Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-06-2017
Ran by Woltagen (01-07-2017 16:24:46)
Running from C:\Users\Woltagen\Desktop
Windows 8.1 (Update) (X64) (2014-03-14 15:00:30)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-91284999-528624967-1822222337-500 - Administrator - Disabled)
Guest (S-1-5-21-91284999-528624967-1822222337-501 - Limited - Disabled)
UpdatusUser (S-1-5-21-91284999-528624967-1822222337-1287 - Limited - Enabled)
Woltagen (S-1-5-21-91284999-528624967-1822222337-1001 - Administrator - Enabled) => C:\Users\Woltagen

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3006 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3011 - Acer Incorporated)
AcerCloud (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.01.3115 - Acer Incorporated)
AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.00.3201 - Acer Incorporated)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated)
Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.131 - Adobe Systems Incorporated)
Adobe Flash Player 26 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 26.0.0.131 - Adobe Systems Incorporated)
Age of Empires III - Complete Collection (HKLM-x32\...\Age of Empires III - Complete Collection_Origami_is1) (Version: 1.0 - R.G. Origami, Seraph1)
Aktualizace NVIDIA 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 368.81 - NVIDIA Corporation) Hidden
AutoHotkey 1.1.22.06 (HKLM\...\AutoHotkey) (Version: 1.1.22.06 - Lexikos)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.3.2291 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.0 - Bethesda Softworks)
CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform)
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.01.3108 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.01.3108 - Acer Incorporated)
clear.fi SDK - Video 2 (HKLM-x32\...\{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}) (Version: 2.1.1925 - CyberLink Corp.) Hidden
clear.fi SDK- Movie 2 (HKLM-x32\...\{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}) (Version: 2.1.2008 - CyberLink Corp.) Hidden
CPUID HWMonitor 1.30 (HKLM\...\CPUID HWMonitor_is1) (Version:  - )
CyberLink MediaEspresso 6.5 (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.3103_44819 - CyberLink Corp.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.1.0230 - Disc Soft Ltd)
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
Discord (HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
Dota 2 (HKLM-x32\...\Steam App 570) (Version:  - Valve)
Dropbox (HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Fallout Shelter (HKLM-x32\...\Fallout Shelter) (Version:  - Bethesda Softworks)
FlatOut 2 (HKLM-x32\...\{4E6D2462-AB33-40BB-AA9F-3FA3E0DD0290}) (Version: 1.00.0000 - Empire Interactive)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
GameRanger (HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\GameRanger) (Version:  - GameRanger Technologies)
GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team)
Glyph (HKLM-x32\...\Glyph) (Version:  - Trion Worlds, Inc.)
Google Drive (HKLM-x32\...\{A1238426-ECDF-4639-BE2F-8D12A97AE23C}) (Version: 2.34.5075.1619 - Google, Inc.)
Google Earth (HKLM-x32\...\{F6430171-B86B-4639-839E-374913E7911D}) (Version: 7.1.8.3036 - Google)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
Heroes of Might and Magic V (HKLM-x32\...\{20071984-5EB1-4881-8EDB-082532ACEC6D}) (Version:  - )
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
Hotkey Utility (HKLM-x32\...\{A6DC88AD-501A-44BC-884D-57435F972E2C}) (Version: 3.00.3003 - Acer Incorporated)
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3004 - Acer Incorporated)
IMVU Avatar Chat Software (HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\IMVU Avatar chat client software BETA) (Version:  - )
Intel Extreme Tuning Utility (HKLM-x32\...\{7360EE49-7004-4626-A85A-CC48C2D63700}) (Version: 3.2.0.24 - Intel Corporation)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 17.2 - Intel)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation)
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version:  - Intel Corporation)
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version:  - Intel Corporation)
IObit Apps Toolbar v9.2 (HKLM-x32\...\{4F5E5430-1DA8-4B2B-BB26-B29C0E7DBFDB}) (Version: 9.2 - Spigot, Inc.) <==== ATTENTION
Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation)
LibreOffice 4.2.4.2 (HKLM-x32\...\{6B4977CB-5B9F-4B24-8310-3BA527A8AF22}) (Version: 4.2.4.2 - The Document Foundation)
LogMeIn Hamachi (HKLM-x32\...\{E59194A0-A215-4C44-8B92-40780387EBE0}) (Version: 2.2.0.578 - LogMeIn, Inc.) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.578 - LogMeIn, Inc.)
Malwarebytes Anti-Malware verze 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{887868A2-D6DE-3255-AA92-AA0B5A59B874}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mozilla Firefox 54.0.1 (x86 cs) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 cs)) (Version: 54.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla)
MSI Afterburner 4.3.0 (HKLM-x32\...\Afterburner) (Version: 4.3.0 - MSI Co., LTD)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MyWinLocker (HKLM\...\{0B78ECB0-1A6B-4E6D-89D7-0E7CE77F0427}) (Version: 4.0.14.35 - Egis Technology Inc.) Hidden
MyWinLocker 4 (HKLM-x32\...\{39F15B50-A977-4CA6-B1C3-6A8724CDA025}) (Version: 4.0.14.35 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.24 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.24 - Egis Technology Inc.)
Nero 12 Essentials OEM.a01 (HKLM-x32\...\{9BF0D9FE-9893-4647-81B9-17B7BEA4E6FD}) (Version: 12.5.00000 - Nero AG)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.2 - Notepad++ Team)
NVIDIA Ovladač 3D Vision 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.81 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.81 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.01.3200 - Acer)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
Ovládací panel NVIDIA 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 368.81 - NVIDIA Corporation) Hidden
Prerequisite installer (HKLM-x32\...\{3AAB08A3-F129-4BD5-B409-AE674F93759D}) (Version: 12.0.0002 - Nero AG) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6680 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.30137 - Realtek Semiconductor Corp.)
SafeZone Stable 3.55.2393.607 (HKLM-x32\...\SafeZone 3.55.2393.607) (Version: 3.55.2393.607 - Avast Software) Hidden
ShareX (HKLM\...\82E6AC09-0FEF-4390-AD9F-0DD3F5561EFC_is1) (Version: 11.1.0 - ShareX Team)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Skype™ 7.38 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.38.101 - Skype Technologies S.A.)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version:  - TeamSpeak Systems GmbH)
TeamSpeak 3 Client (HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\TeamSpeak 3 Client) (Version: 3.0.10 - TeamSpeak Systems GmbH)
The Elder Scrolls IV Oblivion version 1.2.0416.00 (HKLM-x32\...\The Elder Scrolls IV Oblivion_is1) (Version: 1.2.0416.00 - Mr DJ)
The Elder Scrolls Legends (HKLM-x32\...\The Elder Scrolls Legends) (Version:  - Bethesda Softworks)
The Elder Scrolls V Skyrim Legendary Edition version 1.9.32.8 (HKLM-x32\...\The Elder Scrolls V Skyrim Legendary Edition_is1) (Version: 1.9.32.8 - Mr DJ)
Titan Quest (HKLM-x32\...\Titan Quest_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
Trove (HKLM-x32\...\Glyph Trove) (Version:  - Trion Worlds, Inc.)
Trove (HKLM-x32\...\Steam App 304050) (Version:  - Trion Worlds)
Trove Europe (HKLM-x32\...\Glyph Trove Europe) (Version:  - Trion Worlds, Inc.)
Trove PTS-US (HKLM-x32\...\Glyph Trove PTS-US) (Version:  - Trion Worlds, Inc.)
TroveTools .NET (HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\0ad522f4516a2a4e) (Version: 1.2.0.5 - Dazo)
Unity Web Player (HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Unturned (HKLM\...\Steam App 304930) (Version:  - Smartly Dressed Games)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-91284999-528624967-1822222337-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Woltagen\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-91284999-528624967-1822222337-1001_Classes\CLSID\{42187c44-9a23-438f-8be0-2983710ffb8b}\InprocServer32 -> C:\WINDOWS\system32\dfshim.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-91284999-528624967-1822222337-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Woltagen\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-91284999-528624967-1822222337-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Woltagen\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-91284999-528624967-1822222337-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Woltagen\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-91284999-528624967-1822222337-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Woltagen\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {067060AA-DE8D-4B64-83BC-40DA8770FDC4} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2012-07-12] (Egis Technology Inc.)
Task: {1ADB5E65-6012-4FD4-B024-9EF0A82F5CDC} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-08-23] (Acer Incorporated)
Task: {1AFCB088-25BE-4522-931F-C9AFDF0DF457} - System32\Tasks\{23366071-2564-4891-81FB-79DD785459C7} => pcalua.exe -a D:\bfme2\AutoRun.exe -d D:\bfme2
Task: {2AB724C3-D5F3-4E68-A7B5-836CF878DED0} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2012-07-04] (CyberLink)
Task: {3A79BB55-4329-45F8-ACF8-E5E3B4B71DDF} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-06-16] (Microsoft Corporation)
Task: {4B1FF5B4-6DC2-49B5-972B-12B5087F3774} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software)
Task: {67795A44-5A4B-4E09-B69D-7782697A496E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {68A93A46-1FA4-4A3D-8408-ECFB96B14CE4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd)
Task: {7544BCDE-F6B6-40F6-8CB7-9835E85568C1} - System32\Tasks\Hotkey Utility => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [2012-08-07] (Acer Incorporated)
Task: {81442C2C-C580-4BEF-B11F-EF5235E1E5A0} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-04-17] (AVAST Software)
Task: {85FFA328-B4E9-4004-A046-8282EEFF0037} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_26_0_0_131_pepper.exe [2017-07-01] (Adobe Systems Incorporated)
Task: {9FE44298-1560-4178-B87D-7AA7F342B5CF} - System32\Tasks\{A5CFAF03-83C1-4073-A5C1-8EEC67F03017} => pcalua.exe -a C:\Users\Woltagen\Desktop\Sindicate\Ekura\launcher.exe -d C:\Users\Woltagen\Desktop\Sindicate\Ekura
Task: {B4874C1A-799C-479B-AE77-29AE060CC8B7} - System32\Tasks\{9FD0F93D-5B95-43BF-B0F7-373BED706E22} => pcalua.exe -a D:\bfme2\eauninstall.exe -d D:\bfme2
Task: {D1794691-CA40-4917-84D3-745C6CF903F1} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-07-01] (Adobe Systems Incorporated)
Task: {E5B79166-379A-4DAE-BCE2-41761F01FCA3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {ECBE2267-1454-4671-978C-FBBDF51DF8D1} - System32\Tasks\SafeZone scheduled Autoupdate 1457986414 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-05-17] (Avast Software)
Task: {F0AAE2A2-67DE-4551-8DE3-8E1344CC7AEE} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2012-07-12] (Egis Technology Inc.)
Task: {FE0D1010-9C05-48F1-983F-26F7635EB271} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


Shortcut: C:\Users\Woltagen\Favorites\Acer\Acer.lnk -> hxxp://www.acer.com

==================== Loaded Modules (Whitelisted) ==============

2014-03-14 16:35 - 2016-07-11 01:17 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-08-01 03:35 - 2016-06-14 22:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-04-02 15:45 - 2016-06-14 22:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-08-01 03:35 - 2016-06-14 22:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-08-01 03:35 - 2016-06-14 22:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2013-02-02 22:02 - 2014-08-12 22:17 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2017-05-31 11:02 - 2017-05-31 11:02 - 00012080 ____N () C:\WINDOWS\TEMP\BullseyeCoverage-x64-3.dll
2016-08-01 03:35 - 2016-06-14 22:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-04-02 15:45 - 2016-06-14 22:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-08-01 03:35 - 2016-06-14 22:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-08-01 03:35 - 2016-06-14 22:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-05-18 00:42 - 2016-05-18 00:42 - 00230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2016-08-01 03:35 - 2016-06-14 22:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-08-01 03:35 - 2016-06-14 22:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2015-07-17 19:34 - 2015-07-17 19:34 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2017-06-26 22:27 - 2017-06-23 05:21 - 03807064 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libglesv2.dll
2017-06-26 22:27 - 2017-06-23 05:21 - 00100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libegl.dll
2015-04-13 23:04 - 2016-06-14 22:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2017-04-17 17:21 - 2017-04-17 17:21 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-01-02 14:07 - 2017-01-02 14:07 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-04-17 17:21 - 2017-04-17 17:21 - 00176480 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-04-17 17:21 - 2017-04-17 17:21 - 00293936 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2017-04-17 17:21 - 2017-04-17 17:21 - 00653520 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2012-11-16 23:49 - 2012-07-18 05:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com
IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com
IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-19\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-19\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-19\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-19\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-20\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-20\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-20\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-20\...\sony.com -> sony.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2016-06-09 16:41 - 00000035 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-91284999-528624967-1822222337-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Woltagen\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "boincmgr"
HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\StartupApproved\StartupFolder: => "IMVU.lnk"
HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\StartupApproved\StartupFolder: => "Curse.lnk"
HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\StartupApproved\StartupFolder: => "CurseClientStartup.ccip"
HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-91284999-528624967-1822222337-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E484C60F-5E6C-4B7F-865A-9937125DEB7A}] => (Block) D:\utorrent\utorrent.exe
FirewallRules: [{0F672D96-E8AD-44AB-B092-F9834D8B74E7}] => (Block) D:\utorrent\utorrent.exe
FirewallRules: [UDP Query User{187244B2-CE82-4FBD-A02F-4E0F0EEA1A07}D:\utorrent\utorrent.exe] => (Allow) D:\utorrent\utorrent.exe
FirewallRules: [TCP Query User{C9528939-DBB6-4F28-81E6-F14A719FE00F}D:\utorrent\utorrent.exe] => (Allow) D:\utorrent\utorrent.exe
FirewallRules: [{7B1B93CA-EA6B-4616-B64D-959BCD16DCB5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2293\Agent.exe
FirewallRules: [{3E307299-4F8A-4943-9FB4-CE91AE87AB58}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2293\Agent.exe
FirewallRules: [{4EA2565D-3944-4A49-BDF1-99FBAE69B9E9}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{316522A6-AC3E-4D48-BF1F-230C7A206EF2}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{E59F9BFF-7632-4650-95A9-ABDF4DC440A8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{F4AB5E97-1B37-4279-B70C-40B586004526}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{B487CDC6-79C4-4CFE-A75A-AD535841A8B7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{597C3CBC-F34E-4319-8E16-2B0627E4BE62}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [UDP Query User{BF2F76DB-D40E-4EE0-9A18-7C33C95E2500}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{DA8C1C19-0C53-4A63-B81D-AD445E617936}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{28DEFC4C-3E04-440C-AEFF-5A3B5230BD2C}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{9424C775-0090-480F-AD6F-9FB1D52B5AB1}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{4DB5E932-D826-44B8-BD66-B2800B887906}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{39962B0D-4301-4295-83FC-FA2400586879}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{35CC547A-5D24-468F-8ECC-D3CD89E32DA6}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{66EC9B86-5FBA-463B-96E3-EFEA29769572}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{51CBD1FD-5A32-4A3A-9271-3292E79258CE}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{85759AE0-2EAA-40CF-AFDB-62088DBDC2C0}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{DADCC1C4-7E5E-475D-B8AE-5684FDB401A3}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe
FirewallRules: [{6ABF7147-29D6-489C-9407-C6F01230539E}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{113314C7-A5C1-4A24-98A8-15E6DD203020}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{5655BEF4-D88F-4A67-935D-AA82AC69ACBC}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{9B95C54C-6CB6-4D06-9BAE-7BE066A32F0C}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{DACF19B2-7C79-4780-8CE4-BAE6FAD1A499}] => (Allow) C:\Program Files (x86)\Intel\Extreme Tuning Utility\Client\PerfTune.exe
FirewallRules: [{B25F5CCD-4CB4-4CE6-B96B-D6C105501F30}] => (Allow) C:\Users\Woltagen\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{A24FFF46-C352-49E0-99EE-887018DC61E2}] => (Allow) C:\Users\Woltagen\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [TCP Query User{047BDBBC-D9B8-4682-9E3C-F9E00BA80709}D:\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Block) D:\steam\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [UDP Query User{766DCA4C-6617-4669-BBC6-46266E69CB74}D:\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Block) D:\steam\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [{D12A7A07-E903-43F1-9C85-D55D72195BA8}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{F455E648-7616-4B34-B834-ADC0097F218C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{D3C37B04-4CB6-4BC2-BD6F-7AE68B3B618A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{1A1740A6-1379-433C-ADDD-411A234F110C}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [TCP Query User{1CC39085-C2F8-47B8-8883-2C0E3ECB7410}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin
FirewallRules: [UDP Query User{D8144603-07FA-416E-9D1D-2EA209831EF1}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin
FirewallRules: [{9AE63A08-3D90-40BD-B130-48C89969776A}] => (Block) C:\program files (x86)\libreoffice 4\program\soffice.bin
FirewallRules: [{3CDE4E66-2787-4E29-8DFC-8CC44E02A008}] => (Block) C:\program files (x86)\libreoffice 4\program\soffice.bin
FirewallRules: [{18D3CEEC-3832-48DA-924B-3EB8720DC55D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E6DD8DA7-123F-4E76-AEF9-875017D2534A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [TCP Query User{CBEC71B9-15BE-4F1B-A980-567817EAABE1}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe
FirewallRules: [UDP Query User{779C98AB-15C2-4298-ADE0-DE262818D99C}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe
FirewallRules: [{1DE4F72F-9244-4BEC-97A2-D681425DC11C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2587FE47-D4D3-454D-93CD-FA95A1A3CBE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{B29C1C41-E5F0-40D9-A528-D0086FC6408C}] => (Allow) D:\Steam\SteamApps\common\Trove\GlyphClient.exe
FirewallRules: [{926E0984-B0A5-448C-A3BE-6DD43F34FE00}] => (Allow) D:\Steam\SteamApps\common\Trove\GlyphClient.exe
FirewallRules: [{2EC81939-1FD9-4820-81CA-4BB947E6F745}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{B29E52A1-6CAA-49C7-8115-6D249F9175AD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{43B79517-4AF6-4B36-9492-0112047C6BFD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{E829D9CB-A27B-4F28-86A8-793E525DC411}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{72990038-F3C2-41AF-8955-39273F1A9FE8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{498A9A5D-6755-4BFB-82E4-A96302479FA9}] => (Allow) D:\Steam\SteamApps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{6FC8A30C-1DA0-48BD-916A-4E281FA41C61}] => (Allow) D:\Steam\SteamApps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{FDC6C8E9-6625-45CB-9067-42973EC65106}] => (Allow) D:\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C1E08B02-6410-4549-BCE9-47C08175D42D}] => (Allow) D:\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{BBDFFF8A-3A79-4ED7-A8A9-29B4028ED150}D:\homam\bin\h5_game.exe] => (Block) D:\homam\bin\h5_game.exe
FirewallRules: [UDP Query User{9EAA5850-444A-4E9A-B09F-1B9F7671F09B}D:\homam\bin\h5_game.exe] => (Block) D:\homam\bin\h5_game.exe
FirewallRules: [TCP Query User{0C06FBE1-1D39-428C-ACA6-7F8D3BEC07D6}D:\hs\overwatch\overwatch.exe] => (Allow) D:\hs\overwatch\overwatch.exe
FirewallRules: [UDP Query User{BB203BF7-2647-43A1-B26A-963D2DB72FAE}D:\hs\overwatch\overwatch.exe] => (Allow) D:\hs\overwatch\overwatch.exe
FirewallRules: [{CCEE2F26-EB0C-4F72-BDE0-0590F7FD4FD0}] => (Block) D:\hs\overwatch\overwatch.exe
FirewallRules: [{8CCC40F9-E545-4743-A9E2-B2889E11430E}] => (Block) D:\hs\overwatch\overwatch.exe
FirewallRules: [TCP Query User{AFA468C1-2335-4D04-BC87-50527AB8E222}C:\users\woltagen\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\woltagen\appdata\roaming\gameranger\gameranger\gameranger.exe
FirewallRules: [UDP Query User{118173B2-229B-4E80-9A42-F2766A0899C3}C:\users\woltagen\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\woltagen\appdata\roaming\gameranger\gameranger\gameranger.exe
FirewallRules: [TCP Query User{00AD1999-EC60-4C4C-8E0B-ED31BDD26092}D:\titan quest\immortal throne\tqit.exe] => (Allow) D:\titan quest\immortal throne\tqit.exe
FirewallRules: [UDP Query User{48B1024D-D7F0-401D-A51B-4782854808C7}D:\titan quest\immortal throne\tqit.exe] => (Allow) D:\titan quest\immortal throne\tqit.exe
FirewallRules: [{862B1E93-F47E-47A5-83EE-5FC7811D9FB2}] => (Allow) D:\Mr DJ\The Elder Scrolls V Skyrim Legendary Edition\SkyrimLauncher.exe
FirewallRules: [{A57890E4-DA10-4877-9A69-E8F717FCDF4E}] => (Allow) D:\Mr DJ\The Elder Scrolls V Skyrim Legendary Edition\SkyrimLauncher.exe
FirewallRules: [{9E754A16-1C4D-4BB1-BE33-587C223A5E1C}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{E1D405D7-E4D4-4E95-AC40-B5129FBE3556}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{81335B07-B140-4E5D-8F45-1D00739B873A}] => (Allow) D:\Steam\SteamApps\common\Unturned\Unturned_BE.exe
FirewallRules: [{73CE0205-0731-4203-8A8B-4D87216C9C50}] => (Allow) D:\Steam\SteamApps\common\Unturned\Unturned_BE.exe
FirewallRules: [{D87D7326-FF1C-4C3A-9975-521BF3914DDE}] => (Allow) D:\Steam\SteamApps\common\Unturned\Unturned.exe
FirewallRules: [{16337332-4A5F-4A85-94FD-F6F6695EAB74}] => (Allow) D:\Steam\SteamApps\common\Unturned\Unturned.exe
FirewallRules: [{F79732DC-5456-4CE9-9B63-AB361FBC72A3}] => (Allow) D:\uTorrent\utorrent.exe
FirewallRules: [{3507A901-95FB-4533-8007-FB587F427F35}] => (Allow) D:\uTorrent\utorrent.exe
FirewallRules: [{7345B563-37FA-4A65-B79C-273EFFF87756}] => (Allow) D:\Bfmewk\game.dat
FirewallRules: [{434A8CD4-4E35-4F36-84FC-73A121466390}] => (Allow) D:\Bfmewk\game.dat
FirewallRules: [{DC4C3F08-A1C4-4FD1-BA1D-1515EF53EEB9}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596\SZBrowser.exe
FirewallRules: [{021E80F0-93BF-40D7-B335-AC8E32CA2EF7}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.607\SZBrowser.exe
FirewallRules: [TCP Query User{1D27E615-1CD4-49E6-A911-84690B82A582}D:\hs\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) D:\hs\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{A3DE4A5F-07CD-4412-9907-65A1AB3AFE94}D:\hs\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) D:\hs\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe
FirewallRules: [{6A811B9A-2324-4EF8-A4C2-1D43A2B91537}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

23-06-2017 22:36:35 Windows Update
30-06-2017 19:22:40 Installed FlatOut 2
01-07-2017 13:12:55 Removed Java 8 Update 111

==================== Faulty Device Manager Devices =============

Name: LogMeIn Hamachi Virtual Ethernet Adapter
Description: LogMeIn Hamachi Virtual Ethernet Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: LogMeIn Inc.
Service: Hamachi
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: avast! SecureLine TAP Adapter v3
Description: avast! SecureLine TAP Adapter v3
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: TAP-Windows Provider V9
Service: aswTap
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/01/2017 04:08:46 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro D:\$RECYCLE.BIN\S-1-5-21-91284999-528624967-1822222337-1001\$RJ53HIN.exe se nezdařilo. Chyba v souboru manifestu nebo zásad  na řádku .
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest.

Error: (07/01/2017 04:08:46 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro D:\$RECYCLE.BIN\S-1-5-21-91284999-528624967-1822222337-1001\$RQMQBYI.exe se nezdařilo. Chyba v souboru manifestu nebo zásad  na řádku .
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest.

Error: (07/01/2017 03:36:14 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro D:\Blbosti\World of Warcraft Installer\World of Warcraft Installer\xx\esetsmartinstaller_enu (1).exe se nezdařilo. Chyba v souboru manifestu nebo zásad  na řádku .
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest.

Error: (07/01/2017 03:36:14 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro D:\Blbosti\World of Warcraft Installer\World of Warcraft Installer\xx\esetsmartinstaller_enu.exe se nezdařilo. Chyba v souboru manifestu nebo zásad  na řádku .
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest.

Error: (07/01/2017 02:13:13 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe se nezdařilo. Chyba v souboru manifestu nebo zásad  na řádku .
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest.

Error: (07/01/2017 02:13:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: explorer.exe, verze: 6.3.9600.18460, časové razítko: 0x57c1b573
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x026afb08
ID chybujícího procesu: 0xf38
Čas spuštění chybující aplikace: 0x01d2f2635fc4ff5f
Cesta k chybující aplikaci: C:\WINDOWS\SysWOW64\explorer.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: a37400e0-5e56-11e7-8793-4c72b9e84bec
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (07/01/2017 01:14:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Steam.exe verze 4.3.34.47 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 175c

Čas spuštění: 01d2f25adc04a222

Čas ukončení: 4294967295

Cesta k aplikaci: D:\Steam\Steam.exe

ID hlášení: 7e39ba38-5e4e-11e7-8792-4c72b9e84bec

Úplný název chybujícího balíčku: 

ID aplikace související s chybujícím balíčkem:

Error: (07/01/2017 12:59:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: firefox.exe, verze: 54.0.1.6388, časové razítko: 0x5953d1f8
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.18696, časové razítko: 0x5915ecd6
Kód výjimky: 0xc0000018
Posun chyby: 0x0009d4c2
ID chybujícího procesu: 0xbf4
Čas spuštění chybující aplikace: 0x01d2f25924d47db3
Cesta k chybující aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 66b37a0c-5e4c-11e7-8792-4c72b9e84bec
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (07/01/2017 12:20:24 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: Svazek \\?\Volume{48a13d4b-7275-401d-b88d-89473331e0d2}\ nebyl optimalizován, protože byla zjištěna chyba: Parametr není správný. (0x80070057).

Error: (07/01/2017 12:20:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: Svazek Recovery nebyl optimalizován, protože byla zjištěna chyba: Parametr není správný. (0x80070057).


System errors:
=============
Error: (06/30/2017 07:53:55 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem TLS: 10. Stav chyby Windows SChannel: 10

Error: (06/30/2017 07:17:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby: 
Načtení tohoto ovladače je blokováno.

Error: (06/30/2017 07:17:12 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Woltagen\AppData\Local\Temp\ehdrv.sys

Error: (06/30/2017 07:17:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby: 
Načtení tohoto ovladače je blokováno.

Error: (06/30/2017 07:17:11 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Woltagen\AppData\Local\Temp\ehdrv.sys

Error: (06/30/2017 07:17:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby: 
Načtení tohoto ovladače je blokováno.

Error: (06/30/2017 07:17:11 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Woltagen\AppData\Local\Temp\ehdrv.sys

Error: (06/27/2017 07:33:40 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem TLS: 10. Stav chyby Windows SChannel: 10

Error: (06/27/2017 01:16:54 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Superfetch byla ukončena s následující chybou: 
Služba nebyla spuštěna.

Error: (06/26/2017 07:25:50 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem TLS: 10. Stav chyby Windows SChannel: 10


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Percentage of memory in use: 45%
Total physical RAM: 8149.88 MB
Available physical RAM: 4453.77 MB
Total Virtual: 16341.88 MB
Available Virtual: 12262.76 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:118.29 GB) (Free:41.17 GB) NTFS
Drive d: (DATA) (Fixed) (Total:1837.02 GB) (Free:442.67 GB) NTFS
Drive f: (LOTRBFME2) (CDROM) (Total:5.54 GB) (Free:0 GB) UDF

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 6F16B69F)

Partition: GPT.

========================================================
Disk: 1 (Size: 1863 GB) (Disk ID: 6F16B6F3)

Partition: GPT.

==================== End of Addition.txt ============================