﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-10-2016
Ran by Tomáš (12-10-2016 19:33:05)
Running from C:\Users\Tomáš\Desktop
Windows 10 Pro Version 1607 (X64) (2016-09-22 16:02:40)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2926529020-3654656493-611253017-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2926529020-3654656493-611253017-503 - Limited - Disabled)
Guest (S-1-5-21-2926529020-3654656493-611253017-501 - Limited - Disabled)
Tomáš (S-1-5-21-2926529020-3654656493-611253017-1001 - Administrator - Enabled) => C:\Users\Tomáš

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ACA & MEP 2017 Object Enabler (Version: 7.9.45.0 - Autodesk) Hidden
ACAD Private (Version: 21.0.52.0 - Autodesk) Hidden
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
Akamai NetSession Interface (HKU\S-1-5-21-2926529020-3654656493-611253017-1001\...\Akamai) (Version:  - Akamai Technologies, Inc)
Aktualizace NVIDIA 2.13.0.21 (Version: 2.13.0.21 - NVIDIA Corporation) Hidden
American Truck Simulator - Arizona (HKLM-x32\...\American Truck Simulator - Arizona_is1) (Version:  - )
Ansel (Version: 372.90 - NVIDIA Corporation) Hidden
Arma 3 (HKLM-x32\...\Steam App 107410) (Version:  - Bohemia Interactive)
AudioFXSetup (Version: 1.2.1201 - Nahimic) Hidden
AutoCAD 2017 Language Pack – Čeština (Czech) (Version: 21.0.52.0 - Autodesk) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Blender (HKLM\...\{47A0EA10-D506-4473-AE99-5E07DD1062DE}) (Version: 2.77.1 - Blender Foundation)
Camtasia Studio 8 (HKLM-x32\...\{AF33D0D2-2627-4AC8-8473-FDBB7892129C}) (Version: 8.6.0.2079 - TechSmith Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.13 - Piriform)
CPUID CPU-Z MSI 1.74 (HKLM\...\CPUID CPU-Z MSI_is1) (Version: 1.74 - CPUID, Inc.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.3.0.0152 - Disc Soft Ltd)
DayZ (HKLM-x32\...\Steam App 221100) (Version:  - Bohemia Interactive)
DiRT Rally v1.1 (HKLM\...\ZGlydHJhbGx5_is1) (Version: 1 - )
DOOM Open Beta (HKLM\...\Steam App 350470) (Version:  - id Software)
Drakensang Online (HKLM-x32\...\Drakensang Online) (Version:  - )
Dropbox (HKLM-x32\...\Dropbox) (Version: 11.4.22 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.35.3 - Dropbox, Inc.) Hidden
Euro Truck Simulator 2 (HKLM-x32\...\Euro Truck Simulator 2_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)
Fallout 4 Complete Pack (HKLM-x32\...\Fallout 4 Complete Pack_is1) (Version: 1.7 - Bethesda Softworks)
FARO LS 1.1.501.0 (64bit) (HKLM-x32\...\{8A470330-70B2-49AD-86AF-79885EF9898A}) (Version: 5.1.0.30630 - FARO Scanner Production)
FARO LS 1.1.505.0 (64bit) (HKLM-x32\...\{8834451B-6209-4E02-9EF4-4EF9E3C1F70F}) (Version: 5.5.0.44203 - FARO Scanner Production)
Geeks3D FurMark 1.17.0.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version:  - Geeks3D)
GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Heroes & Generals (HKLM\...\Steam App 227940) (Version:  - Reto-Moto)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd)
HP Deskjet 3540 series Nápověda (HKLM-x32\...\{13EFEB9B-FB50-40C6-9F18-C3F38AAE81D1}) (Version: 30.0.0 - Hewlett Packard)
HP Support Solutions Framework (HKLM-x32\...\{579A990C-3855-4838-AF23-354CE2264BC0}) (Version: 12.5.32.37 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
CheckDevicesConfigurator (Version: 1.2.1201 - Nahimic) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1173 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1519.7 - Intel Corporation)
Intel(R) Small Business Advantage (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: 3.1.56.8801 - Intel(R) Corporation)
Intel(R) Update Manager (HKLM-x32\...\{7224B7CE-196C-4E2A-A1AE-1D7BF259FD36}) (Version: 3.4.1942 - Intel Corporation)
Intel(R) USB 3.0 Host Controller Adaptation Driver (HKLM\...\{9472AEE5-5D4D-4329-8BD8-B282FD33B8E0}) (Version: 1.0.1.45 - Intel Corporation)
Intel® Chipset Device Software (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Intel® Small Business Advantage (HKLM-x32\...\{C7A82877-2365-4A03-B23F-DFDD629B7F3A}) (Version: 4.0.44 - Intel Corporation)
IronPython 2.7.3 (HKLM-x32\...\{1EBADAEA-1A0F-40E3-848C-0DD8C5E5A10D}) (Version: 2.7.31000.0 - IronPython Team)
Killer Bandwidth Control Filter Driver (Version: 1.1.57.1125 - Rivet Networks) Hidden
Killer E240x Drivers (Version: 1.1.57.1125 - Rivet Networks) Hidden
Killer Network Manager (Version: 1.1.57.1125 - Rivet Networks) Hidden
Killer Performance Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.57.1125 - Rivet Networks)
LauncherSetup (Version: 1.2.1201 - Nahimic) Hidden
LEGO Digital Designer (HKLM-x32\...\New LEGO Digital Designer) (Version:  - LEGO A/S)
Malwarebytes Anti-Malware verze 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
MSI Afterburner 4.2.0 (HKLM-x32\...\Afterburner) (Version: 4.2.0 - MSI Co., LTD)
MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 2.0.0.33 - MSI)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.3 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.0.0.21 - MSI)
MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.1.021 - MSI)
MSI RAMDisk (HKLM-x32\...\{F29CF050-7278-4CDB-9EF8-2DC6DAA87453}}_is1) (Version: 1.0.0.12 - MSI)
MSI(R) Intel(R) Extreme Tuning Utility (HKLM-x32\...\{bcbf202c-9746-4173-a49b-649bfd0adca6}) (Version: 6.0.2.102 - Intel Corporation)
MSI(R) Intel(R) Extreme Tuning Utility (x32 Version: 6.0.2.102 - Intel Corporation) Hidden
Nahimic for MSI (HKLM-x32\...\{0c311339-9de4-4dd7-b21d-3dcfa3a2946f}) (Version: 1.2.12 - Nahimic)
NahimicSettingsConfigurator (Version: 1.2.1201 - Nahimic) Hidden
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
NVIDIA GeForce Experience 3.0.6.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.0.6.48 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 372.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.90 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 372.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.90 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (Version: 3.0.6.48 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 1.0.0.0 - NVIDIA Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 9.11.2.10120 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 372.90 (Version: 372.90 - NVIDIA Corporation) Hidden
Pro Evolution Soccer 2016 (HKLM-x32\...\UHJvRXZvbHV0aW9uU29jY2VyMjAxNg==_is1) (Version: 1 - )
ProductDaemonSetup (Version: 1.2.1201 - Nahimic) Hidden
Project CARS (HKLM-x32\...\UHJvamVjdENBUlM=_is1) (Version: 1 - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7673 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 6.4.1 (HKLM-x32\...\RTSS) (Version: 6.4.1 - Unwinder)
SHIELD Streaming (Version: 7.1.0310 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.0.6.48 - NVIDIA Corporation) Hidden
Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.109 - Skype Technologies S.A.)
Spintires (HKLM\...\Steam App 263280) (Version:  - Oovee® Game Studios)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
STAR WARS™ Battlefront™ (HKLM-x32\...\{E402D891-4E45-4ce9-B41F-DD35864EF170}) (Version: 1.0.5.56688 - Electronic Arts)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteelSeries Engine 3.8.4 (HKLM\...\SteelSeries Engine 3) (Version: 3.8.4 - SteelSeries ApS)
Studie vylepšování produktu HP Deskjet 3540 series (HKLM\...\{377A8182-90CD-4AD8-BF1C-B757EC83724E}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
ToneMaker 1 (HKLM-x32\...\BloodyToneMaker) (Version: 15.12.0001 - Bloody)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
Tunngle (HKLM-x32\...\Tunngle_is1) (Version: 5.8.6 - Tunngle.net GmbH)
UIInstallUpgrade (Version: 1.2.1201 - Nahimic) Hidden
uRage MMORPG Gaming Mouse version 1.1 (HKLM-x32\...\{3383154E-AFCB-4E9E-ABD2-E5CCDE339A4B}_is1) (Version: 1.1 - HAMA GmbH & Co KG)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{6DA2B636-698A-3294-BF4A-B5E11B238CDD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Vivaldi (HKU\S-1-5-21-2926529020-3654656493-611253017-1001\...\Vivaldi) (Version: 1.4.589.38 - Vivaldi)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.)
War Thunder (HKLM-x32\...\Steam App 236390) (Version:  - Gaijin Entertainment)
WinRAR 5.31 beta 1 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.1 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-2926529020-3654656493-611253017-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version:  - Wargaming.net)
Základní software zařízení HP Deskjet 3540 series (HKLM\...\{4CCA7410-4D72-4720-87C2-DBB75486E991}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2926529020-3654656493-611253017-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Tomáš\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {05A2BE63-A7A1-4995-B617-DCB20A5B0637} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {0741D665-ECFC-43A7-BA42-5B8CB7D94A69} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater – Install HPSA => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.)
Task: {0CF2AC6F-179D-484F-8A16-A5CB1D55CF89} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation)
Task: {0DA620A5-CD07-491C-B44C-5ADD573D7BF5} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-02-20] (Dropbox, Inc.)
Task: {1761FA71-6F3F-434A-924C-48FEFF2DC9F0} - \WPD\SqmUpload_S-1-5-21-2926529020-3654656493-611253017-1001 -> No File <==== ATTENTION
Task: {194DEFC7-6137-4E8B-8A3F-685AA9A5A3EA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe
Task: {3FA1525C-903B-4120-BEFA-B62E0ADA789E} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-02-20] (Dropbox, Inc.)
Task: {3FB23481-FA5D-4554-AA6E-587E105F0ADA} - System32\Tasks\HPCustParticipation HP Deskjet 3540 series => C:\Program Files\HP\HP Deskjet 3540 series\Bin\HPCustPartic.exe [2014-03-06] (Hewlett-Packard Co.)
Task: {43912DEF-1D90-41CD-B6E2-AF2749829767} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [2016-07-28] (Micro-Star INT'L CO., LTD.)
Task: {650595FE-DCAA-468B-9028-757DC254304A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-10-11] (Microsoft Corporation)
Task: {6821CE8B-4329-424A-984A-B87A45441B40} - System32\Tasks\Microsoft Office 15 Sync Maintenance for MACHINE-Tomáš Machine => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation)
Task: {71B48CE5-A7B5-4133-A441-A06BC5EEC511} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-09-17] (NVIDIA Corporation)
Task: {7B5424EE-CD5B-4C1E-BC48-A24A0480F167} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-11] (Google Inc.)
Task: {87B2AD2D-DE1F-4B51-9FF0-2D6A4987BCAD} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2016-09-17] (NVIDIA Corporation)
Task: {A0C94472-11B0-4B47-AB06-A2E932A9367A} - System32\Tasks\NahimicMSIsvc32Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe [2015-12-04] ()
Task: {A45D02A4-F927-4C9F-97B2-AB2813D09E33} - System32\Tasks\{7FEF5E03-B003-4592-BC9C-08B5B99D8A4B} => pcalua.exe -a "D:\Games\Mafia I - The City of Lost Heaven\Game.exe" -d "D:\Games\Mafia I - The City of Lost Heaven"
Task: {A95FAA15-69E0-455D-BAB7-2A04BED120B3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-11] (Google Inc.)
Task: {B327149F-92F9-4D1B-A953-BC5561F0FDFD} - System32\Tasks\NahimicMSIUILauncherRun => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [2015-12-04] ()
Task: {B79986A9-C5C1-41EB-BE37-DD9F078A6D3F} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-09-17] (NVIDIA Corporation)
Task: {BBB32649-6800-4DB0-B819-8C8F54EF0959} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-09-17] (NVIDIA Corporation)
Task: {C157D754-7A14-465F-8316-3BE5C590EEC2} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [2015-05-05] (Intel Corporation)
Task: {C23438DF-DAA4-4323-B660-FB367C012637} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2015-12-09] ()
Task: {C6318A89-07E3-43EB-8DCF-D003E1A4D5E5} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [2016-07-28] (Micro-Star INT'L CO., LTD.)
Task: {C7813B8D-64A6-454E-9BA1-D375A3404EED} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Tomáš\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-08-25] (Microsoft Corporation)
Task: {D3EFBB96-2A9C-4A77-8212-34D49F021940} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.)
Task: {D634CF26-7B0F-4951-B491-02BC4E902DA0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-09-17] (NVIDIA Corporation)
Task: {D7A6688C-B34C-4B78-AE5B-4CE7CAB5DEC7} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-12] (Adobe Systems Incorporated)
Task: {DE90D95D-3D04-4888-8BFA-A371DA85965B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {DFBAC247-E369-49D3-B3CE-1662071A66AC} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWOW64\muachost.exe [2015-08-18] (MSI)
Task: {E04F77B8-BDB0-4578-BDD1-91EB67976AA4} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation)
Task: {E12B8DC6-DEDD-4770-99AC-C5D95343C9C1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-12-08] (Piriform Ltd)
Task: {E2A0ED3E-4BD0-44CC-ACFE-D2F8BF7DCC64} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)
Task: {E4E3729C-9E7E-48BD-B973-680F56199493} - System32\Tasks\RTSS => C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe [2015-12-02] ()
Task: {F657B2C7-8C89-4D4B-AC38-3D5C924D1ABB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {F6E09E1E-4184-47AF-9D78-4113CF00EEA1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-09-17] (NVIDIA Corporation)
Task: {FC460245-C910-4B06-9C4F-D4B9970E7930} - System32\Tasks\NahimicMSIsvc64Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe [2015-12-04] ()

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWoW64\muachost.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Tomáš\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1"
ShortcutWithArgument: C:\Users\Tomáš\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5d696d521de238c3\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-09-30 01:05 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-22 17:56 - 2016-09-17 00:54 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-01-19 18:14 - 2012-04-24 19:42 - 01181544 _____ () C:\Program Files (x86)\uRage MMORPG Gaming Mouse\ETGMSrv.exe
2016-08-26 10:14 - 2016-08-26 10:14 - 00192200 _____ () C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
2015-05-19 10:11 - 2015-05-19 10:11 - 00007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
2016-09-07 21:11 - 2016-09-17 03:45 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-09-07 21:11 - 2016-09-17 03:45 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-09-07 21:11 - 2016-09-17 03:46 - 00418240 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\_nvspserviceplugin64.dll
2016-02-10 04:43 - 2016-02-10 04:43 - 00075136 _____ () C:\WINDOWS\SysWoW64\PnkBstrA.exe
2016-02-10 04:43 - 2016-02-10 04:43 - 00189248 _____ () C:\WINDOWS\SysWoW64\PnkBstrB.exe
2015-11-23 18:44 - 2015-11-23 18:44 - 00403456 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll
2016-09-07 21:20 - 2016-06-14 16:35 - 00187392 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2015-12-02 11:19 - 2015-12-02 11:19 - 00205000 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
2016-09-30 01:05 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-09-22 18:04 - 2016-09-22 18:04 - 01864384 _____ () C:\Users\Tomáš\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00130048 _____ () C:\WINDOWS\SYSTEM32\CHARTV.dll
2015-12-04 10:36 - 2015-12-04 10:36 - 00207840 _____ () C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIDevProps.dll
2015-12-04 10:36 - 2015-12-04 10:36 - 00285152 _____ () C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIOSD.dll
2016-09-22 18:53 - 2016-09-22 18:53 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-10-11 21:13 - 2016-10-05 11:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-11 21:13 - 2016-10-05 11:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-11 21:13 - 2016-10-05 11:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-11 21:13 - 2016-10-05 11:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-11 21:13 - 2016-10-05 11:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-11 21:13 - 2016-10-05 11:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-09-28 15:32 - 2016-09-28 15:32 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-09-28 15:32 - 2016-09-28 15:32 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-09-28 15:32 - 2016-09-28 15:32 - 35250688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2015-11-23 18:43 - 2015-11-23 18:43 - 00026112 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
2015-11-23 18:44 - 2015-11-23 18:44 - 00088576 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe
2015-12-04 10:31 - 2015-12-04 10:31 - 00740320 _____ () C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe
2016-01-19 18:15 - 2015-12-04 10:33 - 08472576 _____ () C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe
2015-12-04 10:31 - 2015-12-04 10:31 - 00826880 _____ () C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe
2015-12-04 10:37 - 2015-12-04 10:37 - 00275456 _____ () C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe
2016-01-19 18:15 - 2013-11-06 11:09 - 10891783 _____ () C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\SDK\CM_LibraryIO.exe
2016-01-19 18:14 - 2014-06-27 15:36 - 03156480 _____ () C:\Program Files (x86)\uRage MMORPG Gaming Mouse\HUMon.exe
2015-12-09 09:59 - 2015-12-09 09:59 - 00580296 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
2016-09-07 21:17 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll
2016-02-06 20:20 - 2016-09-17 03:45 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-11-23 18:43 - 2015-11-23 18:43 - 00356864 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll
2015-12-04 10:30 - 2015-12-04 10:30 - 00177632 _____ () C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIDevProps.dll
2015-12-04 10:30 - 2015-12-04 10:30 - 00252384 _____ () C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIOSD.dll
2016-09-07 21:20 - 2016-06-14 16:35 - 00163328 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2015-11-23 18:43 - 2015-11-23 18:43 - 00056832 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTFC.dll
2015-11-23 18:43 - 2015-11-23 18:43 - 00353792 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTUI.dll
2015-11-23 18:43 - 2015-11-23 18:43 - 00071680 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTMUI.dll
2016-09-07 21:11 - 2016-09-15 20:50 - 00502328 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2016-09-07 21:11 - 2016-09-15 20:50 - 00257592 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2016-09-07 21:11 - 2016-09-15 20:50 - 02799552 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2016-09-07 21:11 - 2016-09-15 20:50 - 00246328 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2016-09-07 21:11 - 2016-09-15 20:50 - 00430648 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
2016-09-07 21:11 - 2016-09-15 20:50 - 00336832 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2016-09-07 21:11 - 2016-09-15 20:50 - 00373696 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node
2016-10-04 16:30 - 2016-10-01 12:14 - 00946808 _____ () C:\Users\Tomáš\AppData\Local\Vivaldi\Application\1.4.589.38\ffmpeg.dll
2016-10-04 16:30 - 2016-10-01 12:14 - 01798776 _____ () C:\Users\Tomáš\AppData\Local\Vivaldi\Application\1.4.589.38\libglesv2.dll
2016-10-04 16:30 - 2016-10-01 12:14 - 00086648 _____ () C:\Users\Tomáš\AppData\Local\Vivaldi\Application\1.4.589.38\libegl.dll
2016-09-22 18:04 - 2016-09-22 18:04 - 01383616 _____ () C:\Users\Tomáš\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll
2016-09-22 18:04 - 2016-09-22 18:04 - 00118976 _____ () C:\Users\Tomáš\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll
2016-01-19 18:15 - 2014-01-10 18:48 - 04260352 _____ () C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2016-09-07 21:11 - 2016-09-17 03:45 - 60817344 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2016-01-19 18:28 - 2016-09-08 05:14 - 00784672 _____ () D:\Steam\SDL2.dll
2016-01-19 18:28 - 2016-09-01 03:02 - 04969248 _____ () D:\Steam\v8.dll
2016-01-19 18:28 - 2016-09-20 21:28 - 02321696 _____ () D:\Steam\video.dll
2016-01-19 18:28 - 2016-01-27 09:49 - 02549760 _____ () D:\Steam\libavcodec-56.dll
2016-01-19 18:28 - 2016-01-27 09:49 - 00491008 _____ () D:\Steam\libavformat-56.dll
2016-01-19 18:28 - 2016-01-27 09:49 - 00332800 _____ () D:\Steam\libavresample-2.dll
2016-01-19 18:28 - 2016-01-27 09:49 - 00442880 _____ () D:\Steam\libavutil-54.dll
2016-01-19 18:28 - 2016-01-27 09:49 - 00485888 _____ () D:\Steam\libswscale-3.dll
2016-01-19 18:28 - 2016-09-01 03:02 - 01563936 _____ () D:\Steam\icui18n.dll
2016-01-19 18:28 - 2016-09-01 03:02 - 01195296 _____ () D:\Steam\icuuc.dll
2016-01-19 18:28 - 2016-09-20 21:28 - 00835360 _____ () D:\Steam\bin\chromehtml.DLL
2016-03-09 18:34 - 2016-07-05 00:17 - 00266560 _____ () D:\Steam\openvr_api.dll
2016-01-19 18:28 - 2016-08-04 22:56 - 49825056 _____ () D:\Steam\bin\libcef.dll
2016-02-20 20:38 - 2016-09-09 02:53 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2016-10-07 01:49 - 2016-09-09 02:53 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2016-10-07 01:49 - 2016-09-09 02:54 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2016-10-07 01:49 - 2016-09-09 02:53 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2016-02-20 20:38 - 2016-09-09 02:53 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2016-02-20 20:38 - 2016-09-09 02:53 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2016-02-20 20:38 - 2016-10-06 23:06 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2016-02-20 20:38 - 2016-09-09 02:53 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2016-02-20 20:38 - 2016-09-09 02:54 - 00123856 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 01682760 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-08-05 00:36 - 2016-10-06 23:06 - 00021312 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2016-10-07 01:49 - 2016-09-09 02:53 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2016-10-07 01:49 - 2016-09-09 02:55 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2016-02-20 20:38 - 2016-10-06 23:06 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-08-05 00:36 - 2016-10-06 23:06 - 00025424 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00246592 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2016-08-05 00:36 - 2016-09-09 02:54 - 00241104 _____ () C:\Program Files (x86)\Dropbox\Client\_jpegtran.pyd
2016-02-20 20:38 - 2016-10-06 23:06 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2016-02-20 20:38 - 2016-10-06 23:06 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-02-20 20:38 - 2016-10-06 23:06 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd
2016-02-20 20:38 - 2016-10-06 23:06 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2016-02-20 20:38 - 2016-09-09 02:55 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2016-02-20 20:38 - 2016-10-06 23:06 - 00022352 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2016-10-07 01:49 - 2016-09-09 02:51 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2016-10-07 01:49 - 2016-10-06 23:06 - 00031568 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2016-10-07 01:49 - 2016-10-06 23:00 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2016-10-07 01:49 - 2016-10-06 23:06 - 00084280 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2016-10-07 01:49 - 2016-10-06 23:06 - 01826096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2016-02-20 20:38 - 2016-09-09 02:54 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00531248 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 03928880 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 01972528 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00133424 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00224056 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2016-08-05 00:36 - 2016-10-06 23:06 - 00020288 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32._winffi_user32.pyd
2016-10-07 01:49 - 2016-09-09 02:58 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2016-10-07 01:49 - 2016-09-09 02:58 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2016-02-20 20:38 - 2016-09-09 02:55 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2016-04-15 08:46 - 2016-10-06 23:06 - 00037192 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2016-08-05 00:36 - 2016-10-06 23:06 - 00024904 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00546096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00042808 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2016-10-07 01:49 - 2016-10-06 23:06 - 00168760 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2016-09-07 21:20 - 2016-06-01 15:50 - 00785360 _____ () C:\Program Files (x86)\MSI\Gaming APP\Lib\USB_DLL.dll
2016-09-07 21:20 - 2015-08-13 09:18 - 00789456 _____ () C:\Program Files (x86)\MSI\Gaming APP\Lib\DeviceManagerDLL.dll
2016-10-03 23:14 - 2016-09-25 05:34 - 17754304 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\PepperFlash\pepflashplayer.dll
2015-10-16 07:14 - 2015-10-16 07:14 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-12-07 18:43 - 2015-12-07 18:43 - 00057856 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll
2015-12-07 18:43 - 2015-12-07 18:43 - 00071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
2015-12-07 18:44 - 2015-12-07 18:44 - 00225792 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll
2015-12-07 18:43 - 2015-12-07 18:43 - 00357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll
2015-12-07 18:44 - 2015-12-07 18:44 - 00657408 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\WINDOWS\system32\Drivers\dvikyoej.sys:changelist [594]
AlternateDataStreams: C:\ProgramData\TEMP:888AFB86 [110]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2016-07-31 15:10 - 00000826 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2926529020-3654656493-611253017-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Tomáš\Desktop\Tomáš\Pictures\LV.png
DNS Servers: 192.168.1.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run32: => "Live Update"
HKLM\...\StartupApproved\Run32: => "seznam-listicka-distribuce"
HKU\S-1-5-21-2926529020-3654656493-611253017-1001\...\StartupApproved\Run: => "cz.seznam.software.szndesktop"
HKU\S-1-5-21-2926529020-3654656493-611253017-1001\...\StartupApproved\Run: => "cz.seznam.software.autoupdate"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{73963908-4F6A-4A7C-83D2-1E5885A25679}F:\deadspace2.exe] => (Allow) F:\deadspace2.exe
FirewallRules: [TCP Query User{B6739A13-1795-4441-8B20-92663036DFF5}F:\deadspace2.exe] => (Allow) F:\deadspace2.exe
FirewallRules: [UDP Query User{E5D0287A-FECD-4C52-8465-44B270CF46B8}D:\games\pro evolution soccer 2016\pes2016.exe] => (Allow) D:\games\pro evolution soccer 2016\pes2016.exe
FirewallRules: [TCP Query User{A43FF3AD-A92F-46EA-A3BF-E475C0C0F7E2}D:\games\pro evolution soccer 2016\pes2016.exe] => (Allow) D:\games\pro evolution soccer 2016\pes2016.exe
FirewallRules: [{46A17422-231C-4D77-A408-B7F84509577A}] => (Allow) %systemroot%\system32\alg.exe
FirewallRules: [UDP Query User{059EF328-4600-412B-ACFB-E531610CB276}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [TCP Query User{86C3BB37-DD7B-4B20-BC76-DBC0E6585898}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [UDP Query User{E73D20C4-E3E4-42F8-8A42-A56ED8805D1D}D:\games\hearthstone\hearthstone.exe] => (Allow) D:\games\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{E53AFF2A-AE2F-49B6-B859-174C13AAC7BC}D:\games\hearthstone\hearthstone.exe] => (Allow) D:\games\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{7F39A0AC-F960-48E8-8EFD-84AEA69AF689}C:\users\tomáš\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\tomáš\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{18312B64-02C0-45DE-8885-1C5AADCC02CF}C:\users\tomáš\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\tomáš\appdata\local\akamai\netsession_win.exe
FirewallRules: [{1ADA7C1A-6D22-446D-9E0E-EAE614914650}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe
FirewallRules: [{903FCECC-49FB-46C6-91CE-42CD64082AE3}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe
FirewallRules: [{993DFB21-85F9-4846-8A14-0AFC6AA97C73}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe
FirewallRules: [{F7B5CEBD-AD1E-48DC-BAF6-109EF6F4DFE2}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe
FirewallRules: [UDP Query User{A397FECE-04A6-4DE9-BC42-602F69CA5F7C}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [TCP Query User{6A038FBF-4D83-47F8-A02C-9BA7AD13F003}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [UDP Query User{2C304937-A43F-412B-A1EA-D69D16E92607}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [TCP Query User{34382360-BF86-458A-B413-8A112BF27F27}C:\program files (x86)\msi\gaming app\gamingapp.exe] => (Allow) C:\program files (x86)\msi\gaming app\gamingapp.exe
FirewallRules: [UDP Query User{F5113511-FF0C-44AC-B069-48E151EDC9C5}D:\origingames\star wars battlefront\starwarsbattlefront.exe] => (Allow) D:\origingames\star wars battlefront\starwarsbattlefront.exe
FirewallRules: [TCP Query User{493C8987-2485-4FFD-A40F-6C3085124F72}D:\origingames\star wars battlefront\starwarsbattlefront.exe] => (Allow) D:\origingames\star wars battlefront\starwarsbattlefront.exe
FirewallRules: [{F7F9E08D-7B11-4660-9D21-7C48D8155CBA}] => (Allow) D:\Steam\steamapps\common\Spintires\SpinTires.exe
FirewallRules: [{08D61C00-02F1-48B1-A314-61721DA1C8EA}] => (Allow) D:\Steam\steamapps\common\Spintires\SpinTires.exe
FirewallRules: [{AC65DB87-42F0-4190-910F-A4A127DD3EA2}] => (Allow) D:\Games\World_of_Tanks\worldoftanks.exe
FirewallRules: [{76AE81D1-D443-4996-938F-3DC84E6539B9}] => (Allow) D:\Games\World_of_Tanks\worldoftanks.exe
FirewallRules: [{167A94CB-6062-41B3-9596-95E0D333BC4D}] => (Allow) D:\Games\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{C11A82A3-2468-456B-959D-FE29A9ADDB9B}] => (Allow) D:\Games\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{FC1E11E6-6C4F-466E-939A-D211454F14E5}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{05287912-DCBB-4A3A-A624-027DE5C38FC8}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{B7840C88-1A6F-43B6-B8B4-D2E54CEBFF8B}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{4F431754-0B5E-4F5C-88FF-F42ECA81A6A0}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{AD0498BB-0FA8-4F13-8FB5-12D0CF0DBBF3}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{090033B7-78BE-4C44-91E7-ACDD7B92E5A6}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{E6374784-94FA-4DE7-81AC-BFE4746977CB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{7AC11984-A823-4EFB-865E-75AFB9438FDC}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [UDP Query User{8822EE4D-0BE2-4BC6-956A-C5A5CA72B378}D:\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [TCP Query User{99F07171-7AEF-467F-B9A0-3BEEF75C9C22}D:\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [UDP Query User{A5947A1F-79BC-4B69-8858-82A9B3F83FB0}D:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) D:\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [TCP Query User{BA4F1C93-9C60-4774-855D-D283899B85D1}D:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) D:\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [{618EC5CC-1A79-48CF-BCDE-B8262ADED5CD}] => (Allow) D:\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{0B1FE58D-CF4E-481A-BC5F-8F07C92B08C2}] => (Allow) D:\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{5D780F28-866D-466D-A877-5FFF817FA1CE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{96414DB5-EC70-4062-B8A6-5AA0E146C3BD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{961F555C-A879-4D41-BD70-ED1CFF22C411}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{BBF94CE5-D5B1-4B35-A3BA-BD6DE6FB8F30}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{6B1BFCF4-28C4-41B0-81AF-CFF7C4FCFF21}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{C8482B71-A07E-4588-B5E0-A7F633683465}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{E898B861-90A7-4683-A40A-B073B41E3A1B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{4D57860C-F5B1-468E-B633-89308790B7F7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{3C2B7D56-290B-421F-9326-060087048506}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{2BBDCAD9-AA9B-463E-B58C-E88FAF3BEDCF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [UDP Query User{F288E315-D61E-4DF1-BB1E-3358C2EE631A}D:\torrent\utorrent\utorrent.exe] => (Allow) D:\torrent\utorrent\utorrent.exe
FirewallRules: [TCP Query User{221F49C4-805A-46CC-A5F7-B66A2BE7B51C}D:\torrent\utorrent\utorrent.exe] => (Allow) D:\torrent\utorrent\utorrent.exe
FirewallRules: [UDP Query User{043233A4-F58D-4E64-B7A4-8EE7B7E69971}D:\torrent\utorrent\utorrent.exe] => (Allow) D:\torrent\utorrent\utorrent.exe
FirewallRules: [TCP Query User{A8AAF2F3-8E77-4A18-8634-E9E28D37B2BD}D:\torrent\utorrent\utorrent.exe] => (Allow) D:\torrent\utorrent\utorrent.exe
FirewallRules: [{198C883D-A48D-4D08-8253-830EB5684B81}] => (Allow) D:\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [{ACB4CEC6-6838-4727-873A-6E72849C714A}] => (Allow) D:\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [{DA08A435-0BC4-4C65-B13E-CA31F323F896}] => (Allow) C:\Program Files\HP\HP Deskjet 3540 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{9580D556-CA8D-4EFC-A875-B4363579AF19}] => (Allow) LPort=5357
FirewallRules: [{12218D9F-1371-423D-B388-50094A8A4D2D}] => (Allow) C:\Program Files\HP\HP Deskjet 3540 series\Bin\DeviceSetup.exe
FirewallRules: [UDP Query User{724E7226-AF21-44F8-AB0B-F2CCDFDDDF31}D:\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [TCP Query User{618006EC-2F86-413A-833C-B53C2DC6C63D}D:\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [{CC81C91B-40A5-449B-8358-11BFAB825C4B}] => (Allow) LPort=24680
FirewallRules: [{9B73C56F-42F3-4AFC-811B-EA03DA875604}] => (Allow) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage Next\Sba.exe
FirewallRules: [{C941B02A-53DD-48D6-87AB-4C85E2487033}] => (Allow) D:\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{306E2AB8-00C6-4384-8836-F8EE835B661F}] => (Allow) D:\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [UDP Query User{A1E1CF5F-8F38-4D89-8F33-BBC5B2520272}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe
FirewallRules: [TCP Query User{2F569A8D-AE35-4FCF-9DA3-553AC8ED097E}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe
FirewallRules: [{30C5018E-F378-4F49-B8A9-F9955BBDE3E5}] => (Allow) D:\Steam\bin\steamwebhelper.exe
FirewallRules: [{45800391-8E3C-4D27-8555-51695B78F5FB}] => (Allow) D:\Steam\bin\steamwebhelper.exe
FirewallRules: [{3B4770C4-F85C-4513-A2C5-EB23A5880A27}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{96FAC8FD-21A6-4BC4-8A46-57459E57D150}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{C809353E-0F20-4FBE-818F-4CA2D8081F60}] => (Allow) D:\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe
FirewallRules: [{A1F5EDA3-E423-4CCC-97AE-4E2BF7D9C08C}] => (Allow) D:\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe
FirewallRules: [{B06D0BFD-B8CE-4D17-8E7F-49AACB41F28C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{B6C22BF3-3CD0-4853-8EEE-F3823E99A4A5}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{6946CE8F-D59E-4D7D-B4EB-64E44E337E12}] => (Allow) LPort=8317
FirewallRules: [{357121AB-E1A9-4ACD-902F-F0AE6AA8C78F}] => (Allow) LPort=26789

==================== Restore Points =========================

08-10-2016 19:07:47 Naplánovaný kontrolní bod
11-10-2016 21:29:59 Windows Update

==================== Faulty Device Manager Devices =============

Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Myš Microsoft PS/2
Description: Myš Microsoft PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/12/2016 07:27:42 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů rdyboost. První čtyři bajty (DWORD) datové sekce obsahují kód chyby systému Windows.

Error: (10/12/2016 07:24:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSI_ActiveX_Service.exe, verze: 1.0.0.8, časové razítko: 0x57ad265a
Název chybujícího modulu: ActiveX_Resource_Monitor.dll, verze: 1.0.0.8, časové razítko: 0x57ad265d
Kód výjimky: 0xc0000005
Posun chyby: 0x00002c00
ID chybujícího procesu: 0x9d4
Čas spuštění chybující aplikace: 0x01d224ad70d14342
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
Cesta k chybujícímu modulu: C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\ActiveX_Resource_Monitor.dll
ID zprávy: 790c8f10-2565-4018-b298-c3d49fe69b69
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/12/2016 07:24:09 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: MSI_ActiveX_Service.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: kód výjimky c0000005, adresa výjimky 705F2C00

Error: (10/11/2016 10:15:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSI_ActiveX_Service.exe, verze: 1.0.0.8, časové razítko: 0x57ad265a
Název chybujícího modulu: ActiveX_Resource_Monitor.dll, verze: 1.0.0.8, časové razítko: 0x57ad265d
Kód výjimky: 0xc0000005
Posun chyby: 0x00002c00
ID chybujícího procesu: 0xa00
Čas spuštění chybující aplikace: 0x01d223fc30f16d70
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
Cesta k chybujícímu modulu: C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\ActiveX_Resource_Monitor.dll
ID zprávy: 0dd76f13-aaaf-4816-bf77-21a1d765cb7f
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/11/2016 10:15:21 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: MSI_ActiveX_Service.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: kód výjimky c0000005, adresa výjimky 70ED2C00

Error: (10/11/2016 09:30:00 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (10/11/2016 04:37:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SkypeHost.exe, verze: 11.8.190.0, časové razítko: 0x57e1cc24
Název chybujícího modulu: RPCRT4.dll, verze: 10.0.14393.82, časové razítko: 0x57a558cf
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000005163f
ID chybujícího procesu: 0x1b54
Čas spuštění chybující aplikace: 0x01d223cd05ecd19b
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\RPCRT4.dll
ID zprávy: 7566245e-c86c-4a34-887c-dfa316fc3650
Úplný název chybujícího balíčku: Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c
ID aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1

Error: (10/11/2016 04:37:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSI_ActiveX_Service.exe, verze: 1.0.0.8, časové razítko: 0x57ad265a
Název chybujícího modulu: ActiveX_Resource_Monitor.dll, verze: 1.0.0.8, časové razítko: 0x57ad265d
Kód výjimky: 0xc0000005
Posun chyby: 0x00002b10
ID chybujícího procesu: 0x9bc
Čas spuštění chybující aplikace: 0x01d223cd0351f9d2
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
Cesta k chybujícímu modulu: C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\ActiveX_Resource_Monitor.dll
ID zprávy: cc8700fc-422a-4964-8e86-53918747ee9a
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/11/2016 04:37:38 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: MSI_ActiveX_Service.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: kód výjimky c0000005, adresa výjimky 71092B10

Error: (10/11/2016 03:55:17 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů rdyboost. První čtyři bajty (DWORD) datové sekce obsahují kód chyby systému Windows.


System errors:
=============
Error: (10/12/2016 07:24:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI_ActiveX_Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/12/2016 07:24:11 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba CDPUserSvc_48978 byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (10/12/2016 07:24:08 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (18:55:16, ‎12.‎10.‎2016) bylo neočekávané.

Error: (10/12/2016 07:20:56 PM) (Source: DCOM) (EventID: 10016) (User: MACHINE)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}
 a APPID 
{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}
 uživateli Machine\Tomáš (SID: S-1-5-21-2926529020-3654656493-611253017-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/12/2016 07:20:55 PM) (Source: DCOM) (EventID: 10016) (User: MACHINE)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}
 a APPID 
{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}
 uživateli Machine\Tomáš (SID: S-1-5-21-2926529020-3654656493-611253017-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/12/2016 07:20:40 PM) (Source: DCOM) (EventID: 10016) (User: MACHINE)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}
 a APPID 
{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}
 uživateli Machine\Tomáš (SID: S-1-5-21-2926529020-3654656493-611253017-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/12/2016 07:20:40 PM) (Source: DCOM) (EventID: 10016) (User: MACHINE)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}
 a APPID 
{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}
 uživateli Machine\Tomáš (SID: S-1-5-21-2926529020-3654656493-611253017-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/12/2016 06:10:38 PM) (Source: DCOM) (EventID: 10016) (User: MACHINE)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}
 a APPID 
{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}
 uživateli Machine\Tomáš (SID: S-1-5-21-2926529020-3654656493-611253017-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/12/2016 06:09:44 PM) (Source: DCOM) (EventID: 10016) (User: MACHINE)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}
 a APPID 
{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}
 uživateli Machine\Tomáš (SID: S-1-5-21-2926529020-3654656493-611253017-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/12/2016 06:09:42 PM) (Source: DCOM) (EventID: 10016) (User: MACHINE)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}
 a APPID 
{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}
 uživateli Machine\Tomáš (SID: S-1-5-21-2926529020-3654656493-611253017-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


CodeIntegrity:
===================================
  Date: 2016-10-12 18:17:35.195
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-10-11 21:29:58.069
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-10-09 21:33:19.028
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-10-09 18:01:54.590
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume6\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2016-10-09 18:01:54.554
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume6\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIDevProps.dll that did not meet the Store signing level requirements.

  Date: 2016-10-09 18:01:54.545
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume6\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIOSD.dll that did not meet the Store signing level requirements.

  Date: 2016-10-09 15:26:47.655
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume6\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIDevProps.dll that did not meet the Store signing level requirements.

  Date: 2016-10-09 15:26:47.650
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume6\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIOSD.dll that did not meet the Store signing level requirements.

  Date: 2016-10-09 15:26:16.517
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume6\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2016-10-09 15:26:16.485
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume6\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIDevProps.dll that did not meet the Store signing level requirements.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-6500 CPU @ 3.20GHz
Percentage of memory in use: 26%
Total physical RAM: 16330.84 MB
Available physical RAM: 11943.16 MB
Total Virtual: 32714.84 MB
Available Virtual: 27474.14 MB

==================== Drives ================================

Drive b: (RAMDisk) (Fixed) (Total:0.25 GB) (Free:0.25 GB) FAT
Drive c: () (Fixed) (Total:237.52 GB) (Free:83.03 GB) NTFS
Drive d: () (Fixed) (Total:931.39 GB) (Free:324.13 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================