﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-12-2016
Ran by Ententeak (08-12-2016 13:12:56)
Running from D:\Downloads
Windows 10 Home Insider Preview Version 1607 (X64) (2016-11-17 22:32:05)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-223685388-1953928164-1116823234-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-223685388-1953928164-1116823234-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-223685388-1953928164-1116823234-1000 - Limited - Disabled) => C:\Users\defaultuser0
Ententeak (S-1-5-21-223685388-1953928164-1116823234-1001 - Administrator - Enabled) => C:\Users\Ententeak
Guest (S-1-5-21-223685388-1953928164-1116823234-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Smart Security 10.0.369.1 (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Smart Security 10.0.369.1 (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Personální firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.00 (HKLM-x32\...\7-Zip) (Version: 16.00 - Igor Pavlov)
AC3Filter 2.6.0b (HKLM-x32\...\AC3Filter_is1) (Version: 2.6.0b - Alexander Vigovsky)
Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.0 - Adobe Systems Incorporated)
Aktualizace NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
AVer MediaCenter 3D (HKLM-x32\...\InstallShield_{D2912CB2-F95A-406C-AA88-2BB5DCB6D275}) (Version: 1.7.9.95.16040801 - AVerMedia Technologies, Inc.)
AVer MediaCenter 3D (x32 Version: 1.7.9.95.16040801 - AVerMedia Technologies, Inc.) Hidden
AVerMedia H727 PCIe Hybrid DVBT HDMI Capture Device 1.54.64.42 (HKLM-x32\...\AVerMedia H727 PCIe Hybrid DVBT HDMI Capture Device) (Version: 1.54.64.42 - AVerMedia TECHNOLOGIES, Inc.)
Bass Audio Decoder (remove only) (HKLM-x32\...\Bass Audio Decoder) (Version:  - )
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Blender 2.78 (HKLM\...\Steam App 365670) (Version:  - Blender Foundation)
Bloody6 (HKLM-x32\...\Bloody3) (Version: 16.09.0013 - Bloody)
Burnout Paradise: The Ultimate Box (HKLM\...\Steam App 24740) (Version:  - Criterion Games)
CCleaner (HKLM\...\CCleaner) (Version: 5.23 - Piriform)
CrystalDiskInfo 7.0.4 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.0.4 - Crystal Dew World)
DCoder Image Source (remove only) (HKLM-x32\...\DCoder Image Source) (Version:  - )
Digimon Masters Online (HKLM\...\Steam App 537180) (Version:  - Move Games Co., Ltd.)
DirectVobSub (remove only) (HKLM-x32\...\DirectVobSub) (Version:  - )
DiRT 3 Complete Edition (HKLM\...\Steam App 321040) (Version:  - Codemasters Racing Studio)
DOOM (HKLM\...\Steam App 379720) (Version:  - id Software)
Dropbox (HKLM-x32\...\Dropbox) (Version: 16.3.24 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.61.1 - Dropbox, Inc.) Hidden
Duke Nukem 3D: Megaton Edition (HKLM\...\Steam App 225140) (Version:  - 3D Realms)
ESET Smart Security (HKLM\...\{6062BB8B-D726-4E80-B731-739E961ED834}) (Version: 10.0.359.1 - ESET, spol. s r.o.)
Factorio (HKLM\...\Steam App 427520) (Version:  - Wube Software LTD.)
Fallout 4 (HKLM\...\Steam App 377160) (Version:  - Bethesda Game Studios)
ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - )
FFMPEG Core Files (remove only) (HKLM-x32\...\FFMPEG Core Files) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.)
Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
gpedt.msc 1.0 (HKLM-x32\...\{10B9C608-BF7C-4CCF-A658-C01D969DCA21}_is1) (Version:  - Richard)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version:  - )
Heroine's Quest: The Herald of Ragnarok (HKLM\...\Steam App 283880) (Version:  - Crystal Shard)
Chrome Remote Desktop Host (HKLM-x32\...\{D669DC52-B1A4-4933-878D-CB80F660D95D}) (Version: 55.0.2883.17 - Google Inc.)
LAV Filters 0.68.1 (HKLM-x32\...\lavfilters_is1) (Version: 0.68.1 - Hendrik Leppkes)
LOOT version 0.10.2 (HKLM-x32\...\{BF634210-A0D4-443F-A657-0DCE38040374}_is1) (Version: 0.10.2 - LOOT Team)
MadVR (remove only) (HKLM-x32\...\MadVR) (Version:  - )
Manticore Gaming Keyboard (HKLM-x32\...\{0DAEFA4F-E394-4D1F-8F1A-6A2180561290}}_is1) (Version:  - )
Metro: Last Light (HKLM\...\Steam App 43160) (Version:  - 4A Games)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40649 (HKLM-x32\...\{5d0723d3-cff7-4e07-8d0b-ada737deb5e6}) (Version: 12.0.40649.5 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mini Metro (HKLM\...\Steam App 287980) (Version:  - Dinosaur Polo Club)
Mortal Kombat Komplete Edition (HKLM\...\Steam App 237110) (Version:  - NetherRealm Studios)
Mozilla Firefox 49.0.2 (x86 cs) (HKLM-x32\...\Mozilla Firefox 49.0.2 (x86 cs)) (Version: 49.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.2 - Mozilla)
MSI Super Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.025 - MSI)
NARUTO SHIPPUDEN Ultimate Ninja STORM 4 (HKLM-x32\...\NARUTO SHIPPUDEN Ultimate Ninja STORM 4_is1) (Version:  - )
NARUTO SHIPPUDEN: Ultimate Ninja STORM 4 Update v1.04 Incl. DLC (HKLM\...\bmFydXRvc2hpcHB1ZGVudWx0aW1hdGVuaW5qYXN0b3JtNA_is1) (Version: 1 - )
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.6 - Black Tree Gaming)
NVIDIA Ovladač 3D Vision 372.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.90 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 372.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.90 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 10.2.1.38915 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 372.90 (Version: 372.90 - NVIDIA Corporation) Hidden
Path of Exile (HKLM\...\Steam App 238960) (Version:  - Grinding Gear Games)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2) (Version:  - )
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version:  - )
Platform (x32 Version: 1.42 - VIA Technologies, Inc.) Hidden
PSPad editor (HKLM-x32\...\PSPad editor_is1) (Version: 4.6.1.2730 - Jan Fiala)
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 4.0 beta r2627 - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.)
Skyrim Script Extender (SKSE) (HKLM\...\Steam App 365720) (Version:  - The SKSE Team)
Sound Blaster Cinema 2 (HKLM-x32\...\{B4F6F8CC-2C61-42CC-A4CC-76621F25BDC7}) (Version: 1.00.06 - Creative Technology Limited)
Spore (HKLM\...\Steam App 17390) (Version:  - Maxis™)
Spore: Creepy & Cute Parts Pack (HKLM\...\Steam App 17440) (Version:  - Maxis™)
Spore: Galactic Adventures (HKLM\...\Steam App 24720) (Version:  - EA - Maxis)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Crew (Worldwide) (HKLM-x32\...\Uplay Install 413) (Version:  - Ubisoft)
The Elder Scrolls V: Skyrim (HKLM\...\Steam App 72850) (Version:  - Bethesda Game Studios)
The Elder Scrolls V: Skyrim Special Edition (HKLM\...\Steam App 489830) (Version:  - Bethesda Game Studios)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
Uplay (HKLM-x32\...\Uplay) (Version: 25.0.2 - Ubisoft)
VIA Platforma Ovladače zařízení (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.42 - VIA Technologies, Inc.)
Vivaldi (HKU\S-1-5-21-223685388-1953928164-1116823234-1001\...\Vivaldi) (Version: 1.6.687.3 - Vivaldi)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Warhammer 40,000: Eternal Crusade (HKLM\...\Steam App 375230) (Version:  - Behaviour Interactive)
Warhammer: End Times - Vermintide (HKLM\...\Steam App 235540) (Version:  - Fatshark)
Win32DiskImager version 0.9.5 (HKLM-x32\...\{D074CE74-912A-4AD3-A0BF-3937D9D01F17}_is1) (Version: 0.9.5 - ImageWriter Developers)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Wireshark 2.2.2 (64-bit) (HKLM-x32\...\Wireshark) (Version: 2.2.2 - The Wireshark developer community, hxxps://www.wireshark.org)
Zoom Player (remove only) (HKLM-x32\...\ZoomPlayer) (Version: 12.5 - Inmatrix LTD)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-223685388-1953928164-1116823234-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files (x86)\PSPad editor\pspshellx64.dll ()

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {12883B3B-7492-43D1-AB1A-796D91BB0EE3} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition => C:\WINDOWS\system32\ClipRenew.exe [2016-11-12] (Microsoft Corporation)
Task: {2C6ECB69-9869-4C11-BCA3-06BB1FC0E44C} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-10-17] (Dropbox, Inc.)
Task: {32EF3CF2-1178-4653-8F39-C284115FAD06} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-ententeak@seznam.cz => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated)
Task: {3A005926-EB0E-4892-865C-8B8AA68144FE} - System32\Tasks\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask
Task: {6388151C-FC19-4B81-8716-EEA9D3B97352} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-27] (Google Inc.)
Task: {67310A31-D7D2-4C71-88F8-8B7AB7E959D6} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition => C:\WINDOWS\system32\ClipRenew.exe [2016-11-12] (Microsoft Corporation)
Task: {6C32C39C-03C2-454D-A2D4-D99993680417} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_185_pepper.exe [2016-10-17] (Adobe Systems Incorporated)
Task: {AE811427-BC0B-4EAB-B07C-224580EC591F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-09-28] (Piriform Ltd)
Task: {B3333DD2-8C4D-487C-AFEA-AEA76699DEB9} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-10-17] (Dropbox, Inc.)
Task: {C4B0F1DC-53CC-4BA4-A48B-40D23364D599} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-17] (Adobe Systems Incorporated)
Task: {D7FF2F6B-0EFA-4FA9-9133-86DEE3A6C37B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-27] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_185_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\Ententeak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Vivaldi\Vzdálená plocha Chrome.lnk -> C:\Users\Ententeak\AppData\Local\Vivaldi\Application\vivaldi.exe (Vivaldi Technologies AS)

ShortcutWithArgument: C:\Users\Ententeak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Google Keep – poznámky a seznamy.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=hmjkmjkepdijhoojdojkdfohbdgmmhki
ShortcutWithArgument: C:\Users\Ententeak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Vzdálená plocha Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) ==============

2016-11-12 11:03 - 2016-11-12 11:03 - 02817984 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-11-17 23:24 - 2016-09-16 23:54 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-11-12 11:03 - 2016-11-12 11:03 - 00346624 _____ () C:\WINDOWS\System32\HrtfApo.dll
2016-10-21 08:34 - 2013-08-16 14:15 - 00772096 _____ () C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe
2016-10-21 08:34 - 2013-08-16 14:10 - 00163840 _____ () C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
2016-11-12 11:03 - 2016-11-12 11:03 - 02817984 _____ () c:\windows\system32\CoreUIComponents.dll
2016-11-12 11:03 - 2016-11-12 11:03 - 02817984 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-11-12 11:03 - 2016-11-12 11:03 - 02817984 _____ () C:\Windows\System32\CoreUIComponents.dll
2016-11-12 11:04 - 2016-11-12 11:04 - 00157184 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-11-12 11:04 - 2016-11-12 11:04 - 00814080 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-11-12 11:03 - 2016-11-12 11:03 - 00146120 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2016-10-14 12:02 - 2016-09-22 08:05 - 19276288 _____ () C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
2016-11-12 11:03 - 2016-11-12 11:03 - 02817984 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-12-01 09:21 - 2016-12-01 09:27 - 00019456 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1128.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-12-01 09:21 - 2016-12-01 09:27 - 21879296 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1128.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-10-12 15:28 - 2016-10-12 15:28 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1128.10010.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2016-12-01 09:21 - 2016-12-01 09:27 - 00307712 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1128.10010.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll
2016-12-01 09:21 - 2016-12-01 09:27 - 01046016 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1128.10010.0_x64__8wekyb3d8bbwe\Microsoft.Sharing.dll
2016-07-16 23:33 - 2016-07-16 23:33 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1128.10010.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2016-11-17 23:33 - 2016-11-17 23:33 - 01864384 _____ () C:\Users\Ententeak\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_4\amd64\ClientTelemetry.dll
2016-11-12 11:05 - 2016-11-12 22:54 - 10938368 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-11-12 11:05 - 2016-11-12 22:54 - 01697792 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-11-12 11:05 - 2016-11-12 22:54 - 05313536 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-10-21 08:34 - 2012-06-09 17:33 - 00053248 _____ () C:\Program Files (x86)\Common Files\AVerMedia\dll\MsgLog.DLL
2016-10-26 15:05 - 2016-10-26 15:05 - 02493440 _____ () Z:\Origin\libGLESv2.dll
2016-10-14 12:02 - 2013-10-11 08:43 - 00085504 _____ () C:\Program Files (x86)\Bloody6\Bloody6\DLL\DLL_ZoomControl.dll
2016-10-14 12:02 - 2016-05-26 14:28 - 04672512 _____ () C:\Program Files (x86)\Bloody6\Bloody6\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2016-10-14 12:04 - 2014-01-17 17:31 - 00061952 _____ () C:\Program Files (x86)\Genius\Manticore\HidDevice.dll
2016-10-14 12:04 - 2011-10-11 16:32 - 00054784 _____ () C:\Program Files (x86)\Genius\Manticore\KBHook1.dll
2016-10-17 08:32 - 2016-11-11 21:36 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2016-10-17 08:32 - 2016-11-11 21:36 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2016-10-17 08:32 - 2016-11-11 21:36 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2016-10-17 08:32 - 2016-12-01 10:15 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2016-10-17 08:32 - 2016-11-11 21:36 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2016-10-17 08:32 - 2016-11-11 21:37 - 00123856 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 01682760 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2016-12-01 18:04 - 2016-11-11 21:36 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2016-12-01 18:04 - 2016-11-11 21:37 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2016-12-01 18:04 - 2016-11-11 21:36 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2016-10-17 08:32 - 2016-11-11 21:38 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-10-17 08:32 - 2016-12-01 10:15 - 00021312 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2016-12-01 18:04 - 2016-11-11 21:36 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2016-12-01 18:04 - 2016-11-11 21:38 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2016-10-17 08:32 - 2016-11-11 21:38 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2016-10-17 08:32 - 2016-11-11 21:39 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2016-10-17 08:32 - 2016-12-01 10:15 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2016-10-17 08:32 - 2016-11-11 21:38 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-10-17 08:32 - 2016-12-01 10:15 - 00025424 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2016-10-17 08:32 - 2016-11-11 21:38 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2016-10-17 08:32 - 2016-11-11 21:38 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2016-10-17 08:32 - 2016-11-11 21:38 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2016-10-17 08:32 - 2016-11-11 21:39 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2016-10-17 08:32 - 2016-11-11 21:39 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-10-17 08:32 - 2016-11-11 21:38 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2016-10-17 08:32 - 2016-11-11 21:39 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00246592 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-10-17 08:32 - 2016-11-11 21:37 - 00241104 _____ () C:\Program Files (x86)\Dropbox\Client\_jpegtran.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2016-10-17 08:32 - 2016-11-11 21:39 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2016-10-17 08:32 - 2016-12-01 10:16 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2016-10-17 08:32 - 2016-12-01 10:15 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-10-17 08:32 - 2016-12-01 10:16 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd
2016-10-17 08:32 - 2016-12-01 10:16 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd
2016-10-17 08:32 - 2016-11-11 21:39 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2016-10-17 08:32 - 2016-12-01 10:16 - 00022352 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2016-12-01 18:04 - 2016-11-11 21:35 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2016-12-01 18:04 - 2016-12-01 10:15 - 00031568 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2016-12-01 18:04 - 2016-12-01 10:05 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2016-12-01 18:04 - 2016-12-01 10:15 - 00084280 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2016-12-01 18:04 - 2016-12-01 10:15 - 01826096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2016-10-17 08:32 - 2016-11-11 21:37 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00531248 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 03928880 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 01972528 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00133424 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00224056 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2016-10-17 08:32 - 2016-12-01 10:15 - 00020288 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32._winffi_user32.pyd
2016-12-01 18:04 - 2016-11-11 21:42 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2016-12-01 18:04 - 2016-11-11 21:42 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2016-12-01 18:04 - 2016-12-01 10:15 - 00042808 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00171320 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2016-10-17 08:32 - 2016-11-11 21:39 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2016-10-17 08:32 - 2016-12-01 10:15 - 00037192 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2016-10-17 08:32 - 2016-12-01 10:16 - 00024904 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2016-12-01 18:04 - 2016-12-01 10:15 - 00546096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2016-11-17 23:33 - 2016-11-17 23:33 - 01383616 _____ () C:\Users\Ententeak\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_4\ClientTelemetry.dll
2016-12-07 08:21 - 2016-12-06 04:55 - 01885304 _____ () C:\Users\Ententeak\AppData\Local\Vivaldi\Application\1.6.687.3\libglesv2.dll
2016-12-07 08:21 - 2016-12-06 04:55 - 00086648 _____ () C:\Users\Ententeak\AppData\Local\Vivaldi\Application\1.6.687.3\libegl.dll
2016-10-14 05:05 - 2016-12-01 21:23 - 00655136 _____ () Z:\Steam\SDL2.dll
2016-10-14 05:05 - 2016-12-06 01:53 - 02322720 _____ () Z:\Steam\video.dll
2016-10-14 05:05 - 2016-09-01 02:02 - 04969248 _____ () Z:\Steam\v8.dll
2016-10-14 05:05 - 2016-01-27 08:49 - 02549760 _____ () Z:\Steam\libavcodec-56.dll
2016-10-14 05:05 - 2016-01-27 08:49 - 00491008 _____ () Z:\Steam\libavformat-56.dll
2016-10-14 05:05 - 2016-01-27 08:49 - 00332800 _____ () Z:\Steam\libavresample-2.dll
2016-10-14 05:05 - 2016-01-27 08:49 - 00442880 _____ () Z:\Steam\libavutil-54.dll
2016-10-14 05:05 - 2016-01-27 08:49 - 00485888 _____ () Z:\Steam\libswscale-3.dll
2016-10-14 05:05 - 2016-09-01 02:02 - 01195296 _____ () Z:\Steam\icuuc.dll
2016-10-14 05:05 - 2016-09-01 02:02 - 01563936 _____ () Z:\Steam\icui18n.dll
2016-10-14 05:05 - 2016-12-06 01:53 - 00838432 _____ () Z:\Steam\bin\chromehtml.DLL
2016-10-14 05:05 - 2016-07-04 23:17 - 00266560 _____ () Z:\Steam\openvr_api.dll
2016-11-03 15:18 - 2016-12-05 17:21 - 67304736 _____ () Z:\Steam\bin\cef\cef.win7\libcef.dll
2016-10-14 05:05 - 2016-12-06 01:53 - 00388384 _____ () Z:\Steam\steam.dll
2016-10-14 05:05 - 2015-09-25 00:52 - 00119208 _____ () Z:\Steam\winh264.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 12:47 - 2016-10-13 18:07 - 00001132 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1                   activate.adobe.com
127.0.0.1                   practivate.adobe.com
127.0.0.1                   lmlicenses.wip4.adobe.com
127.0.0.1                   lm.licenses.adobe.com
127.0.0.1                   na1r.services.adobe.com
127.0.0.1                   hlrcv.stage.adobe.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-223685388-1953928164-1116823234-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ententeak\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 93.89.159.2 - 82.208.56.105
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run: => "Logitech Download Assistant"
HKLM\...\StartupApproved\Run: => "MBCfg64"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Sound Blaster Cinema 2"
HKLM\...\StartupApproved\Run32: => "Super Charger"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => LPort=139
FirewallRules: [holoshellapp-In-TCP] => %systemroot%\holoshell\holoshellapp.exe
FirewallRules: [holoshellapp-Out-TCP] => %systemroot%\holoshell\holoshellapp.exe
FirewallRules: [compositor-In-TCP] => LPort=48862
FirewallRules: [compositor-Out-TCP] => LPort=48862
FirewallRules: [{27B9DBC8-63C7-41A2-AA5D-8000C6D549FF}] => C:\Users\Ententeak\AppData\Local\Vivaldi\Application\vivaldi.exe
FirewallRules: [{A3FE72C6-0669-4207-B2F0-C36A8ECD0150}] => Z:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{C64E281C-49B7-4F5E-9C37-6139256B09FB}] => Z:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{7C3D1742-D735-4B0E-8085-18E73F510F2B}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{8FD7DEB8-6012-42AF-AC65-14C372EB20CD}] => Z:\Steam\steamapps\common\Digimon Masters Online - Steam\DMLauncher.exe
FirewallRules: [{9538F37F-2942-4083-BF10-25EBD2EFF0D1}] => Z:\Steam\steamapps\common\Digimon Masters Online - Steam\DMLauncher.exe
FirewallRules: [{89CB0525-08D5-40FD-8494-CF0459625FB9}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7C58967D-8636-436D-8DF7-027E83120DA7}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{4843AE9F-9C47-42C4-A79D-3D19A002AA65}] => Z:\Steam\steamapps\common\DOOM\DOOMx64.exe
FirewallRules: [{BCFC6F0E-1344-43EB-9BB6-7D56CCA0C4FE}] => Z:\Steam\steamapps\common\DOOM\DOOMx64.exe
FirewallRules: [{CEFEBC5E-8A1D-44BF-8CE2-4935292DFADE}] => Z:\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{B25BEA86-3D56-4FFE-BCE7-22DA63D57BC3}] => Z:\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{6AACE463-3679-414E-9D27-CF63298640DD}] => Z:\Steam\steamapps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{F3CCD000-87C3-4A73-810B-767B6D26B123}] => Z:\Steam\steamapps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{FABBAE32-4E6E-4679-B9D7-8348177C7FD5}] => Z:\Steam\steamapps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{6DBD38EB-EC79-44E1-8970-254F9D4EB539}] => Z:\Steam\steamapps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{02A8F5D9-1855-4B83-A16C-E0465C0C0013}] => Z:\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{BF84EA46-4B2C-4D54-B894-BDDA68CDA112}] => Z:\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{05E72882-4B16-4C56-878C-2C71FADBC2BC}] => Z:\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{3A86243A-2CE2-478F-86F9-3D961C659668}] => Z:\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{ABDE850C-C394-425F-8C60-9A9A73575B9B}] => Z:\Steam\Steam.exe
FirewallRules: [{F6799615-F5BD-4418-BCD1-431B2AE48BAF}] => Z:\Steam\Steam.exe
FirewallRules: [{5FA79159-35E1-4807-96C4-4AEB12AD6509}] => Z:\Steam\steamapps\common\Blender\blender.exe
FirewallRules: [{C0785CCE-4477-44B1-99DF-B4BD61367C87}] => Z:\Steam\steamapps\common\Blender\blender.exe
FirewallRules: [{0DA532D0-DD21-4CE8-8F38-E5DFCF41606C}] => Z:\Steam\steamapps\common\Warhammer End Times Vermintide\launcher\launcher.exe
FirewallRules: [{6645C917-E77F-4827-8E6D-1BBB507FD202}] => Z:\Steam\steamapps\common\Warhammer End Times Vermintide\launcher\launcher.exe
FirewallRules: [{B8F78D5E-2A9B-4B6F-A08A-375234F84353}] => Z:\Steam\steamapps\common\Warhammer End Times Vermintide\binaries\vermintide.exe
FirewallRules: [{D24462B7-1D05-44CF-9169-C2D7736F746F}] => Z:\Steam\steamapps\common\Warhammer End Times Vermintide\binaries\vermintide.exe
FirewallRules: [{CD6FF985-172A-4C4B-AA42-70EF1A1259D0}] => Z:\Steam\steamapps\common\Warhammer 40,000 - Eternal Crusade\EternalCrusadeClient.exe
FirewallRules: [{145DE2FA-14B4-48F8-BE45-EF04897F5C68}] => Z:\Steam\steamapps\common\Warhammer 40,000 - Eternal Crusade\EternalCrusadeClient.exe
FirewallRules: [{0069A18B-704B-4556-82BA-8AE264AE78EC}] => Z:\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{F9CF3B69-22EC-4FAA-B3AE-3ED94B25B820}] => Z:\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{331BA380-75DD-4822-B009-3BA43D65F994}] => Z:\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe
FirewallRules: [{9C7BF2DE-A703-47F0-8827-DE5A59B3446F}] => Z:\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe
FirewallRules: [{34AD1784-2AB9-4B87-A3B2-6829FA4EBFE6}] => Z:\Steam\steamapps\common\Spore\SporebinEP1\SporeApp.exe
FirewallRules: [{04CF15C2-D357-40EC-8887-C7C9BE054EEC}] => Z:\Steam\steamapps\common\Spore\SporebinEP1\SporeApp.exe
FirewallRules: [{18EA3C5D-F6D8-4148-A9D6-28DC50DD26F6}] => Z:\Steam\steamapps\common\Spore\runme.exe
FirewallRules: [{1DE553A9-D6CC-40E6-908F-0E6FE3AB54BA}] => Z:\Steam\steamapps\common\Spore\runme.exe
FirewallRules: [{98514BE4-4A74-4FEE-8192-426A5895D9E1}] => D:\Games\The Crew (Worldwide)\TheCrew.exe
FirewallRules: [{73D85584-9D53-4494-8C19-BF6FF1F41F34}] => D:\Games\The Crew (Worldwide)\TheCrew.exe
FirewallRules: [{77E24A01-4E25-4698-81A2-92B9907780AC}] => Z:\Steam\steamapps\common\MiniMetro\MiniMetro.exe
FirewallRules: [{05E390C7-9D2A-4D2D-81B1-73ECEE230B0B}] => Z:\Steam\steamapps\common\MiniMetro\MiniMetro.exe
FirewallRules: [{48ED96DF-F053-4A17-90E1-EEC1D307D1B4}] => Z:\Steam\steamapps\common\DiRT 3 Complete Edition\dirt3_game.exe
FirewallRules: [{F96174B2-DC0A-48DD-B01F-F7C5F824FBBC}] => Z:\Steam\steamapps\common\DiRT 3 Complete Edition\dirt3_game.exe
FirewallRules: [{47825082-251B-439C-97FE-3EAFA1199286}] => C:\Program Files (x86)\Google\Chrome Remote Desktop\55.0.2883.17\remoting_host.exe
FirewallRules: [{39DB6A36-53FB-4FF4-BCB3-606BF0D00721}] => Z:\Steam\steamapps\common\Path of Exile\PathOfExile_x64Steam.exe
FirewallRules: [{AA7BF21D-E910-44B7-A2B1-73A1F8C29981}] => Z:\Steam\steamapps\common\Path of Exile\PathOfExile_x64Steam.exe
FirewallRules: [{DA1DA75C-146C-441C-A4DF-1865EFB52D9E}] => Z:\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{1A2CB541-7F25-4941-9033-A7B5C93460ED}] => Z:\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{FA13512A-0FF7-4BF1-AAC6-419B3935D7DA}] => Z:\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{BFA71869-D894-4692-B813-ED0B110177BC}] => Z:\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{725B1392-1521-4762-9C3C-E1DAFB990627}] => Z:\Steam\steamapps\common\Skyrim\skse_steam_boot.exe
FirewallRules: [{23E18DBA-275F-4637-A819-2DDA1656427B}] => Z:\Steam\steamapps\common\Skyrim\skse_steam_boot.exe
FirewallRules: [{F7688489-0479-422D-BB51-5110AF27414D}] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{720FD781-7ACE-4008-8DF9-47A8CE6C09CB}] => Z:\Steam\steamapps\common\MortalKombat_KompleteEdition\DiscContentPC\MKKE.exe
FirewallRules: [{F34199AE-6B7E-4FC9-9A6F-C3EF6FDFCFE6}] => Z:\Steam\steamapps\common\MortalKombat_KompleteEdition\DiscContentPC\MKKE.exe
FirewallRules: [{4F094F51-1A1E-4158-87A0-CDC459A600A9}] => Z:\Steam\steamapps\common\MortalKombat_KompleteEdition\DiscContentPC\MKLauncher.exe
FirewallRules: [{984DDCBC-3D96-4841-BD6C-BDD02C32F2DA}] => Z:\Steam\steamapps\common\MortalKombat_KompleteEdition\DiscContentPC\MKLauncher.exe
FirewallRules: [{65E95300-1748-47B5-8369-EFE445B1B58F}] => Z:\Steam\steamapps\common\Heroine's Quest\Heroine's Quest.exe
FirewallRules: [{EBD215C8-E95B-45D6-9342-D8EE915C95B7}] => Z:\Steam\steamapps\common\Heroine's Quest\Heroine's Quest.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (12/08/2016 10:12:28 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: microsoftedgecp.exe, verze: 11.0.14971.1000, časové razítko: 0xb30fea27
Název chybujícího modulu: iertutil.dll, verze: 11.0.14971.1000, časové razítko: 0xecb0569e
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000004a424
ID chybujícího procesu: 0x2158
Čas spuštění chybující aplikace: 0x01d2513332d0204c
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\iertutil.dll
ID zprávy: 05eb572f-f060-4eb4-a002-3cb26b051fa5
Úplný název chybujícího balíčku: Microsoft.MicrosoftEdge_39.14971.1000.0_neutral__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: MicrosoftEdge

Error: (12/08/2016 10:12:25 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: microsoftedgecp.exe, verze: 11.0.14971.1000, časové razítko: 0xb30fea27
Název chybujícího modulu: iertutil.dll, verze: 11.0.14971.1000, časové razítko: 0xecb0569e
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000004a424
ID chybujícího procesu: 0x2668
Čas spuštění chybující aplikace: 0x01d25133312aa86c
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\iertutil.dll
ID zprávy: 7394ef9c-56ee-4d0c-adb9-3b28c453d8d7
Úplný název chybujícího balíčku: Microsoft.MicrosoftEdge_39.14971.1000.0_neutral__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: MicrosoftEdge

Error: (12/08/2016 08:16:14 AM) (Source: DbxSvc) (EventID: 320) (User: )
Description: Failed to connect to the driver: (-2147024894) Systém nemůže nalézt uvedený soubor.

Error: (12/07/2016 08:00:02 AM) (Source: DbxSvc) (EventID: 320) (User: )
Description: Failed to connect to the driver: (-2147024894) Systém nemůže nalézt uvedený soubor.

Error: (12/06/2016 11:01:07 AM) (Source: DbxSvc) (EventID: 320) (User: )
Description: Failed to connect to the driver: (-2147024894) Systém nemůže nalézt uvedený soubor.

Error: (12/05/2016 08:58:03 PM) (Source: DbxSvc) (EventID: 320) (User: )
Description: Failed to connect to the driver: (-2147024894) Systém nemůže nalézt uvedený soubor.

Error: (12/05/2016 08:53:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: microsoftedgecp.exe, verze: 11.0.14971.1000, časové razítko: 0xb30fea27
Název chybujícího modulu: iertutil.dll, verze: 11.0.14971.1000, časové razítko: 0xecb0569e
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000004a424
ID chybujícího procesu: 0x1ff4
Čas spuštění chybující aplikace: 0x01d24f314ddf384b
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\iertutil.dll
ID zprávy: 19dd6ab2-875d-4a4f-aa30-e27f287add95
Úplný název chybujícího balíčku: Microsoft.MicrosoftEdge_39.14971.1000.0_neutral__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: MicrosoftEdge

Error: (12/05/2016 08:53:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: microsoftedgecp.exe, verze: 11.0.14971.1000, časové razítko: 0xb30fea27
Název chybujícího modulu: iertutil.dll, verze: 11.0.14971.1000, časové razítko: 0xecb0569e
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000004a424
ID chybujícího procesu: 0x2bf0
Čas spuštění chybující aplikace: 0x01d24f314c744b5e
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\iertutil.dll
ID zprávy: 6618f7f3-844a-4bed-8912-065ae2824543
Úplný název chybujícího balíčku: Microsoft.MicrosoftEdge_39.14971.1000.0_neutral__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: MicrosoftEdge

Error: (12/05/2016 08:34:06 PM) (Source: DbxSvc) (EventID: 320) (User: )
Description: Failed to connect to the driver: (-2147024894) Systém nemůže nalézt uvedený soubor.

Error: (12/04/2016 06:40:34 PM) (Source: DbxSvc) (EventID: 320) (User: )
Description: Failed to connect to the driver: (-2147024894) Systém nemůže nalézt uvedený soubor.


System errors:
=============
Error: (12/08/2016 01:13:01 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Služba platformy připojených zařízení byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (12/08/2016 12:39:27 PM) (Source: DCOM) (EventID: 10010) (User: ENTENTEAKOVO)
Description: Server {F94358B1-E9AE-4D5C-AF66-CE50E67803C7} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/08/2016 12:37:26 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Služba platformy připojených zařízení byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (12/08/2016 12:37:26 PM) (Source: DCOM) (EventID: 10010) (User: ENTENTEAKOVO)
Description: Server {F94358B1-E9AE-4D5C-AF66-CE50E67803C7} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/08/2016 12:35:26 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Služba platformy připojených zařízení byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (12/08/2016 10:53:46 AM) (Source: DCOM) (EventID: 10010) (User: ENTENTEAKOVO)
Description: Server {F94358B1-E9AE-4D5C-AF66-CE50E67803C7} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/08/2016 10:51:46 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Služba platformy připojených zařízení byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (12/08/2016 10:51:46 AM) (Source: DCOM) (EventID: 10010) (User: ENTENTEAKOVO)
Description: Server {F94358B1-E9AE-4D5C-AF66-CE50E67803C7} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/08/2016 10:49:46 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Služba platformy připojených zařízení byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (12/08/2016 10:37:46 AM) (Source: DCOM) (EventID: 10010) (User: ENTENTEAKOVO)
Description: Server {F94358B1-E9AE-4D5C-AF66-CE50E67803C7} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===================================
  Date: 2016-12-08 08:16:14.528
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-08 08:16:14.522
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-08 08:16:14.517
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-08 08:16:14.512
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-07 08:00:02.753
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-07 08:00:02.751
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-07 08:00:02.748
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-07 08:00:02.664
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-06 11:01:07.637
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-12-06 11:01:07.634
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: AMD FX-8320E Eight-Core Processor 
Percentage of memory in use: 32%
Total physical RAM: 12236.29 MB
Available physical RAM: 8198.9 MB
Total Virtual: 14092.29 MB
Available Virtual: 9421.55 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.24 GB) (Free:74.6 GB) NTFS
Drive d: () (Fixed) (Total:345.57 GB) (Free:182.95 GB) NTFS
Drive e: () (Fixed) (Total:488.28 GB) (Free:179.27 GB) NTFS
Drive f: (Users) (Fixed) (Total:71.01 GB) (Free:69.35 GB) NTFS
Drive v: (Virtualbox) (Fixed) (Total:97.66 GB) (Free:63.68 GB) NTFS
Drive z: (Teakoidek2) (Fixed) (Total:1792 GB) (Free:1185.1 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 111.8 GB) (Disk ID: 024794C0)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C511A935)
Partition 1: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS)
Partition 3: (Active) - (Size=345.6 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 1863 GB) (Disk ID: 72407CB5)
Partition 1: (Not Active) - (Size=1792 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=71 GB) - (Type=OF Extended)

==================== End of Addition.txt ============================