Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-09-2017
Ran by Agon (24-09-2017 17:14:16)
Running from C:\Users\Agon\AppData\Local\Temp\nsz36F.tmp
Windows 10 Home Version 1703 (X64) (2017-08-06 11:09:30)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3019405032-3245960995-2439640855-500 - Administrator - Disabled)
Agon (S-1-5-21-3019405032-3245960995-2439640855-1001 - Administrator - Enabled) => C:\Users\Agon
DefaultAccount (S-1-5-21-3019405032-3245960995-2439640855-503 - Limited - Disabled)
Guest (S-1-5-21-3019405032-3245960995-2439640855-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 26.0.0.127 - Adobe Systems Incorporated)
Aktualizace NVIDIA 28.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 28.0.0.0 - NVIDIA Corporation) Hidden
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 384.94 - NVIDIA Corporation) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.2.2288 - AVAST Software)
Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.51.8749 - Electronic Arts)
Blade & Soul (HKLM-x32\...\{C3F383C1-D050-4A40-843F-8171A6A02C3A}) (Version: 1.0.63.260 - NC Interactive, LLC) Hidden
Blade & Soul (HKLM-x32\...\InstallShield_{C3F383C1-D050-4A40-843F-8171A6A02C3A}) (Version: 1.0.63.260 - NC Interactive, LLC)
Blizzard App (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
BS.Player PRO (HKLM-x32\...\BSPlayerp) (Version: 2.70.1080 - AB Team, d.o.o.)
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.27 - Piriform)
Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
Discord (HKU\S-1-5-21-3019405032-3245960995-2439640855-1001\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
DJ_AIO_03_F2200_Software_Min (HKLM-x32\...\{2711B584-259B-4723-A6F2-F3CFA291AFA2}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden
Dreadnought (HKLM-x32\...\Dreadnought) (Version: 1.9.0 - Grey Box)
F2200 (HKLM-x32\...\{C81DA04A-1D44-4D4A-8108-5129331BBA00}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
GIMP 2.8.20 (HKLM\...\GIMP-2_is1) (Version: 2.8.20 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.113 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Deskjet F2200 All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{60D6AAC5-FDC1-49BA-867B-3135F4726156}) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1025 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1519.7 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{7224B7CE-196C-4E2A-A1AE-1D7BF259FD36}) (Version: 3.4.1942 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Killer Bandwidth Control Filter Driver (HKLM\...\{0E7D4EFF-8EDD-4BBC-B28A-181E153C0A28}) (Version: 1.1.65.1138 - Rivet Networks) Hidden
Killer E240x Drivers (HKLM\...\{FFFFB9A2-2A17-4CD7-B2EA-0E76F6095708}) (Version: 1.1.65.1138 - Rivet Networks) Hidden
Killer Network Manager (HKLM\...\{E2167A24-B822-4D48-8258-E494415DE350}) (Version: 1.1.65.1138 - Rivet Networks) Hidden
Killer Performance Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.65.1138 - Rivet Networks)
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden
MGI - Monster Girl Island Demo 2 Day 1 (HKLM-x32\...\{CD8A4EC7-3923-4AC8-8CDC-C0DD77132379}) (Version: 1 - Monster Girl Island)
MGI Patreon Showcase Build - Adeline (HKLM-x32\...\{1BADD3C2-2DC4-4877-A465-DE24307576A9}) (Version: 1 - Monster Girl Island)
MGI Patreon Showcase Build - Ara (HKLM-x32\...\{2BD9B80A-6877-4D82-88E3-8AD0D067066D}) (Version: 1.1 - Monster Girl Island)
MGI Patreon Showcase Build - Mako (HKLM-x32\...\{01C9EA40-7778-4F5E-80A9-AAB43F7059F3}) (Version: 1 - Monster Girl Island)
MGI Patreon Showcase Build - Twins (HKLM-x32\...\{1E4E2CFC-6004-4D49-88B7-420489FD9ACD}) (Version: 1.1 - Monster Girl Island)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProplusRetail - cs-cz) (Version: 16.0.8326.2107 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3019405032-3245960995-2439640855-1001\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Monster Girl Island - Halloween (HKLM-x32\...\{BB541ED4-B8CC-4122-8B25-00C5CD78D7A5}) (Version: 2 - Monster Girl Island)
MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 2.0.0.43 - MSI)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.4 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.0.0.30 - MSI)
MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version:  - MSI Co., LTD)
MSI USB Speed Up (HKLM-x32\...\{79D5FA63-7003-4398-B882-C70ED18778D1}_is1) (Version: 1.0.0.09 - MSI)
MXMCLIENT (HKLM-x32\...\MXM) (Version:  - NCSOFT)
NC Launcher (HKLM-x32\...\NCLauncherS_plaync) (Version:  - NCSOFT)
NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version:  - NCSOFT)
NieR:Automata™ (HKLM\...\Steam App 524220) (Version:  - Square Enix)
NVIDIA GeForce Experience 3.9.0.61 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.9.0.61 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 384.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 384.94 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 384.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 384.94 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.2.49155 - Electronic Arts, Inc.)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.107.36.0 - Overwolf Ltd.)
Ovládací panel NVIDIA 384.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 384.94 - NVIDIA Corporation) Hidden
PLAYERUNKNOWN'S BATTLEGROUNDS (HKLM\...\Steam App 578080) (Version:  - Bluehole, Inc.)
Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 1.14.7 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.17.302 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8036 - Realtek Semiconductor Corp.)
Revelation Online (HKU\S-1-5-21-3019405032-3245960995-2439640855-1001\...\Revelation Online) (Version: 1.48 - My.com B.V.)
SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 5.1.0.1120 - Samsung Electronics)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.4 - TeamSpeak Systems GmbH)
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
TrinusVR version 2.1.3 (HKLM-x32\...\{A66AD08F-FC5B-4583-9A7D-4636F5637B2C}_is1) (Version: 2.1.3 - Odd Sheep SL)
UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
VEGAS Pro 14.0 (64-bit) (HKLM\...\{4C79D80F-79F9-11E6-8402-BB95F5A309BD}) (Version: 14.0.161 - VEGAS)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
XSplit Gamecaster (HKLM-x32\...\{1AEBFB1B-04FA-4133-8DC9-F9C98482B3BF}) (Version: 2.7.1512.1811 - SplitmediaLabs)
YTD Video Downloader 5.8.2 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.8.2 - GreenTree Applications SRL) <==== ATTENTION

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-03] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-03] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-03] (AVAST Software)
ContextMenuHandlers1: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-08-27] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-08-27] (Alexander Roshal)
ContextMenuHandlers2: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-03] (AVAST Software)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-07-19] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-03] (AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-08-27] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2014-08-27] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01793347-4DDF-4784-BA5B-9AB9A362DBDC} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-08-18] (NVIDIA Corporation)
Task: {0491695D-7B3B-4BBD-92D3-FD2F61EE5D57} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [2017-05-19] (Samsung Electronics Co. Ltd.)
Task: {1010D64E-C8E7-4778-AA2C-F5FD5703A5F8} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation)
Task: {109C96A9-ED04-4119-8E2D-7C48342C00CC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-08] (Google Inc.)
Task: {15874F85-5567-4AA9-ABB6-013B650D3DA5} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-19] ()
Task: {237FA97B-2151-4A43-A020-249C7E4196C8} - System32\Tasks\SafeZone scheduled Autoupdate 1481215741 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software)
Task: {29591B45-F6CD-4F76-B822-045B356D6EB9} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-08-18] (NVIDIA Corporation)
Task: {36DE65AF-EFA3-40C9-9CD1-E8992E248072} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation)
Task: {41ACF0E9-6DB9-4204-9F11-11C8F9C87029} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-08-18] (NVIDIA Corporation)
Task: {41D0CC70-F91A-45CD-AA63-F5C2300802F4} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-19] ()
Task: {455F6B64-1848-4216-A29F-29B49656C992} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [2016-07-28] (Micro-Star INT'L CO., LTD.)
Task: {5C5C4042-F645-4360-B411-2C360FBE6EEE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-09-18] (Microsoft Corporation)
Task: {5D316652-D975-4110-A010-5EF0A9AB58BC} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-07-13] (AVAST Software)
Task: {5DC1550C-28D1-4F25-8B90-F122E4E303D9} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [2015-08-18] (MSI)
Task: {6008D308-23BA-4945-8B61-B3A71673C362} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-08-18] (NVIDIA Corporation)
Task: {77C0B4CB-F23E-4E3A-8D7F-96BA5EFA3123} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-03-03] (AVAST Software)
Task: {7C4D2ECC-2E04-4A89-8AFF-27214D84D29D} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-08-18] (NVIDIA Corporation)
Task: {88DE3FDC-E70B-49A7-965D-661357E36300} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-07-26] (Intel(R) Corporation)
Task: {A3F3B848-6F66-480A-889F-447CAC5243A7} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-08-18] (NVIDIA Corporation)
Task: {A855C1E3-C468-4C04-BFE3-BAD495BB60B3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-08] (Google Inc.)
Task: {AAF78F19-356A-400C-A367-3128702496A2} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-08-18] (NVIDIA Corporation)
Task: {AB659393-FBBF-430A-A6E8-65FD19B684FA} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-09-08] (Microsoft Corporation)
Task: {B092E5B1-3C8F-417B-91AD-A43A80FD5F3B} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-08-18] (NVIDIA Corporation)
Task: {B7BF7168-C630-4D6D-8666-CF613205215D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-09-08] (Microsoft Corporation)
Task: {BA4A6CEE-5297-4863-8F60-7827EE945A24} - System32\Tasks\{945BC957-8D83-4684-B234-C938CD8317FB} => C:\WINDOWS\system32\pcalua.exe -a C:\Hry\Smite\HiRezGamesDiagAndSupport.exe -c uninstall=0
Task: {C28B99DF-A9C4-439B-859C-8CCE95AD4BD6} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2017-09-10] (Overwolf LTD)
Task: {C7C85293-64DE-4623-930D-8D706B12BA27} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [2016-07-28] (Micro-Star INT'L CO., LTD.)
Task: {DFF33E6F-2D5E-4A43-B4A4-DCF1E2984DB8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-02-08] (Piriform Ltd)
Task: {FF4E0E4A-2462-4637-AD2E-08BDC4448A25} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-09-18] (Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWoW64\muachost.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\Agon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Vzdálená plocha Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) ==============

2016-09-25 01:20 - 2016-09-25 01:21 - 000189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2016-12-08 19:02 - 2017-08-18 06:36 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-12-09 21:37 - 2016-06-14 17:35 - 000187392 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-18 22:59 - 2017-03-20 06:45 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2013-02-17 19:35 - 2012-12-21 20:33 - 000020288 _____ () C:\Program Files\CCleaner\branding.dll
2017-08-28 21:03 - 2017-08-23 10:48 - 002692952 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.113\swiftshader\libglesv2.dll
2017-08-28 21:03 - 2017-08-23 10:48 - 000137048 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.113\swiftshader\libegl.dll
2016-12-08 19:54 - 2017-08-23 17:49 - 000021856 _____ () C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
2016-12-09 21:38 - 2016-04-20 15:12 - 000772608 _____ () C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\Lib\USB_DLL.dll
2016-08-30 01:19 - 2016-08-30 01:19 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2016-12-09 21:37 - 2016-06-14 17:35 - 000163328 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2017-03-03 11:11 - 2017-03-03 11:11 - 000170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-12-08 18:48 - 2016-12-08 18:48 - 048936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-03-03 11:11 - 2017-03-03 11:11 - 000290352 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2017-03-03 11:11 - 2017-03-03 11:11 - 000655056 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2017-02-20 10:10 - 2017-02-20 10:10 - 000143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2016-12-08 19:02 - 2017-08-18 06:36 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-12-08 19:54 - 2017-08-23 17:48 - 000015360 _____ () C:\Program Files (x86)\Origin\libEGL.DLL
2016-12-08 19:54 - 2017-08-23 17:48 - 003090944 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 09:24 - 2015-10-30 09:21 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3019405032-3245960995-2439640855-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Agon\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{991072f1-cd2f-499d-8e06-4059ae2dbb72}.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run32: => "Command Center"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKU\S-1-5-21-3019405032-3245960995-2439640855-1001\...\StartupApproved\Run: => "Gaijin.Net Agent"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{43F1DD4B-E1DD-46D5-917D-9F13A0C3B46B}C:\windows\temp\files\bin\kmss.exe] => (Block) C:\windows\temp\files\bin\kmss.exe
FirewallRules: [TCP Query User{C8901578-6D2F-4F42-AB86-41B72FE7BE14}C:\windows\temp\files\bin\kmss.exe] => (Block) C:\windows\temp\files\bin\kmss.exe
FirewallRules: [UDP Query User{7B4BDFE1-1A55-49A3-BE55-9B637781DC9E}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{54D4ED02-B20F-422E-9535-2AD05DD3F20A}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{65C5D902-18B2-4306-8071-718A5F86A09D}C:\users\agon\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\agon\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [TCP Query User{EEA21F9F-4847-49AE-AAF2-A9CF1F34D3EC}C:\users\agon\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\agon\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [UDP Query User{75DEE7D7-32AE-47D9-84E9-F3D67540CBE9}C:\users\agon\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\agon\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{03F88118-E22D-4634-87E6-3EEB9AA6D784}C:\users\agon\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\agon\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{BDC30C00-D6F8-44AB-A230-712D8B7FC699}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{D28D0370-A20A-4864-B155-8F1393D72F3A}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{EC4D3F19-1906-43D5-9C6F-8582D60E22EE}] => (Allow) C:\Hry\WoT\worldoftanks.exe
FirewallRules: [{D9DB0945-243E-49B7-8F7C-500D91299DC7}] => (Allow) C:\Hry\WoT\worldoftanks.exe
FirewallRules: [{5EB89AB8-0D2C-4FDB-B0CB-9BABAAC96366}] => (Allow) C:\Hry\WoT\WoTLauncher.exe
FirewallRules: [{C43E1603-9CA5-4C17-B63B-2E0FBCE760B4}] => (Allow) C:\Hry\WoT\WoTLauncher.exe
FirewallRules: [UDP Query User{CB32890D-DF5E-434B-8001-47F9A9E25A0A}C:\program files (x86)\steam\steamapps\common\newz\thenewz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\newz\thenewz.exe
FirewallRules: [TCP Query User{07B08240-0A4D-4AF1-9CF4-6A632779B19D}C:\program files (x86)\steam\steamapps\common\newz\thenewz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\newz\thenewz.exe
FirewallRules: [UDP Query User{8978090F-4B69-4C73-BBE5-7B9203A0FBDA}C:\hry\overwatch\overwatch\overwatch.exe] => (Allow) C:\hry\overwatch\overwatch\overwatch.exe
FirewallRules: [TCP Query User{82CB57CB-792C-4FDD-BCEC-9FB4C9EF411C}C:\hry\overwatch\overwatch\overwatch.exe] => (Allow) C:\hry\overwatch\overwatch\overwatch.exe
FirewallRules: [{7ECE35DC-8F17-4286-8149-5DE741395FFB}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.607\SZBrowser.exe
FirewallRules: [UDP Query User{3B81798A-0BFF-4A8E-B7C7-F0C1C865764B}C:\hry\crossout\launcher.exe] => (Allow) C:\hry\crossout\launcher.exe
FirewallRules: [TCP Query User{CBBB00FD-4FC0-4DEF-AE55-550D69248415}C:\hry\crossout\launcher.exe] => (Allow) C:\hry\crossout\launcher.exe
FirewallRules: [{B03A8F25-5220-4297-98FE-55736FA828BD}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe
FirewallRules: [{968BBE1C-A990-4B60-A93F-0E692BEB8D45}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{AA3E4229-18B4-4439-8F95-7760FF68C314}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{B89F893B-F38B-4551-B3DD-DFBC41E7A492}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{BB66FA14-753E-40D3-AEA7-942479DCAAB8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{3CB0E487-E872-4CF7-B47D-ACDE36E52D22}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{9A3F54E6-FA08-41A9-AEC7-D72C915FFA5F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{13A06078-265C-4218-BE24-332889BABC82}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe
FirewallRules: [{A3A8E976-03EC-4889-80D1-FFB7884AF923}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{56299787-0D67-48B1-9FD2-0CBC011FAC96}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{2E229787-20E4-45EF-A7B5-1310D7AA6DBD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{3154D458-6879-46BB-A726-4C7FC36A427A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [UDP Query User{BF3E4350-8BA2-4022-A508-B9F576CA41AE}C:\hry\revelation online\game\tianyu.exe] => (Allow) C:\hry\revelation online\game\tianyu.exe
FirewallRules: [TCP Query User{BC19ED98-E5A8-493A-980F-CC14E8D874D2}C:\hry\revelation online\game\tianyu.exe] => (Allow) C:\hry\revelation online\game\tianyu.exe
FirewallRules: [UDP Query User{B260E490-6AAE-4218-B23E-00066B701EF1}C:\users\agon\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\agon\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [TCP Query User{59A92B41-AC02-40C6-B054-A2425AB627CC}C:\users\agon\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\agon\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [{85D0CC56-F4D1-43D8-B9D0-C33A5F623D5A}] => (Allow) C:\Hry\Elsword\data\x2.exe
FirewallRules: [{1D9FA6C5-7441-47BF-8949-AB767C08B97E}] => (Allow) C:\Hry\Elsword\data\x2.exe
FirewallRules: [{2A2C9926-CB33-4185-A9A0-83B0BD2B2E9C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\NieRAutomata\NieRAutomata.exe
FirewallRules: [{B92FF6D0-FBFE-4493-8114-8E22CB0CE408}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\NieRAutomata\NieRAutomata.exe
FirewallRules: [{79F2D12B-EE17-46C3-85C5-05E590F0C5B0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{33784518-AFAB-43E5-AC37-902C1EC7896D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{053D2C30-7AFF-4E61-A1E8-87A9B2910575}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{E7B2CEB9-3D9A-4C6C-88D5-77A27E9ED417}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [UDP Query User{8A1A85E6-EAA4-4486-B910-854CA378E986}C:\games\world_of_tanks_ct\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_ct\worldoftanks.exe
FirewallRules: [TCP Query User{2202ABC3-FF69-44FB-AF6D-4BFC44F71602}C:\games\world_of_tanks_ct\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_ct\worldoftanks.exe
FirewallRules: [UDP Query User{A6B9B683-6AE9-4DD7-B792-9AC3D158407C}C:\games\world_of_tanks_ct\wotlauncher.exe] => (Allow) C:\games\world_of_tanks_ct\wotlauncher.exe
FirewallRules: [TCP Query User{C86E7CD6-222E-4602-8444-AFE88293C271}C:\games\world_of_tanks_ct\wotlauncher.exe] => (Allow) C:\games\world_of_tanks_ct\wotlauncher.exe
FirewallRules: [{7CBFA6B9-4CCF-4B79-924B-57AA4EFD4ACE}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe
FirewallRules: [{8F0641C2-151A-4B53-9131-EA2EF24DC6F9}] => (Allow) C:\Users\Agon\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe
FirewallRules: [{4C253FA3-1ADB-4A68-A494-A580E1584B83}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{F3B6A66A-AD7F-491E-9F97-31A7C57C6395}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Warframe.exe
FirewallRules: [{8465216C-F4E9-4642-9F50-D49E78C05C99}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{723363B1-875F-47B9-AC17-6BD1FFD86F8E}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Warframe.exe
FirewallRules: [{BE186513-11E2-4EE8-AD66-0E5C0FF9E9A4}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe
FirewallRules: [{3E002EEC-F587-4D8B-8D5E-4FF02139C1CE}] => (Allow) C:\Users\Agon\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe
FirewallRules: [{1B73C358-F39E-4B20-AB4A-718D546016A4}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{0F617D5C-B526-47EF-830F-4FF436B7AEE9}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Warframe.exe
FirewallRules: [{325AA507-D8DB-4D32-945A-BC6AA6BA29B1}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{130E237D-A576-4F7E-9E94-C7DFAFE14660}] => (Allow) C:\Hry\Warframe\Downloaded\Public\Warframe.exe
FirewallRules: [UDP Query User{2D12EAEC-8A74-4107-9B5D-EDD0E7DCE0F5}C:\hry\smite\hirezgames\paladins\binaries\win32\paladins.exe] => (Allow) C:\hry\smite\hirezgames\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{6B2078B7-6B2F-41E3-8B1E-014ED1307AE7}C:\hry\smite\hirezgames\paladins\binaries\win32\paladins.exe] => (Allow) C:\hry\smite\hirezgames\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{E61B5CF4-B5F3-42B3-93BF-5E7E1ADFCD6D}C:\hry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\hry\smite\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [TCP Query User{876FAD1D-A828-4F74-B558-A7B3BC97AA6F}C:\hry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\hry\smite\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{0828AF04-EDA1-43B5-B810-5EA9AAF9579F}C:\hry\soldat\soldat.exe] => (Allow) C:\hry\soldat\soldat.exe
FirewallRules: [TCP Query User{FF52F151-7D2D-470D-9C3B-D5D631E33C37}C:\hry\soldat\soldat.exe] => (Allow) C:\hry\soldat\soldat.exe
FirewallRules: [{9C119B42-D375-47CA-86CF-93D3FDFCB490}] => (Allow) LPort=26789
FirewallRules: [UDP Query User{519601B6-7717-4392-9261-8CF09EB8333D}C:\hry\warthunder\win64\aces.exe] => (Allow) C:\hry\warthunder\win64\aces.exe
FirewallRules: [TCP Query User{9976BE9C-4899-4AF3-9FFC-8EBB8C32D6E6}C:\hry\warthunder\win64\aces.exe] => (Allow) C:\hry\warthunder\win64\aces.exe
FirewallRules: [{BB13D894-5014-4A99-873D-6674A5F5A305}] => (Allow) C:\Hry\WarThunder\run.exe
FirewallRules: [{758325B8-CE5A-45AB-BF0A-BB57AEB84EFF}] => (Allow) C:\Hry\WarThunder\run.exe
FirewallRules: [{7CE8ABE0-7EF9-4F86-9DF0-20398C7BDE04}] => (Allow) C:\Hry\Heroes & Generals\live\hng.exe
FirewallRules: [{2F9F8558-97FC-421E-8893-AEFD636AF75B}] => (Allow) C:\Hry\Heroes & Generals\live\hng.exe
FirewallRules: [UDP Query User{056ABC2A-3703-4892-BD98-611549D84648}C:\users\agon\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\agon\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{148FD6E6-FF1E-43CF-A106-85EA45DEECBD}C:\users\agon\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\agon\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{92FEF968-5E85-4470-84AB-B4DB9E510C83}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{185ABDE8-B837-4E2D-B9FE-3F8B334B72B4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{893A5C5C-59AD-4F4A-8E3E-AD614F97AF25}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{5046D20D-014D-43AB-8DE9-F0B5F8703232}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{51904276-A3D8-4CBD-8292-E60BBAFB9DA7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{19329F94-DAB2-4B9C-8E58-2ADD3C453CCA}D:\hry\wot\worldoftanks.exe] => (Allow) D:\hry\wot\worldoftanks.exe
FirewallRules: [UDP Query User{0594583A-E3A6-4765-AB0C-512173BE271A}D:\hry\wot\worldoftanks.exe] => (Allow) D:\hry\wot\worldoftanks.exe
FirewallRules: [TCP Query User{AC2B6F75-A638-4440-909C-6D28B8DF06FD}C:\hry\world_of_tanks\wotlauncher.exe] => (Allow) C:\hry\world_of_tanks\wotlauncher.exe
FirewallRules: [UDP Query User{56D4FD07-1F61-496C-AB2B-28F122300258}C:\hry\world_of_tanks\wotlauncher.exe] => (Allow) C:\hry\world_of_tanks\wotlauncher.exe
FirewallRules: [TCP Query User{52F73F1C-D318-442B-A8D8-39D82B1D0636}C:\hry\world_of_tanks\worldoftanks.exe] => (Allow) C:\hry\world_of_tanks\worldoftanks.exe
FirewallRules: [UDP Query User{8D4195B2-8A48-4E07-8155-0DC848236B7B}C:\hry\world_of_tanks\worldoftanks.exe] => (Allow) C:\hry\world_of_tanks\worldoftanks.exe
FirewallRules: [{D59F8DFE-B04F-4193-B159-C0C995900B31}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{842EC8CB-E7E9-425E-8248-9031B6F3AEE6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{8983F1CA-814C-4727-8EF0-E042B7D01F0F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{B125810B-DAEF-4542-98FA-DEEE05725670}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{08376300-781C-49F3-A2FD-A2E9E2F16DE3}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe
FirewallRules: [{8E752F76-B47C-478A-B910-7720F0412053}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [TCP Query User{110FA547-58EF-4766-8C8E-3AECA308F53F}C:\program files (x86)\trinusvr\tgserver.exe] => (Allow) C:\program files (x86)\trinusvr\tgserver.exe
FirewallRules: [UDP Query User{8BAC9AA0-A4A7-4260-B4EA-848A5BF3669C}C:\program files (x86)\trinusvr\tgserver.exe] => (Allow) C:\program files (x86)\trinusvr\tgserver.exe
FirewallRules: [{C28B663C-573B-4741-B309-7CA642EE56C7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{98D6FE96-D915-4493-8F9C-611C6DAA28EA}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe
FirewallRules: [{43335279-630E-4D19-8288-F0A77B80549C}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe
FirewallRules: [{23468CDB-E178-4D77-861E-DC3998E382F3}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe
FirewallRules: [{1A0311BD-5449-4597-AA0D-72CCB9EB8F8F}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe

==================== Restore Points =========================

10-09-2017 15:55:22 UE4 Prerequisites (x64)
13-09-2017 20:31:31 Windows Update
13-09-2017 20:31:50 Windows Update
21-09-2017 23:24:01 Naplánovaný kontrolní bod
24-09-2017 16:45:39 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
24-09-2017 16:45:50 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501

==================== Faulty Device Manager Devices =============

Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Myš Microsoft PS/2
Description: Myš Microsoft PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/24/2017 04:26:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: TDSSKiller.exe, verze: 3.1.0.11, časové razítko: 0x566b123a
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000409
Posun chyby: 0xab0da020
ID chybujícího procesu: 0x3020
Čas spuštění chybující aplikace: 0x01d335411bcdc65a
Cesta k chybující aplikaci: C:\Users\Agon\Desktop\TDSSKiller.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 3b0ba10c-eec3-43d0-a10f-3c01da5cad4e
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 04:25:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: TDSSKiller.exe, verze: 3.1.0.11, časové razítko: 0x566b123a
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000409
Posun chyby: 0xab0da020
ID chybujícího procesu: 0x2e00
Čas spuštění chybující aplikace: 0x01d3354102ab3ae5
Cesta k chybující aplikaci: C:\Users\Agon\Desktop\TDSSKiller.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 1542aaba-f9cb-457e-9bad-443e3bf1ea1a
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 04:25:15 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: TDSSKiller.exe, verze: 3.1.0.11, časové razítko: 0x566b123a
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000409
Posun chyby: 0xab0da020
ID chybujícího procesu: 0x2888
Čas spuštění chybující aplikace: 0x01d33540f0c4cddb
Cesta k chybující aplikaci: C:\Users\Agon\AppData\Local\Temp\Rar$EXa0.858\TDSSKiller.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 1034ce91-89d9-40dc-a150-bcc42a0e6022
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 04:07:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.15063.483, časové razítko: 0x88a53c1d
Kód výjimky: 0xc000041d
Posun chyby: 0x00005836
ID chybujícího procesu: 0x230c
Čas spuštění chybující aplikace: 0x01d3353e2a69d8e1
Cesta k chybující aplikaci: C:\Users\Agon\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: 3f2988a2-d20c-4cf4-863b-4e66c7e32d70
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 04:07:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x802f667e
Kód výjimky: 0xc0000005
Posun chyby: 0x00042dd5
ID chybujícího procesu: 0x230c
Čas spuštění chybující aplikace: 0x01d3353e2a69d8e1
Cesta k chybující aplikaci: C:\Users\Agon\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: bba97f01-6c33-4672-9e29-701160d2cb22
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 03:13:25 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.15063.483, časové razítko: 0x88a53c1d
Kód výjimky: 0xc000041d
Posun chyby: 0x00005836
ID chybujícího procesu: 0x35fc
Čas spuštění chybující aplikace: 0x01d3350b4788561e
Cesta k chybující aplikaci: C:\Users\Agon\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: a189bde0-4e57-4f5c-9a9e-88f5138da3fa
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 03:13:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x802f667e
Kód výjimky: 0xc0000005
Posun chyby: 0x00042dd5
ID chybujícího procesu: 0x35fc
Čas spuštění chybující aplikace: 0x01d3350b4788561e
Cesta k chybující aplikaci: C:\Users\Agon\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: cc7fa99a-3684-44e5-a9e8-9921e2252989
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 10:00:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MSIDDRService.exe, verze: 3.0.0.8, časové razítko: 0x58350289
Název chybujícího modulu: MSIDDRService.exe, verze: 3.0.0.8, časové razítko: 0x58350289
Kód výjimky: 0xc0000005
Posun chyby: 0x0002622f
ID chybujícího procesu: 0x1300
Čas spuštění chybující aplikace: 0x01d3350b3fd42081
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
Cesta k chybujícímu modulu: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
ID zprávy: 15483938-719b-4334-a017-97ba92494108
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 01:43:37 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.15063.483, časové razítko: 0x88a53c1d
Kód výjimky: 0xc000041d
Posun chyby: 0x00005836
ID chybujícího procesu: 0x2324
Čas spuštění chybující aplikace: 0x01d334c53df39e59
Cesta k chybující aplikaci: C:\Users\Agon\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: 4ee0622d-1c23-4b67-ba6a-85d70bfb0d47
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (09/24/2017 01:43:37 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: ntdll.dll, verze: 10.0.15063.608, časové razítko: 0x802f667e
Kód výjimky: 0xc0000005
Posun chyby: 0x00042dd5
ID chybujícího procesu: 0x2324
Čas spuštění chybující aplikace: 0x01d334c53df39e59
Cesta k chybující aplikaci: C:\Users\Agon\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 035da7ed-a8a7-4bda-84a9-742ef4f1cdd8
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (09/24/2017 10:00:59 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Command Center DDR Service byla neočekávaně ukončena. Tento stav nastal již 14krát.

Error: (09/23/2017 12:22:50 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Command Center DDR Service byla neočekávaně ukončena. Tento stav nastal již 13krát.

Error: (09/23/2017 04:14:31 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-865SP1G)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/23/2017 04:14:31 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-865SP1G)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/22/2017 12:04:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Command Center DDR Service byla neočekávaně ukončena. Tento stav nastal již 12krát.

Error: (09/21/2017 11:12:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Command Center DDR Service byla neočekávaně ukončena. Tento stav nastal již 11krát.

Error: (09/20/2017 11:13:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Command Center DDR Service byla neočekávaně ukončena. Tento stav nastal již 10krát.

Error: (09/20/2017 11:04:08 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Command Center DDR Service byla neočekávaně ukončena. Tento stav nastal již 9krát.

Error: (09/19/2017 11:07:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Command Center DDR Service byla neočekávaně ukončena. Tento stav nastal již 8krát.

Error: (09/19/2017 10:21:33 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Command Center DDR Service byla neočekávaně ukončena. Tento stav nastal již 7krát.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-6500 CPU @ 3.20GHz
Percentage of memory in use: 35%
Total physical RAM: 16330.83 MB
Available physical RAM: 10486.48 MB
Total Virtual: 16330.83 MB
Available Virtual: 9400.01 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.21 GB) (Free:89.53 GB) NTFS
Drive d: () (Fixed) (Total:465.66 GB) (Free:164.2 GB) NTFS
Drive h: (SAMSUNG) (Fixed) (Total:931.51 GB) (Free:154.49 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 926E0210)
Partition 1: (Active) - (Size=465.7 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: F0643515)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================