamLibrary\steamapps\common\TheCulling\TheCulling_Launcher.exe
FirewallRules: [{F40DEF0D-071E-4B17-B523-105C3C28398E}] => (Allow) D:\SteamLibrary\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{B9FCABC8-EF5E-46FB-B941-88F2E900101E}] => (Allow) D:\SteamLibrary\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{4231263D-871C-4412-BF29-807B4690D91C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{FBDFE08D-2606-418F-A075-E991C9D68E59}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F78D8D3C-3B6C-4C3F-8FBF-836963AEC01F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{346DC5B0-D698-4420-9925-B7D10D83EED6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BB6F284B-089F-4042-8C2A-6845296D197C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{CF3AE155-6A92-4479-B9B1-3FCC28886EFC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{5E70A64A-6C38-4BE1-BEED-71EA1703FBC3}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{BFA7F998-BAF1-4D24-84D0-31261010EB1B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{59C4DB06-31FF-49D2-BBB0-9B29322663EF}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{4103FFB6-8546-4991-B379-6D0F729B90D9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{C748F592-0D34-473A-848D-F329D0F54A76}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{509CA93E-431F-47FE-BFC0-AAE7CEB68E2E}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{37FB41F6-5489-492C-AA6D-40A1FB625AEC}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{6D56A33C-1E07-4E15-8133-D36B4306DF92}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7B654DFC-94B5-4C14-88EA-91758B7A550A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{1A76E919-ED8C-49F3-978F-9BAD67A4E206}] => (Allow) C:\Users\Matúš\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{ADE4E64E-28B5-4E84-B97C-03DED3C48FCD}] => (Allow) C:\Users\Matúš\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8EA3863C-E003-4255-9E08-215C4BD81D85}] => (Allow) C:\Users\Matúš\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{38844A1D-0885-4A6B-94ED-A6142134BC2B}] => (Allow) C:\Users\Matúš\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A2A8C51C-C4C8-4531-82C2-0B03D40A8344}] => (Allow) C:\Users\Matúš\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{CB656D8D-8745-4DA5-9567-91B2F298BD0E}] => (Allow) C:\Users\Matúš\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{20B4BDB4-B174-454D-8456-F25A60C2BFB0}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [UDP Query User{C22C7314-F610-4555-9E36-7FBFA5D460C8}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe
FirewallRules: [{FE2A78B9-94E7-4158-B73D-2FC7DF0E1C34}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{67238832-681B-4118-9E79-CE19FEEABF1F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{465663FE-EF3E-4E5A-9420-FC1AE408922F}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{E6D2074A-8B27-4606-BA28-AB78BF05E812}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{B4CACB21-BE92-49B0-8A75-576B61B4ACBC}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDS.Application.exe
FirewallRules: [{3F99BC7A-2942-460E-B38C-FAD308E52336}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe
FirewallRules: [{D78827C6-1EFA-4CD0-9F23-1004182F3F2C}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDSAlert.exe
FirewallRules: [{B01A81F2-C40E-4F61-8DB9-6C508E972A4C}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\uninstall.exe
FirewallRules: [{D43355BB-5521-4A2F-B0C6-6E1AFF1C1396}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe
FirewallRules: [{89613683-F187-426F-A1A3-04924B30B6D9}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\ScanProcess.exe
FirewallRules: [{9A07449B-C74F-473B-8083-FB80B5091786}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\Scan2PCNotify.exe
FirewallRules: [TCP Query User{7DFB5053-C00D-4600-A089-DAA888EA9909}C:\program files (x86)\samsung\easy printer manager\ids.application.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\ids.application.exe
FirewallRules: [UDP Query User{F15AA6C5-6201-4623-8367-578693260F5C}C:\program files (x86)\samsung\easy printer manager\ids.application.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\ids.application.exe
FirewallRules: [TCP Query User{388DAE61-7280-4A06-B83F-21878B506D01}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{4840A077-AF83-4650-B041-300A1519AAFE}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [{5AA879CA-19C7-41E9-A995-D5B4BE217627}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{4D053A45-296F-4C50-AD18-143788592040}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{71192EE0-0134-49D3-B590-78807118EA85}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{509C61CE-B5DA-4E13-9C28-9F2D0F940750}] => (Allow) D:\SteamLibrary\steamapps\common\Assassin's Creed IV Black Flag\AC4BFSP.exe
FirewallRules: [{10D66F78-A577-4599-BBC8-917B0144E2A6}] => (Allow) D:\SteamLibrary\steamapps\common\Assassin's Creed IV Black Flag\AC4BFSP.exe
FirewallRules: [{99C1F70C-C83C-4A38-ABA9-EB5A32A5DCD8}] => (Allow) D:\SteamLibrary\steamapps\common\Assassin's Creed IV Black Flag\AC4BFMP.exe
FirewallRules: [{645126A2-9425-4267-8229-DC914E377DBF}] => (Allow) D:\SteamLibrary\steamapps\common\Assassin's Creed IV Black Flag\AC4BFMP.exe
FirewallRules: [{80B5F40B-B397-4ABE-94E5-28229EF9AD86}] => (Allow) D:\SteamLibrary\steamapps\common\Dying Light\DyingLightGame.exe
FirewallRules: [{3975E942-E495-4F49-930C-5B15701218F4}] => (Allow) D:\SteamLibrary\steamapps\common\Dying Light\DyingLightGame.exe
FirewallRules: [{5963A9C6-4A29-4D9E-8FAB-73DCAC64D0F2}] => (Allow) D:\SteamLibrary\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe
FirewallRules: [{827ED0DF-82BA-4631-BF1D-D349BE0A9D03}] => (Allow) D:\SteamLibrary\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe

==================== Restore Points =========================

10-08-2016 15:28:48 Inštalátor modulov systému Windows

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/21/2016 05:54:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0xb34
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0x24ec
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0x240c
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0x24ec
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0xb34
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0x240c
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0x24ec
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0x240c
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0x24ec
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5

Error: (08/21/2016 05:54:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: microsoftedgecp.exe, verzia: 11.0.14393.51, časová značka: 0x57a0516c
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000604
Odstup chyby: 0x0000000000000000
Identifikácia chybujúceho procesu: 0x240c
Čas spustenia chybujúcej aplikácie: 0xmicrosoftedgecp.exe0
Cesta chybujúcej aplikácie: microsoftedgecp.exe1
Cesta chybujúceho modulu: microsoftedgecp.exe2
Identifikácia hlásenia: microsoftedgecp.exe3
Celé meno chybujúceho balíka: microsoftedgecp.exe4
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoftedgecp.exe5


System errors:
=============
Error: (08/21/2016 05:53:54 PM) (Source: DCOM) (EventID: 10016) (User: MATÚŠ_PC)
Description: application-specificLocalActivation{9E175B6D-F52A-11D8-B9A5-505054503030}{9E175B9C-F52A-11D8-B9A5-505054503030}Matúš_PCMatúšS-1-5-21-261918569-4590217-2918759245-1001LocalHost (Using LRPC)Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbweS-1-15-2-3624051433-2125758914-1423191267-1740899205-1073925389-3782572162-737981194

Error: (08/21/2016 05:45:52 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (08/21/2016 05:45:52 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (08/21/2016 05:45:51 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba CDPUserSvc_3904d bola ukončená s nasledujúcou chybou: 
%%2147500037 = Unspecified error

Error: (08/21/2016 05:45:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby GhFlt zlyhalo kvôli nasledujúcej chybe: 
%%1058 = The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (08/21/2016 05:45:20 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správca riadenia služieb sa po neočakávanom ukončení služby Windows Search pokúsil vykonať opravnú akciu (Reštartovať službu), ale táto činnosť zlyhala s nasledujúcou chybou: 
%%1056 = An instance of the service is already running.

Error: (08/21/2016 05:44:50 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Steam Client Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (08/21/2016 05:44:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 30000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (08/21/2016 05:44:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 0 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (08/21/2016 05:44:49 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba NVIDIA Streamer Network Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.


CodeIntegrity:
===================================
  Date: 2016-08-21 17:45:47.949
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-21 17:45:47.949
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-21 17:45:47.947
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-21 17:45:47.935
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-21 16:28:08.427
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-21 16:28:08.426
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-21 16:28:08.425
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-21 16:28:08.414
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-13 08:38:00.865
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-08-13 08:38:00.865
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-4690K CPU @ 3.50GHz
Percentage of memory in use: 35%
Total physical RAM: 7605.34 MB
Available physical RAM: 4942.67 MB
Total Virtual: 8821.34 MB
Available Virtual: 5847.35 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:222.6 GB) (Free:56.2 GB) NTFS
Drive d: (Fun) (Fixed) (Total:931.51 GB) (Free:259.79 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E61988B9)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=OF Extended)

========================================================
Disk: 1 (Size: 223.6 GB) (Disk ID: BABE1B37)

Partition: GPT.

==================== End of Addition.txt ============================