Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-07-2017
Ran by mik (31-07-2017 23:32:07)
Running from C:\Users\mik\Desktop
Windows 7 Professional Service Pack 1 (X64) (2013-12-01 16:20:51)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2814940317-2182853087-2190634612-500 - Administrator - Disabled)
Guest (S-1-5-21-2814940317-2182853087-2190634612-501 - Limited - Disabled)
mik (S-1-5-21-2814940317-2182853087-2190634612-1000 - Administrator - Enabled) => C:\Users\mik

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: F-Secure SAFE (Enabled - Up to date) {35BE5FA4-2DEA-00F8-DC55-FD8AF743F44F}
AS: F-Secure SAFE (Enabled - Up to date) {8EDFBE40-0BD0-0F76-E6E5-C6F88CC4BEF2}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-2814940317-2182853087-2190634612-1000\...\uTorrent) (Version: 3.5.0.43916 - BitTorrent Inc.)
16.0.0.0 (HKLM-x32\...\{6B75BAF2-A67A-418D-A3D4-B27A5C04F2F5}_is1) (Version: 16.0.0 - Duplicate Video Search)
ACDSee 17 (HKLM-x32\...\{A47900DC-2011-46C8-8E07-5BDD9D83DE47}) (Version: 17.0.41 - ACD Systems International Inc.)
Adobe Edge Inspect CC (HKLM-x32\...\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}) (Version:  - ) <==== ATTENTION
Adobe Flash Player 26 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 26.0.0.137 - Adobe Systems Incorporated)
Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.137 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{AAC2D3D5-D8B0-66E4-2AB5-5D5001ACED62}) (Version: 3.0.855.0 - Advanced Micro Devices, Inc.)
Astroart 5.0 demo (HKLM-x32\...\Astroart demo_is1) (Version:  - MSB Software)
AutoHotkey 1.1.24.00 (HKLM\...\AutoHotkey) (Version: 1.1.24.00 - Lexikos)
Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.10.150607 - )
Avidemux 2.6 - 64bits (HKLM-x32\...\Avidemux 2.6 - 64bits (64-bit)) (Version: 2.6.8.9046 - )
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver  (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
bestadblocker (HKLM-x32\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version:  - ) <==== ATTENTION
BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.5.55.6279 - BlueStack Systems, Inc.)
Brother MFL-Pro Suite DCP-1610W series (HKLM-x32\...\{75E38F04-1BAF-4054-A059-57F831688943}) (Version: 1.0.2.0 - Brother Industries, Ltd.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.70.1080 - AB Team, d.o.o.)
BS.Player PRO (HKLM-x32\...\BSPlayerp) (Version: 2.66.1075 - AB Team, d.o.o.)
Canon Utilities Digital Photo Professional 4 (HKLM-x32\...\Digital Photo Professional 4 (x64)) (Version: 4.5.0.0 - Canon Inc.)
Canon Utilities EOS Lens Registration Tool (HKLM-x32\...\EOS Lens Registration Tool) (Version: 1.5.0.1 - Canon Inc.)
Capture NX 2 (HKLM-x32\...\Capture NX 2) (Version: 2.2.6 - NIKON CORPORATION)
CCleaner (HKLM\...\CCleaner) (Version: 5.32 - Piriform)
Cedocida DV Codec (32 Bit and 64 Bit) (HKLM\...\cedocida) (Version:  - )
Cedocida DV Codec (HKLM-x32\...\cedocida) (Version:  - )
Cobian Backup 11 Gravity (HKLM-x32\...\CobBackup11) (Version:  - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0115 - Disc Soft Ltd)
Dáma (HKLM-x32\...\Dáma) (Version:  - )
DeblurMyImagePlugIn (HKLM-x32\...\DeblurMyImagePlugIn) (Version: 2.0 - Filip Krolupper)
Deluge 1.3.11 (HKLM-x32\...\Deluge) (Version:  - )
DIN Settings Calculator 1.12 (HKLM-x32\...\DIN Settings Calculator_is1) (Version: 1.12 - Filesland.com)
Dungeon Master Java (HKLM-x32\...\Dungeon Master Java) (Version:  - )
dupeGuru (HKLM\...\{C11DACBD-8863-4AA4-94AD-708602F6F7EF}) (Version: 3.9.1 - Hardcoded Software)
DxO Optics Pro 9 (HKLM\...\{3D5B5BDF-6F57-487D-A45D-CC1A9A883D8B}) (Version: 9.5.0 - DxO Labs)
DxO OpticsPro 10 (HKLM\...\{7A4FDA06-2063-468A-B0B6-FF93F17CDC85}) (Version: 10.4.0 - DxO Labs)
DxO OpticsPro 10 plug-in for Adobe Lightroom (HKLM-x32\...\{79C97462-1598-48CD-B597-8B3C3C5A20B8}) (Version: 1.0.23 - DxO Labs)
DxO OpticsPro 11 (HKLM\...\{A96BA739-3BE8-4287-A25A-B9CDC77E18FD}) (Version: 11.1.0 - DxO)
EaseUS Data Recovery Wizard 7.5 (HKLM-x32\...\EaseUS Data Recovery Wizard 7.5_is1) (Version:  - EaseUS)
Eax Movie Catalog (HKLM-x32\...\Eax Movie Catalog_is1) (Version: 2.4.5 - Eaxmc Software)
EOSInfo (HKLM-x32\...\{CC23FF9A-989C-4DEB-8970-50E6E4862315}) (Version: 0.2.0 - astrojargon.net)
Everything 1.4.0.713b (x64) (HKLM\...\Everything) (Version: 1.4.0.713b (x64) - David Carpenter)
EZDownloader (HKLM-x32\...\{0F44DC3A-6E62-4961-A14B-95323C512F9B}_is1) (Version: 1.0 - EZDownloader) <==== ATTENTION
FBDownloader (HKU\S-1-5-21-2814940317-2182853087-2190634612-1000\...\fbDownloader) (Version: 1.0 - HTTO Group Ltd)
ffdshow v1.3.4531 [2014-06-28] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4531.0 - )
ffdshow x64 v1.3.4530 [2014-02-09] (HKLM\...\ffdshow64_is1) (Version: 1.3.4530.0 - )
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 8.3.1.21155 - Foxit Software Inc.)
GNU Midnight Commander version 4.8.13 (build: 20150329-188) (HKLM-x32\...\{CBB4464D-7081-4F1D-9F6D-F5288A4A9B82}_is1) (Version: 4.8.13 (build: 20150329-188) - The Free Software Foundation, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{18455581-E099-4BA8-BC6B-F34B2F06600C}) (Version: 1.0.0 - Google Inc.) Hidden
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
HandBrake 0.10.5 (HKLM-x32\...\HandBrake) (Version: 0.10.5 - )
HappyFoto-Designer 5.4 (HKLM-x32\...\HappyFoto-Designer_is1) (Version:  - )
HD Tune Pro 5.00 (HKLM-x32\...\HD Tune Pro_is1) (Version:  - EFD Software)
HDQ-1.2cV04.01 (HKLM-x32\...\HDQ-1.2cV04.01) (Version: 1.35.12.18 - HDQ-1.2cV04.01)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd)
Hlídač katastru (HKLM-x32\...\{93DB7870-713E-4B7C-A79F-A40A5FB1A5FC}) (Version: 1.1.2.0 - Uzuzu-cz)
HP Support Assistant (HKLM-x32\...\{05F81C27-62A5-4A0C-8519-60CB66CF87C6}) (Version: 8.4.14.41 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{04442D89-B941-4C8C-B20D-625233B78BB0}) (Version: 12.6.14.19 - HP Inc.)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.6.245 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.37 - Irfan Skiljan)
J2SE Runtime Environment 5.0 Update 5 (HKLM-x32\...\{3248F0A8-6813-11D6-A77B-00B0D0150050}) (Version: 1.5.0.50 - Sun Microsystems, Inc.)
Java 2 Runtime Environment, SE v1.4.1_01 (HKLM-x32\...\{1666FA7C-CB5F-11D6-A78C-00B0D079AF64}) (Version:  - )
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle)
Java(TM) 6 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416045FF}) (Version: 6.0.450 - Oracle)
Java(TM) SE Development Kit 6 Update 45 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0160450}) (Version: 1.6.0.450 - Oracle)
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
JDownloader 2 (HKLM\...\jdownloader2-1) (Version: 2.0 - AppWork GmbH)
Kodi (HKU\S-1-5-21-2814940317-2182853087-2190634612-1000\...\Kodi) (Version:  - XBMC-Foundation)
LAV Filters 0.68 (HKLM-x32\...\lavfilters_is1) (Version: 0.68 - Hendrik Leppkes)
Life Is Strange (HKLM-x32\...\{33E1C9A1-60A7-4D34-A7B6-6C65FF9AE4A7}_is1) (Version: EP 1.2.3.4.5 - Square Enix)
Life Is Strange™ (HKLM\...\Steam App 319630) (Version:  - DONTNOD Entertainment)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.587.1 - McAfee, Inc.)
Microsoft .NET Framework 4.6.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft RichCopy 4.0 (HKLM-x32\...\{86F4F32B-77C7-4951-B33C-05D41A8190C1}) (Version: 4.0.216 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{4617173B-0792-4FD7-AB2B-1D787BF2D459}) (Version: 1.0.1.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{218D629E-8D06-4B23-A238-EB869770B6CC}) (Version: 1.0.1.0 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Neat Video v4.1.3 Demo plug-in for VirtualDub (32-bit) (HKLM-x32\...\Neat Video v4 for VirtualDub (32-bit)_is1) (Version:  - Neat Video team, ABSoft)
Nokia Connectivity Cable Driver (HKLM-x32\...\{A57025CC-5F2E-4D01-B387-06DB10500D43}) (Version: 7.1.78.0 - Nokia)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
Oracle VM VirtualBox 5.0.4 (HKLM\...\{FC191F32-1A67-4231-91D0-0059A57C99A8}) (Version: 5.0.4 - Oracle Corporation)
PC Connectivity Solution (HKLM-x32\...\{644F4910-E812-49AD-93EC-86828CB81A0D}) (Version: 12.0.27.0 - Nokia)
photoFXlab (HKLM-x32\...\photoFXlab) (Version: 1.2.7 - Topaz Labs)
Picture Control Utility (HKLM-x32\...\{87441A59-5E64-4096-A170-14EFE67200C3}) (Version: 1.2.1 - Nikon)
Plumbytes Anti-Malware 2017 (HKLM\...\Plumbytes Anti-Malware 2017) (Version:  - Plumbytes Software)
PriceMinus (HKLM-x32\...\{06B99631-BFA2-3B7A-F58B-D067C2BA59B7}) (Version:  - ) <==== ATTENTION
RawTherapee verze 4.0.12 (HKLM\...\{128459AB-59A7-430A-8BD0-3D8803D50400}_is1) (Version: 4.0.12 - rawtherapee.com)
ReClock (HKLM-x32\...\ReClock) (Version:  - SlySoft, Inc.)
Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform)
Roadkil's Unstoppable Copier Version 5.2 (HKLM-x32\...\{A306FD29-7D3A-4287-91AC-9A0180931395}_is1) (Version:  - Roadkil.Net)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 5.1.0.1120 - Samsung Electronics)
SciTE4AutoHotkey v3.0.06.01 (HKLM-x32\...\SciTE4AutoHotkey) (Version: v3.0.06.01 - fincs)
ShareMouse v3.0.21 (HKLM-x32\...\ShareMouse_is1) (Version: 3.0.21 - Bartels Media GmbH)
SIGMA Optimization Pro (HKLM-x32\...\{A75A7BEA-7A33-46FF-A2CD-3B0AF8023903}) (Version: 1.2.0 - SIGMA)
Silkworm (HKLM-x32\...\Silkworm_is1) (Version:  - DotNes)
SmoothVideo Project version 3.1.6 (HKLM-x32\...\SmoothVideo Project_is1) (Version: 3.1.6 - SVP)
SoftPerfect RAM Disk 3.4.3 (HKLM\...\{33A14ED9-0340-4193-BEDB-B95BC8196182}_is1) (Version:  - SoftPerfect Research)
Spyder3Pro (HKLM-x32\...\Spyder3Pro) (Version:  - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
StrongDC++ 2.41 (HKLM-x32\...\StrongDC++) (Version: 2.41 - Big Muscle)
Subtitle Edit 3.4.0 (HKLM-x32\...\SubtitleEdit_is1) (Version: 3.4.0.3 - Nikse)
Teleport Pro (HKLM-x32\...\Teleport Pro) (Version: 1.68 - Tennyson Maxwell Information Systems, Inc.)
The Neverhood (HKLM-x32\...\DreamWorks Interactive: Neverhood) (Version:  - )
Topaz Adjust 5 (HKLM-x32\...\Topaz Adjust 5) (Version: 5.0.1 - Topaz Labs, LLC)
Topaz B&W Effects (HKLM-x32\...\Topaz BW Effects 2) (Version: 2.1.0 - Topaz Labs, LLC)
Topaz Clarity (HKLM-x32\...\Topaz Clarity) (Version: 1.0.0 - Topaz Labs, LLC)
Topaz Clean 3 (HKLM-x32\...\Topaz Clean 3) (Version: 3.0.2 - Topaz Labs, LLC)
Topaz DeJpeg 4 (HKLM-x32\...\Topaz DeJpeg 4) (Version: 4.0.2 - Topaz Labs, LLC)
Topaz DeNoise 5 (HKLM-x32\...\Topaz DeNoise 5) (Version: 5.0.1 - Topaz Labs, LLC)
Topaz Detail 3 (HKLM-x32\...\Topaz Detail 3) (Version: 3.1.0 - Topaz Labs, LLC)
Topaz Fusion Express 2 (HKLM-x32\...\Topaz Fusion Express 2) (Version: 2.1.3 - Topaz Labs, LLC)
Topaz InFocus (HKLM-x32\...\Topaz InFocus) (Version: 1.0.0 - Topaz Labs, LLC)
Topaz Lens Effects (HKLM-x32\...\Topaz Lens Effects) (Version: 1.2.0 - Topaz Labs, LLC)
Topaz ReMask 3 (HKLM-x32\...\Topaz ReMask 3) (Version: 3.2.1 - Topaz Labs, LLC)
Topaz ReStyle (HKLM-x32\...\Topaz ReStyle) (Version: 1.0.0 - Topaz Labs, LLC)
Topaz Simplify 4 (HKLM-x32\...\Topaz Simplify 4) (Version: 4.0.0 - Topaz Labs, LLC)
Topaz Star Effects (HKLM-x32\...\Topaz Star Effects) (Version: 1.1.0 - Topaz Labs, LLC)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 9.0 release candidate 2 - Ghisler Software GmbH)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.0 release candidate 6 - Ghisler Software GmbH)
Total Commander 64-bit (Remove or Repair) (HKLM-x32\...\Totalcmd64) (Version: 9.0a - Ghisler Software GmbH)
TV Rename (HKLM-x32\...\TVRename) (Version:  - )
Unity Web Player (HKU\S-1-5-21-2814940317-2182853087-2190634612-1000\...\UnityWebPlayer) (Version: 5.3.6f1 - Unity Technologies ApS)
VEGAS Pro 14.0 (64-bit) (HKLM\...\{4C79D80F-79F9-11E6-8402-BB95F5A309BD}) (Version: 14.0.161 - VEGAS)
Video Enhancer 2.0 beta (HKLM-x32\...\Video Enhancer_is1) (Version:  - Infognition Co. Ltd.)
VirtualDubMOD 1.5.10.3 US (HKLM-x32\...\{B158F76F-76AB-4115-A4F0-4C6EF6956093}_is1) (Version: 1.5.10.3 - Trad-Fr)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
WarThunder (HKLM-x32\...\WarThunder) (Version:  - ) <==== ATTENTION
Win32DiskImager version 0.9.5 (HKLM-x32\...\{D074CE74-912A-4AD3-A0BF-3937D9D01F17}_is1) (Version: 0.9.5 - ImageWriter Developers)
WinUAE (HKLM-x32\...\{BB6B3D49-4056-4657-B71D-9B3D7E45C06E}) (Version: 3.1.0.0 - Arabuusimiehet)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-06-29] (Foxit Software Inc.)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2015-03-27] (Piriform Ltd)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2012-01-19] (Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-06-29] (Foxit Software Inc.)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2015-03-27] (Piriform Ltd)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01A0ADED-E7F4-45F5-9E66-2CD32468A140} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-04-06] (HP Inc.)
Task: {102E070F-2136-4DAA-9EEA-97011D68BA00} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-06-30] (Piriform Ltd)
Task: {169EAAA0-201B-4B36-835A-5C13F967CE9F} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung Magician\SamsungMagician.exe [2017-05-19] (Samsung Electronics Co. Ltd.)
Task: {190650C6-37F6-43AA-B431-9790D139A7E9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => c:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-06-28] (HP Inc.)
Task: {21E4D85A-0BB4-4096-A1F4-E82A5898A694} - System32\Tasks\{761FA06F-78A5-474F-8679-32D755F5DD25} => C:\Windows\system32\pcalua.exe -a S:\AviSynth_260.exe -d S:\
Task: {224FF83D-1DCD-48E3-A591-05FCC9B6BDCB} - System32\Tasks\avastBCLRestartS-1-5-21-2814940317-2182853087-2190634612-1000 => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
Task: {2799C1A5-E3B8-432E-AD47-12A91DC18B2D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2017-04-07] (HP Inc.)
Task: {29FEA553-E001-4E99-9254-A5B550259C33} - System32\Tasks\{B708DBA6-1D93-4869-A0CA-B817F655CDBA} => O:\work2013-07-03\DM\Dungeon MasterHJ-nejdou otevrit dvere\dm.exe
Task: {3AA341B8-138F-4153-89C6-1E6DD734AA2B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-07-12] (Adobe Systems Incorporated)
Task: {3DEFA818-1658-48D8-80F9-B7DC4FB023F9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {6B58FE08-D227-46B0-A18B-23711543B43A} - System32\Tasks\{29D9AF8C-196F-4F6D-9AB5-3BA622EE52C1} => C:\Windows\system32\pcalua.exe -a C:\sp53291.exe -d C:\
Task: {6D9909FC-06CB-4AE9-84C9-33F64B997A49} - System32\Tasks\HPCeeScheduleFormik => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-06-24] (HP Inc.)
Task: {76661DB7-EA22-4584-A973-ECBD4640B199} - System32\Tasks\SteamClient => C:\Users\mik\AppData\Roaming\Steam\SteamHelper.exe [2015-10-09] (Valve Corporation                                           ) <==== ATTENTION
Task: {7ED1B8D5-6037-4903-802D-5F4726480811} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-04-07] (HP Inc.)
Task: {B9D15EA5-F34F-48B3-ABF9-9FF074509B66} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2017-04-07] (HP Inc.)
Task: {C76CA0F6-5801-47C5-82DE-2D4846ADC99C} - System32\Tasks\{16DE09DC-65BE-4592-854E-86C71802ED6A} => O:\work2013-07-03\DM\Dungeon MasterHJ-nejdou otevrit dvere\dm.exe
Task: {D4C5CC55-33B8-4C10-8852-B287CC57B55B} - System32\Tasks\{4C410B12-CBDA-4BE9-A55C-A7C1EE802BFA} => O:\work2013-07-03\DM\Dungeon MasterHJ-nejdou otevrit dvere\dm.exe
Task: {DD50912F-425A-49D2-91D3-DEF6291EC2A1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-04-06] (HP Inc.)
Task: {DEB27750-63A2-48B5-BF6D-AA601F05BE40} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {F21B4842-2D2A-4D31-BE00-6D0CA2BCF2FC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-04-07] (HP Inc.)
Task: {F57609E9-DBCB-4C8A-92F9-A0B55BFAC85D} - System32\Tasks\{A308ACF1-06CE-48ED-814E-F9E346B8B4DD} => C:\Windows\system32\pcalua.exe -a E:\SETUP.EXE -d "C:\Program Files\DAEMON Tools Lite"
Task: {FA9E5397-2C86-4E4F-A902-4CECC9F419D6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-04-07] (HP Inc.)
Task: {FE084B70-C565-4FB4-A330-2FF29DBD3719} - System32\Tasks\{131942D0-8F6C-429F-B54D-41A7278A11DA} => S:\installed\Secret Of Monkey Island SE\MISE.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Bidaily Synchronize Task[pr].job => c:\programdata\{a84fce6a-f646-b398-a84f-fce6af6439ab}\greys.anatomy.s11e24.720p.hdtv.x264-dimension[rartv].exe <==== ATTENTION
Task: C:\Windows\Tasks\HPCeeScheduleFormik.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\mik\Desktop\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&aff_id=1034&source=1&click_id=a7b983ab281ae4d7d2aa155de35d62b9f3d314df --app-window-size=1920,1200
ShortcutWithArgument: C:\Users\mik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&aff_id=1034&source=1&click_id=a7b983ab281ae4d7d2aa155de35d62b9f3d314df --app-window-size=1920,1200
ShortcutWithArgument: C:\Users\mik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&aff_id=1034&source=1&click_id=a7b983ab281ae4d7d2aa155de35d62b9f3d314df --app-window-size=1920,1200

==================== Loaded Modules (Whitelisted) ==============

2016-10-29 22:53 - 2016-10-29 19:54 - 002000488 _____ () C:\wincmd\tools\Everything.exe
2017-04-11 04:17 - 2017-04-11 04:17 - 000192200 _____ () C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
2017-05-17 01:30 - 2017-05-17 01:30 - 000111104 _____ () C:\Program Files\Plumbytes Software\Plumbytes Anti-Malware\Zlib.dll
2014-05-16 11:58 - 2014-05-16 11:58 - 002268672 _____ () C:\Program Files (x86)\Hlídač katastru\DRM.WinKlient.exe
2014-05-16 11:58 - 2014-05-16 11:58 - 000004096 _____ () C:\Program Files (x86)\Hlídač katastru\DRM.LoaderApi.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 007667970 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility.exe
2014-01-11 13:04 - 2016-05-22 03:30 - 001212928 _____ () C:\Program Files\AutoHotkey\AutoHotkey.exe
2012-01-19 13:34 - 2012-01-19 13:34 - 000369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000139264 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\Appearance Pak.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000147456 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\RegEx.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000868352 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\RBScript.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000098304 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\Shell.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000762368 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\XML.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000266240 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\CGamma.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000065536 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\CSensor.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000028672 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\MBSRegistrationPlugin16042.dll
2010-07-26 22:17 - 2010-07-07 16:00 - 000025600 _____ () C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\MBSPluginVersionPlugin16042.dll
2016-11-16 08:45 - 2009-02-27 17:38 - 000139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2017-07-31 22:49 - 2017-07-31 22:49 - 000029696 _____ () c:\Temp\nsiE37E.tmp\registry.dll
2017-07-31 22:49 - 2017-07-31 22:49 - 000008704 _____ () c:\Temp\nsiE37E.tmp\newadvsplash.dll
2017-07-31 22:49 - 2017-07-31 22:49 - 000011264 _____ () c:\Temp\nsiE37E.tmp\System.dll
2017-07-12 00:09 - 2017-07-12 00:09 - 020064768 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_137.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2017-07-10 18:44 - 000000885 _____ C:\Windows\system32\Drivers\etc\hosts

0.0.0.1	mssplus.mcafee.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2814940317-2182853087-2190634612-1000\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.100.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [TCP Query User{90146656-A5D2-457A-9252-A7189D493D32}C:\wincmd\totalcmd.exe] => (Allow) C:\wincmd\totalcmd.exe
FirewallRules: [UDP Query User{98C9F25B-E698-425B-87D4-52EC081AFB1D}C:\wincmd\totalcmd.exe] => (Allow) C:\wincmd\totalcmd.exe
FirewallRules: [{EF10E9A7-E117-422B-9680-4E14A1738E90}] => (Block) C:\wincmd\totalcmd.exe
FirewallRules: [{68D14B1F-A585-47F8-927A-D6E3C4E5B8A0}] => (Block) C:\wincmd\totalcmd.exe
FirewallRules: [TCP Query User{57F329C6-DE6A-4A45-AE2E-8E3B72142E8A}C:\program files (x86)\strongdc++\strongdc.exe] => (Allow) C:\program files (x86)\strongdc++\strongdc.exe
FirewallRules: [UDP Query User{E6A49476-EE89-4819-A3E9-5025AD179CC1}C:\program files (x86)\strongdc++\strongdc.exe] => (Allow) C:\program files (x86)\strongdc++\strongdc.exe
FirewallRules: [TCP Query User{D6B87B46-A2C9-4B67-819D-27FEE884A84F}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{C7255850-4724-48E2-AA6D-16CB4263F24F}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{DF969E30-C836-47AA-A600-02C2C35765AB}O:\portable\firefoxportable\app\firefox\firefox.exe] => (Allow) O:\portable\firefoxportable\app\firefox\firefox.exe
FirewallRules: [UDP Query User{9BF7A203-263B-4D56-A8E1-4CAAC027427C}O:\portable\firefoxportable\app\firefox\firefox.exe] => (Allow) O:\portable\firefoxportable\app\firefox\firefox.exe
FirewallRules: [TCP Query User{B3AF52FA-9C05-432B-86A5-FE4E3185751D}O:\______________hotovo.s.s\portable\firefoxportable\app\firefox\firefox.exe] => (Block) O:\______________hotovo.s.s\portable\firefoxportable\app\firefox\firefox.exe
FirewallRules: [UDP Query User{74C1C3D3-2C34-4297-BAE9-6EE241392D56}O:\______________hotovo.s.s\portable\firefoxportable\app\firefox\firefox.exe] => (Block) O:\______________hotovo.s.s\portable\firefoxportable\app\firefox\firefox.exe
FirewallRules: [{2906A507-037E-4810-9FB2-72DEB65360B9}] => (Allow) C:\Program Files (x86)\ShareMouse\ShareMouse.exe
FirewallRules: [TCP Query User{92DC17EB-ED82-4C68-BBCA-7C716F3B8C26}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [UDP Query User{759B0AE3-9B63-4B2C-BCE4-3B084587DEB6}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [{8B62CB31-E426-4DF2-BD25-73E51C5D7972}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{CE6B6F7F-0B41-445E-B372-B918B3E4BA53}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{08AE977B-87CD-4396-ACF8-EB1B3BC60978}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{BB708337-5C61-45BE-BDEE-81DA21843399}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{CF7D0370-7C86-488F-9A17-59BE6844C2EA}C:\windows\syswow64\javaw.exe] => (Block) C:\windows\syswow64\javaw.exe
FirewallRules: [UDP Query User{E2EAC176-F648-4F10-A885-E80F6E60703D}C:\windows\syswow64\javaw.exe] => (Block) C:\windows\syswow64\javaw.exe
FirewallRules: [{0AD7CB12-366D-4FC8-89A3-B656830F0EED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe
FirewallRules: [{B12DFC36-B59A-43E8-828F-DDC6985C766F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe
FirewallRules: [{02AAACD4-4563-465D-8A8D-1E3C32F40630}] => (Allow) C:\Program Files (x86)\Life Is Strange\steam_api64.exe
FirewallRules: [{0F33DAFE-A5D6-4D5D-B086-EA6F982C3357}] => (Allow) C:\Program Files (x86)\Life Is Strange\steam_api64.exe
FirewallRules: [{30F5C23F-8713-4C05-8073-F810BD3DF3F4}] => (Allow) S:\install\Data\Disk1\Setup.exe
FirewallRules: [{47B5968C-87AA-4BF6-8C51-687B822830C1}] => (Allow) S:\install\Data\Disk1\Setup.exe
FirewallRules: [{AFE59E6B-1150-42AD-B0A6-9C352E536412}] => (Allow) C:\Users\mik\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{372A2A27-3A40-4D5E-A1AB-C9106081549F}] => (Allow) C:\Users\mik\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{CF44ADA6-A086-49CD-94BE-E873405F0A73}] => (Allow) C:\Users\mik\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5D201523-A2BB-4AE6-B8D7-C276EA082B7A}] => (Allow) C:\Users\mik\AppData\Roaming\uTorrent\utorrent.exe
FirewallRules: [{0D8FD5E4-C964-4584-9D10-28336F8FB307}] => (Allow) C:\Users\mik\AppData\Roaming\uTorrent\utorrent.exe
FirewallRules: [{4C29A0FC-51A7-4BEC-BB42-72631FED6AA2}] => (Allow) C:\Users\mik\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{6F8E8918-465D-4DC3-9EAB-533D15F90B37}C:\users\mik\appdata\roaming\utorrent\updates\3.4.9_43388.exe] => (Block) C:\users\mik\appdata\roaming\utorrent\updates\3.4.9_43388.exe
FirewallRules: [UDP Query User{2BD5FD8B-B0C8-49D6-9DA1-335C6624B193}C:\users\mik\appdata\roaming\utorrent\updates\3.4.9_43388.exe] => (Block) C:\users\mik\appdata\roaming\utorrent\updates\3.4.9_43388.exe
FirewallRules: [{CD176886-9917-4774-BD87-3336B8B489F7}] => (Allow) C:\utorrent-portable\utorrent.exe
FirewallRules: [{4481E421-7CBE-4E33-A5F9-E26F18C94704}] => (Allow) C:\utorrent-portable\utorrent.exe
FirewallRules: [{1100BB5F-1C65-4922-AC81-36F73C8C6645}] => (Allow) C:\PORTABLE\TC UP\PLUGINS\Media\uTorrent\utorrent.exe
FirewallRules: [{7A0CB6F2-F976-44D8-A062-F0AC880989EB}] => (Allow) C:\PORTABLE\TC UP\PLUGINS\Media\uTorrent\utorrent.exe
FirewallRules: [TCP Query User{F45251B4-02BC-44F9-A69A-E57AA529A788}O:\portable\firefoxportable\app\firefox\firefox.exe] => (Block) O:\portable\firefoxportable\app\firefox\firefox.exe
FirewallRules: [UDP Query User{0DA783A5-3B11-4B67-846A-50E456ECC67E}O:\portable\firefoxportable\app\firefox\firefox.exe] => (Block) O:\portable\firefoxportable\app\firefox\firefox.exe
FirewallRules: [TCP Query User{45AB1CE1-DC52-4858-9425-EBEE45B67526}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [UDP Query User{5A07A967-E829-444D-9689-E08006636782}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [TCP Query User{B70A2519-C1B8-4503-A827-A1AD47318A1C}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{DC305D13-49E9-42B0-84A1-F70509F94810}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{D40D854D-E6AA-4991-8170-44F07E7753C9}C:\temp\teamviewer\teamviewer.exe] => (Allow) C:\temp\teamviewer\teamviewer.exe
FirewallRules: [UDP Query User{EB06227D-D298-42CE-9F6E-CFB747735E1D}C:\temp\teamviewer\teamviewer.exe] => (Allow) C:\temp\teamviewer\teamviewer.exe
FirewallRules: [{302F700B-BB34-4DB8-896E-BD2BF9D653BB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

31-07-2017 21:48:23 F-Secure Ultralight updated
31-07-2017 22:59:32 Removed F-Secure SAFE

==================== Faulty Device Manager Devices =============

Name: Ovladač svazku souborového systému WPD
Description: Ovladač svazku souborového systému WPD
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: Microsoft
Service: WUDFRd
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Marvell 91xx Config ATA Device
Description: Marvell 91xx Config ATA Device
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Ovladač svazku souborového systému WPD
Description: Ovladač svazku souborového systému WPD
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: Microsoft
Service: WUDFRd
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/31/2017 09:53:50 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT AUTHORITY)
Description: Hodnota řetězce názvu čítače výkonu v registru je nesprávně naformátovaná. Chybně vytvořený řetězec je . První hodnota DWORD v datové oblasti obsahuje hodnotu indexu chybně vytvořeného řetězce, zatímco druhá a třetí hodnota DWORD v datové oblasti obsahují poslední platné hodnoty indexu.

Error: (07/31/2017 09:53:16 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT AUTHORITY)
Description: Hodnota řetězce názvu čítače výkonu v registru je nesprávně naformátovaná. Chybně vytvořený řetězec je . První hodnota DWORD v datové oblasti obsahuje hodnotu indexu chybně vytvořeného řetězce, zatímco druhá a třetí hodnota DWORD v datové oblasti obsahují poslední platné hodnoty indexu.

Error: (07/31/2017 09:49:26 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT AUTHORITY)
Description: Hodnota řetězce názvu čítače výkonu v registru je nesprávně naformátovaná. Chybně vytvořený řetězec je . První hodnota DWORD v datové oblasti obsahuje hodnotu indexu chybně vytvořeného řetězce, zatímco druhá a třetí hodnota DWORD v datové oblasti obsahují poslední platné hodnoty indexu.

Error: (07/31/2017 09:49:24 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT AUTHORITY)
Description: Hodnota řetězce názvu čítače výkonu v registru je nesprávně naformátovaná. Chybně vytvořený řetězec je ಠYÄT߮㵽쒑. První hodnota DWORD v datové oblasti obsahuje hodnotu indexu chybně vytvořeného řetězce, zatímco druhá a třetí hodnota DWORD v datové oblasti obsahují poslední platné hodnoty indexu.

Error: (07/31/2017 09:49:24 PM) (Source: PerfOS) (EventID: 2011) (User: )
Description: Nelze získat informace o výkonu stránkovacího souboru systému.  Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (07/31/2017 09:49:24 PM) (Source: PerfOS) (EventID: 2011) (User: )
Description: Nelze získat informace o výkonu stránkovacího souboru systému.  Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (07/31/2017 09:49:23 PM) (Source: PerfOS) (EventID: 2011) (User: )
Description: Nelze získat informace o výkonu stránkovacího souboru systému.  Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (07/31/2017 09:47:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 6.1.7601.17514, časové razítko: 0x4ce79d42
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.23807, časové razítko: 0x5915fdce
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000bf3e2
ID chybujícího procesu: 0x1150
Čas spuštění chybující aplikace: 0x01d30a35d41a35ed
Cesta k chybující aplikaci: C:\Windows\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: 1d70cf77-7629-11e7-8f26-e840f2e0d18b

Error: (07/31/2017 09:47:27 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT AUTHORITY)
Description: Hodnota řetězce názvu čítače výkonu v registru je nesprávně naformátovaná. Chybně vytvořený řetězec je . První hodnota DWORD v datové oblasti obsahuje hodnotu indexu chybně vytvořeného řetězce, zatímco druhá a třetí hodnota DWORD v datové oblasti obsahují poslední platné hodnoty indexu.

Error: (07/31/2017 09:47:23 PM) (Source: PerfOS) (EventID: 2011) (User: )
Description: Nelze získat informace o výkonu stránkovacího souboru systému.  Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.


System errors:
=============
Error: (07/31/2017 09:53:54 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba WMI Performance Adapter byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (07/31/2017 09:49:29 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba WMI Performance Adapter byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (07/31/2017 09:47:30 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba WMI Performance Adapter byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (07/31/2017 09:47:20 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo: 
cdrom

Error: (07/31/2017 09:47:07 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Inicializace výpisu stavu systému se nezdařila.

Error: (07/31/2017 09:46:08 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {3EB3C877-1F16-487C-9050-104DBCD66683} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/31/2017 09:43:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avast Antivirus byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (07/31/2017 09:43:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avast Antivirus byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (07/31/2017 09:05:13 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba AMW Service je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (07/31/2017 02:55:40 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba WMI Performance Adapter byla ukončena s následující chybou: 
Nespecifikovaná chyba


CodeIntegrity:
===================================
  Date: 2014-06-28 23:49:07.920
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aticfx64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 23:49:07.911
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aticfx64.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7-3770K CPU @ 3.50GHz
Percentage of memory in use: 37%
Total physical RAM: 16321.1 MB
Available physical RAM: 10142.92 MB
Total Virtual: 16319.28 MB
Available Virtual: 9780 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:209.5 GB) (Free:11.69 GB) NTFS
Drive d: (2TB #3) (Fixed) (Total:1863.01 GB) (Free:613.79 GB) NTFS
Drive e: (MISE) (CDROM) (Total:1.35 GB) (Free:0 GB) CDFS
Drive l: (purpLe_________xxxx) (Fixed) (Total:3725.9 GB) (Free:90.98 GB) NTFS
Drive o: (4T_____fotky) (Fixed) (Total:3725.9 GB) (Free:291.77 GB) NTFS
Drive p: (4T_#2_________xxxx) (Fixed) (Total:3725.9 GB) (Free:4.49 GB) NTFS
Drive r: () (Fixed) (Total:2.93 GB) (Free:2.89 GB) NTFS
Drive s: (6_TB___fotky___xxx) (Fixed) (Total:5588.9 GB) (Free:184.59 GB) NTFS
Drive u: (4T_____fotky) (Fixed) (Total:3725.9 GB) (Free:291.77 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 3726 GB) (Disk ID: 8C118F3A)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 9F2CAE6D)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 47F33AC6)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=209.5 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (Size: 3726 GB) (Disk ID: B173F2C4)

Partition: GPT.

========================================================
Disk: 4 (MBR Code: Windows 7 or 8) (Size: 3726 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 5 (MBR Code: Windows 7 or 8) (Size: 5589 GB) (Disk ID: 1836B1BA)

Partition: GPT.

==================== End of Addition.txt ============================