﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-09-2017 01
Ran by Ecjev (18-09-2017 20:02:36)
Running from C:\Users\Ecjev\Desktop
Windows 7 Professional Service Pack 1 (X64) (2017-01-19 16:14:52)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-58873803-3009850163-3451747300-500 - Administrator - Disabled)
Ecjev (S-1-5-21-58873803-3009850163-3451747300-1000 - Administrator - Enabled) => C:\Users\Ecjev
Guest (S-1-5-21-58873803-3009850163-3451747300-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Smart Security (Disabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Smart Security (Disabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Personální firewall (Disabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 17.012.20098 - Adobe Systems Incorporated)
Adobe Flash Player 27 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 27.0.0.130 - Adobe Systems Incorporated)
Adobe Flash Player 27 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 27.0.0.130 - Adobe Systems Incorporated)
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 375.70 - NVIDIA Corporation) Hidden
Aplikace Intel® PROSet/Wireless (HKLM-x32\...\{21de8cfa-6d1e-4bb2-bbe2-0bc64e82d547}) (Version: 17.0.3 - Intel Corporation)
aTube Catcher verze 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Avanquest update (HKLM-x32\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.34 - Avanquest Software)
Balíček ovladače systému Windows - Lenovo (ACPIVPC) System  (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.28.50 - Conexant)
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc)
Energy Management (HKLM-x32\...\{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.3.9 - Lenovo) Hidden
Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.3.9 - Lenovo)
ESET Smart Security (HKLM\...\{3FF83303-2A88-4E85-96A1-1B644B024FF0}) (Version: 10.1.219.1 - ESET, spol. s r.o.)
Factorio (HKLM\...\Steam App 427520) (Version:  - Wube Software LTD.)
Far Cry: Primal (HKLM-x32\...\Far Cry: Primal_is1) (Version:  - )
GX GAMING CAVIMANUS HEADSET (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392006300}) (Version: 1.00.0005 - )
Heroes of Newerth (HKLM-x32\...\hon) (Version: 2.3.0 - S2 Games)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.3.34 - Intel Corporation)
Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
K-Lite Mega Codec Pack 12.6.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.6.5 - KLCP)
Kuki (HKU\S-1-5-21-58873803-3009850163-3451747300-1000\...\Kuki) (Version: 20160616.000 - SMART Comp. a.s.)
Lenovo EasyCamera (HKLM-x32\...\{FC9B811E-39BC-4813-9E29-B83CCF700010}) (Version: 2.42.50.23 - Bison)
Lenovo pointing device (HKLM\...\Elantech) (Version: 11.4.31.1 - ELAN Microelectronic Corp.)
Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Mortal Kombat X (HKLM\...\bW9ydGFsa29tYmF0eA_is1) (Version: 1 - )
Mozilla Firefox 55.0.3 (x64 cs) (HKLM\...\Mozilla Firefox 55.0.3 (x64 cs)) (Version: 55.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 55.0.3.6445 - Mozilla)
NetLimiter 4 (HKLM\...\{031BF857-9D3C-4DEE-97F2-69698EE82B06}) (Version: 4.0.25.0 - Locktime Software) Hidden
NetLimiter 4 (HKLM-x32\...\NetLimiter 4 4.0.25.0) (Version: 4.0.25.0 - Locktime Software)
NVIDIA Ovladače grafiky 375.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 375.70 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Ovládací panel NVIDIA 375.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 375.70 - NVIDIA Corporation) Hidden
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 4.0 r2746 - )
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39052 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.75.827.2013 - Realtek)
RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version:  - Punk Software)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.4 - Rockstar Games)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00.04 - Samsung Electronics Co., Ltd.)
SDÍLEJ.CZ Manager (HKU\S-1-5-21-58873803-3009850163-3451747300-1000\...\69f070f18ade444c) (Version: 0.0.1.42 - SDÍLEJ.CZ)
Skype™ 7.33 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.33.105 - Skype Technologies S.A.)
Smart Technology Programming Software 7.0.45.2 (HKLM\...\{F08D23FD-46CA-4D51-A263-AE533CFAC286}) (Version: 7.0.45.2 - Mad Catz)
Sony Ericsson PC Suite 6.011.00 (HKLM-x32\...\{2FFE93F0-BB72-4E52-8761-354D1AAA9387}) (Version: 6.011.00 - Sony Ericsson)
The Sims 4: City Living (HKLM\...\dGhlc2ltczRjaXR5bGl2aW5n_is1) (Version: 1 - )
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.25.136.1020 - Electronic Arts Inc.)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-58873803-3009850163-3451747300-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version:  - Wargaming.net)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-58873803-3009850163-3451747300-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)
ContextMenuHandlers1: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\drivers\ESET_smart\shellExt.dll [2017-06-13] (ESET)
ContextMenuHandlers1: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => D:\Programy\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\drivers\rar\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\drivers\rar\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers2: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\drivers\ESET_smart\shellExt.dll [2017-06-13] (ESET)
ContextMenuHandlers2: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => D:\Programy\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2015-08-09] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-10-25] (NVIDIA Corporation)
ContextMenuHandlers6: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\drivers\ESET_smart\shellExt.dll [2017-06-13] (ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\drivers\rar\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\drivers\rar\rarext32.dll [2016-08-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {03E53B22-A616-4621-9B6C-FB1A014D023C} - System32\Tasks\AIDA64 AutoStart => C:\drivers\AIDA64 Extreme\aida64.exe
Task: {3324A7F6-6239-48C3-AEE4-022976FD0430} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-10-25] (NVIDIA Corporation)
Task: {5D7B3C35-7989-4777-86D5-CF66F53ED025} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-10-25] (NVIDIA Corporation)
Task: {60C0C124-13A1-452B-B239-1C995849CDD4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated)
Task: {7B55A854-3EC5-4A59-B255-6A4CEAD52DDC} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-10-25] (NVIDIA Corporation)
Task: {C3F1FC03-ED1C-47BE-A142-4F2ADAD3DE18} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-09-14] (Adobe Systems Incorporated)
Task: {CA622E7D-50F7-4B05-A73E-D06BFF6EE9D8} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-10-25] (NVIDIA Corporation)
Task: {D386C08C-E585-4974-87A9-BE8BBC0232B4} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-10-25] (NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2017-06-15 20:41 - 2012-09-18 15:27 - 000192512 _____ () C:\Windows\System32\zlhp1020.dll
2012-04-10 09:15 - 2012-04-10 09:15 - 000027648 _____ () C:\Windows\System32\ssb7mlm.dll
2017-06-15 20:42 - 2012-09-18 15:27 - 000065024 _____ () C:\Windows\system32\spool\PRTPROCS\x64\pphp1020.dll
2017-06-07 18:22 - 2009-04-30 11:23 - 000090112 _____ () D:\Programy\K800i\SupServ.exe
2017-01-22 14:26 - 2017-01-22 14:26 - 000076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2017-07-05 17:18 - 2010-08-10 21:37 - 000334848 _____ () C:\Program Files (x86)\ASUS\Printer Utilities\UsbService64.exe
2017-04-16 21:15 - 2016-10-25 23:39 - 000018880 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2017-04-16 21:02 - 2016-10-25 22:17 - 000133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-01-19 18:55 - 2010-10-26 13:40 - 000049056 _____ () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
2008-12-20 04:20 - 2017-01-19 19:00 - 000054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll
2012-03-28 15:34 - 2017-01-19 19:00 - 001509936 _____ () C:\Program Files (x86)\Lenovo\Energy Management\EMWpfUI.dll
2012-03-08 16:36 - 2017-01-19 19:00 - 000011096 _____ () C:\Program Files (x86)\Lenovo\Energy Management\cs-CZ\EMWpfUI.resources.dll
2008-12-20 04:20 - 2017-01-19 19:00 - 000054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll
2017-01-19 22:05 - 2007-09-02 14:58 - 000495616 _____ () C:\drivers\RocketDock\RocketDock.exe
2015-08-09 05:50 - 2015-08-09 05:50 - 000404376 _____ () C:\Windows\system32\igfxTray.exe
2017-01-01 15:59 - 2017-01-01 15:59 - 000120832 _____ () C:\drivers\Rainmeter\Plugins\QuotePlugin.dll
2017-04-16 21:15 - 2016-10-25 23:39 - 000020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2017-01-19 22:05 - 2007-09-02 14:57 - 000069632 _____ () C:\drivers\RocketDock\RocketDock.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2017-03-21 18:11 - 000000035 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-58873803-3009850163-3451747300-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Ecjev\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.4.1 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: CCleaner Monitoring => "D:\Programy\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: NetLimiter => "D:\Programy\net_limiter\nlclientapp.exe" /minimized
MSCONFIG\startupreg: Sony Ericsson PC Suite => "D:\Programy\K800i\SEPCSuite.exe" /systray /nologon
MSCONFIG\startupreg: VirtualCloneDrive => "D:\Programy\VirtualCloneDrive\VCDDaemon.exe" /s
MSCONFIG\startupreg: World of Tanks => "D:\Hry\WoT\WargamingGameUpdater.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{3A3A8BFF-28FD-4E90-951C-802CD6C9FAA8}] => (Allow) C:\drivers\PROSet_wireless\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{A959C42F-2B18-473B-A7FA-CE92EF200090}] => (Allow) C:\drivers\Mozilla_firefox\firefox.exe
FirewallRules: [{3ABF275E-229C-498C-8EE5-63FB735CFE53}] => (Allow) C:\drivers\Mozilla_firefox\firefox.exe
FirewallRules: [{87C8E4D3-0E05-41D0-9ED6-CB94EC16B8BD}] => (Allow) D:\Programy\utorrent\utorrent.exe
FirewallRules: [{39781ACD-2FB9-446E-8F68-79B69545C1D3}] => (Allow) D:\Programy\utorrent\utorrent.exe
FirewallRules: [{50FAC323-07C8-4DA3-93C0-78D6437F1744}] => (Allow) D:\Hry\Steam\Steam.exe
FirewallRules: [{7D358236-DA4A-4B08-AFD8-C2455CDD3F3D}] => (Allow) D:\Hry\Steam\Steam.exe
FirewallRules: [{DBC3A896-60DA-4B9B-9CFE-008B75AFAED1}] => (Allow) D:\Hry\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{27D842AF-7ACE-49B9-BB23-C1B84150F4A6}] => (Allow) D:\Hry\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{84D29507-9B76-402A-A4A8-EFE7D9F66BE9}] => (Allow) D:\Hry\Steam\steamapps\common\Grand Theft Auto V\GTA5.exe
FirewallRules: [{9E1334B2-3584-4EFA-AD68-EB4F1892D8A1}] => (Allow) D:\Hry\Steam\steamapps\common\Grand Theft Auto V\GTA5.exe
FirewallRules: [{745AB7D0-6424-4BB3-A129-93F71F69317F}] => (Allow) D:\Hry\Steam\steamapps\common\Planet Coaster\PlanetCoaster.exe
FirewallRules: [{B9D2B31E-5FA2-484D-A9AC-B133EFECE2F4}] => (Allow) D:\Hry\Steam\steamapps\common\Planet Coaster\PlanetCoaster.exe
FirewallRules: [{142BFC0A-24CA-4A01-913C-F0D25A0B5931}] => (Allow) D:\Hry\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{0FD36948-C7DB-4762-B6F2-BD831595233A}] => (Allow) D:\Hry\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{52C3CFE2-8726-4E63-ADF9-C174BE069285}] => (Allow) C:\Steam\steamapps\common\Subnautica\Subnautica.exe
FirewallRules: [{B2C81F18-8590-446E-933B-F99F527955A2}] => (Allow) C:\Steam\steamapps\common\Subnautica\Subnautica.exe
FirewallRules: [TCP Query User{36FF625A-10B7-41E1-8717-D8FA342B413D}D:\hry\far cry - primal\bin\fcprimal.exe] => (Block) D:\hry\far cry - primal\bin\fcprimal.exe
FirewallRules: [UDP Query User{1F9BF03B-7D6F-43A9-99C3-C98B43762B7A}D:\hry\far cry - primal\bin\fcprimal.exe] => (Block) D:\hry\far cry - primal\bin\fcprimal.exe
FirewallRules: [{CDAF84D8-CC92-4CE0-8228-68FEBFBE78D3}] => (Allow) D:\Hry\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{F2FF0B4E-7C3F-4ED0-A9A7-FFF4CCAE81F4}] => (Allow) D:\Hry\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{38E921D6-FFA9-42DB-9D5C-3567499B7797}] => (Allow) D:\Hry\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{7198349C-4137-41C8-BE7E-34A68F8172BF}] => (Allow) D:\Hry\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{6DBF4762-5C67-42BF-A8FE-2F05C544B385}] => (Allow) D:\Hry\Steam\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe
FirewallRules: [{CBEFD6BC-2D5E-45B2-8C32-B729CD5A07CA}] => (Allow) D:\Hry\Steam\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe
FirewallRules: [{1F059558-A56D-42A5-92C4-64729197D9CF}] => (Allow) D:\Programy\skype\Phone\Skype.exe
FirewallRules: [{A2E42E70-E7F2-498F-B0E3-095DB1ABE7EF}] => (Allow) D:\Hry\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{C4CD97E2-3F81-4218-A58E-D66B460BA4DB}] => (Allow) D:\Hry\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{CB84C0AB-9091-4B9B-BAB0-4E816FE5A2C0}] => (Allow) D:\Hry\WoT\WoTLauncher.exe
FirewallRules: [{7CB10C55-9F5A-4D4E-9FF2-7EB9C3B60828}] => (Allow) D:\Hry\WoT\WoTLauncher.exe
FirewallRules: [{6C679035-0A83-4B1F-80BC-0D49C7F2BDAE}] => (Allow) D:\Hry\WoT\worldoftanks.exe
FirewallRules: [{BCE382D3-5594-4CDA-831B-B58FA3A82040}] => (Allow) D:\Hry\WoT\worldoftanks.exe
FirewallRules: [{BC204A31-3C06-4604-B73E-86B14998E357}] => (Allow) C:\Program Files\Acrylic Wi-Fi Home\Acrylic.exe
FirewallRules: [{2740F928-D385-4097-9DC8-5EA3E47EE075}] => (Allow) C:\Program Files\Acrylic Wi-Fi Home\Acrylic.exe
FirewallRules: [{B63D2E79-B47D-43D1-B1E9-4FA7164FBA3B}] => (Allow) C:\Users\Ecjev\AppData\Local\Temp\pft9B48.tmp\Printer.exe
FirewallRules: [{D474530B-1EF0-4672-9400-69280769D5DC}] => (Allow) C:\Users\Ecjev\AppData\Local\Temp\pft9B48.tmp\Printer.exe
FirewallRules: [{720B9BD8-7C8E-4841-A1E5-5D781BFA5B09}] => (Allow) C:\Program Files (x86)\ASUS\Printer Utilities\UsbService64.exe
FirewallRules: [{9425EA90-8A90-4F84-8586-8803838DA592}] => (Allow) C:\Program Files (x86)\ASUS\Printer Utilities\UsbService64.exe
FirewallRules: [{399C1506-BB86-45CD-A897-FCD72C742CC2}] => (Allow) D:\Hry\Steam\steamapps\common\Half-Life\hl.exe
FirewallRules: [{5BB1D532-034B-4768-9ED5-1642811C2D25}] => (Allow) D:\Hry\Steam\steamapps\common\Half-Life\hl.exe
FirewallRules: [{CCB2B05B-A11F-43B8-9B0A-5E73FADFFA9B}] => (Allow) D:\Hry\Steam\steamapps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{7FAB4A8F-8FBA-4B09-927C-0F836566B365}] => (Allow) D:\Hry\Steam\steamapps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{8C68E75E-0662-4100-9A95-BD6DBF703607}] => (Allow) D:\Hry\WoWs\WoWSLauncher.exe
FirewallRules: [{60147F90-FDF4-4E52-906C-C4ADA4E4E0E6}] => (Allow) D:\Hry\WoWs\WoWSLauncher.exe
FirewallRules: [{8D2C8999-78D6-4BF6-9B8C-6CB8A32E4111}] => (Allow) D:\Hry\WoWs\worldofwarships.exe
FirewallRules: [{B3E17B26-B4B8-4CB1-A901-8C9895EFA5B3}] => (Allow) D:\Hry\WoWs\worldofwarships.exe
FirewallRules: [{A1F6A5AB-F415-430E-89F4-B66158A94CE1}] => (Allow) D:\Programy\Kuki\addons\skin.netboxkuki\proxies\proxy2.exe
FirewallRules: [{1BC4BE60-3268-494A-AB5E-849CBB5AFEED}] => (Allow) D:\Programy\Kuki\addons\skin.netboxkuki\proxies\proxy2.exe

==================== Restore Points =========================

01-09-2017 18:46:05 Windows Update
02-09-2017 12:08:37 Nainstalováno: ESET Smart Security
05-09-2017 17:54:38 Windows Update
12-09-2017 16:39:44 Windows Update
14-09-2017 18:02:39 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (09/18/2017 05:36:29 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/18/2017 07:00:57 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/17/2017 06:10:45 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/17/2017 12:33:00 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/17/2017 09:45:07 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/16/2017 09:42:20 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/16/2017 09:02:44 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/16/2017 01:57:21 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/16/2017 01:38:00 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/15/2017 11:37:14 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.


System errors:
=============
Error: (09/18/2017 05:36:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Mobile Broadband Extension Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (09/18/2017 05:36:28 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Mobile Broadband Extension Service bylo dosaženo časového limitu (30000 ms).

Error: (09/18/2017 07:19:52 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {995C996E-D918-4A8C-A302-45719A6F4EA7} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/18/2017 07:00:55 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Mobile Broadband Extension Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (09/18/2017 07:00:55 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Mobile Broadband Extension Service bylo dosaženo časového limitu (30000 ms).

Error: (09/17/2017 06:10:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Mobile Broadband Extension Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (09/17/2017 06:10:44 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Mobile Broadband Extension Service bylo dosaženo časového limitu (30000 ms).

Error: (09/17/2017 04:22:27 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/17/2017 12:32:59 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Mobile Broadband Extension Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (09/17/2017 12:32:59 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Mobile Broadband Extension Service bylo dosaženo časového limitu (30000 ms).


CodeIntegrity:
===================================
  Date: 2017-01-19 20:21:38.144
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 20:21:38.128
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 19:11:52.314
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 19:11:52.298
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 19:07:24.142
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 19:07:24.126
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 19:06:55.392
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 19:06:55.376
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 17:55:46.259
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-01-19 17:55:46.228
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\S6000KNT.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
Percentage of memory in use: 38%
Total physical RAM: 8088.36 MB
Available physical RAM: 4959.65 MB
Total Virtual: 16174.9 MB
Available Virtual: 12728.75 MB

==================== Drives ================================

Drive c: (Systém) (Fixed) (Total:111.69 GB) (Free:25.53 GB) NTFS
Drive d: (Data) (Fixed) (Total:931.41 GB) (Free:66.49 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 9892029A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.7 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D9FA2484)
Partition 1: (Active) - (Size=931.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================