Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-06-2017 01
Ran by Jarda (09-06-2017 18:49:38)
Running from C:\Users\Jarda\Desktop
Windows 8 (X64) (2017-05-09 06:43:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2214875189-3760211905-2910999632-500 - Administrator - Disabled) => C:\Users\Administrator
Guest (S-1-5-21-2214875189-3760211905-2910999632-501 - Limited - Disabled)
Jarda (S-1-5-21-2214875189-3760211905-2910999632-1002 - Administrator - Enabled) => C:\Users\Jarda
UpdatusUser (S-1-5-21-2214875189-3760211905-2910999632-1008 - Limited - Enabled) => C:\Users\UpdatusUser.Jaroslav

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3013 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3016 - Acer Incorporated)
AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.2008 - Acer Incorporated)
AcerCloud Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.2021 - Acer Incorporated)
Aktualizácie NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.100.2020.106 - Alps Electric)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Broadcom Card Reader Driver Installer (HKLM\...\{67AA948F-8D83-4566-B84A-7CAABCF64E3F}) (Version: 16.0.2.3 - Broadcom Corporation)
Broadcom Wireless Utility (HKLM\...\{4CDA59B9-7AD3-4283-9F5C-BC469FF975B6}) (Version: 6.30.59.20 - Broadcom Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6623 - CDBurnerXP)
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.2012 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.2016 - Acer Incorporated)
clear.fi SDK - Video 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
clear.fi SDK- Movie 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
CyberLink MediaEspresso 6.5 (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.3729_45993 - CyberLink Corp.)
Delicious: Emily's Childhood Memories Premium Edition (x32 Version: 3.0.2.32 - WildTangent) Hidden
Dritek Radio Controller (HKLM-x32\...\RadioController) (Version: 2.02.2001.0803 - Dritek System Inc.)
Dying Light - Crash Test Skin Pack (HKLM-x32\...\Dying Light: Crash Test Skin Pack_is1) (Version: 2.1.0.9 - GOG.com)
Dying Light - Gun Psycho Bundle (HKLM-x32\...\Dying Light: Gun Psycho Bundle_is1) (Version: 2.1.0.9 - GOG.com)
Dying Light - Harran Ranger Bundle (HKLM-x32\...\Dying Light: Harran Ranger Bundle_is1) (Version: 2.1.0.9 - GOG.com)
Dying Light - Volatile Hunter Bundle (HKLM-x32\...\Dying Light: Volatile Hunter Bundle_is1) (Version: 2.1.0.9 - GOG.com)
Dying Light (HKLM-x32\...\1448452156_is1) (Version: 2.4.0.13 - GOG.com)
ETDWare PS/2-X64 11.6.24.203_WHQL (HKLM\...\Elantech) (Version: 11.6.24.203 - ELAN Microelectronic Corp.)
FormatFactory 4.0.0.0 (HKLM-x32\...\FormatFactory) (Version: 4.0.0.0 - Free Time)
gBurner Virtual Drive (HKLM-x32\...\gBurner Virtual Drive) (Version: 4.3 - Power Software Ltd)
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3006 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2867 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version:  - Tonec Inc.)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.1.2.2 - PandoraTV)
Launch Manager (HKLM-x32\...\LManager) (Version: 7.0.10 - Acer Inc.)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3010 - Acer Incorporated)
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Malwarebytes Anti-Malware verzia 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft Primary Interoperability Assemblies 2010 (HKLM-x32\...\{FA8E7AF5-C70E-3274-9740-9E697FBD5BB7}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Mozilla Firefox 53.0.2 (x86 sk) (HKLM-x32\...\Mozilla Firefox 53.0.2 (x86 sk)) (Version: 53.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 53.0.2.6333 - Mozilla)
Nero 7 Essentials (HKLM-x32\...\{91C0B95B-B83A-4828-A775-BBE2DD421051}) (Version: 7.02.9752 - Nero AG)
Nero BackItUp 12 Essentials OEM.a01 (HKLM-x32\...\{4CA8F973-6377-4ABF-9ED5-CC2323B3C000}) (Version: 12.5.00500 - Nero AG)
NVIDIA Grafický ovládač 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer)
Ovládací panel NVIDIA 376.54 (Version: 376.54 - NVIDIA Corporation) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Prerequisite installer (x32 Version: 12.0.0003 - Nero AG) Hidden
Prison Break (HKLM-x32\...\{C5A31DDC-157A-4DD7-9B5C-C692A06F61FD}) (Version: 1.00 - Deep Silver)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.220 - Qualcomm Atheros Communications)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.41 - Qualcomm Atheros)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6657 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.0.1 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.1 - VS Revo Group, Ltd.)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.)
Scorpions WinCheater (HKLM-x32\...\Scorpions WinCheater 2.07   (s databází 112)_is1) (Version:  - )
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.4.99.ga249b5f1 - Spotify AB)
Start Menu 8 (HKLM-x32\...\IObit_StartMenu8_is1) (Version: 3.1.0.2 - IObit)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.3.4.0 - Synaptics Incorporated)
Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent)
WildTangent Games App (x32 Version: 4.0.10.5 - WildTangent) Hidden
Windows Driver Package - Intel (NETwNe64) net  (08/07/2012 15.5.0.42) (HKLM\...\3208E409D1A9ECC0257784D7C0AEAC3BA826402A) (Version: 08/07/2012 15.5.0.42 - Intel)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
WinToHDD version 2.5 (HKLM\...\WinToHDD_is1) (Version: 2.5 - Hasleo Software.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1AE0B3B5-CF99-44D7-992B-ED67E67E29E3} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-03-16] (Acer Incorporated)
Task: {2F0E914B-19D7-48C3-BF08-594FF640A24F} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-03-13] ()
Task: {56015902-8960-4700-AC5C-881A62CF04BA} - System32\Tasks\iDMult => Rundll32.exe "C:\Program Files\iDMult\iDMult.dll",DdaoyLuPcx
Task: {5EC627A3-C8EE-44C1-A27F-7FC5D02739A2} - System32\Tasks\ALU_SelfUpgrade => C:\ProgramData\Acer\updater2\Download\52972008\D\UpgradeDownload.exe [2017-06-02] ()
Task: {79BA97CA-A8E7-4986-9FD2-E5D02F5593A7} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2013-02-08] (CyberLink)
Task: {881C2582-9CFD-40BC-A2B2-298FBA11C0F1} - System32\Tasks\Synaptics TouchPad Enhancements => Program Files\Synaptics\SynTP\SynTPEnh.exe
Task: {9476F21E-2F4B-4159-8391-1E16B4D66947} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {BA666457-C2E9-44B4-BA24-51F52758DE09} - System32\Tasks\BDDFools 8 v1-02 2009 => Rundll32.exe "C:\Program Files\BDDFools 8 v1.02 2009\BDDFools 8 v1.02 2009.dll",yMqnwwnYC
Task: {CDBCB407-CDF0-45FA-B8F3-2B8033F15ADE} - System32\Tasks\DigiTert => Rundll32.exe "C:\Program Files\DigiTert\DigiTert.dll",qcQsKF
Task: {DA78B487-8FC4-4083-B0C5-713D5FB1FA2E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd)
Task: {E5CCCCCF-3712-4068-BA83-8E50B4F47CEF} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\Windows\system32\EOSNotify.exe [2016-06-25] (Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\Jarda\Favorites\Acer\Acer.lnk -> hxxp://www.acer.com

==================== Loaded Modules (Whitelisted) ==============

2017-06-06 16:20 - 2015-06-01 21:15 - 02425344 _____ () C:\Program Files\DigiTert\DigiTert.dll
2017-05-09 11:10 - 2016-12-29 15:16 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-06-05 23:42 - 2017-06-06 17:00 - 00307200 _____ () C:\Windows\TEMP\gE06.tmp.exe
2017-06-05 23:43 - 2017-06-09 18:39 - 00479232 _____ () C:\Windows\TEMP\g4D34.tmp.exe
2013-01-28 14:45 - 2013-01-28 14:45 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-01-28 14:42 - 2013-01-28 14:42 - 00084992 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2013-01-28 14:47 - 2013-01-28 14:47 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
2013-03-27 10:32 - 2012-10-23 20:37 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2016-02-12 23:13 - 2016-02-12 23:13 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1051.dll
2017-05-09 10:08 - 2015-12-29 11:30 - 00625440 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2017-05-09 10:08 - 2015-12-29 11:30 - 00355616 _____ () C:\Program Files (x86)\IObit\Classic Start\madExcept_.bpl
2017-05-09 10:08 - 2015-12-29 11:29 - 00190240 _____ () C:\Program Files (x86)\IObit\Classic Start\madBasic_.bpl
2017-05-09 10:08 - 2015-12-29 11:30 - 00057632 _____ () C:\Program Files (x86)\IObit\Classic Start\madDisAsm_.bpl
2017-05-09 10:08 - 2015-12-29 11:30 - 00275576 _____ () C:\Program Files (x86)\IObit\Classic Start\sqlite3.dll
2017-05-09 10:08 - 2015-12-29 11:30 - 00059680 _____ () C:\Program Files (x86)\IObit\Classic Start\parseAuto.dll
2017-05-09 10:08 - 2015-12-29 11:30 - 00625440 _____ () C:\Program Files (x86)\IObit\Classic Start\ProductStatistics.dll
2017-05-09 10:08 - 2015-12-29 11:31 - 00047904 _____ () C:\Program Files (x86)\IObit\Classic Start\winkey.dll
2017-06-03 08:23 - 2017-06-03 08:23 - 00016384 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\PSIClient\72353bd9dfbbe67146752a76b121c56a\PSIClient.ni.dll
2013-05-09 21:38 - 2012-06-26 01:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:7F55AA4E [131]
AlternateDataStreams: C:\Users\Jarda\Desktop\desktop.ini:gs5sys [3074]
AlternateDataStreams: C:\Users\Jarda\Documents\desktop.ini:gs5sys [2048]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-26 07:26 - 2017-06-05 21:59 - 00013474 _____ C:\Windows\system32\Drivers\etc\hosts

127.0.0.1	gf.tools.avast.com
127.0.0.1	pair.ff.avast.com
127.0.0.1	ipm-provider.ff.avast.com
127.0.0.1	ipm-provider.ff.avast.com
127.0.0.1	ipm-provider.ff.avast.com
127.0.0.1	id.avast.com
127.0.0.1	v4618535.iavs9x.u.avast.com
127.0.0.1	v4618535.ivps9x.u.avast.com
127.0.0.1	v4618535.ivps9tiny.u.avast.com
127.0.0.1	v4618535.vpsnitro.u.avast.com
127.0.0.1	v4618535.vpsnitrotiny.u.avast.com
127.0.0.1	v4618535.iavs5x.u.avast.com
127.0.0.1	v7.stats.avast.com
127.0.0.1	v7.stats.avast.com
127.0.0.1	v7event.stats.avast.com
127.0.0.1	sm00.avast.com
127.0.0.1	submit5.avast.com
127.0.0.1	geoip.avast.com
127.0.0.1	w9448963.iavs9x.u.avast.com
127.0.0.1	w9448963.ivps9x.u.avast.com
127.0.0.1	w9448963.ivps9tiny.u.avast.com
127.0.0.1	w9448963.vpsnitro.u.avast.com
127.0.0.1	w9448963.vpsnitrotiny.u.avast.com
127.0.0.1	w9448963.iavs5x.u.avast.com
127.0.0.1	v7.stats.avast.com
127.0.0.1	v7.stats.avast.com
127.0.0.1	v7event.stats.avast.com
127.0.0.1	sm00.avast.com
127.0.0.1	submit5.avast.com
127.0.0.1	geoip.avast.com

There are 330 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2214875189-3760211905-2910999632-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Jarda\Desktop\facebook\FB_IMG_14910636945568693.jpg
DNS Servers: 192.168.1.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKU\S-1-5-21-2214875189-3760211905-2910999632-1002\...\StartupApproved\Run: => "GCDTRAY.EXE"
HKU\S-1-5-21-2214875189-3760211905-2910999632-1002\...\StartupApproved\Run: => "Steam"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{D71E1AE1-45C2-4966-8489-8A85168B58A4}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{E06649C3-05DF-45CC-9185-A33AB1CBA17F}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{4EB901AB-4E78-49EF-8286-317E37281743}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{7D2829FA-C45A-4F87-B0B2-C0874B3A0BAE}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{CE5CE701-4CC5-4687-A7FF-E87ECDFC6963}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{2C3DE41D-B6D1-4813-B61E-D7BF1311999D}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{E11D13F6-E3C1-4956-8D25-1B7777A45200}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{D315C965-A8C0-4D5D-A895-1C9FB9D5C7BC}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{8089AFE8-8334-43FC-B0FE-DF0FB372849A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{C33445E8-75C1-47AA-80CE-63A78602592D}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{58280BCA-443C-46F2-AD5C-39FDDB42F6DD}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe
FirewallRules: [{589B9151-AFC3-4C27-894A-787CB4CB3EEF}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{52D11CDA-A404-4404-AFE7-A8B31BFBFB82}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{76A996FF-F5FF-4F7A-8387-D55EEC1D3DCE}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{1E1D1028-8625-4393-B0CE-B8EC387953E1}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{47560BAE-1601-404F-86EC-905C2FBA12A4}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{E96D9717-96DF-4ACF-A2E1-F354AFDCBFCE}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{C55DD2FD-C1A0-45ED-9068-99A76A41A8D0}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{30594E85-A17A-47C3-BC32-FE4D151FEB77}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{AE35F9A3-85BB-4646-B71C-84BD5E43CCC4}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{A53D7B3D-AA66-4221-9BA7-548225BC99BE}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{B38E27A4-6F6F-434D-A537-9636A16B5AF5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{E620FFFF-5464-4F85-BCF9-BEC86F2B3F4A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{44898D34-6976-496E-B831-84A1CF264CCA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{6EB7C4A4-5CB7-4ABE-AC05-1A6AAFDA8291}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{666AD4C2-AECA-4EEA-8091-DCAAD98C9B33}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{AEC10CDA-C3E4-4F69-8844-9F85B0ABFD99}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe
FirewallRules: [{7CB2BCB9-019B-4BD1-B2CB-9A4B1CC03944}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{6D5E382C-EFBF-4D4B-8DAA-689377C7EED9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{9110A410-4213-4137-A4B0-F4738A932419}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{FD251DFF-D8D4-4E0A-BE25-F62BCA9B346F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [TCP Query User{34F222AF-7FEB-4EF3-8CA1-A8D1B1BB4BB2}C:\users\jarda\saved games\dying light\dyinglightgame.exe] => (Allow) C:\users\jarda\saved games\dying light\dyinglightgame.exe
FirewallRules: [UDP Query User{BE7CD83D-8C70-42D9-9667-B8A01089D039}C:\users\jarda\saved games\dying light\dyinglightgame.exe] => (Allow) C:\users\jarda\saved games\dying light\dyinglightgame.exe
FirewallRules: [TCP Query User{E59B12AF-BF60-42B3-98F7-E45F541E0505}C:\users\jarda\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jarda\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{1820AB02-D2AC-4EC9-8BAC-4713B4FF5138}C:\users\jarda\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jarda\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{76AE0F24-5675-4813-A207-2A9F62FC7F2A}C:\users\jarda\desktop\igg-left4deadv1.0.2.7\igg-left4deadv1.0.2.7\left4dead.exe] => (Allow) C:\users\jarda\desktop\igg-left4deadv1.0.2.7\igg-left4deadv1.0.2.7\left4dead.exe
FirewallRules: [UDP Query User{7CB286E0-A6CA-49D6-89E9-6A86470E8371}C:\users\jarda\desktop\igg-left4deadv1.0.2.7\igg-left4deadv1.0.2.7\left4dead.exe] => (Allow) C:\users\jarda\desktop\igg-left4deadv1.0.2.7\igg-left4deadv1.0.2.7\left4dead.exe
FirewallRules: [{7A1675B2-02E4-4BBA-87AB-0C7D28239514}] => (Allow) C:\Windows\system32\rundll32.exe
FirewallRules: [{D1D0560A-564E-4377-B735-AA422B6BC17E}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{67FCB89F-AF1C-4A91-A2AD-ECCF489BCBD7}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{3BB0998D-3385-4460-930F-B45EE8EC1A03}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{E9618330-E1DC-4880-99F9-543F53DEDF1B}] => (Allow) C:\Windows\System32\rundll32.exe

==================== Restore Points =========================

05-06-2017 22:06:53 Revo Uninstaller's restore point - 1.0.0.1
05-06-2017 23:35:48 Revo Uninstaller's restore point - FreeArc 0.666
05-06-2017 23:37:31 Revo Uninstaller's restore point - GTA IV: San Andreas
06-06-2017 09:56:50 Revo Uninstaller's restore point - The Walking Dead Survival Instinct (c) Activision version 1
06-06-2017 09:58:30 Revo Uninstaller's restore point - µTorrent
06-06-2017 10:09:09 Revo Uninstaller's restore point - The Walking Dead Survival Instinct (c) Activision version 1
06-06-2017 13:49:17 Revo Uninstaller's restore point - Deadlight
06-06-2017 13:52:49 Revo Uninstaller's restore point - Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
06-06-2017 13:53:13 Removed Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
06-06-2017 13:55:06 Revo Uninstaller's restore point - Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
06-06-2017 13:55:31 Removed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/09/2017 06:42:16 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Notifications for the volume C:\ are not active. 

Context: Windows Application

Details:
	Denník zmien zväzku sa odstraňuje.  (HRESULT : 0x8007049a) (0x8007049a)

Error: (06/06/2017 06:16:49 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (06/06/2017 06:16:49 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (06/06/2017 04:18:44 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Notifications for the volume C:\ are not active. 

Context: Windows Application

Details:
	Denník zmien zväzku sa odstraňuje.  (HRESULT : 0x8007049a) (0x8007049a)

Error: (06/06/2017 02:07:53 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (06/06/2017 02:07:53 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (06/06/2017 01:49:16 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Prístup je odmietnutý.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {d64e44e6-2668-4071-bcb6-657d7cde0fb8}

Error: (06/06/2017 01:48:47 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program mmc.exe version 6.2.9200.16496 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 1724

Start Time: 01d2deb9ec7c75c6

Termination Time: 4294967295

Application Path: C:\Windows\system32\mmc.exe

Report Id: 1694cd69-4aae-11e7-be9c-bc8556123412

Faulting package full name: 

Faulting package-relative application ID:

Error: (06/06/2017 01:34:18 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (06/06/2017 01:34:18 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.


System errors:
=============
Error: (06/06/2017 06:08:57 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (06/06/2017 02:30:54 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 2:19:03 PM on ‎6/‎6/‎2017 was unexpected.

Error: (06/06/2017 02:26:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba WLAN AutoConfig sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 120000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (06/06/2017 02:26:44 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Diagnostic System Host sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (06/06/2017 02:26:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Distributed Link Tracking Client sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 120000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (06/06/2017 02:26:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Rýchle načítanie sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 60000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (06/06/2017 02:26:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Program Compatibility Assistant Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 60000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (06/06/2017 02:26:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Prístup k zariadeniu s rozhraním HID sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 120000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (06/06/2017 02:26:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Wired AutoConfig sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 120000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (06/06/2017 02:26:44 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Device Association Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.


==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU 2020M @ 2.40GHz
Percentage of memory in use: 44%
Total physical RAM: 3911.27 MB
Available physical RAM: 2189.1 MB
Total Virtual: 7879.27 MB
Available Virtual: 6026.94 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:682.19 GB) (Free:531.36 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 698.6 GB) (Disk ID: 4EAFD38C)

Partition: GPT.

==================== End of Addition.txt ============================