Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-06-2017
Ran by Dellinka (04-06-2017 07:59:51)
Running from C:\Users\Dellinka\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2013-07-23 15:00:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-498093251-2287956375-4192493052-500 - Administrator - Disabled)
Dellinka (S-1-5-21-498093251-2287956375-4192493052-1000 - Administrator - Enabled) => C:\Users\Dellinka
Guest (S-1-5-21-498093251-2287956375-4192493052-501 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG Antivirus (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Antivirus (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1460 (HKLM\...\{d1e17d14-cabc-4f6f-9f46-c7ecf813645e}.sdb) (Version:  - )
Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.0.0.19 - Absolute Software)
ACA & MEP 2017 Object Enabler (Version: 7.9.45.0 - Autodesk) Hidden
ACAD Private (Version: 21.0.52.0 - Autodesk) Hidden
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19120 - Adobe Systems Incorporated)
Adobe Flash Player 11 ActiveX 64-bit (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.2.202.228 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Advanced Audio FX Engine (HKLM-x32\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd)
Akamai NetSession Interface (HKU\S-1-5-21-498093251-2287956375-4192493052-1000\...\Akamai) (Version:  - Akamai Technologies, Inc)
Allplan 2017 (HKLM-x32\...\{12E23097-10C6-4298-B2B3-A2C0032C7D53}) (Version: 2017.0 - Allplan GmbH)
AMD Catalyst Install Manager (HKLM\...\{7E5DC2C5-115A-322B-976C-219237FAED66}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
ANNO 2070 (HKLM-x32\...\{B48E264C-C8CD-4617-B0BE-46E977BAD694}) (Version: 1.0.0.0 - Ubisoft)
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
ARCHICAD 20 CZE (HKLM\...\001FFF2FFF20FF00FF1101F01F02F000-R1) (Version: 20.0 - GRAPHISOFT)
Assassin's Creed Revelations (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.00 - Ubisoft)
Atheros Bluetooth Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.4.0.126 - Atheros)
Authorizer 1.0.5 (HKLM-x32\...\Authorizer_is1) (Version: 1.0.5 - Propellerhead Software AB)
Authorizer Ignition Key Support (Version: 1.0.3.0 - Propellerhead Software AB) Hidden
AutoCAD 2017 - English (Version: 21.0.52.0 - Autodesk) Hidden
AutoCAD 2017 (Version: 21.0.52.0 - Autodesk) Hidden
AutoCAD 2017 Language Pack - English (Version: 21.0.52.0 - Autodesk) Hidden
Autodesk Advanced Material Library Image Library 2017 (HKLM-x32\...\{8ED2ED41-4455-449D-993C-751C039089B9}) (Version: 15.11.3.0 - Autodesk)
Autodesk App Manager 2016-2017 (HKLM-x32\...\{C0954809-F5DC-426C-847E-8409DE14E4C0}) (Version: 2.2.0 - Autodesk)
Autodesk AutoCAD 2017 - English (HKLM\...\AutoCAD 2017 - English) (Version: 21.0.52.0 - Autodesk)
Autodesk AutoCAD Performance Feedback Tool 1.2.5 (HKLM-x32\...\{8600F844-9AA5-412E-B6F2-F9C6CBCFD268}) (Version: 1.2.5.0 - Autodesk)
Autodesk License Service (x64) - 3.1 (HKLM\...\{EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D}) (Version: 3.1.26.0 - Autodesk)
Autodesk Material Library 2017 (HKLM-x32\...\{8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2017 (HKLM-x32\...\{3FBFBC43-9882-43FA-B979-2D53896747B3}) (Version: 15.11.3.0 - Autodesk)
Autodesk Network License Manager (HKLM\...\{4BE91685-1632-47FC-B563-A8A542C6664C}) (Version: 11.13.1.2 - Autodesk)
AVG (Version: 1.191.1 - AVG Technologies) Hidden
AVG PC TuneUp (HKLM-x32\...\AVG PC TuneUp) (Version: 16.74.2.60831 - AVG Technologies)
AVG PC TuneUp (x32 Version: 16.74.1 - AVG Technologies) Hidden
AVG Protection (HKLM-x32\...\AVG Antivirus) (Version: 17.4.3014 - AVG Technologies)
AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.3.7.452 - AVG Technologies)
Banctec Service Agreement (HKLM-x32\...\{42D68A86-DB1C-4256-B8C9-5D0D92919AF5}) (Version: 2.0.0 - Dell Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
BitTorrent (HKU\S-1-5-21-498093251-2287956375-4192493052-1000\...\BitTorrent) (Version: 7.9.9.43389 - BitTorrent Inc.)
Bridge Constructor (HKLM-x32\...\Bridge Constructor1.0) (Version: 1.0 - Foxy Games)
Bridge It Plus version 1.32 (HKLM-x32\...\{808A3DB8-960C-4A67-AFD2-3828778397A8}_is1) (Version: 1.32 - )
Bridge! (HKLM-x32\...\{22EDD164-65D5-41DD-961E-08C7CDA4D471}) (Version: 1.00 - aerosoft)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.70.1080 - AB Team, d.o.o.)
CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform)
CodeMeter Runtime Kit v6.40a (HKLM\...\{62E6319C-C83C-4395-9D0D-6DF00F4FAECB}) (Version: 6.40.2402.501 - WIBU-SYSTEMS AG)
Complete Care Business Service Agreement (HKLM-x32\...\{0ECFCB07-9BFE-4970-ACA1-D568D982760B}) (Version: 2.0.0 - Dell Inc.)
Consumer In-Home Service Agreement (HKLM-x32\...\{F47C37A4-7189-430A-B81D-739FF8A7A554}) (Version: 2.0.0 - Dell Inc.)
CorelDRAW Graphics Suite X5 - Capture (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - Common (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - Connect (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - Custom Data (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - Draw (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - EN (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - Filters (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - FontNav (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - IPM (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - PHOTO-PAINT (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - Photozoom Plugin (x32 Version: 15.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - Redist (x32 Version: 15.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - Setup Files (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - VBA (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - VideoBrowser (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - VSTA (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 - WT (x32 Version: 15.1 -  Corel Corporation) Hidden
CorelDRAW Graphics Suite X5 (x32 Version: 15.2 - Corel Corporation) Hidden
CorelDRAW(R) Graphics Suite X5 (HKLM-x32\...\_{CE54DCE1-E00A-4D91-ACB9-A2D916C24051}) (Version: 15.2.0.661 - Corel Corporation)
CraftTheWorld 1.0 (HKLM-x32\...\CraftTheWorld 1.0) (Version: 1.0 - Čăđű íŕ Cat-A-Cat.NET)
Crusader Kings II version 1.111 (HKLM-x32\...\{31415207-B98D-4048-BAED-5CA6C1815C64}_is1) (Version: 1.111 - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.0.0220 - Disc Soft Ltd)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0335 - Disc Soft Ltd)
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
Dell Digital Delivery (HKLM-x32\...\{693A23FB-F28B-4F7A-A720-4C1263F97F43}) (Version: 3.1.1002.0 - Dell Products, LP)
Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Home Systems Service Agreement (HKLM-x32\...\{AB2FDE4F-6BED-4E9E-B676-3DCCEBB1FBFE}) (Version: 2.0.0 - Dell Inc.)
Dell Location Utility (HKLM\...\{98321A3B-C403-4796-9748-F507B5974EAB}) (Version: 3.4.1.14 - Dell Wireless)
Dell Support Center (HKLM\...\Dell Support Center) (Version: 3.1.5907.16 - Dell Inc.)
Dell Support Center (Version: 3.1.5907.16 - PC-Doctor, Inc.) Hidden
Dell System Detect - 1  (HKU\S-1-5-21-498093251-2287956375-4192493052-1000\...\58d94f3ce2c27db0) (Version: 7.3.0.6 - Dell)
Dell System Detect (HKU\S-1-5-21-498093251-2287956375-4192493052-1000\...\73f463568823ebbe) (Version: 6.5.0.6 - Dell)
Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 16.0.4.0 - Synaptics Incorporated)
Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 2.00.44 - Creative Technology Ltd)
Dell WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Dell Inc.)
Disciples 2 Gold Gallean (HKLM-x32\...\Disciples 2 Gold Gallean) (Version:  - )
Divinity - Dragon Commander (HKLM-x32\...\GOGPACKDRAGONCOMMANDER_is1) (Version: 2.0.0.5 - GOG.com)
Dungeon Keeper Gold (HKLM-x32\...\GOGPACKDUNGEONKEEPER_is1) (Version: 2.0.0.4 - GOG.com)
Evernote v. 6.5.4 (HKLM-x32\...\{D47E7D82-0D98-11E7-A6D6-005056951CAD}) (Version: 6.5.4.4720 - Evernote Corp.)
FMW 1 (Version: 1.203.1 - AVG Technologies) Hidden
FormatFactory 3.6.0.0 (HKLM-x32\...\FormatFactory) (Version: 3.6.0.0 - Format Factory)
Fragile Allegiance (DosBox Daum Cafe 0.72 emulation) (HKLM-x32\...\Fragile Allegiance (DosBox Daum Cafe 0.72 emulation)) (Version:  - )
Free Studio version 6.5.0.301 (HKLM-x32\...\Free Studio_is1) (Version: 6.5.0.301 - DVDVideoSoft Ltd.)
FTL -  Advanced Edition (HKLM-x32\...\GOGPACKFTL_is1) (Version: 2.3.0.13 - GOG.com)
Galactic Civilizations II - Gold Edition (HKLM-x32\...\Galactic Civilizations II - Gold Edition) (Version:  - Stardock Entertainment, Inc.)
Gaming Keyboard Driver (HKLM-x32\...\{B3CDED64-7DC2-429D-A325-BBC3CF793AA6}) (Version: 1.0 - )
General Runtime Files for Allplan 2016-1-7 (x32 Version: 1.9.0.0 - Nemetschek Allplan Systems GmbH) Hidden
General Runtime Files for Allplan 2016-1-7 x64 (Version: 1.6.0.0 - Nemetschek Allplan Systems GmbH) Hidden
General Runtime Files for Allplan 2017-1-1 (x32 Version: 1.10.0.0 - Nemetschek Allplan Systems GmbH) Hidden
General Runtime Files for Allplan 2017-1-1 x64 (Version: 1.7.0.0 - Nemetschek Allplan Systems GmbH) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.)
Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
GRAPHISOFT BIMx Desktop Viewer (HKLM-x32\...\103FFFFFFF20FF00FF2801F01F02F000-R1) (Version: 20.0 - GRAPHISOFT)
Grey Goo (HKLM-x32\...\Grey Goo_is1) (Version:  - )
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version:  - )
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Hitman Absolution (HKLM-x32\...\{95030349-3623-4920-89BF-8BEC5EF311C5}_is1) (Version: 1.0433.1 - Square Enix)
Hitman Sniper Challenge (HKLM-x32\...\Hitman Sniper Challenge_is1) (Version:  - )
Import souborů SketchUp 2016-2017 (HKLM-x32\...\{063925DB-9D8C-48E2-8F04-1B7038B6C783}) (Version: 2.2.0 - Autodesk)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{AA67D612-0BE5-44D6-9A91-592958F754A1}) (Version: 13.0.198 - Intel Corporation)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.4.1441 - Intel Corporation)
Intel(R) Rapid Start Technology (HKLM-x32\...\3D073343-CEEB-4ce7-85AC-A69A7631B5D6) (Version: 2.1.0.1002 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.6.245 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation)
ISO Workshop 5.9 (HKLM-x32\...\ISO Workshop_is1) (Version:  - Glorylogic)
Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kerbal Space Program (HKLM\...\Steam App 220200) (Version:  - Squad)
Killing Floor (HKLM-x32\...\Steam App 1250) (Version:  - Tripwire Interactive)
Kros (Version: 8.5.940 - Softland) Hidden
KROS 4 (HKLM-x32\...\{30044428-2016-3933-8C01-205EFF81E627}) (Version: 162.100 - ÚRS Praha)
Kros PDF (HKLM-x32\...\{cbdf98e5-5ddf-49bf-b78b-24b70ad5c126}) (Version: 162.100.1.0 - Kros a.s.)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Legend of Grimrock (HKLM-x32\...\Legend of Grimrock_is1) (Version:  - GOG.com)
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
MediaMonkey 4.1 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.1 - Ventis Media Inc.)
Microsoft .NET Framework 4.6 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.7766.2084 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-498093251-2287956375-4192493052-1000\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
Microsoft Project Professional 2013 (HKLM\...\Office15.PRJPROR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Report Viewer 2012 Runtime (HKLM-x32\...\{A047101C-A3AE-4FAD-802F-01C965079F66}) (Version: 11.1.3010.3 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50906.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{99AC7F47-A4E0-4706-9C65-8948775C2652}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft Visio Professional 2013 (HKLM\...\Office15.VISPROR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{820B6609-4C97-3A2B-B644-573B06A0F0CC}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{2af972c7-13b0-4978-92a8-fee26a4fb4e9}) (Version: 12.0.21005.1 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mount&Blade Warband (HKLM-x32\...\Mount&Blade Warband) (Version:  - )
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mushroom 11 (HKLM-x32\...\1443615249_is1) (Version: 2.0.0.2 - GOG.com)
My Game Long Name (HKLM\...\UDK-ac9fe49a-dcfe-4466-9714-ea558d7f2b26) (Version:  - Epic Games, Inc.)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
No More Room in Hell (HKLM\...\Steam App 224260) (Version:  - No More Room in Hell Team)
novaPDF 8 Printer Driver (HKLM\...\{F9F62525-05B6-4AD7-8D30-0D872CC1FB3C}) (Version: 8.5.940 - Softland)
novaPDF 8 SDK COM (x86) (HKLM-x32\...\{A6DF899D-5518-4DAB-A4F9-F7D0CDD43224}) (Version: 8.5.940 - Softland)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
Oblivion: Game of the Year Deluxe Edition (HKLM-x32\...\{ED75073E-C7B4-4EBE-8AEC-9C4CA41E5F2F}}_is1) (Version:  - Bethesda Softworks)
Office 16 Click-to-Run Extensibility Component (Version: 16.0.7766.2084 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.7766.2076 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (Version: 16.0.7668.2066 - Microsoft Corporation) Hidden
OpenTTD 1.3.0 (HKLM-x32\...\OpenTTD) (Version: 1.3.0 - OpenTTD)
Pacemaker Editor (HKLM-x32\...\{89F1F5CF-144F-466B-A939-1675B0022ADE}) (Version: 2.0.2.14170 - Tonium)
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Počítačová aplikace Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 6.2.0.174 - Autodesk)
Pontifex (HKLM-x32\...\Pontifex) (Version:  - )
Premium Service Agreement (HKLM-x32\...\{C33AA6D6-F5EC-48F3-AFDC-8141345D473A}) (Version: 2.0.0 - Dell Inc.)
Prison Architect (HKLM-x32\...\1441974651_is1) (Version: 2.6.0.9 - GOG.com)
Psychonauts (HKLM-x32\...\{A129D1F2-CAC4-4AD7-B26D-3C6411B87DCC}) (Version: 1.0 - Double Fine Productions)
PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden
QualxServ Service Agreement (HKLM-x32\...\{903679E8-44C8-4C07-9600-05C92654FC50}) (Version: 2.0.0 - Dell Inc.)
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.0.09 - Dell Inc.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7601.39025 - Realtek Semiconductor Corp.)
Reason 5.0 (HKLM-x32\...\Reason5_is1) (Version: 5.0 - Propellerhead Software AB)
Recover Files 3.31 (HKLM-x32\...\Recover Files_is1) (Version:  - Undelete & Unerase, Inc.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Rhinoceros 5 (64-bit) (HKLM\...\{98C02DAD-6CA0-467D-BC07-95F6BF53A62A}) (Version: 5.12.50810.13095 - Robert McNeel & Associates)
Rhinoceros 5 Help Media (HKLM-x32\...\{17B822A0-154B-41BB-A049-8586899F1FD6}) (Version: 5.11.50106.18145 - Robert McNeel & Associates)
Rhinoceros 5 Language Pack Installer (cs-CZ) (HKLM-x32\...\{D00846D4-7B80-4F4B-A833-CB92E14E6277}) (Version: 5.11.50106.18145 - Robert McNeel & Associates)
Sanctum 2 (HKLM-x32\...\Steam App 210770) (Version:  - Coffee Stain Studios)
Sid Meiers Civilization VI (HKLM-x32\...\Sid Meiers Civilization VI_is1) (Version:  - )
Silent Storm (HKLM-x32\...\{D219BE4E-4B67-4354-AB10-3EF90A0CC883}) (Version:  - )
SimCity 4 Deluxe (HKLM-x32\...\{3F0D0ABE-CDAF-431A-00BC-CBBE018EA74E}) (Version:  - )
SketchUp 2016 (HKLM-x32\...\{F8F51164-606F-45A2-B706-10B0329BF740}) (Version: 16.1.1450 - Trimble Navigation Limited)
SketchUp 2017 (HKLM\...\{E59BD84C-169B-4F3F-AC5D-85127CF67051}) (Version: 17.2.2555 - Trimble, Inc.)
Skype™ 7.36 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.36.101 - Skype Technologies S.A.)
SpaceChem (HKLM-x32\...\{5157A26D-28AF-4E96-99EE-25D510437653}_is1) (Version: 1012 - Zachtronics Industries)
Speciální aplikace Autodesk 2016 (HKLM-x32\...\{D42F37CD-9AF9-4435-A474-B387C5BB6B47}) (Version: 2.0.0 - Autodesk)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Stardock Central (HKLM-x32\...\Stardock Central) (Version:  - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TeamSpeak 3 Client (HKU\S-1-5-21-498093251-2287956375-4192493052-1000\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
This War of Mine (HKLM-x32\...\This War of Mine_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
Torchlight II version 1.25.5.2 (HKLM-x32\...\Torchlight II_is1) (Version: 1.25.5.2 - )
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
UFO Extraterrestrials Gold (HKLM-x32\...\{F7311566-7EA9-4213-A7F8-E0C237EFAD16}) (Version: 1.0.0 - Chaos Concept)
Universe at War Earth Assault (HKLM-x32\...\InstallShield_{D4658131-9D1A-4395-876D-968E38FE8ED5}) (Version: 1.00.0000 - Petroglyph)
Universe at War Earth Assault (x32 Version: 1.00.0000 - Petroglyph) Hidden
Unturned (HKLM\...\Steam App 304930) (Version:  - Smartly Dressed Games)
Unturned (HKLM-x32\...\Steam App 304930) (Version:  - Nelson Sexton)
Update for Skype for Business 2015 (KB3191876) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PRJPROR_{63B92B9B-BAA1-4708-BB4B-216BB5FD6322}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3191876) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.VISPROR_{63B92B9B-BAA1-4708-BB4B-216BB5FD6322}) (Version:  - Microsoft)
Uplink (HKLM-x32\...\Uplink) (Version:  - )
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
WinRAR 4.20 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
World in Conflict: Soviet Assault (HKLM-x32\...\{F11ADC64-C89E-47F4-A0B3-3665FF859397}) (Version: 1.0.1.0 - Ubisoft Entertainment)
World of Goo 1.30 (HKLM-x32\...\World of Goo 1.30) (Version:  - )
Wunderlist - Wunderlist (HKLM-x32\...\Wunderlist Wunderlist) (Version: 3.19.7 - Wunderlist)
XCOM Enemy Unknown verze 1.1 (HKLM-x32\...\{0C863753-A6B2-4D53-B465-AFFDC6844E7D}_is1) (Version: 1.1 - tomi2k9)
Yamaha USB-MIDI Driver (HKLM-x32\...\InstallShield_{18369253-E53F-4A47-818E-082DFB950872}) (Version: 3.1.2.3 - Yamaha Corporation)
Yamaha USB-MIDI Driver (Version: 3.1.2.3 - Yamaha Corporation) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{0D327DA6-B4DF-4842-B833-2CFF84F0948F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2017\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Dellinka\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{720DB9AF-D62C-4ED0-A377-429C22312852}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2017\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Dellinka\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Dellinka\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Dellinka\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Dellinka\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2017\cs-CZ\acadficn.dll => No File
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Dellinka\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-498093251-2287956375-4192493052-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Dellinka\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {09164922-EB30-4AEE-BD6B-5889B266632C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-26] (Google Inc.)
Task: {24EF0D09-ABC9-45F1-A6E5-A9E36D60B782} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {26F7E207-EAE0-45F5-AD8D-A4991BC48300} - System32\Tasks\AutoUpdate Allplan 2017 => C:\Program Files\Allplan\Allplan 2017\Prg\NemDownloadHandler.exe [2016-12-12] (Allplan GmbH)
Task: {299B037B-2482-4B87-8804-60432A793EA0} - System32\Tasks\Intel® Rapid Start Technology Manager => C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe [2012-07-19] (Intel)
Task: {2C667755-C032-44DA-8791-3FBF2D0E752E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd)
Task: {3AE6E955-7819-4062-AD0E-199E55B32E11} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe [2017-02-21] (AVG Technologies CZ, s.r.o.)
Task: {448FE3EA-7888-4BE8-A89F-8883F4855385} - System32\Tasks\PCDEventLauncher => C:\Program Files\Dell Support Center\sessionchecker.exe [2011-12-14] (PC-Doctor, Inc.)
Task: {44A52788-820F-4B5C-A91A-499B0FD7548F} - System32\Tasks\AutoUpdate Allplan 2016 => C:\Program Files\Allplan\Allplan 2016\Prg\NemDownloadHandler.exe [2016-05-12] (Allplan GmbH)
Task: {70572278-D24D-40A7-A65D-B91E8D2C08C8} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe 
Task: {75BF8B1C-89F9-4E6F-BEC8-6D066D613DE6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-05-06] (Microsoft Corporation)
Task: {7AD14BE0-5AE1-4D86-B6E8-AB120FBC3880} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [2017-05-13] (AVG Technologies CZ, s.r.o.)
Task: {7E666D14-2A95-4355-8475-FECBF35A4F0B} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-05-04] (Microsoft Corporation)
Task: {864D458D-C84F-4E1B-BB85-A85BFE2E68E1} - System32\Tasks\AdobeAAMUpdater-1.0-Dellinka-PC-Dellinka => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe 
Task: {98CAA2D7-C8C2-49AA-BD04-ACCFF6E2C44C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {99B759CF-6038-43CB-8053-540861C3448A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-05-06] (Microsoft Corporation)
Task: {A07ADE8A-9C05-40D2-B7B6-961812DE1CD4} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-05-06] (Microsoft Corporation)
Task: {AACA76D4-4CE4-4D74-A65A-25852D35048A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-26] (Google Inc.)
Task: {AEFB34AD-E820-45D5-B50C-6639A28D0E32} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-09] (Adobe Systems Incorporated)
Task: {CE41F19F-381C-4535-9385-EEA6896B8EFC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated)
Task: {EA684BA9-888D-4465-A5F8-DBBDADFF5DEE} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-05-04] (Microsoft Corporation)
Task: {F35AF7D2-2B18-4B7F-8B64-682C20CD0C46} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Public\Desktop\VideoStudio Learning.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> www.studiobacklot.tv/videostudio

==================== Loaded Modules (Whitelisted) ==============

2016-03-03 16:22 - 2016-03-03 16:22 - 00145696 _____ () C:\Program Files\Softland\novaPDF 8\Server\AgileDotNetRT64.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00163152 _____ () c:\Program Files (x86)\AVG\Antivirus\x64\vaarclient.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00827088 _____ () C:\Program Files (x86)\AVG\Antivirus\x64\ffl2.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00276904 _____ () c:\Program Files (x86)\AVG\Antivirus\x64\StreamBack.dll
2010-02-27 02:14 - 2010-02-27 02:14 - 00019784 _____ () C:\Program Files\Dell\Dell Location and GPS\Dell Location Utility\xpscontrolpanel.ENU.dll
2012-07-09 22:34 - 2012-02-28 08:07 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2017-01-16 14:00 - 2015-07-06 20:33 - 00479232 _____ () C:\Program Files (x86)\Gaming Keyboard\Monitor.exe
2017-01-16 14:00 - 2015-03-25 09:56 - 00372736 _____ () C:\Program Files (x86)\Gaming Keyboard\OSD.exe
2017-05-13 09:57 - 2017-05-09 11:13 - 03767640 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libglesv2.dll
2017-05-13 09:57 - 2017-05-09 11:13 - 00100696 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libegl.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00171344 _____ () C:\Program Files (x86)\AVG\Antivirus\JsonRpcServer.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00178120 _____ () C:\Program Files (x86)\AVG\Antivirus\event_routing_rpc.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00224352 _____ () C:\Program Files (x86)\AVG\Antivirus\tasks_core.dll
2017-06-03 00:02 - 2017-06-03 00:02 - 05995520 _____ () C:\Program Files (x86)\AVG\Antivirus\defs\17060204\algo.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00685784 _____ () C:\Program Files (x86)\AVG\Antivirus\ffl2.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00231760 _____ () C:\Program Files (x86)\AVG\Antivirus\streamback.dll
2017-06-03 10:07 - 2017-06-03 10:07 - 05995520 _____ () C:\Program Files (x86)\AVG\Antivirus\defs\17060300\algo.dll
2016-05-10 12:39 - 2016-07-01 08:39 - 00061968 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\QtSolutions_Service-head.dll
2016-05-10 12:39 - 2016-07-01 08:39 - 00110608 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qjson0.dll
2016-11-28 13:26 - 2016-11-28 13:25 - 48920064 _____ () C:\Program Files (x86)\AVG\UiDll\2623\libcef.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 00999024 _____ () C:\Program Files (x86)\AVG\Antivirus\AvChrome.dll
2017-05-13 09:23 - 2017-05-13 09:23 - 67717632 _____ () C:\Program Files (x86)\AVG\Antivirus\libcef.dll
2016-05-10 12:39 - 2015-11-05 14:07 - 00052224 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qoauth_Ad_1.dll
2016-05-10 12:39 - 2015-11-05 14:07 - 00742400 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qca_Ad_2.dll
2016-05-10 12:39 - 2015-11-05 14:07 - 00195584 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qjson_Ad_0.dll
2016-05-10 12:39 - 2013-09-23 19:52 - 00043912 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\QtSolutions_MFCMigrationFramework_Ad_2.dll
2016-05-10 12:39 - 2016-07-01 08:05 - 00285632 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\cs-CZ\AdWingManRes.dll
2017-01-16 14:00 - 2015-04-30 16:53 - 00057344 _____ () C:\Program Files (x86)\Gaming Keyboard\lan.dll
2017-01-16 14:00 - 2013-07-29 10:46 - 00061440 _____ () C:\Program Files (x86)\Gaming Keyboard\hiddriver.dll
2016-05-10 12:39 - 2015-09-08 08:31 - 40640808 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\libcef.dll
2017-03-20 11:57 - 2017-03-20 11:57 - 00321208 _____ () C:\Program Files (x86)\Evernote\Evernote\libtidy.dll
2016-05-10 12:39 - 2014-09-03 02:29 - 00912384 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\libglesv2.dll
2016-05-10 12:39 - 2014-09-03 02:29 - 00134144 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\libegl.dll
2016-09-17 17:20 - 2014-09-03 02:29 - 00950272 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\ffmpegsumo.dll
2016-07-28 19:38 - 2017-05-17 03:54 - 00678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-07-28 19:38 - 2016-09-01 03:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-07-28 19:38 - 2016-09-01 03:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-07-28 19:38 - 2016-09-01 03:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-07-28 19:38 - 2017-06-01 21:50 - 02485536 _____ () C:\Program Files (x86)\Steam\video.dll
2016-07-28 19:37 - 2016-01-27 09:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2016-07-28 19:37 - 2016-01-27 09:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2016-07-28 19:37 - 2016-01-27 09:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2016-07-28 19:37 - 2016-01-27 09:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2016-07-28 19:37 - 2016-01-27 09:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-07-28 19:38 - 2017-06-01 21:50 - 00877856 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-07-28 19:37 - 2016-07-05 00:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2016-12-13 13:46 - 2017-05-08 21:45 - 69516064 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2016-07-28 19:38 - 2017-06-01 21:50 - 00385312 _____ () C:\Program Files (x86)\Steam\steam.dll
2012-07-09 21:18 - 2012-03-06 21:27 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Windows:CM_0ba363a7c3f210b189d7a120ca395742515e5835eed2fc4a099dedc58a9d605e [74]
AlternateDataStreams: C:\Windows:CM_b9ee48a27745ac9724b986a521a49fc7d56499597164a4af2a8bcbca1cadcbe4 [74]
AlternateDataStreams: C:\Windows:CM_cdfdf49505024624d2decf3e9557d51162be6aba9545d69de4a936f7ba6139f4 [74]
AlternateDataStreams: C:\Windows:CM_d1cca5b43b23e7a102fa897d892102fdacb2faaf6f5875efce3bd0a2c56874f8 [74]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-498093251-2287956375-4192493052-1000\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-498093251-2287956375-4192493052-1000\...\dell.com -> dell.com
IE trusted site: HKU\S-1-5-21-498093251-2287956375-4192493052-1000\...\sharepoint.com -> hxxps://vutbr-files.sharepoint.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2015-08-18 14:52 - 00000035 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-498093251-2287956375-4192493052-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Dellinka\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: 5KPlayer.exe => "C:\Program Files (x86)\DearMob\5KPlayer\5KPlayer.exe" -auto
MSCONFIG\startupreg: ADSKAppManager => "C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe" -tray
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{5A245C53-B96E-490C-A99B-3F6E21562509}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{31B526A5-EF4C-441B-815A-8796DAD821DF}] => (Allow) C:\Users\Dellinka\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{19FF6516-88AB-4D3E-BEEF-92F5C0141568}] => (Allow) C:\Users\Dellinka\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{BAF09F06-7E62-4A52-8C02-D44DD91486DA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A20A2138-35D9-4976-AF86-1BD98CAE51FA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [TCP Query User{F107FE19-2323-4267-A977-5B6BF1962A10}C:\program files (x86)\company of heroes 2\reliccoh2.exe] => (Allow) C:\program files (x86)\company of heroes 2\reliccoh2.exe
FirewallRules: [UDP Query User{17198460-592E-47D6-8FA8-23D26EA90F47}C:\program files (x86)\company of heroes 2\reliccoh2.exe] => (Allow) C:\program files (x86)\company of heroes 2\reliccoh2.exe
FirewallRules: [{92D56322-647B-445D-951D-C8E17FFE31AA}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
FirewallRules: [{17E8675F-2CDB-4E2E-B48E-8435EC6CE70E}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
FirewallRules: [{1798823B-7F6A-4C43-B904-034E33CBA23F}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
FirewallRules: [{D1238A87-E294-42EC-818F-04E6721E619B}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
FirewallRules: [{7E1AC866-E9F2-4DC4-B2C1-8F82719CAA9A}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
FirewallRules: [TCP Query User{65E1658E-BF97-49FC-92EC-7EED89C84605}C:\program files (x86)\steam\steam.exe] => (Allow) C:\program files (x86)\steam\steam.exe
FirewallRules: [UDP Query User{3CFA6135-82C6-493F-9E67-CAC65084EC0F}C:\program files (x86)\steam\steam.exe] => (Allow) C:\program files (x86)\steam\steam.exe
FirewallRules: [TCP Query User{9511D488-8074-4B18-90F7-7A7E0E46D48B}C:\users\public\sierra entertainment\world in conflict\wic.exe] => (Allow) C:\users\public\sierra entertainment\world in conflict\wic.exe
FirewallRules: [UDP Query User{AEA01EF5-B7DE-45F0-8F20-E6B5F72F5EDA}C:\users\public\sierra entertainment\world in conflict\wic.exe] => (Allow) C:\users\public\sierra entertainment\world in conflict\wic.exe
FirewallRules: [{F094B634-EF92-4882-9A17-82B983AB7209}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{A9A9FB35-FBBA-405F-8F91-82F65F46861D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{558DF0F5-1219-4185-861C-9277D6CEF2CC}] => (Allow) C:\Program Files (x86)\World in Conflict\wic.exe
FirewallRules: [{B7D2314A-3A0B-41E7-99B0-88AD48E91B23}] => (Allow) C:\Program Files (x86)\World in Conflict\wic.exe
FirewallRules: [{9930C7B7-A10C-4980-9E2D-7DE79D7389CF}] => (Allow) C:\Program Files (x86)\World in Conflict\wic_online.exe
FirewallRules: [{AEB9B409-5983-4503-84F0-669DF62670B0}] => (Allow) C:\Program Files (x86)\World in Conflict\wic_online.exe
FirewallRules: [{B9971185-5BF7-4DCB-940C-9561994631C4}] => (Allow) C:\Program Files (x86)\World in Conflict\wic_ds.exe
FirewallRules: [{D6D4DCCA-3AE7-44F1-865A-C340C7FDDC8E}] => (Allow) C:\Program Files (x86)\World in Conflict\wic_ds.exe
FirewallRules: [TCP Query User{F1612934-BE55-4489-B0A7-1B12DE688F01}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{DFED722A-6F8D-495D-8094-D77582CAF76D}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{57168714-73D6-42F4-9EA4-3BE9799FF5D4}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{CBEAA7AE-AE12-4666-B07F-0F298EFC1C54}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{712CED57-564B-4909-AC2D-1B12653B22AD}C:\program files (x86)\wic\world in conflict\wic.exe] => (Allow) C:\program files (x86)\wic\world in conflict\wic.exe
FirewallRules: [UDP Query User{3BB63AAF-C094-4CA1-8850-BDC1A28E3A00}C:\program files (x86)\wic\world in conflict\wic.exe] => (Allow) C:\program files (x86)\wic\world in conflict\wic.exe
FirewallRules: [{9C570A21-DFF2-49C3-9CA1-A9D90893F5DC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{395210A5-DE62-4CF5-A1C2-BB2ED268B1A9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sanctum2\Binaries\Win32\SanctumGame-Win32-Shipping.exe
FirewallRules: [{55669157-DC87-4D36-AF58-CE9360C1AC35}] => (Allow) C:\Program Files (x86)\Universe At War Earth Assault\UAWEA.exe
FirewallRules: [{AA0B92C2-AD0C-43BE-AA0D-83B1FD299355}] => (Allow) C:\Program Files (x86)\Universe At War Earth Assault\UAWEA.exe
FirewallRules: [TCP Query User{21F35F39-B2EE-410F-B2AE-933692D6C752}C:\program files (x86)\company of heroes 2\reliccoh2.exe] => (Allow) C:\program files (x86)\company of heroes 2\reliccoh2.exe
FirewallRules: [UDP Query User{FF0176BF-E724-4BA5-BA9A-33CA9510AA33}C:\program files (x86)\company of heroes 2\reliccoh2.exe] => (Allow) C:\program files (x86)\company of heroes 2\reliccoh2.exe
FirewallRules: [TCP Query User{E6FA2563-83D9-40CB-B228-A353CD881F5F}C:\program files (x86)\sudden strike 3 the last stand\sstnsgame.exe] => (Allow) C:\program files (x86)\sudden strike 3 the last stand\sstnsgame.exe
FirewallRules: [UDP Query User{E2624754-D3F3-4BBA-9E77-6C0275405E6C}C:\program files (x86)\sudden strike 3 the last stand\sstnsgame.exe] => (Allow) C:\program files (x86)\sudden strike 3 the last stand\sstnsgame.exe
FirewallRules: [TCP Query User{FAD4331E-4DDC-4B6C-92DA-F0FB24B8ED9B}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [UDP Query User{B894E98C-B0D0-49D0-91E9-5FBC4618A3C1}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [TCP Query User{C8DD9D74-CEB0-406E-97F2-8CB7912BD98F}C:\program files (x86)\world in conflict\wic.exe] => (Allow) C:\program files (x86)\world in conflict\wic.exe
FirewallRules: [UDP Query User{4748E61A-E16C-4712-8F7D-4574E5C1C74B}C:\program files (x86)\world in conflict\wic.exe] => (Allow) C:\program files (x86)\world in conflict\wic.exe
FirewallRules: [TCP Query User{B16C0B6C-DC85-45A7-BB8B-4201DE6F8DBE}C:\users\public\sierra entertainment\world in conflict\wic.exe] => (Allow) C:\users\public\sierra entertainment\world in conflict\wic.exe
FirewallRules: [UDP Query User{578454C5-7A4F-4ECA-86BC-E15D2D97B71C}C:\users\public\sierra entertainment\world in conflict\wic.exe] => (Allow) C:\users\public\sierra entertainment\world in conflict\wic.exe
FirewallRules: [{AFE1361C-B34D-4E99-AF31-5C651AC93E4C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{3E8E964A-EA5E-48F1-BB30-73016AD0658B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{2E26FEAB-E463-4621-8C9C-2FA13A4C9B82}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Unturned\Unturned.exe
FirewallRules: [{C240FD9B-D724-4B40-B677-2A7F84258763}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Unturned\Unturned.exe
FirewallRules: [TCP Query User{0B1A9112-9660-49B4-B2AD-67C214B730E1}C:\users\dellinka\downloads\warcraft iii v. 1.24.4.6387\war3.exe] => (Allow) C:\users\dellinka\downloads\warcraft iii v. 1.24.4.6387\war3.exe
FirewallRules: [UDP Query User{01C5A053-D58E-4450-9BB1-A72C1D5A6061}C:\users\dellinka\downloads\warcraft iii v. 1.24.4.6387\war3.exe] => (Allow) C:\users\dellinka\downloads\warcraft iii v. 1.24.4.6387\war3.exe
FirewallRules: [{F50877B8-26E8-41DC-B51D-2BB95C0FFAE0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{E0C5DDA3-7635-4DA6-95BB-938B6CB1EBB8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{19881496-4161-4656-BAA5-152544E0CA12}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{DAFC174E-FF7B-4D38-9152-6F7DD6EE3F93}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{81E0268A-7690-46FE-A144-D743F5936AA0}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{380A7C5A-2CD1-4135-845A-412D2B6EFA84}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{6863F89C-5100-4EBF-A7D5-EED20E1F1D5D}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{BAA4FC7C-F12F-44EE-9E39-1D96CE10D4DD}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [TCP Query User{922D5D87-3128-4BDB-B481-1DEEF4C488F8}C:\program files (x86)\heroes of the storm public test\versions\base34880\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm public test\versions\base34880\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{887AB82D-67FE-403B-8026-36FD6621769C}C:\program files (x86)\heroes of the storm public test\versions\base34880\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm public test\versions\base34880\heroesofthestorm_x64.exe
FirewallRules: [{ABD6C6CE-0582-4158-996E-7B6BADC1DE11}] => (Allow) %ProgramFiles% (x86)\Heroes of the Storm Public Test\Heroes of the Storm Public Test.exe
FirewallRules: [{B7A7BDA8-C10C-4937-B5D0-540D89FAFD2C}] => (Allow) %ProgramFiles% (x86)\Heroes of the Storm Public Test\Heroes of the Storm Public Test.exe
FirewallRules: [TCP Query User{29A36F74-AA92-4485-9F9E-3A309A36F1E5}C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{790BE7C1-FF84-4FA2-AF82-EFF2F46A1007}C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{A4CB5D9F-38D4-492B-A275-8432C71BBA55}C:\program files (x86)\grey goo\goog.exe] => (Allow) C:\program files (x86)\grey goo\goog.exe
FirewallRules: [UDP Query User{6A8FDCA8-D2D5-4950-A271-CD453BC99BF1}C:\program files (x86)\grey goo\goog.exe] => (Allow) C:\program files (x86)\grey goo\goog.exe
FirewallRules: [TCP Query User{6FB8DF9E-CE86-4469-A04F-14A19281AB22}C:\program files (x86)\grey goo\instanceserverg.exe] => (Allow) C:\program files (x86)\grey goo\instanceserverg.exe
FirewallRules: [UDP Query User{7486E7F7-002B-400C-8343-0B94E9AC341B}C:\program files (x86)\grey goo\instanceserverg.exe] => (Allow) C:\program files (x86)\grey goo\instanceserverg.exe
FirewallRules: [TCP Query User{AEB913E6-64E1-421B-840D-924171B8A22D}C:\program files (x86)\formatfactory\formatfactory.exe] => (Allow) C:\program files (x86)\formatfactory\formatfactory.exe
FirewallRules: [UDP Query User{3E84CAC8-EAA7-4B26-8399-DFF601C1BBF5}C:\program files (x86)\formatfactory\formatfactory.exe] => (Allow) C:\program files (x86)\formatfactory\formatfactory.exe
FirewallRules: [{49F460FC-459B-46C7-ACAB-8113BD8D60C3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Alien Swarm\swarm.exe
FirewallRules: [{7350C44A-B790-447B-92FA-28BA595A3506}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Alien Swarm\swarm.exe
FirewallRules: [{89398780-EFBF-41EB-8ED0-1FD935AF14E7}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{CDF67B05-BE92-4BE4-9454-257C79B0D02E}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [TCP Query User{007E9CE5-7054-4D67-9A15-AB32C19BBE15}C:\program files (x86)\mediamonkey\mediamonkey.exe] => (Allow) C:\program files (x86)\mediamonkey\mediamonkey.exe
FirewallRules: [UDP Query User{88F8EB50-7C01-4779-B0AD-BF5E607397B9}C:\program files (x86)\mediamonkey\mediamonkey.exe] => (Allow) C:\program files (x86)\mediamonkey\mediamonkey.exe
FirewallRules: [TCP Query User{F4E3ABDD-F5B3-46E3-9E83-E671F5DCB20F}C:\program files (x86)\mediamonkey\mediamonkey.exe] => (Allow) C:\program files (x86)\mediamonkey\mediamonkey.exe
FirewallRules: [UDP Query User{70A89F34-CF99-48DE-9C2B-EEE62FFE1299}C:\program files (x86)\mediamonkey\mediamonkey.exe] => (Allow) C:\program files (x86)\mediamonkey\mediamonkey.exe
FirewallRules: [TCP Query User{2DF08532-EDBE-4905-B8AC-C2EFEFEC94F8}C:\program files (x86)\total war attila\attila.exe] => (Block) C:\program files (x86)\total war attila\attila.exe
FirewallRules: [UDP Query User{45261513-C9A9-438F-B9CE-DB8DB86CAC8D}C:\program files (x86)\total war attila\attila.exe] => (Block) C:\program files (x86)\total war attila\attila.exe
FirewallRules: [TCP Query User{C1FE605B-A8EC-4B33-B759-FE051FE83305}C:\users\dellinka\downloads\3dmgame-planet.explorers.steam.edition.v0.81.cracked-3dm\planet explorers\pe_client.exe] => (Allow) C:\users\dellinka\downloads\3dmgame-planet.explorers.steam.edition.v0.81.cracked-3dm\planet explorers\pe_client.exe
FirewallRules: [UDP Query User{21669B92-D4C9-433F-8C98-45FB64305DFB}C:\users\dellinka\downloads\3dmgame-planet.explorers.steam.edition.v0.81.cracked-3dm\planet explorers\pe_client.exe] => (Allow) C:\users\dellinka\downloads\3dmgame-planet.explorers.steam.edition.v0.81.cracked-3dm\planet explorers\pe_client.exe
FirewallRules: [{4EEE2105-0FCB-430B-8BDB-A9DA584CD02C}] => (Block) C:\Program Files (x86)\ArchiCAD 19\ArchiCAD.exe
FirewallRules: [{44442505-006C-49DC-BADD-E76499F3D71D}] => (Block) C:\Program Files (x86)\ArchiCAD 19\CineRender\CineRender 64bit.exe
FirewallRules: [{1304D838-A357-48EC-A796-89191568FF5A}] => (Allow) C:\Program Files (x86)\ArchiCAD 19\BIMxUploader.exe
FirewallRules: [TCP Query User{73BB9D63-5841-4CCE-85BD-35771E354A85}C:\users\dellinka\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\dellinka\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{F9C28939-7E1B-40C9-9C2A-005FA9E592F5}C:\users\dellinka\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\dellinka\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{8D4B039F-87EF-4AA1-9FEA-7DE430D54581}C:\program files (x86)\archicad 19\licensefilegenerator.exe] => (Allow) C:\program files (x86)\archicad 19\licensefilegenerator.exe
FirewallRules: [UDP Query User{0D9181F4-6204-449B-9A3C-15EDFAC5E0FC}C:\program files (x86)\archicad 19\licensefilegenerator.exe] => (Allow) C:\program files (x86)\archicad 19\licensefilegenerator.exe
FirewallRules: [TCP Query User{4C6C255A-2A18-4A61-89A6-298539B1F5A4}C:\users\dellinka\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\dellinka\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{0B488799-7044-472B-B393-5C6398DCD1DF}C:\users\dellinka\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\dellinka\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{F17F30AC-06B0-42FA-8725-B2DBCFDDF44D}C:\games\masterspace\masterspace.exe] => (Allow) C:\games\masterspace\masterspace.exe
FirewallRules: [UDP Query User{4C8960BD-9B6E-4242-AA3E-CC38B3D12098}C:\games\masterspace\masterspace.exe] => (Allow) C:\games\masterspace\masterspace.exe
FirewallRules: [{F6DB9E20-E372-4AC1-BC56-AE7BA5454D65}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [TCP Query User{2FA8FB2B-4AC9-4087-916F-A18230487C15}C:\games\dead island\deadislandgame.exe] => (Block) C:\games\dead island\deadislandgame.exe
FirewallRules: [UDP Query User{2FA9F7F3-5EDB-41BD-B69E-C92911A667F0}C:\games\dead island\deadislandgame.exe] => (Block) C:\games\dead island\deadislandgame.exe
FirewallRules: [{D3E8D486-6E31-4776-9DD0-522751C685E4}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [TCP Query User{6AC4F908-5175-431B-AF99-D4F4D74D7BB2}C:\program files\java\jre1.8.0_91\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_91\bin\javaw.exe
FirewallRules: [UDP Query User{C076B4ED-29B3-4A4D-BD02-0416427CA29D}C:\program files\java\jre1.8.0_91\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_91\bin\javaw.exe
FirewallRules: [TCP Query User{67442678-BC29-4B9A-9733-72218CFC5516}C:\program files (x86)\dearmob\5kplayer\5kplayer.exe] => (Block) C:\program files (x86)\dearmob\5kplayer\5kplayer.exe
FirewallRules: [UDP Query User{F5584E6D-1462-4229-89D0-A8AA534719B7}C:\program files (x86)\dearmob\5kplayer\5kplayer.exe] => (Block) C:\program files (x86)\dearmob\5kplayer\5kplayer.exe
FirewallRules: [{547B0300-603A-49E8-AFA9-A0A40A439245}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{989A4545-219C-478F-8CF7-AC3AC648F273}C:\program files (x86)\dearmob\5kplayer\5kplayer.exe] => (Block) C:\program files (x86)\dearmob\5kplayer\5kplayer.exe
FirewallRules: [UDP Query User{ECB5B4BC-202C-4FB1-8696-ED2CAA260FEC}C:\program files (x86)\dearmob\5kplayer\5kplayer.exe] => (Block) C:\program files (x86)\dearmob\5kplayer\5kplayer.exe
FirewallRules: [{85D20903-FF60-4FBD-9428-CD2BAB3ED042}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nmrih\sdk\hl2.exe
FirewallRules: [{B0655087-6BB8-4ABA-8435-033B984A9B19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nmrih\sdk\hl2.exe
FirewallRules: [{564D7B64-9844-46E2-A377-C7E5A3FE0651}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{F4AAC6D0-2BC2-4FEE-9A5E-92A11125AF1D}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{6A41D4CC-5FFE-4CD0-9E12-C8BB38F21B9C}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{1CD5C928-C2B0-4F7E-8A2F-B946EDE774D2}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{F6416BD8-6C4A-46FD-BA3F-41C96B09E68F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{682616E7-6B3F-4547-B19C-0E980AB06845}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{7C315391-2BE6-4D58-B3BD-FDBC60ADF0E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe
FirewallRules: [{4208DEED-2CD5-42F2-B6D9-BF2817BE0B3C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe
FirewallRules: [{C7247D2E-99FE-4F9E-A3CC-B5EBD3DBEBC7}] => (Allow) LPort=8501
FirewallRules: [{8A5BAEF8-FAE0-40FC-9E59-1E9A49FB347C}] => (Allow) LPort=8501
FirewallRules: [{533014B1-B3DF-4F6E-A082-933468BB9B75}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{F9BF810C-3FA1-4036-8846-5FBCEA1F9916}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{FB5AD14D-084F-4AE0-B16D-F59BAE58490C}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{4830ABF1-CC2B-4261-9213-E49831189467}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{6264B7A4-0BA5-44C1-90F7-744B9204A8E3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned_BE.exe
FirewallRules: [{5A6225E5-CABD-4262-96D7-19E124A605CE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned_BE.exe
FirewallRules: [{D410D291-1500-4567-9C80-1638C4FA8486}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{10B55F14-9839-4B7E-B846-A5F41E739CE5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{CCB7E0D7-9883-4362-93FD-2D6624C869D7}] => (Block) C:\Program Files\ARCHICAD 20\ARCHICAD.exe
FirewallRules: [{7DC2D0DF-1E55-48BD-9865-3648BE6AB0FE}] => (Block) C:\Program Files\ARCHICAD 20\CineRender\CineRender 64bit.exe
FirewallRules: [{2684E7D0-20CD-495E-88C7-21FE9FC5709E}] => (Allow) C:\Program Files\ARCHICAD 20\BIMxUploader.exe
FirewallRules: [{EE3D4427-CF25-41D6-809F-58BAC5B63F0F}] => (Block) C:\Program Files\ARCHICAD 20\OverwatchServer.exe
FirewallRules: [{06B87DB4-B50D-474E-B8B3-3D609B47D660}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{5816ED2C-CFD6-4554-8CA9-66CD2AF2F8CC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{E5085710-CAA6-4880-9D11-9B409C782CFC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{0FC726A2-5FF4-44BF-9D80-385DAB97A669}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{CD91A16F-A2BA-4695-AD58-BBDB8EC1D1EB}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{C8C608AC-405D-4120-93C6-50940ED96CF8}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe
FirewallRules: [{F9ECFD1E-0E61-4BB5-B29A-6E0821FF54F9}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe
FirewallRules: [{565F0303-FCF8-4D29-9D41-D6520369C7BF}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe
FirewallRules: [{64F36444-DA9B-4650-ACF5-2C9411FD2780}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe
FirewallRules: [{D0F4EC0E-4164-4584-91BC-4E8986351D6F}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe
FirewallRules: [{3DEC5DD4-D513-4CC2-B746-D8795696B874}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe
FirewallRules: [{2F0E1204-AB10-4D32-93EB-F54305972BCF}] => (Allow) c:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{89D9F31E-6F33-49B2-8711-BDFA8D1AB44E}] => (Allow) C:\Users\Dellinka\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{9FFA570E-8C68-42E1-9262-F1A773548CDA}] => (Allow) C:\Program Files (x86)ANNO 2070\Anno5.exe
FirewallRules: [{D588893D-4BA8-4CC5-BC80-80F7092F31CE}] => (Allow) C:\Program Files (x86)ANNO 2070\Anno5.exe
FirewallRules: [{CA604E2C-7E1C-4945-9E1B-C2AAA470F22A}] => (Allow) C:\Program Files (x86)ANNO 2070\AutoPatcher.exe
FirewallRules: [{DD783DC5-3C12-4C61-8653-2B8E5AC385DD}] => (Allow) C:\Program Files (x86)ANNO 2070\AutoPatcher.exe
FirewallRules: [{9AE72D9B-78DE-42C3-8EF7-3F5065AA2823}] => (Allow) C:\Program Files (x86)ANNO 2070\InitEngine.exe
FirewallRules: [{171CD310-570B-479C-B24B-0DA18B7F1901}] => (Allow) C:\Program Files (x86)ANNO 2070\InitEngine.exe
FirewallRules: [{04453E99-559C-4E3D-8E31-719982F4E17A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
DomainProfile\AuthorizedApplications: [C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe] => Enabled:CodeMeter Runtime Server
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe] => Enabled:CodeMeter Runtime Server

==================== Restore Points =========================

30-05-2017 00:00:00 Scheduled Checkpoint

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/03/2017 07:20:06 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (06/03/2017 10:07:17 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (06/03/2017 09:37:03 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (05/31/2017 05:30:19 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (05/31/2017 12:54:01 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (05/31/2017 01:01:47 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (05/29/2017 06:49:53 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (05/29/2017 06:40:19 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (05/29/2017 05:52:08 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AUDIODG.EXE, version: 6.1.7601.23471, time stamp: 0x57601f74
Faulting module name: ntdll.dll, version: 6.1.7601.23796, time stamp: 0x590296ce
Exception code: 0xc0000005
Fault offset: 0x0000000000023de5
Faulting process id: 0x222c
Faulting application start time: 0x01d2d7ea46ac3a66
Faulting application path: C:\Windows\system32\AUDIODG.EXE
Faulting module path: C:\Windows\SYSTEM32\ntdll.dll
Report Id: 2f5cefd3-4422-11e7-9e62-e006e60abf1a

Error: (05/28/2017 09:27:14 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.


System errors:
=============
Error: (06/03/2017 10:09:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Dell Digital Delivery Service service failed to start due to the following error: 
The system cannot find the file specified.

Error: (06/03/2017 10:06:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The MBAMService service failed to start due to the following error: 
The system cannot find the file specified.

Error: (06/03/2017 10:06:39 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\Windows\system32\athihvs.dll

Error: (06/03/2017 10:06:39 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\Windows\system32\athihvs.dll

Error: (06/03/2017 10:06:34 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.

Module Path: C:\Windows\system32\athihvs.dll

Error: (06/03/2017 10:05:32 AM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error: 
An instance of the service is already running.

Error: (06/03/2017 10:05:02 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Intel(R) Management and Security Application User Notification Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (06/03/2017 10:05:02 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Intel(R) Rapid Storage Technology service terminated unexpectedly.  It has done this 1 time(s).

Error: (06/03/2017 10:05:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Media Player Network Sharing Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.

Error: (06/03/2017 10:05:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Search service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.


CodeIntegrity:
===================================
  Date: 2015-12-21 17:06:48.966
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Common Files\ATI Technologies\Multimedia\AMDMFTDecoder_64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-08-17 15:36:57.939
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-08-17 15:36:57.908
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-08-17 15:36:57.877
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-08-17 15:36:57.830
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-08-17 09:19:03.133
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-08-17 09:19:03.086
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7-3517U CPU @ 1.90GHz
Percentage of memory in use: 55%
Total physical RAM: 8069.59 MB
Available physical RAM: 3622.17 MB
Total Virtual: 15993.45 MB
Available Virtual: 10300.26 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:451.91 GB) (Free:8.86 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: F0802C22)
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Active) - (Size=13.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=451.9 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 8 GB) (Disk ID: F0802C09)
Partition 1: (Not Active) - (Size=8 GB) - (Type=84)

==================== End of Addition.txt ============================