Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-06-2017 01
Ran by Milan (20-06-2017 11:21:00)
Running from C:\Users\Milan\Desktop
Windows 10 Pro Version 1607 (X64) (2016-11-28 18:10:08)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4251244029-1314746575-1999885948-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4251244029-1314746575-1999885948-503 - Limited - Disabled)
Guest (S-1-5-21-4251244029-1314746575-1999885948-501 - Limited - Disabled)
Milan (S-1-5-21-4251244029-1314746575-1999885948-1001 - Administrator - Enabled) => C:\Users\Milan

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

. . . (Version: 2.1.28.3 - Intel) Hidden
. . . (x32 Version: 2.6.1.4 - Intel) Hidden
1.0.0.1 (HKLM-x32\...\YeaDesktop) (Version: 1.0.0.1 - )
18 Wheels of Steel: Convoy 1.02 (HKLM-x32\...\18 Wheels of Steel: Convoy) (Version: 1.02 - ValuSoft)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
ACE COMBAT ASSAULT HORIZON Enhanced Edition (HKLM-x32\...\ACE COMBAT ASSAULT HORIZON Enhanced Edition_is1) (Version:  - )
Aktualizace NVIDIA 2.11.4.1 (Version: 2.11.4.1 - NVIDIA Corporation) Hidden
Ansel (Version: 376.33 - NVIDIA Corporation) Hidden
Beyond Enemy Lines version 1.0 (HKLM-x32\...\Beyond Enemy Lines_is1) (Version: 1.0 - Polygon Art) <==== ATTENTION
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.00.0000 - Activision)
Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden
CoD 2 čeština (HKLM-x32\...\CoD 2 čeština_is1) (Version:  - #'Pan[S]al!er!)
Command & Conquer 3 (HKLM-x32\...\{B0C30E93-D3D9-4F04-A2AC-54749B573275}) (Version: 1.00.0000 - Electronic Arts Inc.)
Commandos: Behind Enemy Lines (HKLM-x32\...\Commandos: Behind Enemy Lines) (Version:  - )
DAEMON Tools Ultra (HKLM\...\DAEMON Tools Ultra) (Version: 4.1.0.0489 - Disc Soft Ltd)
Dead Rising 3 (HKLM-x32\...\Dead Rising 3_is1) (Version:  - )
Demolice (HKLM-x32\...\Demolice_is1) (Version: 1.0 - TopQer s.r.o.)
Doom 3 Gold Edition HD (HKLM-x32\...\Doom 3 Gold Edition HD) (Version: 1.3.1 - Id Software)
Dying Light (HKLM-x32\...\Dying Light_is1) (Version: 1.11.0.0 - Techland)
Emergency 2017 (HKLM-x32\...\Emergency 2017_is1) (Version:  - )
European Ship Simulator Remastered version 1.0 (HKLM-x32\...\European Ship Simulator Remastered_is1) (Version: 1.0 - Excalibur) <==== ATTENTION
Facebook Gameroom 1.3.1.3 (HKLM-x32\...\{7E155A45-DE1A-46E0-A6B2-10FE1D8501FC}) (Version: 1.3.1.3 - Facebook)
Far Cry 4 (HKLM-x32\...\Far Cry 4_is1) (Version: 1.0 - Релиз от R.G. Steamgames)
FlatOut 3 (c) Strategy First version 1 (HKLM-x32\...\FlatOut 3 (c) Strategy First_is1) (Version: 1 - )
Foxit Reader (HKLM-x32\...\Foxit Reader) (Version:  - )
GameShadow (HKLM-x32\...\{B2390904-74BD-48AA-B2CC-6612F8D46379}) (Version: 2.03.0000 - GameShadow Ltd)
GIGABYTE OC_GURU II (HKLM-x32\...\InstallShield_{EA298EC1-2B8F-4DA9-8C5B-BC1FCBBAD72F}) (Version: 1.90.0000 - GIGABYTE Technology Co.,Ltd.)
GIGABYTE OC_GURU II (x32 Version: 1.90.0000 - GIGABYTE Technology Co.,Ltd.) Hidden
Google Drive (HKLM-x32\...\{A1238426-ECDF-4639-BE2F-8D12A97AE23C}) (Version: 2.34.5075.1619 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.0.7.4 - Hi-Rez Studios)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation)
Intel(R) Small Business Advantage (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: 3.1.53.8739 - Intel(R) Corporation)
Intel(R) Smart Connect Technology (HKLM\...\{F46EF80D-07F0-4E56-B9B3-8EDB759B52D8}) (Version: 5.0.10.2850 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{7224B7CE-196C-4E2A-A1AE-1D7BF259FD36}) (Version: 3.4.1942 - Intel Corporation)
Intel® Driver Update Utility (HKLM-x32\...\{fe2eebd3-ee15-4538-bb19-b627e3f2a911}) (Version: 2.6.1.4 - Intel)
Intel® Chipset Device Software (x32 Version: 10.1.1.14 - Intel(R) Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Mafia 2 - Directors Cut CZ 1.00 (HKLM-x32\...\Mafia 2 - Directors Cut CZ 1.00) (Version: 1.00 - 2K Games)
Max Payne 2 (HKLM-x32\...\{EFE1AB94-5466-4B6E-BE31-FF4C115FD25D}) (Version: 1.0.97 - )
Medal of Honor - Allied Assault War Chest (HKLM-x32\...\Medal of Honor - Allied Assault War Chest_is1) (Version:  - GOG.com)
Microsoft Flight Simulator X Steam Edition (HKLM-x32\...\Microsoft Flight Simulator X Steam Edition_is1) (Version:  - )
Microsoft OneDrive (HKU\S-1-5-21-4251244029-1314746575-1999885948-1001\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 1.0.1.17 - MSI)
MSI Fast Boot (HKLM-x32\...\{0F212E7A-65EB-4668-A8D7-749026A64F8E}_is1) (Version: 1.0.1.8 - MSI)
MSI Smart Tool (HKLM-x32\...\{DDCCA038-DAB1-4D09-B85C-848020AA75D6}}_is1) (Version: 1.0.0.05 - MSI)
MSI Super Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.3.0.11 - MSI)
MSI(R) Intel(R) Extreme Tuning Utility (HKLM-x32\...\{bcbf202c-9746-4173-a49b-649bfd0adca6}) (Version: 6.0.2.102 - Intel Corporation)
MSI(R) Intel(R) Extreme Tuning Utility (x32 Version: 6.0.2.102 - Intel Corporation) Hidden
Need For Speed Most Wanted Black Edition version 1.3.0.0 (HKLM-x32\...\Need For Speed Most Wanted Black Edition_is1) (Version: 1.3.0.0 - Mr DJ)
Need for Speed Underground 2 (HKLM-x32\...\Need for Speed Underground 2) (Version:  - )
NetworkGenie (HKLM-x32\...\{B416A23D-C2BD-4956-8BAE-5C3BAFF1AC1E}) (Version: 1.0.0.11 - MSI)
NVIDIA Ovladač 3D Vision 376.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 376.53 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 376.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.53 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Online Application (x32 Version: 2.6.0 - Microleaves) Hidden <==== ATTENTION
Ovládací panel NVIDIA 376.53 (Version: 376.53 - NVIDIA Corporation) Hidden
Project IGI (HKLM-x32\...\Project IGI) (Version:  - )
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.9.422.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8059 - Realtek Semiconductor Corp.)
Resident Evil 6 verzia 1.0.6.165 (HKLM-x32\...\Resident Evil 6_is1) (Version: 1.0.6.165 - CzTorrent.net)
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.4.1 - NVIDIA Corporation) Hidden
Silent Hunter 4 Wolves of the Pacific (HKLM-x32\...\{0D005F09-A5F4-473B-A901-5735C6AF5628}) (Version: 1.04.0000 - Ubisoft)
Skype™ 7.36 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.36.101 - Skype Technologies S.A.)
Sniper Elite 3 (HKLM-x32\...\U25pcGVyRWxpdGUz_is1) (Version: 1 - )
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
TP-LINK TL-WN781ND Driver (HKLM-x32\...\{87C7B472-9BC2-43C8-9F03-86D2908E1A51}) (Version: 1.3.1 - TP-LINK)
TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK)
VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.8 - MSI)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
War Thunder Launcher 1.0.1.702 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version:  - Gaijin Entertainment)
Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
Wolfenstein The Old Blood (HKLM-x32\...\{1A6EABD2-7063-4879-909C-D2C567DE5AB9}) (Version: 1.0.0 - Bethesda)
Wolfenstein: The New Order (HKLM-x32\...\V29sZmVuc3RlaW5UaGVOZXdPcmRlcg==_is1) (Version: 1 - )
WRC 5 FIA World Rally Championship (HKLM\...\V1JDNUZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1) (Version: 1 - )
X-Plane 11 (HKLM-x32\...\X-Plane 11_is1) (Version:  - )

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {000D5A50-0C6B-4115-BDB4-470A378DB377} - System32\Tasks\Online Application V2G1 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: {1EE9AB8B-3A97-4F83-95F0-65BD07352D09} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\Explorer.exe /NOUACCHECK
Task: {2F93D4E5-B463-46B9-876C-CFC090A302C6} - System32\Tasks\{F6F2795F-4159-CEF4-FCD7-DDEB722E14BB} => C:\ProgramData\{6AD4CF70-DD7F-78DB-4C1D-6F6F2F027478}\DAC73FB0-6D6C-881B-21E7-0E54332993F5.exe <==== ATTENTION
Task: {311D80DD-1297-42F3-98DF-4F12320DF65E} - System32\Tasks\Pritc => C:\Users\Milan\AppData\Local\Temp\is-QTL6F.tmp\Setup.exe <==== ATTENTION
Task: {3C7E8174-8109-4B0E-9FC1-4A34BA47A71B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-13] (Google Inc.)
Task: {3D57314E-10C1-4B1A-BF84-83B7ACD3DF18} - System32\Tasks\OC GURU II Auto Run => C:\Program [Argument = Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe]
Task: {41757B83-20EF-4DD8-A168-AE226202AE7E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation)
Task: {4447961E-E2F7-46EA-A4AD-DE639BDC8B30} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation)
Task: {5074B752-2429-4D99-BAD7-1E02680E8F46} - System32\Tasks\Scan Picture Plus => Rundll32.exe "C:\Program Files\Scan Picture Plus\Scan Picture Plus.dll",UKJdUdsfr <==== ATTENTION
Task: {51CAD894-8637-4F2D-8997-F37AAF3748FC} - System32\Tasks\Intel(R) Small Business Advantage\Notifier => C:\Program Files\Intel\Intel(R) Small Business Advantage\UI\SBA_Notifier.exe [2015-06-04] (Intel Corporation)
Task: {5703D593-9686-4527-86A6-13CEF7227B50} - System32\Tasks\KMSAutoNet => C:\ProgramData\KMSAutoS\KMSAuto Net.exe [2016-02-20] (MSFree Inc.)
Task: {58EF4F7A-EE83-4685-BBBC-73CEF59A50C3} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [2015-05-05] (Intel Corporation)
Task: {5C75A627-FD64-477C-9506-74B3DA4877DB} - System32\Tasks\{998DB98F-B1FA-40BC-9222-FF1FA6E70A8C} => pcalua.exe -a "D:\torrenty\Mafia 1 – Plna Verze Hry – CZ\Mafia 1 – Plna Verze Hry – CZ\Setup.exe" -d "D:\torrenty\Mafia 1 – Plna Verze Hry – CZ\Mafia 1 – Plna Verze Hry – CZ"
Task: {64B7C1B9-79FB-4D14-AFA3-0C22AB7C2B85} - System32\Tasks\{F6CEA338-5009-43C9-836D-AC3D5B480E25} => pcalua.exe -a H:\Launch.exe -d H:\
Task: {6C5AB42C-FB60-42EA-81C8-147700F8D7FB} - \{0C790B47-040E-0C0B-0F11-0E0A080A110B} -> No File <==== ATTENTION
Task: {786AE411-7A92-4239-ACC3-3A0BC913E193} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation)
Task: {84078A25-E12C-4971-A671-9CB3ADD3D7CB} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation)
Task: {86F55FF0-FCFD-4DC6-8E95-1244356FDA64} - System32\Tasks\UCBrowserUpdaterCore => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== ATTENTION
Task: {8AC223A6-B9AD-452C-B00F-90F4BFFA1836} - System32\Tasks\RtlNetworkGenieVistaStart => C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe [2015-07-09] (Realtek Semiconductor)
Task: {8B09CA65-2EA7-4CDB-B218-980DE39D38D3} - System32\Tasks\USER_ESRV_SVC_WILLAMETTE => Wscript.exe //B //NoLogo "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\task.vbs"
Task: {912915BB-7C29-4EF5-B6D5-EAE6EA08152F} - System32\Tasks\Updater_Online_Application => C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe [2017-04-18] (Microleaves) <==== ATTENTION
Task: {95667826-D83E-46AE-A7F5-36A5503AD605} - System32\Tasks\UCBrowserUpdater => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== ATTENTION
Task: {96BAB991-E88B-4D59-8421-E1E6C570E7DB} - System32\Tasks\Online Application V2G2 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: {9D0C680A-E088-498A-85D9-1DFE66B56581} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation)
Task: {AF764B7A-7D09-4978-A1E1-68BEA634A2EF} - System32\Tasks\{7C889903-C208-44D5-8847-F09777E4231C} => pcalua.exe -a I:\setup.exe -d I:\
Task: {BF9CE0ED-44BF-4D4C-899C-5CAA9E0BC4FA} - System32\Tasks\Online Application V2G3 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: {C1CA97FE-AA9C-4858-98F1-FB866294DF64} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation)
Task: {E15A89B4-05F6-4EE9-9742-1844A7B4D9D3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-13] (Google Inc.)
Task: {EDF28716-0FAF-4795-8BEA-704E6595F689} - System32\Tasks\UCBrowserSecureUpdater => C:\Program Files (x86)\UCBrowser\Security\uclauncher.exe [2017-05-10] (UC Web Inc.) <==== ATTENTION
Task: {F292D64E-3FCF-4F88-A2E7-9B91EAD25D38} - System32\Tasks\{7E028703-2646-707F-8291-CBCA72A49B17} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\673b3ff2\3cb1279f.dll" <==== ATTENTION
Task: {F3DA771D-5813-44C0-9C91-FC0AD7D385FA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation)
Task: {F729A3C9-1045-4A1F-BF94-BBDF038B6B7A} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Milan\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Online Application V2G1.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Online Application V2G2.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Online Application V2G3.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\RtlNetworkGenieVistaStart.job => C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe
Task: C:\WINDOWS\Tasks\UCBrowserUpdater.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\UCBrowserUpdaterCore.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Updater_Online_Application.job => C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe <==== ATTENTION

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI_ActiveScriptEventConsumer_ASEC: <===== ATTENTION

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2017-05-10 13:27 - 2017-04-28 02:49 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 17:59 - 2016-11-11 12:13 - 02832072 ____N () C:\Windows\system32\lanmamasterHelp.dll
2015-05-19 10:11 - 2015-05-19 10:11 - 00007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
2017-01-15 12:31 - 2016-06-15 03:14 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2017-01-15 12:31 - 2016-06-15 03:14 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2017-01-15 12:31 - 2016-06-15 03:14 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2017-01-15 12:31 - 2016-06-15 03:14 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-11-21 23:18 - 2016-12-24 13:16 - 00075136 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2016-11-21 23:18 - 2016-12-24 13:16 - 00189248 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe
2016-06-08 19:04 - 2016-06-08 19:04 - 00117400 _____ () C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
2017-05-10 13:18 - 2017-06-05 12:02 - 00627088 _____ () C:\Program Files (x86)\UCBrowser\Application\UCService.exe
2016-11-28 19:57 - 2016-12-29 14:44 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-01-15 12:31 - 2016-06-15 03:14 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2017-01-15 12:31 - 2016-06-15 03:14 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2017-01-15 12:31 - 2016-06-15 03:14 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2017-01-15 12:31 - 2016-06-15 03:14 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-12-14 17:58 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-15 21:55 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-11-16 14:14 - 2015-04-28 18:11 - 02206208 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
2017-01-15 12:31 - 2016-06-15 03:14 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2017-01-15 12:31 - 2016-06-15 03:14 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-11-16 14:45 - 2016-06-08 19:12 - 00416408 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
2016-11-16 14:45 - 2016-06-08 19:18 - 00709272 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll
2016-11-16 14:45 - 2016-06-08 19:15 - 00130712 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_process_input.dll
2016-11-16 14:45 - 2016-06-08 19:16 - 00025752 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_system_power_state_input.dll
2016-11-16 14:45 - 2016-06-08 19:16 - 00059544 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_quality_and_reliability_input.dll
2016-11-16 14:45 - 2016-06-08 19:16 - 00194712 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\acpi_battery_input.dll
2016-11-16 14:45 - 2016-06-08 19:17 - 00159896 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\sema_thermal_input.dll
2016-11-16 14:45 - 2016-06-08 19:17 - 00158360 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\wifi_input.dll
2016-11-16 14:45 - 2016-06-08 19:16 - 00050840 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\devices_use_input.dll
2016-11-16 14:45 - 2016-06-08 19:15 - 00032920 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_disktrace_input.dll
2016-11-16 14:45 - 2016-06-08 19:07 - 00458904 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
2016-11-16 14:45 - 2016-06-08 19:17 - 00188568 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll
2017-06-08 10:50 - 2017-06-08 10:50 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-06-08 10:50 - 2017-06-08 10:50 - 00201728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-06-08 10:50 - 2017-06-08 10:50 - 43318784 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-06-08 10:50 - 2017-06-08 10:50 - 02427904 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\skypert.dll
2017-05-10 13:18 - 2017-05-09 14:58 - 00991232 ___SH () C:\ProgramData\igfxDH.dll
2017-03-15 21:53 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-15 21:53 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-03-15 21:53 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-05-10 13:26 - 2017-04-28 01:36 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-05-10 13:26 - 2017-04-28 01:37 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-11-16 13:29 - 2015-07-07 08:43 - 00158424 ____R () C:\Program Files (x86)\MSI\NetworkGenie\gep.dll
2015-03-24 19:01 - 2015-03-24 19:01 - 00192512 _____ () C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\GvVGAConfig.dll
2016-11-16 12:52 - 2016-06-15 03:14 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2017-04-26 15:19 - 2017-04-26 15:19 - 02005976 ____R () C:\Program Files (x86)\Skype\Phone\skypert.dll
2016-11-16 14:14 - 2015-05-15 18:50 - 01411072 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\nicLan.dll
2016-11-16 14:14 - 2015-04-28 18:20 - 00192512 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\DC_WFF.dll
2016-11-16 14:14 - 2015-04-28 17:49 - 00139264 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJWF\WJWF.dll
2016-11-16 14:14 - 2015-04-28 17:49 - 00116224 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJWF\WJWF_WPS_WIN7.DLL
2017-02-15 17:58 - 2017-02-15 17:58 - 01162752 _____ () C:\Users\Milan\AppData\Local\Facebook\Games\CefSharp.Core.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 67197440 _____ () C:\Users\Milan\AppData\Local\Facebook\Games\libcef.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 00752640 _____ () C:\Users\Milan\AppData\Local\Facebook\Games\CefSharp.BrowserSubprocess.Core.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 01886208 _____ () C:\Users\Milan\AppData\Local\Facebook\Games\libglesv2.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 00078848 _____ () C:\Users\Milan\AppData\Local\Facebook\Games\libegl.dll
2015-07-11 00:37 - 2015-07-11 00:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\WINDOWS\system32\drivers:ucdrv-x64.sys [25444]
AlternateDataStreams: C:\WINDOWS\system32\drivers:x64 [1498914]
AlternateDataStreams: C:\WINDOWS\system32\drivers:x86 [1223458]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-07-10 13:04 - 2017-05-30 18:23 - 00013684 _____ C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 wepcdisplaysystem.com
127.0.0.1 wepcanalyticsystem.com
127.0.0.1 healthydownload.com
127.0.0.1 leading2download.com
127.0.0.1 dwl0.wizzlabs.com
127.0.0.1 dwl1.wizzlabs.com
127.0.0.1 wemsofts.com
127.0.0.1	gf.tools.avast.com
127.0.0.1	pair.ff.avast.com
127.0.0.1	ipm-provider.ff.avast.com
127.0.0.1	ipm-provider.ff.avast.com
127.0.0.1	ipm-provider.ff.avast.com
127.0.0.1	id.avast.com
127.0.0.1	v4618535.iavs9x.u.avast.com
127.0.0.1	v4618535.ivps9x.u.avast.com
127.0.0.1	v4618535.ivps9tiny.u.avast.com
127.0.0.1	v4618535.vpsnitro.u.avast.com
127.0.0.1	v4618535.vpsnitrotiny.u.avast.com
127.0.0.1	v4618535.iavs5x.u.avast.com
127.0.0.1	v7.stats.avast.com
127.0.0.1	v7.stats.avast.com
127.0.0.1	v7event.stats.avast.com
127.0.0.1	sm00.avast.com
127.0.0.1	submit5.avast.com
127.0.0.1	geoip.avast.com
127.0.0.1	w9448963.iavs9x.u.avast.com
127.0.0.1	w9448963.ivps9x.u.avast.com
127.0.0.1	w9448963.ivps9tiny.u.avast.com
127.0.0.1	w9448963.vpsnitro.u.avast.com
127.0.0.1	w9448963.vpsnitrotiny.u.avast.com

There are 337 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-4251244029-1314746575-1999885948-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Milan\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{a68ae086-0ecb-4590-bb0c-e0be1dfef388}.jpg
DNS Servers: 82.163.143.176 - 82.163.142.178
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{C84303B2-92CA-418F-BB27-7DA1A6985C69}C:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) C:\program files (x86)\origin games\battlefield 4\bf4.exe
FirewallRules: [TCP Query User{9331E801-00F8-4415-842D-8F8D19799DF2}C:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) C:\program files (x86)\origin games\battlefield 4\bf4.exe
FirewallRules: [UDP Query User{7D8205D7-EC4C-418A-AC81-D65AC3ACF31A}C:\users\milan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{4F863380-2299-4614-B521-79C300CF86B0}C:\users\milan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{E256D1F9-12E5-49F6-8D22-FFD2BC3B506A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{84E11CB3-18FD-433D-A129-E3DA5DA55910}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [UDP Query User{6633A86A-71FB-4078-8B13-C03DECA965AD}C:\program files (x86)\wolfenstein - enemy territory\et.exe] => (Allow) C:\program files (x86)\wolfenstein - enemy territory\et.exe
FirewallRules: [TCP Query User{8E4883E1-1FF6-4CED-ACA2-53542B119F89}C:\program files (x86)\wolfenstein - enemy territory\et.exe] => (Allow) C:\program files (x86)\wolfenstein - enemy territory\et.exe
FirewallRules: [UDP Query User{EC395293-2ED4-4F74-9A0F-2BC10C8D9C28}C:\warthunder\win64\aces.exe] => (Block) C:\warthunder\win64\aces.exe
FirewallRules: [TCP Query User{D0DA5C46-230D-4C86-A25F-F65EB4C7FA7C}C:\warthunder\win64\aces.exe] => (Block) C:\warthunder\win64\aces.exe
FirewallRules: [{6FB67177-A8C9-4A51-BDEB-73C6605E8F7D}] => (Allow) LPort=8090
FirewallRules: [{2B601624-C25A-4409-873E-A4EF183916E6}] => (Allow) LPort=20443
FirewallRules: [{68F7DEC9-6E05-4B06-8DE9-49E54AB193E2}] => (Allow) LPort=33333
FirewallRules: [{6DA3BA13-30E7-4C10-87CC-8D627E8C8E7C}] => (Allow) LPort=6881
FirewallRules: [{3E6C79DD-6346-46EA-8CBB-3724F6E7643C}] => (Allow) LPort=27022
FirewallRules: [{BA55FCAE-D63C-4165-B279-4DC109485A36}] => (Allow) LPort=7853
FirewallRules: [{D29F8BAB-8E8E-4C9F-97CA-CD7BFB62F5DA}] => (Allow) LPort=7852
FirewallRules: [{C39AF6B7-6F7E-4A9D-B49E-5AEE6518EE51}] => (Allow) LPort=7850
FirewallRules: [{9C2CDAFC-B305-4D25-8F1A-56907FF9ABB9}] => (Allow) LPort=3478
FirewallRules: [{067125A9-560F-42DE-9C55-D611BDBE9D42}] => (Allow) LPort=20010
FirewallRules: [{40DBF45F-A9D8-4617-ABF0-901B2E7412E7}] => (Allow) LPort=443
FirewallRules: [{6D84FA30-6608-4522-8FC3-C3B9207AE0F0}] => (Allow) LPort=80
FirewallRules: [{0201430B-26DD-44FD-B06B-31203DE6C3C0}] => (Allow) C:\WarThunder\run.exe
FirewallRules: [{6727C93A-BDA6-4178-9E19-285EA6BE57AD}] => (Allow) C:\WarThunder\run.exe
FirewallRules: [{4CED5497-5455-41BB-A7D1-C0C1EA5D9C46}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [{9646EB11-FD3D-45B5-94B9-1240B3E45A6E}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [{47A57221-45AD-4802-B8C3-6457F4BEB3F5}] => (Allow) C:\Program Files (x86)\EA GAMES\Battlefield 2 Demo\BF2.exe
FirewallRules: [{9DA98253-E3DB-478E-9392-764655599B70}] => (Allow) C:\Program Files (x86)\EA GAMES\Battlefield 2 Demo\BF2.exe
FirewallRules: [UDP Query User{A443A365-5937-42F3-8933-E522898EB3F2}D:\hry\hirezgames\hirezgames\paladins\binaries\win32\paladins.exe] => (Block) D:\hry\hirezgames\hirezgames\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{AC2A5EBC-76DC-4D00-8CFD-0A19F371B5F1}D:\hry\hirezgames\hirezgames\paladins\binaries\win32\paladins.exe] => (Block) D:\hry\hirezgames\hirezgames\paladins\binaries\win32\paladins.exe
FirewallRules: [{CB560A92-E685-4702-A41D-64D99FF3D6DC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{549F1629-7D6E-4FF0-ADD6-3A6551D345C7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3665555F-7028-44A2-8957-E5D0B1C7496A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{FFE6854F-AA30-4D7C-BF83-B1DD4A09B4AA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{1AF05F92-465C-4BB6-BDDF-B0343D331955}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{93262F54-EA31-4F79-8F00-FD02D1E51DA2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{F9C552D6-17E1-4E3B-A329-392FBC3EF648}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{19C801F4-4AFF-4524-B261-AA4614B3582B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{D8CE035C-F807-4923-A1FD-3786403300A6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{DF55C08F-D5B6-4440-AB7B-C3F0C77D2094}] => (Allow) D:\hry\Call of Duty 4 - Modern Warfare\iw3mp.exe
FirewallRules: [{AD3FC272-1F43-4886-9802-2F2F99F17557}] => (Allow) D:\hry\Call of Duty 4 - Modern Warfare\iw3mp.exe
FirewallRules: [{7994AE0D-AA76-49AD-B337-8ABFA500A3CA}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{F5532134-0157-4B5C-9ACF-5719CB52F0C7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{191FB1C9-3D05-4BEB-A4AC-0C96BF29A215}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{25F06865-B43A-4E96-9C07-478DC51681D8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [TCP Query User{C9AE0C00-BDD2-4BAE-91EE-1EC6B686BF94}C:\hry\dying light\dyinglightgame.exe] => (Allow) C:\hry\dying light\dyinglightgame.exe
FirewallRules: [UDP Query User{3C08CCAE-CAC6-4EC4-8C3D-F6B613CE7C03}C:\hry\dying light\dyinglightgame.exe] => (Allow) C:\hry\dying light\dyinglightgame.exe
FirewallRules: [TCP Query User{D51906B1-0314-4DF2-B947-BBDA2D761D7F}D:\far cry 4\bin\farcry4.exe] => (Block) D:\far cry 4\bin\farcry4.exe
FirewallRules: [UDP Query User{5C898D49-C011-43CF-AA4D-00D953CDCB16}D:\far cry 4\bin\farcry4.exe] => (Block) D:\far cry 4\bin\farcry4.exe
FirewallRules: [TCP Query User{2C9E20ED-B51E-4B8B-A730-371E8504D370}D:\hry\far cry 4\bin\farcry4.exe] => (Allow) D:\hry\far cry 4\bin\farcry4.exe
FirewallRules: [UDP Query User{A96B68D4-C2C9-4E76-8BAF-D1764801DDA3}D:\hry\far cry 4\bin\farcry4.exe] => (Allow) D:\hry\far cry 4\bin\farcry4.exe
FirewallRules: [TCP Query User{57B2903E-F6D0-4E9E-9CCA-4F3D77E5B69C}D:\hry\hry\dying light\devtools\dyinglightplayer.exe] => (Block) D:\hry\hry\dying light\devtools\dyinglightplayer.exe
FirewallRules: [UDP Query User{BEC27FE1-1426-4738-B337-0E397836C99C}D:\hry\hry\dying light\devtools\dyinglightplayer.exe] => (Block) D:\hry\hry\dying light\devtools\dyinglightplayer.exe
FirewallRules: [TCP Query User{8218E564-FE92-446D-8EC0-46F1CE09E0AE}D:\hry\hry\dying light\dyinglightgame.exe] => (Block) D:\hry\hry\dying light\dyinglightgame.exe
FirewallRules: [UDP Query User{294464F4-298C-4AC6-996A-F7F3875713A3}D:\hry\hry\dying light\dyinglightgame.exe] => (Block) D:\hry\hry\dying light\dyinglightgame.exe
FirewallRules: [TCP Query User{78892FA7-762B-48E6-B484-85B80CE3C84C}D:\hry\wolfenstein the new order\wolfneworder_x64.exe] => (Block) D:\hry\wolfenstein the new order\wolfneworder_x64.exe
FirewallRules: [UDP Query User{2B340468-D9D7-4274-ADF7-77D0B58D9C96}D:\hry\wolfenstein the new order\wolfneworder_x64.exe] => (Block) D:\hry\wolfenstein the new order\wolfneworder_x64.exe
FirewallRules: [{13F86C7B-8AD3-47D5-A48F-DF0CC87C1EF8}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{57F750E1-7C3C-4528-88E8-1B0090B6CBC8}D:\torrenty\train simulator\train simulator 2017\railworks.exe] => (Allow) D:\torrenty\train simulator\train simulator 2017\railworks.exe
FirewallRules: [UDP Query User{192B3F08-686C-4EAA-B3D8-C000CC656743}D:\torrenty\train simulator\train simulator 2017\railworks.exe] => (Allow) D:\torrenty\train simulator\train simulator 2017\railworks.exe
FirewallRules: [TCP Query User{3611A9A8-5E9D-4BB7-AD91-AF340C00726D}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe] => (Block) C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe
FirewallRules: [UDP Query User{F52F3A55-478F-42D4-B105-8136E62FE95D}C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe] => (Block) C:\program files (x86)\activision\call of duty 2\cod2mp_s.exe
FirewallRules: [TCP Query User{4DAD518E-459F-4EF5-8D8F-DF8E163FFBCC}D:\games\mortal kombat xl\binaries\retail\mk10.exe] => (Allow) D:\games\mortal kombat xl\binaries\retail\mk10.exe
FirewallRules: [UDP Query User{F23853AE-E501-4751-8EF6-A18E995AAAAF}D:\games\mortal kombat xl\binaries\retail\mk10.exe] => (Allow) D:\games\mortal kombat xl\binaries\retail\mk10.exe
FirewallRules: [TCP Query User{265B2BE0-61A6-458E-B194-9F5CC26596F6}D:\resident evil 6\bh6.exe] => (Block) D:\resident evil 6\bh6.exe
FirewallRules: [UDP Query User{12D146DD-F1AB-4E86-A683-B41DFCEE9532}D:\resident evil 6\bh6.exe] => (Block) D:\resident evil 6\bh6.exe
FirewallRules: [{391D0B32-6D54-4DF0-AE71-78ABE3DFB9BB}] => (Allow) C:\Program Files (x86)\Mr DJ\Need For Speed Most Wanted Black Edition\speed.exe
FirewallRules: [{ACAFB407-C85C-49D3-8D6C-F6D048441920}] => (Allow) C:\Program Files (x86)\Mr DJ\Need For Speed Most Wanted Black Edition\speed.exe
FirewallRules: [TCP Query User{1599A200-BCFB-4045-9138-73D4FCA20E65}C:\program files (x86)\gog.com\medal of honor\mohaa.exe] => (Block) C:\program files (x86)\gog.com\medal of honor\mohaa.exe
FirewallRules: [UDP Query User{52085F0A-DEF1-4EDE-9381-8202DED6D9A6}C:\program files (x86)\gog.com\medal of honor\mohaa.exe] => (Block) C:\program files (x86)\gog.com\medal of honor\mohaa.exe
FirewallRules: [{22EB9842-2FA8-4E0D-AB3A-A3C399F443A5}] => (Allow) C:\WINDOWS\system32\rundll32.exe
FirewallRules: [{051B73D1-5232-48C5-9A5E-127C953451D4}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe
FirewallRules: [{989D6CDE-3E81-4697-8E84-D0E6077F066D}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\Downloader\download\MiniThunderPlatform.exe
FirewallRules: [{66256222-B4D4-44CA-B207-647419960F8C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{51308EC7-CEA7-4EDA-96F7-869AE0A6DC97}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{07FD9119-8EF0-468E-BD50-07245CD25400}] => (Allow) C:\Windows\System32\rundll32.exe

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/20/2017 11:01:23 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-FMN2L67)
Description: Aplikaci Microsoft.SkypeApp_kzf8qxf38zg5c!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/20/2017 11:00:17 AM) (Source: Perflib) (EventID: 1023) (User: )
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů rdyboost. První čtyři bajty (DWORD) datové sekce obsahují kód chyby systému Windows.

Error: (06/20/2017 11:00:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592, časové razítko: 0x57605c64
Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479, časové razítko: 0x5825887f
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000030bdd
ID chybujícího procesu: 0x78
Čas spuštění chybující aplikace: 0x01d2e9a39aff9673
Cesta k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 0dd488ff-99d6-4104-90bc-8a2efe92546b
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (06/18/2017 07:26:46 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 12) (User: DESKTOP-FMN2L67)
Description: Microsoft.ZuneMusic_8wekyb3d8bbwe5

Error: (06/18/2017 07:26:35 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2017-07-11T12:44:35Z. Kód chyby: 0x80070005

Error: (06/18/2017 07:26:05 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2017-07-11T12:45:05Z. Kód chyby: 0x80070005

Error: (06/18/2017 07:26:01 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 12) (User: DESKTOP-FMN2L67)
Description: Microsoft.Windows.Photos_8wekyb3d8bbwe5

Error: (06/18/2017 07:25:35 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2017-07-11T12:44:35Z. Kód chyby: 0x80070005

Error: (06/18/2017 07:25:05 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2017-07-11T12:45:05Z. Kód chyby: 0x80070005

Error: (06/18/2017 07:24:35 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Nepodařilo se naplánovat restartování služby Ochrana softwaru na 2017-07-11T12:44:35Z. Kód chyby: 0x80070005


System errors:
=============
Error: (06/20/2017 11:13:15 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FMN2L67)
Description: Server {21F282D1-A881-49E1-9A3A-26E44E39B86C} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/20/2017 11:03:44 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 a APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (06/20/2017 11:01:23 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FMN2L67)
Description: Server App.AppX8nrbv53bn39r31x29ht05thp7rde7ecc.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/20/2017 10:59:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Recover neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (06/20/2017 10:59:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba EraserSvc11611 neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (06/20/2017 10:59:51 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (18:56:01, ‎18.‎06.‎2017) bylo neočekávané.

Error: (06/18/2017 07:27:19 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro DeleteFlag s touto chybou: 
Přístup byl odepřen.

Error: (06/18/2017 07:27:09 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Start s touto chybou: 
Přístup byl odepřen.

Error: (06/18/2017 07:27:08 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Start s touto chybou: 
Přístup byl odepřen.

Error: (06/18/2017 07:26:14 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Start s touto chybou: 
Přístup byl odepřen.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-4570S CPU @ 2.90GHz
Percentage of memory in use: 45%
Total physical RAM: 8120.01 MB
Available physical RAM: 4400.03 MB
Total Virtual: 9400.01 MB
Available Virtual: 5377.29 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:195.31 GB) (Free:55.75 GB) NTFS
Drive d: () (Fixed) (Total:735.65 GB) (Free:11.82 GB) NTFS
Drive f: (xRIKOx) (Fixed) (Total:931.48 GB) (Free:503.35 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: C251F18D)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: C2C23EE4)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================