Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-03-2017
Ran by BlackAngel (11-04-2017 19:03:48)
Running from C:\Users\BlackAngel\Desktop
Windows 10 Pro Version 1607 (X64) (2016-12-27 14:30:04)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2692502047-4175476859-819210668-500 - Administrator - Disabled)
BlackAngel (S-1-5-21-2692502047-4175476859-819210668-1000 - Administrator - Enabled) => C:\Users\BlackAngel
DefaultAccount (S-1-5-21-2692502047-4175476859-819210668-503 - Limited - Disabled)
Guest (S-1-5-21-2692502047-4175476859-819210668-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2692502047-4175476859-819210668-1005 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Endpoint Security 6.4.2014.2 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Endpoint Security 6.4.2014.2 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personálny firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated)
Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
AirDroid 3.0.2 (HKLM-x32\...\AirDroid) (Version: 3.0.2 - Sand Studio)
Aktualizácie NVIDIA 23.23.30.0 (Version: 23.23.30.0 - NVIDIA Corporation) Hidden
Allway Sync version 16.0.1 (HKLM\...\Allway Sync_is1) (Version:  - Botkind Inc)
Ansel (Version: 378.49 - NVIDIA Corporation) Hidden
Any Video Converter 5.7.6 (HKLM-x32\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
AnyDVD (HKLM-x32\...\AnyDVD) (Version: 7.1.3.0 - SlySoft)
Application Insights Tools for Visual Studio 2015 (x32 Version: 3.3 - Microsoft Corporation) Hidden
Arduino (HKLM-x32\...\Arduino) (Version: 1.8.1 - Arduino LLC)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.13 - Michael Tippach)
Asistent pri inovácii na Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17364 - Microsoft Corporation)
AutoCAD 2013 – Čeština (Czech) (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 - English (HKLM\...\AutoCAD 2013 - English) (Version: 19.0.55.0 - Autodesk)
AutoCAD 2013 - English (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 Language Pack – Čeština (Czech) (HKLM\...\AutoCAD 2013 Language Pack – Čeština (Czech)) (Version: 19.0.55.0 - Autodesk)
AutoCAD 2013 Language Pack – Čeština (Czech) (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 Language Pack - English (Version: 19.0.55.0 - Autodesk) Hidden
Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.0.84.0 - Autodesk)
Autodesk Content Service (x32 Version: 3.0.84.0 - Autodesk) Hidden
Autodesk Content Service Language Pack (x32 Version: 3.0.84.0 - Autodesk) Hidden
Autodesk Design Review 2013 (HKLM-x32\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.)
Autodesk Design Review 2013 (x32 Version: 13.0.0.82 - Autodesk, Inc.) Hidden
Autodesk Inventor Fusion 2013 (HKLM\...\Autodesk Inventor Fusion 2013) (Version: 2.0.0.206 - Autodesk, Inc.)
Autodesk Inventor Fusion 2013 (Version: 2.0.0.206 - Autodesk, Inc.) Hidden
Autodesk Inventor Fusion plug-in for AutoCAD 2013 (HKLM\...\Autodesk Inventor Fusion plug-in for AutoCAD 2013) (Version: 0.2.0.230 - Autodesk)
Autodesk Inventor Fusion plug-in for AutoCAD 2013 (Version: 0.2.0.230 - Autodesk) Hidden
Autodesk Inventor Fusion plug-in language pack for AutoCAD 2013 (Version: 0.2.0.230 - Autodesk) Hidden
Autodesk Material Library 2013 (HKLM-x32\...\{117EBEEB-5DB0-43C8-9FD6-DD583DB152DD}) (Version: 3.0.13 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2013 (HKLM-x32\...\{606E12B9-641F-4644-A22A-FF38AE980AFD}) (Version: 3.0.13 - Autodesk)
Autodesk Sync (HKLM\...\{EE5F74BC-5CD5-4EF2-86BA-81E6CF46A18F}) (Version: 3.5.24.0 - Autodesk, Inc.)
Azure AD Authentication Connected Service (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden
Bandicam (HKLM-x32\...\Bandicam) (Version: 1.8.5.303 - Bandisoft.com)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - Bandisoft.com)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.4.0.0 - Electronic Arts)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB)
BEHRINGER USB AUDIO DRIVER (HKLM\...\USB_AUDIO_DEusb-audio.deBehringer2902) (Version:  - )
Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.63.1070 - AB Team, d.o.o.)
BusinessCards MX (HKLM-x32\...\{0D5B5ED2-3E38-4585-B1F3-64B2A9EA95D6}_is1) (Version: 4.92 - MOJOSOFT)
Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (x32 Version:  - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch (x32 Version:  - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version:  - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version:  - ) Hidden
Carmageddon Max Damage (HKLM-x32\...\Carmageddon Max Damage_is1) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 5.28 - Piriform)
CLICKBIOSII (HKLM-x32\...\{EBCB111F-4907-4B28-BD03-F5BD901106D2}_is1) (Version: 1.0.123 - MSI)
CloneDVD2 (HKLM-x32\...\CloneDVD2) (Version: 2.9.3.0 - Elaborate Bytes)
ConvertHelper 3.1.1 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1) (Version:  - DownloadHelper)
Counter-Strike (HKLM-x32\...\Steam App 10) (Version:  - Valve)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version:  - Valve)
CPUID CPU-Z 1.72 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
Cut2D Desktop 8.0 (HKLM\...\Cut2D Desktop) (Version: 8.0 - Vectric)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.45.4.0316 - DT Soft Ltd)
Dino-Lite 3xx&4xx Driver (HKLM-x32\...\{75438C0E-9925-412E-AD85-D0E71C6CE2ED}) (Version: 5.7.26.0 - AnMo Electronics Corporation)
Discord (HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
Discord (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
Discord (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
Dotfuscator and Analytics Community Edition 5.18.1 (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden
DSound GT Player (DEMO) (HKLM-x32\...\{809D9B11-E616-4D64-ACFE-55A86A4DAF9D}) (Version:  - )
EAGLE 6.5.0 (HKLM-x32\...\EAGLE 6.5.0) (Version: 6.5.0 - CadSoft Computer GmbH)
EaseUS Data Recovery Wizard 9.0 (HKLM\...\EaseUS Data Recovery Wizard 9.0_is1) (Version:  - EaseUS)
EaseUS Partition Master 9.3.0 (HKLM-x32\...\EaseUS Partition Master_is1) (Version:  - EaseUS)
Entity Framework 6.1.3 Tools  for Visual Studio 2015 (HKLM-x32\...\{1A8A9739-BAD7-491F-B5B9-A79A2B965422}) (Version: 14.0.40302.0 - Microsoft Corporation)
EVE Online (HKLM-x32\...\{1D862616-AAC9-491F-9CCD-EBFE10FF01AB}) (Version: 3.0.0 - CCP Games Ltd.)
EVE Online (HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\{4374ce41-47c4-4a66-988e-08bc3390b365}) (Version: 1.0.0 - CCP)
EVE Online (HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\{d1927358-7a99-4a8d-b0c2-db2f550dedeb}) (Version: 1.0.0 - CCP)
EVE Online (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\{4374ce41-47c4-4a66-988e-08bc3390b365}) (Version: 1.0.0 - CCP)
EVE Online (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\{d1927358-7a99-4a8d-b0c2-db2f550dedeb}) (Version: 1.0.0 - CCP)
EVE Online (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\{4374ce41-47c4-4a66-988e-08bc3390b365}) (Version: 1.0.0 - CCP)
EVE Online (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\{d1927358-7a99-4a8d-b0c2-db2f550dedeb}) (Version: 1.0.0 - CCP)
EveHQ (HKLM-x32\...\EveHQ) (Version:  - )
EVEMon (HKLM-x32\...\EVEMon) (Version: 3.0.3 - EVEMon Development Team)
Evolve (HKLM\...\{670B1B49-9FD3-4827-9B41-471EFF580AA8}) (Version: 1.8.11 - Echobit, LLC)
Factorio version 0.13.20 (HKLM\...\Factorio_is1) (Version:  - )
Farming Simulator 15 (HKLM-x32\...\Farming Simulator 15_is1) (Version:  - )
Farming Simulator 17 (HKLM\...\ZmFybWluZ3NpbXVsYXRvcjE3_is1) (Version: 1 - )
Farming Simulator 2011 (HKLM-x32\...\Steam App 90200) (Version:  - GIANTS Software)
Farming Simulator 2013 (HKLM-x32\...\Steam App 220260) (Version:  - Giants Software)
FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production)
ffdshow x64 v1.3.4515 [2013-06-12] (HKLM\...\ffdshow64_is1) (Version: 1.3.4515.0 - )
FlashGet3.7 (HKLM-x32\...\FlashGet3.7) (Version: 3.7.0.1203 - hxxp://www.FlashGet.com)
Fotogaléria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 8.1.0.1013 - Foxit Software Inc.)
Fraps (HKLM-x32\...\Fraps) (Version:  - )
FREE Wave Editor v2010.3 (HKLM-x32\...\{788D179C-F011-485C-8E02-9C908B2BB4EF}) (Version: 17.20.3000 - Code-it Software, Inc.)
FT_Prog (HKLM-x32\...\FT_Prog) (Version: 3.0.56.245 - Future Technology Devices International Ltd.)
Glyph (HKLM-x32\...\Glyph) (Version:  - Trion Worlds, Inc.)
Google Drive (HKLM-x32\...\{A1238426-ECDF-4639-BE2F-8D12A97AE23C}) (Version: 2.34.5075.1619 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - )
High-Definition Video Playback 10 (x32 Version: 7.0.11400.29.0 - Nero AG) Hidden
HiSuite (HKLM-x32\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd)
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version:  - )
HP LaserJet Professional M1210 MFP Series Fax Installer (HKLM\...\{E65099C4-9110-4C31-BD03-5C17EFB5FE92}) (Version: 1.1.0 - HP)
HP LaserJet Professional M1210 MFP Series Toolbox (HKLM\...\{43C4BDBB-0FA3-4E79-8E9F-6ACF0F2FC0A4}) (Version: 1.0.12 - Hewlett-Packard)
HP LaserJet Toolbox (HKLM\...\{1FA6376A-3120-45DA-8686-96DEFC8A0513}) (Version: 2.0.0 - Hewlett-Packard)
HP USB Disk Storage Format Tool (HKLM-x32\...\{0E0DF90C-D0BA-4C89-9262-AD78D1A3DE51}) (Version:  - )
hppLaserJetService (x32 Version: 001.003.000145 - Hewlett-Packard) Hidden
hppM1130M1210SeriesLaserJetService (x32 Version: 001.003.00073 - Hewlett-Packard) Hidden
hppusgM1130M1210Series (x32 Version: 1.0.0.2 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
IceWarp Desktop Client (HKLM-x32\...\{339643EC-18D8-48EB-99F2-80D806D11008}) (Version: 6.0.21372.0 - IceWarp Ltd.)
IIS 10.0 Express (HKLM\...\{5984D8DA-C1AF-4284-9C88-D7150425B315}) (Version: 10.0.1734 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version:  - )
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version:  - )
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1026 - Intel Corporation)
Intel® SDK for OpenCL* - CPU Only Runtime Package 2013 (HKLM\...\{E1AD72DE-9FF3-4E66-8A0E-34778EDBDB57}) (Version: 3.0.1.15216 - Intel Corporation)
Intel® SDK for OpenCL* Applications 2013 (HKLM\...\{ECAD1063-CF2B-45F3-5487-A8B970013CFB}) (Version: 3.0.0.81147 - Intel Corporation)
Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
LazyCam 3.00.2 (HKLM-x32\...\LazyCam 3.00.2) (Version: 3.00.2 - ArtSoft Inc.)
LEGO Digital Designer (HKLM-x32\...\New LEGO Digital Designer) (Version:  - LEGO A/S)
Logitech Gaming Software 8.57 (HKLM\...\Logitech Gaming Software) (Version: 8.57.145 - Logitech Inc.)
Mach3 (HKLM-x32\...\Mach3) (Version: 3.043.066 - ArtSoft USA)
Malwarebytes verzia 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
marvell 91xx driver (HKLM-x32\...\MagniDriver) (Version: 1.1.0.6 - Marvell)
MEGAsync 1.0.15 (HKLM-x32\...\MEGAsync) (Version: 1.0.15 - Mega Limited)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{B941AFB4-8851-33A1-9E72-0C33D463C41C}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{3D3CEBE6-40EA-4C48-97FD-73828281AB4A}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Version Manager (x64) 1.0.0-beta5 (HKLM\...\{c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738}) (Version: 1.0.10609.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.23107 - Microsoft Corporation)
Microsoft Office 2013 Professional Plus (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50905.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{C79A7EAB-9D6F-4072-8A6D-F8F54957CD93}) (Version: 10.0.1600.22 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities  (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client  (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Transact-SQL ScriptDom  (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 T-SQL Language Service  (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (14.0.50616.0) (HKLM-x32\...\{58246C80-3941-4B69-AE31-264644E2ADB8}) (Version: 14.0.50616.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{68BA34E8-9B9D-4A74-83F0-7D366B532D75}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{718FFB65-F6E4-4D62-861F-ED10ED32C936}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Community 2015 (HKLM-x32\...\{50b32652-69d2-4b93-9316-edcd12067b8b}) (Version: 14.0.23107.10 - Microsoft Corporation)
Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation)
MotoGP(TM)13 (x32 Version: 1.00.0000 - Milestone) Hidden
Movavi Video Converter 3D 2 (HKLM-x32\...\Movavi Video Converter 3D 2) (Version: 2.0.0 - Movavi)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 51.0.1 (x86 sk) (HKLM-x32\...\Mozilla Firefox 51.0.1 (x86 sk)) (Version: 51.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 51.0.1.6234 - Mozilla)
Mozilla Thunderbird 24.0 (x86 sk) (HKLM-x32\...\Mozilla Thunderbird 24.0 (x86 sk)) (Version: 24.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Multi-Device Hybrid Apps using C# - Templates - ENU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
mydlink Cloud Sync 2.37.0.19922 (HKLM-x32\...\{ce2cc5f8-b6bc-4d4c-9d9d-6d1809325d6b}_is1) (Version:  - D-Link)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Native Instruments - Rig Kontrol 2 Driver (HKLM-x32\...\Native Instruments - Rig Kontrol 2 Driver) (Version:  - )
Native Instruments Guitar Rig 2 (HKLM-x32\...\Native Instruments Guitar Rig 2) (Version:  - )
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version:  - )
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.0.11100.10.100 - Nero AG)
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.0.13100 - Nero AG)
No Mans Sky (HKLM-x32\...\No Mans Sky_is1) (Version:  - )
NVIDIA 3D Vision radič ovládača 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.4.0.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.4.0.70 - NVIDIA Corporation)
NVIDIA Grafický ovládač 378.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 378.49 - NVIDIA Corporation)
NVIDIA Ovládač 3D Vision 378.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 378.49 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.34.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.21 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 2.3.16.0 - NVIDIA Corporation) Hidden
NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera 12.17 (HKLM-x32\...\Opera 12.17.1863) (Version: 12.17.1863 - Opera Software ASA)
Opera Stable 43.0.2442.1144 (HKLM-x32\...\Opera 43.0.2442.1144) (Version: 43.0.2442.1144 - Opera Software)
Oracle VM VirtualBox 5.0.20 (HKLM\...\{8209969B-9A31-4021-B0D8-E6F719F7F995}) (Version: 5.0.20 - Oracle Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.4.6.33873 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 378.49 (Version: 378.49 - NVIDIA Corporation) Hidden
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.8 - Pando Networks Inc.)
Phoning Home (HKLM-x32\...\Phoning Home_is1) (Version:  - )
Pinnacle Studio 15 (HKLM-x32\...\{1362E602-9625-42D3-B57F-CDA9D26F9DA8}) (Version: 15.0.0.7593 - Pinnacle Systems)
Portal 2 (HKLM-x32\...\Steam App 620) (Version:  - Valve)
PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
PremiumSoft Navicat Premium 11.0 (HKLM-x32\...\PremiumSoft Navicat Premium_is1) (Version: 11.0.8 - PremiumSoft CyberTech Ltd.)
Prerequisites for SSDT  (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation)
ProfiCAD 8.3 (HKLM-x32\...\ProfiCAD_is1) (Version:  - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.43.321.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7687 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.9 - Rockstar Games)
Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
SafeInCloud Password Manager (HKLM-x32\...\{92BA2F38-EC10-4BB8-A503-A9443DA53FC6}) (Version: 17.1.1 - Andrey Shcherbakov)
Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.16044.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (x32 Version: 3.2.16044.2 - Samsung Electronics Co., Ltd.) Hidden
Samsung Story Album Viewer (HKLM-x32\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.)
Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Hidden
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.59.0 - Samsung Electronics Co., Ltd.)
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
SDFormatter (HKLM-x32\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version:  - Microsoft) Hidden
SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.)
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16021.15 - Samsung Electronics Co., Ltd.)
Smart Switch (x32 Version: 4.1.16021.15 - Samsung Electronics Co., Ltd.) Hidden
SpeechRedist (HKLM-x32\...\{8795CBED-55E2-4693-9F14-84EC446935BE}) (Version: 1.0.0 - Epic Games Inc.)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
System Requirements Lab for Intel (HKLM-x32\...\{1EBDF6D2-CEA0-484C-A23E-2DDAD7FD0DD0}) (Version: 4.5.22.0 - Husdawg, LLC)
Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.23102 - Microsoft Corporation) Hidden
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version:  - Valve)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.72365 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
THX TruStudio Pro (HKLM-x32\...\{4FA6CB9A-2972-4AAF-A36E-3C40FCC22395}) (Version: 1.04.03 - Creative Technology Limited)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 7.50 - C. Ghisler & Co.)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
Total Video Converter 3.50 (HKLM-x32\...\Total Video Converter 3.50_is1) (Version:  - EffectMatrix Inc.)
TotalRecovery Pro (HKLM-x32\...\{74449814-B2A1-41FB-890C-60CF2FD0DA96}) (Version: 7.00.0000 - FarStone Inc.)
TrackChecker version 1.0.13.455 (HKLM-x32\...\{73C4CE23-8D4C-4B67-B1DC-30533208DC3F}_is1) (Version: 1.0.13.455 - )
TypeScript Power Tool (x32 Version: 1.6.3.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.6.3.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 1.6.3.0 (HKLM-x32\...\{da31aa25-410a-4c1b-9ec0-114dd8dff786}) (Version: 1.6.23313.0 - Microsoft Corporation)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
UE4 Prerequisites (x64) (HKLM-x32\...\{31b49e1e-03f8-4a04-8faa-f6476d8fad02}) (Version: 1.0.10.0 - Epic Games, Inc.)
UE4 Prerequisites (x64) (Version: 1.0.10.0 - Epic Games, Inc.) Hidden
Unity Web Player (HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Unity Web Player (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Unity Web Player (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for  (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Update for Skype for Business 2015 (KB3172492) 64-Bit Edition (HKLM\...\{90150000-012B-041B-1000-0000000FF1CE}_Office15.PROPLUS_{33C0E06B-D047-480C-AE84-80A6B08062F7}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3178731) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{949C4091-F95D-418E-B215-27303F51F9AA}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3178731) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{949C4091-F95D-418E-B215-27303F51F9AA}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3178731) 64-Bit Edition (HKLM\...\{90150000-012B-041B-1000-0000000FF1CE}_Office15.PROPLUS_{949C4091-F95D-418E-B215-27303F51F9AA}) (Version:  - Microsoft)
Uplay (HKLM-x32\...\Uplay) (Version: 27.0 - Ubisoft)
Vectric Shell Extensions 1.2 (HKLM-x32\...\VectricThumbnailShellExt) (Version:  - Vectric)
Viber (HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\Viber) (Version: 5.2.0.2546 - Viber Media Inc)
Viber (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\Viber) (Version: 5.2.0.2546 - Viber Media Inc)
Viber (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\Viber) (Version: 5.2.0.2546 - Viber Media Inc)
VIVOTEK Installation Wizard 2 (HKLM-x32\...\InstallationWizard2) (Version: 1.3.0.2 - VIVOTEK, Inc.)
VIVOTEK ST7501 (HKLM-x32\...\ST7501) (Version: 1.11.0.9 - VIVOTEK, Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0) (Version: 1.0.37.0 - LunarG, Inc.)
WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
World of Guns: Gun Disassembly (HKLM-x32\...\Steam App 262410) (Version:  - Noble Empire Corp.)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
World of Warships (HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version:  - Wargaming.net)
World of Warships (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version:  - Wargaming.net)
World of Warships (HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version:  - Wargaming.net)
Zoner Photo Studio 16 (HKLM\...\ZonerPhotoStudio16_CZ_is1) (Version: 16.0.1.3 - ZONER software)
Zumas Revenge (HKLM-x32\...\{0B153CAB-792B-4CA2-B2A5-AB0BBAF2FFA9}) (Version: 1.0.5.600 - PopCap Games)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2692502047-4175476859-819210668-1000_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2692502047-4175476859-819210668-1000_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2692502047-4175476859-819210668-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2013\cs-CZ\acadficn.dll (Autodesk, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01CD2373-B5D8-4373-93DF-279163F53AFE} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {01F17920-6AB6-4AD9-BDA0-1040A232793D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-03-03] (Piriform Ltd)
Task: {074A08CB-1EBC-424C-94ED-93027DDA0BA3} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {0AEE78F7-32D1-40C8-ADCE-BBD37BDAB123} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {0DBEA43B-EF76-42AB-9451-1422CF83C921} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {0F22AF3C-E102-4A81-9396-1C90AE992DE5} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-02-23] (NVIDIA Corporation)
Task: {0FD0A457-7947-40ED-B872-7B93CB6925C9} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {1F4A1AAF-6A5B-4555-BF58-027A18DC4B00} - System32\Tasks\GoogleUpdateTaskMachineUA1d13056d8388836 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {204A9000-E116-46AC-BA80-58B79ECE7BCB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {29097319-C763-440E-BE95-0FD819753299} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe 
Task: {30F45B98-4F97-4110-95EA-AE0065661E69} - System32\Tasks\GoogleUpdateTaskMachineUA1d0f181ff29aa8a => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {36FB09DE-B6F6-42FF-A729-C33837FC4176} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe [2017-01-20] (Adobe Systems Incorporated)
Task: {3AB7B1DA-BCC5-4B29-86C2-E7DE176A02B9} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-02-23] (NVIDIA Corporation)
Task: {435EBD91-1857-4449-A22A-C44C0AA2EB67} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bf93e197337a => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {45BB6F33-7E14-45C0-92E5-0200EB4C4E6B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {45BDC9E9-86F7-4D35-8ED2-0B2C92F8508B} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {4FAAF429-19E3-4765-8ABD-477A32DE9B36} - System32\Tasks\GoogleUpdateTaskMachineCore1d13056d7ff00ce => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {50C4FDEB-6B66-47BC-BE98-DE541028F1A7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {57BD36F6-6BF0-4EC5-BEF5-9EED2EAE11FC} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe 
Task: {58BA764D-DEB6-4987-AA64-F27A6261141F} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe 
Task: {5FACB5DB-21E8-4C39-AC2A-C4035F2A940B} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe 
Task: {60E455AA-9B0D-4F50-B6A9-553FC298C4DA} - System32\Tasks\eset mirror => D:\eset1.bat  <==== ATTENTION
Task: {64010392-2BE7-459D-ACE3-70126ECE3516} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => %SystemRoot%\ehome\ehrec.exe 
Task: {6610F141-6769-46A1-9E1E-6C717B2C2A92} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {707E16DA-4EFC-491C-B705-C116F1757934} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {740E1A60-368C-409C-A8AF-94FC9FAE7532} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {8535575E-9F07-467C-BDD5-CB51060B20F2} - System32\Tasks\GoogleUpdateTaskMachineUA1d0e4255d275fa7 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {89784F03-A756-4215-B304-2B19A6C9C8BD} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe 
Task: {8A3AA0F7-7639-42F3-AE9B-D348B7777780} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {918D3477-6E24-4550-897F-98AA4AA3EB16} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-02-26] (Adobe Systems Incorporated)
Task: {938270FC-A61B-4D86-A863-EFADEF0B14BD} - System32\Tasks\GoogleUpdateTaskMachineUA1d15c0dc2731323 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {95913362-437A-44B3-925D-601833616100} - System32\Tasks\GoogleUpdateTaskMachineUA1d0931643c5c0a1 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {9BDDA0F3-7DE9-4DEE-B73A-A4DA159AF603} - System32\Tasks\GoogleUpdateTaskMachineCore1d1ab8c921304d8 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {9DA1491A-8CE0-474E-8B14-2E44AC09B004} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {A230F8B2-F735-46BD-AF22-1B4BF8405A3C} - System32\Tasks\GoogleUpdateTaskMachineCore1d0e4255d0928d6 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {B1893140-DE22-4913-A882-1D8B1397D21C} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {B371ACCB-A522-4B15-8F68-F3CE0926D6DF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {B3AB1BB5-3241-4B1D-BBE0-A2CB91EB1031} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {B6F64302-D556-46BB-A032-BA21FC2FC563} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2692502047-4175476859-819210668-1000Core => C:\Users\BlackAngel\AppData\Local\Facebook\Update\FacebookUpdate.exe 
Task: {C4125D2B-51A6-4F1D-8CCE-0E72FCF6E6D1} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {CC631877-B29C-471B-B783-78A2D0DCF0A6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {CE173BD0-D6DB-482B-861C-0FF5A3643A0D} - System32\Tasks\GoogleUpdateTaskMachineCore1d0f181feff659b => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {D172F231-A14B-4080-81DA-30B19B6E3D4A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate.exe 
Task: {D7E0A573-F962-4CBB-9DCA-C97DA9B3E5DE} - System32\Tasks\Opera scheduled Autoupdate 1421432571 => C:\Program Files (x86)\Opera\launcher.exe [2017-02-27] (Opera Software)
Task: {DC3A5D5C-6BFA-467E-B852-786BF63842E9} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {E599ECCE-ED71-411E-BF5F-810467F21D11} - System32\Tasks\{3B06FC4E-4C0D-4785-9316-7A1D03AAFD97} => pcalua.exe -a "C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe"
Task: {E6B65C17-C993-4963-96D0-6865C8362D94} - System32\Tasks\GoogleUpdateTaskMachineUA1d0bf93e1c43793 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {EA4A6867-8DC1-4A48-B241-84E4E8EE7102} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {ED831D51-BE9F-41F8-87F6-FA4BAA0DF1A9} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23] (NVIDIA Corporation)
Task: {EDF07D6F-A110-4134-910F-C751588A08DE} - System32\Tasks\GoogleUpdateTaskMachineCore1d15c0dc2434fe0 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {EE575670-9D0D-4315-83D8-8FF1379D41C7} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2692502047-4175476859-819210668-1000UA => C:\Users\BlackAngel\AppData\Local\Facebook\Update\FacebookUpdate.exe 
Task: {EF9DD121-3E8E-4D26-872F-0292B4CD0AA5} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe 
Task: {F716DFE5-E59B-422D-A001-B40AD3802BDA} - System32\Tasks\GoogleUpdateTaskMachineUA1d0420ad36437db => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {F7A87AAB-2599-49E9-AF4D-6D0E81758046} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe 
Task: {FA8817B2-D241-4D27-B543-9A0D4E9BFCC8} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec.exe 
Task: {FF0CBAB5-C8FA-4771-97FC-93829ED092AE} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe 

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bf93e197337a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e4255d0928d6.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0f181feff659b.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d13056d7ff00ce.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d15c0dc2434fe0.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0420ad36437db.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0931643c5c0a1.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0bf93e1c43793.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0e4255d275fa7.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0f181ff29aa8a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d13056d8388836.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\BlackAngel\AppData\Roaming\Microsoft\Windows\Network Shortcuts\Webové lokality v sieti MSN\target.lnk -> hxxp://www.msnusers.co

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2017-04-05 19:38 - 2017-03-04 09:19 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-27 15:49 - 2017-01-20 17:13 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-07-09 16:34 - 2012-09-29 13:25 - 00409088 _____ () C:\WINDOWS\System32\HPM1210LM.DLL
2012-10-13 08:19 - 2012-09-29 13:25 - 00074240 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\HPM1210PP.dll
2016-11-25 08:16 - 2016-11-25 08:16 - 00192200 _____ () C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
2016-08-29 09:53 - 2016-05-26 14:19 - 00262144 _____ () C:\Program Files\Allway Sync\Bin\SyncService.exe
2017-04-11 18:04 - 2017-03-24 04:09 - 02271520 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll
2017-04-11 18:04 - 2017-03-24 04:10 - 02267600 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2012-10-13 08:19 - 2011-04-15 18:14 - 00222720 _____ () C:\WINDOWS\system32\m1210nwia.dll
2014-11-25 20:00 - 2014-11-25 20:00 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe
2009-11-26 18:24 - 2009-11-26 18:24 - 00077824 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\DCNTranProc.exe
2016-12-27 17:46 - 2017-02-23 20:35 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-12-27 17:46 - 2017-02-23 20:35 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2012-09-27 16:58 - 2009-11-30 18:04 - 00192512 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\cbp\DCSchdler.exe
2017-04-05 19:38 - 2017-03-04 09:19 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-12-27 15:36 - 2016-12-27 15:36 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-04-05 19:42 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-04-05 19:38 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-04-05 19:38 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-04-05 19:38 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-04-05 19:38 - 2017-03-04 08:05 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-04-05 19:38 - 2017-03-04 08:08 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-09-18 09:23 - 2014-09-18 09:23 - 00866584 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2014-10-14 20:51 - 2014-10-14 20:51 - 01050904 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2014-09-18 09:23 - 2014-09-18 09:23 - 00059160 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2014-10-14 20:51 - 2014-10-14 20:51 - 00242456 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2015-11-06 18:17 - 2010-05-04 12:00 - 00237056 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL
2017-02-28 10:16 - 2017-02-28 10:16 - 02283008 _____ () C:\Program Files (x86)\Safe In Cloud\SafeInCloud.exe
2016-11-22 18:31 - 2017-04-04 18:42 - 00022024 _____ () C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
2017-04-10 20:11 - 2017-04-10 20:13 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-04-10 20:11 - 2017-04-10 20:13 - 00189952 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-04-10 20:11 - 2017-04-10 20:13 - 42507264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-04-10 20:11 - 2017-04-10 20:13 - 02334184 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\skypert.dll
2012-09-27 16:58 - 2010-03-16 09:56 - 00217135 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\FBCmdDsp.dll
2012-09-27 16:58 - 2009-12-14 12:55 - 00127023 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\FlBckpRt.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00131072 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\FlBckpBk.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00135224 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\EFBSearchTool.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00040960 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\VssForXp.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00040960 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\VssForServer.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00421888 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\CDBLib.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00303104 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\BurnMana.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00020480 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\WriteLog.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00077824 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\LogDLL.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00176128 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\ISOGenEx.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00118784 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\mp3dec.dll
2009-11-30 18:21 - 2009-11-30 18:21 - 00196608 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\VsBackRequestor.dll
2012-09-27 16:58 - 2009-11-26 18:26 - 00057344 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\Efb\DCNIBPLogHelper.dll
2009-11-26 18:24 - 2009-11-26 18:24 - 00170496 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\FtpPipeModule.dll
2009-12-14 11:31 - 2009-12-14 11:31 - 00053330 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\jobCancel.dll
2009-11-26 18:24 - 2009-11-26 18:24 - 00077824 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\TransferManager.dll
2009-11-26 18:24 - 2009-11-26 18:24 - 00057344 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\CommonFun.dll
2010-03-04 19:57 - 2010-03-04 19:57 - 00036952 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\FTPFunModule.dll
2009-11-26 18:26 - 2009-11-26 18:26 - 00057344 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\ibpfiles\DCNIBPLogHelper.dll
2016-09-15 08:24 - 2017-04-04 18:42 - 02493440 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll
2012-09-27 16:58 - 2009-12-02 16:02 - 00073800 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\cbp\DCNLog.dll
2012-09-27 16:58 - 2009-12-14 11:31 - 00053330 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\cbp\jobCancel.dll
2012-09-27 16:58 - 2009-11-26 18:24 - 00094301 _____ () C:\Program Files (x86)\FarStone\TotalRecovery\Client\cbp\JobManager.dll
2015-10-12 19:58 - 2017-02-23 20:35 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-12-27 17:46 - 2017-02-23 20:35 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll
2016-12-27 17:46 - 2017-02-23 20:35 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-09-15 08:24 - 2017-04-04 18:42 - 00012288 _____ () C:\Program Files (x86)\Origin\libEGL.DLL
2014-01-29 17:25 - 2016-08-16 12:10 - 00266240 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll
2013-03-12 18:10 - 2017-03-10 02:13 - 00674592 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-01-20 16:36 - 2016-09-01 03:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2014-05-24 12:19 - 2017-03-23 02:52 - 02465056 _____ () C:\Program Files (x86)\Steam\video.dll
2015-01-20 16:36 - 2016-09-01 03:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-01-20 16:36 - 2016-09-01 03:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2014-09-07 08:32 - 2016-01-27 09:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2014-09-07 08:32 - 2016-01-27 09:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2014-09-07 08:32 - 2016-01-27 09:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2014-09-07 08:32 - 2016-01-27 09:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2014-09-07 08:32 - 2016-01-27 09:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-04-02 07:37 - 2017-03-31 00:46 - 00848672 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-03-10 08:57 - 2016-07-05 00:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2017-03-02 18:06 - 2017-03-02 18:06 - 39821912 _____ () C:\Program Files (x86)\Opera\43.0.2442.1144\opera_browser.dll
2014-01-20 08:04 - 2014-05-05 16:55 - 00463360 _____ () C:\Users\BlackAngel\AppData\Local\MEGAsync\ShellExtX32.dll
2017-04-11 18:28 - 2017-04-11 18:28 - 00098816 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32api.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00110080 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\pywintypes27.dll
2017-04-11 18:28 - 2017-04-11 18:28 - 00364544 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\pythoncom27.dll
2017-04-11 18:28 - 2017-04-11 18:28 - 00320512 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32com.shell.shell.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00914432 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\_hashlib.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 01176576 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\wx._core_.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00806400 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\wx._gdi_.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00816128 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\wx._windows_.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 01067008 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\wx._controls_.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00733184 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\wx._misc_.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00682496 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\pysqlite2._sqlite.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00088064 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\_ctypes.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00686080 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\unicodedata.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00119808 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32file.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00108544 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32security.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00007168 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\hashobjs_ext.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00017920 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\thumbnails_ext.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00088064 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\usb_ext.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00012800 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\common.time34.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00018432 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32event.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00167936 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32gui.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00046080 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\_socket.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 01303552 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\_ssl.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00128512 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\_elementtree.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00127488 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\pyexpat.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00038912 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32inet.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00036864 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\_psutil_windows.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00524248 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\windows._lib_cacheinvalidation.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00011264 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32crypt.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00123392 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\wx._wizard.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00077312 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\wx._html2.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00027648 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\_multiprocessing.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00020480 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\_yappi.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00035840 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32process.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00078848 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\wx._animate.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00024064 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32pipe.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00010240 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\select.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00025600 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32pdh.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00017408 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32profile.pyd
2017-04-11 18:28 - 2017-04-11 18:28 - 00022528 ____R () C:\Users\BlackAngel\AppData\Local\Temp\_MEI11482\win32ts.pyd
2016-12-13 17:27 - 2017-01-30 23:41 - 68875552 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2012-09-01 20:54 - 2017-03-23 02:52 - 00383776 _____ () C:\Program Files (x86)\Steam\steam.dll
2017-03-02 18:06 - 2017-03-02 18:06 - 45842008 _____ () C:\Program Files (x86)\Opera\43.0.2442.1144\opera_child.dll
2017-03-02 18:06 - 2017-03-02 18:05 - 01930328 _____ () C:\Program Files (x86)\Opera\43.0.2442.1144\libglesv2.dll
2017-03-02 18:06 - 2017-03-02 18:05 - 00087640 _____ () C:\Program Files (x86)\Opera\43.0.2442.1144\libegl.dll
2016-12-27 17:46 - 2017-02-23 20:34 - 65708992 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2016-12-27 17:46 - 2017-02-23 16:30 - 00338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2016-12-27 17:46 - 2017-02-23 16:30 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2016-12-27 17:46 - 2017-02-23 16:30 - 02443320 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2016-12-27 17:46 - 2017-02-23 16:30 - 00385592 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2016-12-27 17:46 - 2017-02-23 16:30 - 00543288 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2016-12-27 17:46 - 2017-02-23 16:30 - 00468536 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
2016-12-30 21:03 - 2016-12-30 21:03 - 00172544 _____ () C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\IsdiInterop\5066373a119d867d23f5332606bfb367\IsdiInterop.ni.dll
2012-09-01 20:08 - 2011-04-26 11:16 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:A1EDB939 [116]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-2692502047-4175476859-819210668-1000\Software\Classes\.scr: AutoCADScriptFile => 

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\sony.com -> sony.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2014-06-25 18:17 - 00000840 ____A C:\WINDOWS\system32\Drivers\etc\hosts

 127.0.0.1       localhost 
::1             localhost 

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184314757\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184402501\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184315110\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403338\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2692502047-4175476859-819210668-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\BlackAngel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\Control Panel\Desktop\\Wallpaper -> C:\Users\BlackAngel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\Control Panel\Desktop\\Wallpaper -> C:\Users\BlackAngel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1 - 10.11.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKU\S-1-5-21-2692502047-4175476859-819210668-1000\...\StartupApproved\Run: => "Gaijin.Net Agent"
HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184316000\...\StartupApproved\Run: => "Gaijin.Net Agent"
HKU\S-1-5-21-2692502047-4175476859-819210668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04112017184403964\...\StartupApproved\Run: => "Gaijin.Net Agent"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{9C7CF396-36A6-4FE5-90E3-CA91AD42C942}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{9773C9AC-85CE-4164-974B-FE61F7C40262}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [UDP Query User{A5F438FC-038D-4A11-8CB4-449D94818FA2}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe
FirewallRules: [TCP Query User{E463C28D-54FA-4302-AAD1-A6168CDF2491}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe
FirewallRules: [UDP Query User{F5095AEB-A7DC-478F-AB66-A9BD8D08B6F4}D:\eve\sharedcache\sisi\bin\exefile.exe] => (Allow) D:\eve\sharedcache\sisi\bin\exefile.exe
FirewallRules: [TCP Query User{121252C3-F5D9-4E19-8325-C0E74070A331}D:\eve\sharedcache\sisi\bin\exefile.exe] => (Allow) D:\eve\sharedcache\sisi\bin\exefile.exe
FirewallRules: [UDP Query User{0889D60E-4A5F-45D0-A918-9439121CEEB3}\\dlink-cacb9f\volume_1\games\farming simulator 2017\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) \\dlink-cacb9f\volume_1\games\farming simulator 2017\farming simulator 17\x64\farmingsimulator2017game.exe
FirewallRules: [TCP Query User{65B75099-36DD-466C-A426-84363D9B0241}\\dlink-cacb9f\volume_1\games\farming simulator 2017\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) \\dlink-cacb9f\volume_1\games\farming simulator 2017\farming simulator 17\x64\farmingsimulator2017game.exe
FirewallRules: [UDP Query User{A909A101-C6C1-448E-8089-E891F43A2451}\\dlink-cacb9f\volume_1\games\farming simulator 2017\farming simulator 17\dedicatedserver.exe] => (Allow) \\dlink-cacb9f\volume_1\games\farming simulator 2017\farming simulator 17\dedicatedserver.exe
FirewallRules: [TCP Query User{9B2A5447-8708-466F-A9BC-10D8C4E9D552}\\dlink-cacb9f\volume_1\games\farming simulator 2017\farming simulator 17\dedicatedserver.exe] => (Allow) \\dlink-cacb9f\volume_1\games\farming simulator 2017\farming simulator 17\dedicatedserver.exe
FirewallRules: [{C3AF0130-4318-4DF6-8917-6E6CFAF7326B}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{7752AC57-26A1-4B89-9550-FF662A08CF98}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{C0ADB666-0CE0-48D1-B21D-210FB07A478A}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{6EBB8F5F-4E94-4395-87CB-DEA9B0F53FF7}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{ADC863DF-A460-4AC9-A6E4-07A146E85DE0}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{AF2A44E8-5E4A-4BC3-8F22-C2DD742A9680}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{F834441A-3F9A-4245-A469-51051F9CC50A}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{2CD5234A-5FFD-4581-A85C-B8C88C57B9A2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{4386BE79-E882-44B6-BED4-231A6282A783}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{F4854158-2A74-4D7C-9F4D-E09DF10AA73E}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [UDP Query User{3F410CD2-1747-4B02-98D3-2825490F8F4F}D:\eve\sharedcache\tq\bin\exefile.exe] => (Allow) D:\eve\sharedcache\tq\bin\exefile.exe
FirewallRules: [TCP Query User{A14491FB-E105-4E60-89D7-2DFB6F0B8579}D:\eve\sharedcache\tq\bin\exefile.exe] => (Allow) D:\eve\sharedcache\tq\bin\exefile.exe
FirewallRules: [{CD732E18-B6F7-46E4-8265-DB8517393ADA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{EA32BC1A-C4B6-47A8-B9C7-5C36E1515C1A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{BE48E74E-2AAA-4EA6-9E63-52610CCF5E58}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{0C9A6594-280F-4D65-A023-FA2551FC16CF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{B75456CF-554F-43D4-81C6-C5F49BFFA3DB}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{2AF1A78F-8C03-462C-B370-C2D27AA5762E}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{5E4F162F-D2EC-4E31-B4F1-71477F2CE470}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WOG\disasm.exe
FirewallRules: [{A71912F3-3735-4DD3-B2A8-E3EC6D8F65E1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WOG\disasm.exe
FirewallRules: [{4B966CBD-D1E4-492F-81C7-CAC7814B54FC}] => (Allow) D:\Hry\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{ABBF2243-A47C-4B75-A775-BF95F33E5C0A}] => (Allow) D:\Hry\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{055CD431-0885-4ACD-B669-8E97F8196F3A}] => (Allow) D:\Hry\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{AEACA52C-2B7E-40FF-A2BA-EE5F2BE6D445}] => (Allow) D:\Hry\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{EA055297-5AC2-4D46-B732-F85F5F58AC9B}] => (Allow) D:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe
FirewallRules: [{DE63AEE3-1F84-4A90-B641-8DEB131C48C2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{D693C090-35C8-45D3-BC2C-47E48916A85A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{701E406B-FFA0-44C9-A201-23E0A2BB77F3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{4FCF72B8-1A27-4A43-B20C-2B098A8B4B09}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{AABF59EC-1FB5-4070-86AE-D795EA92FAE6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{5133D9E1-9217-4793-A78E-CC5928F3C746}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{77C539D2-91AD-4F5A-9664-D8E670940566}] => (Allow) C:\Program Files (x86)\Origin Games\Zuma's Revenge\ZumasRevenge.exe
FirewallRules: [{F70433A6-583A-4FAB-B477-C27E6F5109C5}] => (Allow) C:\Program Files (x86)\Origin Games\Zuma's Revenge\ZumasRevenge.exe
FirewallRules: [{59746689-4727-4DEF-BA7E-8C15BC947185}] => (Allow) D:\Hry\Battlefield 4\bf4.exe
FirewallRules: [{407C0F51-2982-44F1-A95A-E3F30B998674}] => (Allow) D:\Hry\Battlefield 4\bf4.exe
FirewallRules: [{FB17B235-246B-443E-84DA-45FA34ACBBAD}] => (Allow) D:\Hry\Battlefield 4\bf4_x86.exe
FirewallRules: [{9603DEC5-60BB-42A7-A894-F0346A3968C3}] => (Allow) D:\Hry\Battlefield 4\bf4_x86.exe
FirewallRules: [{0F5A4D70-6F13-4EF1-9412-D33630B55B2D}] => (Allow) LPort=50248
FirewallRules: [{EBCA718D-A992-4E9C-A3BA-B56A9B6A2D24}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{07F21155-EE40-4383-A1C4-D656BF05F368}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{AA6711A1-FA09-41ED-B50C-4ECB2EBDB689}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{B4FD3048-60E6-4CB0-A4EA-0EE9EDB6F6B2}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{5DC81D38-C2BD-4F06-9A2D-2419F8DE249F}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe
FirewallRules: [{063293EF-7A0F-448D-A88F-7405D1837D01}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe
FirewallRules: [{5E350D7F-1939-4725-94BC-7B3B526FBE2B}] => (Allow) C:\Program Files\Echobit\Evolve\EvolveClient.exe
FirewallRules: [{938B6042-A640-4E2E-B316-F458A8BA0AE0}] => (Allow) C:\Program Files\Echobit\Evolve\EvoSvc.exe
FirewallRules: [{382791E5-F6D1-4D5E-8EC5-A1EDB13F8FD5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{4AC8C84E-744E-4873-AAF6-5C55347C5E29}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{0FDCAE0A-C3F6-48B3-94F5-92840DEB7B5C}] => (Allow) D:\Program Files (x86)\SteamLibrary\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{68577D08-5FDD-4B01-935B-EF3892F06737}] => (Allow) D:\Program Files (x86)\SteamLibrary\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{F46E2480-EB6A-42B9-A8DF-2F21DD55772B}] => (Allow) D:\Program Files (x86)\SteamLibrary\SteamApps\common\Portal 2\portal2.exe
FirewallRules: [{90551ED2-C73A-450C-9577-84ABE43ACFAD}] => (Allow) D:\Program Files (x86)\SteamLibrary\SteamApps\common\Portal 2\portal2.exe
FirewallRules: [{AD83560D-F6D7-4889-B25D-B98BBD1EA26D}] => (Allow) D:\Program Files (x86)\SteamLibrary\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{C444196E-675B-47B4-9A33-81690C26C923}] => (Allow) D:\Program Files (x86)\SteamLibrary\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{DA58B976-1866-40D1-B050-E708E6A227F6}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{5B34F53B-9928-4530-919D-F1F4B896C133}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{76E1E1CE-81C7-400B-A621-202E1F8B7B3C}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{35A0E0E8-FBAB-4184-8C9C-C40E859E5152}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{2A95C40D-30C9-4A38-B259-CF05DB12BF97}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{9B3BFAD2-CF2A-4C6D-9067-713A25392122}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{BB8E3190-8EA4-496A-AB76-7008126E20B4}] => (Allow) C:\Program Files (x86)\Opera\opera.exe
FirewallRules: [{5478FDFF-9085-4D5C-A402-A5F9E360E8F4}] => (Allow) C:\Program Files (x86)\Opera\opera.exe
FirewallRules: [UDP Query User{613BD559-5E9E-4322-A277-AF93B7145C2B}\\dlink\volume_1\mining\wallets\heavycoin-1.1-win32\heavycoin-qt.exe] => (Allow) \\dlink\volume_1\mining\wallets\heavycoin-1.1-win32\heavycoin-qt.exe
FirewallRules: [TCP Query User{F883B672-8050-4006-A86E-7DD5F9E6F727}\\dlink\volume_1\mining\wallets\heavycoin-1.1-win32\heavycoin-qt.exe] => (Allow) \\dlink\volume_1\mining\wallets\heavycoin-1.1-win32\heavycoin-qt.exe
FirewallRules: [UDP Query User{87EFE263-A642-4AD0-8584-BD806536A1E2}\\dlink\volume_1\mining\wallets\emoticoin-qt.exe] => (Allow) \\dlink\volume_1\mining\wallets\emoticoin-qt.exe
FirewallRules: [TCP Query User{5B546C24-9815-4893-901B-8E319191CACA}\\dlink\volume_1\mining\wallets\emoticoin-qt.exe] => (Allow) \\dlink\volume_1\mining\wallets\emoticoin-qt.exe
FirewallRules: [{1D0C8B3D-EA37-472A-856B-3F938C21A71A}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{3487ADA8-F91F-49D8-9110-CFDC4A00F0EA}D:\webserver\mysql\bin\mysqld_usbwv8.exe] => (Allow) D:\webserver\mysql\bin\mysqld_usbwv8.exe
FirewallRules: [TCP Query User{5AF77D4B-9C55-478A-9EFE-20A741FF1A43}D:\webserver\mysql\bin\mysqld_usbwv8.exe] => (Allow) D:\webserver\mysql\bin\mysqld_usbwv8.exe
FirewallRules: [UDP Query User{55B42F73-1063-48AF-B394-8F3E54E08529}D:\webserver\apache2\bin\httpd_usbwv8.exe] => (Allow) D:\webserver\apache2\bin\httpd_usbwv8.exe
FirewallRules: [TCP Query User{952DFDE4-3635-4723-A8EC-FA700B9700EB}D:\webserver\apache2\bin\httpd_usbwv8.exe] => (Allow) D:\webserver\apache2\bin\httpd_usbwv8.exe
FirewallRules: [UDP Query User{7D224BEE-A206-4FC6-AA29-E7D3ED4390E4}\\dlink\volume_1\mining\worldcoin client\worldcoin-qt.exe] => (Allow) \\dlink\volume_1\mining\worldcoin client\worldcoin-qt.exe
FirewallRules: [TCP Query User{F495B56D-CD35-44FB-B31D-A36ADA28A48A}\\dlink\volume_1\mining\worldcoin client\worldcoin-qt.exe] => (Allow) \\dlink\volume_1\mining\worldcoin client\worldcoin-qt.exe
FirewallRules: [{0B8339CE-6F63-4315-AA0C-95F93BA7DE74}] => (Allow) LPort=1900
FirewallRules: [{CF96C166-F603-4B7B-BD29-2F56D67C7BEE}] => (Allow) LPort=7900
FirewallRules: [{CCDDA7AB-DCFC-410D-8D84-D169CD352779}] => (Allow) LPort=24234
FirewallRules: [{9F7AD2BC-2C4D-4525-A853-7BA899CE3EA2}] => (Allow) LPort=7679
FirewallRules: [{7D683C15-2AE7-484D-BD58-D2C8115B0FBA}] => (Allow) LPort=7676
FirewallRules: [{410E8826-0B60-4BA0-9B9A-FE6B15A4EC99}] => (Allow) LPort=8643
FirewallRules: [{2D348E05-7DB9-4A16-9CB2-4046F99C2808}] => (Allow) LPort=8743
FirewallRules: [{FDC3C744-239C-4F74-9A98-D550F14695E0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe
FirewallRules: [{6946A285-C6FD-4307-BD84-8C92D78CD4C4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe
FirewallRules: [UDP Query User{435CE9DE-9606-4D23-8671-DA0634AFAF69}\\dlink\volume_1\mining\dogecoin\dogecoin-qt.exe] => (Allow) \\dlink\volume_1\mining\dogecoin\dogecoin-qt.exe
FirewallRules: [TCP Query User{A5634F4D-858D-4744-A5C1-58979E7C144C}\\dlink\volume_1\mining\dogecoin\dogecoin-qt.exe] => (Allow) \\dlink\volume_1\mining\dogecoin\dogecoin-qt.exe
FirewallRules: [{26CB9508-A159-4D46-B335-E65F66AA0B62}] => (Allow) D:\Hry\Battlefield 4\bf4.exe
FirewallRules: [{CD61F5D3-C840-4D3F-8CB5-FA0EB42C4680}] => (Allow) D:\Hry\Battlefield 4\bf4.exe
FirewallRules: [{92693777-BEEB-4FF5-980A-19DBF00B8BDE}] => (Allow) D:\Hry\Battlefield 4\bf4_x86.exe
FirewallRules: [{4C96204F-1737-487C-8028-E7A6A6E99FD6}] => (Allow) D:\Hry\Battlefield 4\bf4_x86.exe
FirewallRules: [UDP Query User{29D3B1CF-C04C-475A-9B90-D40218288C9B}C:\winbox.exe] => (Allow) C:\winbox.exe
FirewallRules: [TCP Query User{90CA68EF-4CF0-45BE-8B0A-D0B8CA13DE7D}C:\winbox.exe] => (Allow) C:\winbox.exe
FirewallRules: [{8915F496-1B68-4F84-9E4F-69B6F28E3603}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe
FirewallRules: [{743556DB-032F-4083-BBC4-6C1FC3DA27F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe
FirewallRules: [UDP Query User{0FA332DC-24F5-4543-9738-68112762CBD2}C:\program files (x86)\pinnacle\studio 15\programs\studio.exe] => (Block) C:\program files (x86)\pinnacle\studio 15\programs\studio.exe
FirewallRules: [TCP Query User{E8936DFF-9D2E-4916-AE64-713C9A6CABDD}C:\program files (x86)\pinnacle\studio 15\programs\studio.exe] => (Block) C:\program files (x86)\pinnacle\studio 15\programs\studio.exe
FirewallRules: [{8C9E8D09-C4F2-431E-BF7C-BF7198E77473}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{9DED3AFC-0409-4022-A4FE-8DFD377560CB}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [UDP Query User{041F9941-EE4C-4BA5-A721-0D79596D4DE7}C:\program files (x86)\steam\steam.exe] => (Allow) C:\program files (x86)\steam\steam.exe
FirewallRules: [TCP Query User{E6DB7C42-62C3-4A9F-9774-53E0E6CDE375}C:\program files (x86)\steam\steam.exe] => (Allow) C:\program files (x86)\steam\steam.exe
FirewallRules: [UDP Query User{EAF9993A-D813-4AD9-9F36-26B31D7726ED}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{41B9184C-E7AC-42E4-B33E-BA39CF1EFBB2}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{71536AB6-1D56-40C6-A41C-83BDCCF081C1}C:\users\blackangel\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\blackangel\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{248CC420-5BEB-458B-BB81-C3D41D71BE23}C:\users\blackangel\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\blackangel\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{84F3CBA1-62EA-4596-B2F3-4C58FFF73FEF}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{E1CBF32E-E588-4142-9A7A-B90198F23DE7}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{57CC2395-757D-4C62-8EC8-EF1142F666ED}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{C02BF618-E9C2-417F-963E-68209B41018F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [UDP Query User{C5E97046-A456-4B9C-8979-E33F51521ADC}C:\program files (x86)\origin games\battlefield 3\bf3.exe] => (Allow) C:\program files (x86)\origin games\battlefield 3\bf3.exe
FirewallRules: [TCP Query User{FC35D76D-9290-46B8-B0B8-692C7853B353}C:\program files (x86)\origin games\battlefield 3\bf3.exe] => (Allow) C:\program files (x86)\origin games\battlefield 3\bf3.exe
FirewallRules: [{216CC5CA-A103-440A-BAB8-5E79F4312378}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{E1717025-F52A-498E-8CA1-4B7DC07E8C51}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{E602A7A5-2DF8-4310-8DAF-F0E9800399A8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{74DEE5E0-6907-4DA8-9D5B-A1B0830F91EB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{21767A07-A5E1-479A-AFA1-FAC66A14C5A2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{B3DAEDB6-4C7C-403A-84A8-4BA5D8DF7845}] => (Allow) C:\Program Files (x86)\Opera\43.0.2442.991\opera.exe
FirewallRules: [{A2C549A6-A2ED-487E-B142-5A4F1CABCF81}] => (Allow) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe
FirewallRules: [{4BDD3149-BBF1-4409-9357-2D64F04E5BF9}] => (Allow) D:\Hry\Battlefield 4\BFLauncher.exe
FirewallRules: [{FAF5FF02-849D-482B-BCC7-B2C2FE856880}] => (Allow) D:\Hry\Battlefield 4\BFLauncher.exe
FirewallRules: [{D1354214-9385-4499-A826-70C6DC9A8D92}] => (Allow) D:\Hry\Battlefield 4\BFLauncher_x86.exe
FirewallRules: [{3F4DD794-41D4-477D-8BB8-4A861EA42DE7}] => (Allow) D:\Hry\Battlefield 4\BFLauncher_x86.exe
FirewallRules: [{3A58F8E7-8178-4926-AEA9-28CFCB384DD9}] => (Allow) C:\WINDOWS\system32\rundll32.exe
FirewallRules: [{B6885D3D-69CB-4E72-9FC5-6B4E66C0B3C5}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{0AB99D03-F2AE-46C7-B64F-8E40B10C8293}] => (Allow) C:\Windows\System32\rundll32.exe

==================== Restore Points =========================

11-04-2017 18:39:42 Windows Update
11-04-2017 18:40:44 Windows Update

==================== Faulty Device Manager Devices =============

Name: Qualcomm Atheros AR5005G Wireless Network Adapter
Description: Qualcomm Atheros AR5005G Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/11/2017 06:41:06 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.

Error: (04/11/2017 06:40:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.

Error: (04/11/2017 06:32:20 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (04/11/2017 05:22:14 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program PCCleanPlus.exe version 3.6.81.400 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 8bc

Start Time: 01d2b2d5d8af264a

Termination Time: 2

Application Path: C:\Program Files (x86)\PC Clean Plus\PCCleanPlus.exe

Report Id: 9bb791d0-1eca-11e7-8fe5-8c89a5617774

Faulting package full name: 

Faulting package-relative application ID:

Error: (04/11/2017 05:16:36 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (04/11/2017 04:09:56 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (04/10/2017 08:09:49 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (04/09/2017 06:17:05 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (04/09/2017 06:13:32 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: Explorer.EXE, verzia: 10.0.14393.953, časová značka: 0x58ba5aa4
Názov chybujúceho modulu: NotificationController.dll, verzia: 10.0.14393.351, časová značka: 0x5801a50b
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000119d7
Identifikácia chybujúceho procesu: 0x2da8
Čas spustenia chybujúcej aplikácie: 0x01d2b0e74f996256
Cesta chybujúcej aplikácie: C:\WINDOWS\Explorer.EXE
Cesta chybujúceho modulu: C:\Windows\System32\NotificationController.dll
Identifikácia hlásenia: 661e75ad-1bc6-44d1-9c18-da2b85810b91
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (04/08/2017 07:51:35 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0


System errors:
=============
Error: (04/11/2017 06:27:05 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba HP LaserJet Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (04/11/2017 06:26:49 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 and APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (04/11/2017 06:26:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby NetMsmqActivator zlyhalo kvôli nasledujúcej chybe: 
The service did not respond to the start or control request in a timely fashion.

Error: (04/11/2017 06:26:41 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby NetMsmqActivator bol dosiahnutý časový limit (30000 ms).

Error: (04/11/2017 06:26:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby NetPipeActivator zlyhalo kvôli nasledujúcej chybe: 
The service did not respond to the start or control request in a timely fashion.

Error: (04/11/2017 06:26:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby NetPipeActivator bol dosiahnutý časový limit (30000 ms).

Error: (04/11/2017 06:26:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Autodesk Content Service zlyhalo kvôli nasledujúcej chybe: 
The service did not respond to the start or control request in a timely fashion.

Error: (04/11/2017 06:26:32 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Autodesk Content Service bol dosiahnutý časový limit (30000 ms).

Error: (04/11/2017 06:26:00 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Spustenie služby NetTcpPortSharing, od ktorej závisí služba NetTcpActivator, zlyhalo kvôli nasledujúcej chybe: 
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (04/11/2017 06:25:41 PM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.


CodeIntegrity:
===================================
  Date: 2017-02-27 18:17:01.864
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-02-06 16:10:04.879
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-02-06 16:10:03.437
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-25 14:12:54.109
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-11 12:13:13.212
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-01-03 19:08:17.831
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2016-12-29 13:12:59.162
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3550 CPU @ 3.30GHz
Percentage of memory in use: 35%
Total physical RAM: 16340.79 MB
Available physical RAM: 10609.4 MB
Total Virtual: 32724.79 MB
Available Virtual: 26122.91 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:297.55 GB) (Free:52.18 GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:296.54 GB) NTFS
Drive g: (Nový zväzok) (Fixed) (Total:2048 GB) (Free:229.07 GB) NTFS
Drive h: (Hiren'sBootCD9.8) (CDROM) (Total:0.15 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 659F54AC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=297.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: C52019E0)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 2328.8 GB) (Disk ID: C7F3A57B)
Partition 1: (Not Active) - (Size=2048 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================