Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-09-2016
Ran by Ondra (24-09-2016 13:40:02)
Running from C:\Users\Ondra\Desktop
Windows 10 Pro Version 1511 (X64) (2016-07-13 22:06:11)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-261391004-168925671-1144472204-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-261391004-168925671-1144472204-503 - Limited - Disabled)
Guest (S-1-5-21-261391004-168925671-1144472204-501 - Limited - Disabled)
Ondra (S-1-5-21-261391004-168925671-1144472204-1001 - Administrator - Enabled) => C:\Users\Ondra

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Aktualizace NVIDIA 2.11.3.5 (Version: 2.11.3.5 - NVIDIA Corporation) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.18 - Piriform)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version:  - Valve)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.116 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.15 - Oracle Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mozilla Firefox 48.0.2 (x86 cs) (HKLM-x32\...\Mozilla Firefox 48.0.2 (x86 cs)) (Version: 48.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 48.0.2 - Mozilla)
NVIDIA GeForce Experience 2.11.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.3.5 - NVIDIA Corporation)
NVIDIA Miracast Virtual Audio 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 347.88 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 368.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.39 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.14 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 368.39 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.39 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Platform (x32 Version: 1.43 - VIA Technologies, Inc.) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.9.6 - Rockstar Games)
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
The Binding of Isaac: Rebirth (HKLM\...\Steam App 250900) (Version:  - Nicalis, Inc.)
The Elder Scrolls V: Skyrim (HKLM\...\Steam App 72850) (Version:  - Bethesda Game Studios)
Uplay (HKLM-x32\...\Uplay) (Version: 4.8 - Ubisoft)
VIA Platforma Ovladače zařízení (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.43 - VIA Technologies, Inc.)
Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-261391004-168925671-1144472204-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {04040476-EDA8-456A-B5DA-A40A5ABCFA5C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-06-01] (Piriform Ltd)
Task: {6A002D3A-5EDF-4117-94BA-9B7042E5D82F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-06-10] (Google Inc.)
Task: {709CC87E-9D2C-48B9-9BE2-5F9A3929EFF3} - System32\Tasks\Shut down => C:\Windows\System32\shutdown.exe [2015-10-30] (Microsoft Corporation)
Task: {AB48C02C-0CC0-4D84-A45D-B9CDF293DF1F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-06-10] (Google Inc.)
Task: {C7E00189-7F83-424D-A96F-A6A069FB6F54} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-08-23] (Microsoft Corporation)
Task: {C97A2007-E605-46B4-BE8B-15AF594EFCE1} - System32\Tasks\SlimCleaner Plus (Scheduled Scan - Ondra) => C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\SlimCleaner Plus (Scheduled Scan - Ondra).job => C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-07-13 23:52 - 2016-06-03 05:59 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-09-19 15:52 - 2016-09-07 07:39 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-19 15:52 - 2016-09-07 07:39 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-08-23 10:56 - 2016-08-23 10:56 - 01864384 _____ () C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\ClientTelemetry.dll
2016-07-21 10:56 - 2016-07-21 10:56 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-06-12 12:24 - 2016-06-03 09:22 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-04-27 08:10 - 2016-04-27 08:10 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-07-21 10:33 - 2016-07-01 05:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-09-19 15:49 - 2016-09-07 06:15 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-09-19 15:50 - 2016-09-07 06:10 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-09-19 15:49 - 2016-09-07 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-09-19 15:49 - 2016-09-07 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-06-01 20:15 - 2016-06-01 20:15 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2016-09-19 16:04 - 2016-09-14 04:52 - 02280264 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\libglesv2.dll
2016-09-19 16:04 - 2016-09-14 04:52 - 00107848 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\libegl.dll
2016-07-21 10:56 - 2016-07-21 10:56 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-07-21 10:56 - 2016-07-21 10:56 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-06-12 12:24 - 2016-06-03 09:22 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-08-23 10:56 - 2016-08-23 10:56 - 01383616 _____ () C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll
2016-08-23 10:56 - 2016-08-23 10:56 - 00118976 _____ () C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncViews.dll
2016-06-10 22:57 - 2016-09-08 05:14 - 00784672 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-06-10 22:57 - 2016-09-01 03:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-06-10 22:57 - 2016-09-20 21:28 - 02321696 _____ () C:\Program Files (x86)\Steam\video.dll
2016-06-10 22:57 - 2016-01-27 09:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2016-06-10 22:57 - 2016-01-27 09:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2016-06-10 22:57 - 2016-01-27 09:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2016-06-10 22:57 - 2016-01-27 09:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2016-06-10 22:57 - 2016-01-27 09:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-06-10 22:57 - 2016-09-01 03:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-06-10 22:57 - 2016-09-01 03:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-06-10 22:57 - 2016-09-20 21:28 - 00835360 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-06-10 22:57 - 2016-07-05 00:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2016-06-10 22:57 - 2016-08-04 22:56 - 49825056 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-261391004-168925671-1144472204-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ondra\Downloads\maxresdefault.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{5BEBCE04-05EF-466A-A7A3-96FC803917BA}] => (Allow) E:\SteamLibrary\steamapps\common\Showerdad\SHOWERDAD.exe
FirewallRules: [{AEBB7F16-E38D-4A0C-8740-F2C34BF8EF6D}] => (Allow) E:\SteamLibrary\steamapps\common\Showerdad\SHOWERDAD.exe
FirewallRules: [{3543FDD1-EB9C-4EBA-BFED-8801F303A125}] => (Allow) E:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{880F040D-904A-4283-9C03-3C019199475E}] => (Allow) E:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{69C38FB6-1C52-4A2A-AD0F-FA1F88881112}] => (Allow) E:\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{E295BD3B-A8A0-4FE8-B2CF-EC7F20C09172}] => (Allow) E:\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{DDBC1B2F-D0F2-49F6-B8B0-5D5A45FF7646}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{85E762B5-A65A-4543-B89C-12DC8F2B21BB}] => (Allow) E:\SteamLibrary\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{20740AAA-4C26-47EA-A1A6-587A9014F624}] => (Allow) E:\SteamLibrary\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [UDP Query User{62AA7153-5954-4309-A491-53C3B6C55258}E:\steamlibrary\steamapps\common\counter-strike source\hl2.exe] => (Allow) E:\steamlibrary\steamapps\common\counter-strike source\hl2.exe
FirewallRules: [TCP Query User{2FC0291A-868B-4C6F-B358-2B6555FFBF23}E:\steamlibrary\steamapps\common\counter-strike source\hl2.exe] => (Allow) E:\steamlibrary\steamapps\common\counter-strike source\hl2.exe
FirewallRules: [{E4AEFA78-3E6F-46DF-A8DF-D10F0BC6C9BE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3A14FB0C-CE34-4691-BB7F-9647E3F1F3A9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{ABDBC3F7-7CB1-4C53-8BA3-D89389AC143E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{CEB3D606-BE0B-4D5B-804A-AC133CA9177D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{133837F1-39DB-46A1-B595-1842F4244B44}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [UDP Query User{71D23E6B-888F-4C44-B1F2-0639A20A3600}E:\steamlibrary\steamapps\common\half-life\hl.exe] => (Allow) E:\steamlibrary\steamapps\common\half-life\hl.exe
FirewallRules: [TCP Query User{3D5B4CDC-2446-4C48-96B9-17F230DE30D0}E:\steamlibrary\steamapps\common\half-life\hl.exe] => (Allow) E:\steamlibrary\steamapps\common\half-life\hl.exe
FirewallRules: [UDP Query User{C2FE9488-6B1D-4C38-9714-C882F8284404}E:\steamlibrary\steamapps\common\portal 2\portal2.exe] => (Allow) E:\steamlibrary\steamapps\common\portal 2\portal2.exe
FirewallRules: [TCP Query User{216C9EBA-53AA-4BAC-AC62-DFC02759DB2B}E:\steamlibrary\steamapps\common\portal 2\portal2.exe] => (Allow) E:\steamlibrary\steamapps\common\portal 2\portal2.exe
FirewallRules: [{0E6687E5-83F9-4ADC-A37A-C288478DF646}] => (Allow) E:\SteamLibrary\steamapps\common\Far Cry 4\bin\IGE_WPF64.exe
FirewallRules: [{7AFF6665-330A-4BF8-84EF-FF82AE6E219A}] => (Allow) E:\SteamLibrary\steamapps\common\Far Cry 4\bin\IGE_WPF64.exe
FirewallRules: [{4D9CE02B-4552-4539-A328-027B9CCF39B7}] => (Allow) E:\SteamLibrary\steamapps\common\Far Cry 4\bin\FarCry4.exe
FirewallRules: [{9F56E6DE-87A3-4DCA-AE43-0E286FDE13D0}] => (Allow) E:\SteamLibrary\steamapps\common\Far Cry 4\bin\FarCry4.exe
FirewallRules: [UDP Query User{0F1BFA82-C8F7-49A9-88E6-B89C836A2759}E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{022FB7AA-C0FF-449F-B299-49B898895275}E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{39B80CC4-5D59-414C-81C6-21E32E768048}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{30EFB1A9-B243-4BB6-8FA6-70CC526EFA5E}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{15C3E16A-D715-4BAB-89C8-63AFE33EBBF9}] => (Allow) E:\SteamLibrary\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{01022121-AD80-420C-8CB4-833BEDDA147C}] => (Allow) E:\SteamLibrary\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{D4B60AA4-E688-42D6-B27A-87D54DE98ED1}] => (Allow) E:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{708B0D9D-C13E-4F11-9DF5-8A9D93314784}] => (Allow) E:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{FB5E5084-F62A-40B8-A330-4A453D4D7140}] => (Allow) E:\SteamLibrary\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{F3C29CB4-2CA9-40CC-AF35-E00AAACBAE2B}] => (Allow) E:\SteamLibrary\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{430FEEAA-BDFF-49F5-B9EE-5588C57DF1E0}] => (Allow) E:\SteamLibrary\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{9E50A216-42CB-4875-817D-AF58E43F90A1}] => (Allow) E:\SteamLibrary\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{CE367198-4141-4794-BC41-96154095F911}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{76BCA059-3EB5-42D6-9210-0F022E290501}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{38035A6D-F414-45FC-8358-C672160843A3}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{DC841CC8-334B-412E-8074-D9814AF9E153}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{69204A8E-23E4-4974-8521-863A1B5F37EA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{784DFF1E-9634-4803-9C19-CD34C846AAC1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A296C147-8374-45C2-A009-EB5D2A748D23}] => (Block) E:\SteamLibrary\steamapps\common\Grand Theft Auto V\GTA5.exe
FirewallRules: [TCP Query User{6CA9C596-E4D0-4134-BB82-9300206F98A5}E:\steamlibrary\steamapps\common\left 4 dead\left4dead.exe] => (Allow) E:\steamlibrary\steamapps\common\left 4 dead\left4dead.exe
FirewallRules: [UDP Query User{D10ABC4C-91C4-4AC1-85A4-5349CDA299A9}E:\steamlibrary\steamapps\common\left 4 dead\left4dead.exe] => (Allow) E:\steamlibrary\steamapps\common\left 4 dead\left4dead.exe
FirewallRules: [{FAB1789D-8DDD-4548-936F-7B7D79C78BEE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F685FC91-F5E1-42ED-A496-5950C3C2E0A2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{D7115258-A5BC-4804-9127-6AE9F74DA7DA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{ED76660D-5C0A-4D34-AD68-859359367824}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{76FB17E8-F639-4F07-9E6B-87DED5E6307A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (09/24/2016 12:26:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x148c
Faulting application start time: 0x01d2164e0d79ad21
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: b06f0adf-07d9-4691-a172-8690ce2413c9
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/24/2016 09:58:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x1cf8
Faulting application start time: 0x01d21639647fe543
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: f70744cc-f140-41bd-99b4-bf69c7459e1c
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/23/2016 03:49:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x1590
Faulting application start time: 0x01d215a140980da6
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: dddcb495-6548-4068-a91e-a536e791cfbf
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/23/2016 03:34:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0xbe8
Faulting application start time: 0x01d2159f2c54965c
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: 028b3e7a-b808-47fb-b3a8-1d46275149ba
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/23/2016 03:11:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x1198
Faulting application start time: 0x01d2159bf7e7f379
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: a8fc78e4-f116-4795-9e69-4c736f97d41b
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/23/2016 02:05:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x163c
Faulting application start time: 0x01d21592bd4e1892
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: 997d8aa8-a7c2-444a-8fc0-a1efc8fa31be
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/22/2016 07:57:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x13c4
Faulting application start time: 0x01d214fabdcb782d
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: 16e05114-9b5b-4dd6-a3ec-20802df765a3
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/22/2016 07:06:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x1258
Faulting application start time: 0x01d214f3b3b1989e
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: 09134a24-8811-43ef-bc7c-64290f25f82d
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/22/2016 05:10:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x1130
Faulting application start time: 0x01d214e364b2b508
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: b1cad4f7-b669-4b32-b9f1-2300728b4042
Faulting package full name: 
Faulting package-relative application ID:

Error: (09/22/2016 02:34:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3
Exception code: 0xc0000005
Fault offset: 0x00000000000fd07b
Faulting process id: 0x1490
Faulting application start time: 0x01d214cdaf0a35c9
Faulting application path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Faulting module path: C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
Report Id: 5054c8be-8515-4428-86c0-0f4749ccbb70
Faulting package full name: 
Faulting package-relative application ID:


System errors:
=============
Error: (09/24/2016 12:27:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Steam Client Service service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.

Error: (09/24/2016 12:27:13 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.

Error: (09/24/2016 12:24:27 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error: 
An instance of the service is already running.

Error: (09/24/2016 12:24:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_2545b6e service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (09/24/2016 12:23:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Steam Client Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/24/2016 12:23:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Search service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.

Error: (09/24/2016 12:23:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Streamer Network Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/24/2016 12:23:56 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Streamer Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/24/2016 12:23:56 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Network Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/24/2016 12:23:56 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The VIA Karaoke digital mixer Service service terminated unexpectedly.  It has done this 1 time(s).


CodeIntegrity:
===================================
  Date: 2016-09-19 18:12:10.868
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-09-01 13:49:28.993
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-08-15 12:37:32.467
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-08-14 19:52:16.854
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-07-30 19:29:57.534
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-07-21 13:17:40.458
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-07-21 13:13:29.602
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-07-14 00:49:10.077
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-07-14 00:01:41.429
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-07-13 23:51:37.684
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5 CPU 750 @ 2.67GHz
Percentage of memory in use: 22%
Total physical RAM: 8190.05 MB
Available physical RAM: 6335.52 MB
Total Virtual: 11390.05 MB
Available Virtual: 9355.71 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:96.75 GB) (Free:53.19 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (TAJFUN_DATA) (Fixed) (Total:931.51 GB) (Free:129.83 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: (DATA) (Fixed) (Total:833.85 GB) (Free:174.9 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 41DF92FA)
Partition 1: (Active) - (Size=96.7 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=488 MB) - (Type=27)
Partition 3: (Not Active) - (Size=449 MB) - (Type=27)
Partition 4: (Not Active) - (Size=833.8 GB) - (Type=OF Extended)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 0007BF26)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================