﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-08-2019
Ran by Petr (13-08-2019 08:46:26)
Running from D:\Desktop
Windows 10 Pro Version 1803 17134.885 (X64) (2018-05-15 08:05:50)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1378127302-1103651912-2866801594-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1378127302-1103651912-2866801594-503 - Limited - Disabled)
Guest (S-1-5-21-1378127302-1103651912-2866801594-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1378127302-1103651912-2866801594-1002 - Limited - Enabled)
Petr (S-1-5-21-1378127302-1103651912-2866801594-1000 - Administrator - Enabled) => C:\Users\Petr
WDAGUtilityAccount (S-1-5-21-1378127302-1103651912-2866801594-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton Security (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\uTorrent) (Version: 3.5.3.44358 - BitTorrent Inc.)
ABBYY FineReader 12 Professional (HKLM-x32\...\{F12000FE-0001-0000-0000-074957833700}) (Version: 12.1.426 - ABBYY Production LLC)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.012.20035 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.223 - Adobe)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.4.1 - Advanced Micro Devices, Inc.)
Branding64 (HKLM\...\{EE2AFCE4-0238-4DE0-A140-1647021627C1}) (Version: 1.00.0001 - Advanced Micro Devices, Inc.) Hidden
calibre (HKLM-x32\...\{B67713B4-83B9-496D-8B26-EBC27F10D562}) (Version: 2.85.1 - Kovid Goyal)
Catalyst Control Center Next Localization BR (HKLM\...\{3E245378-BF77-6946-C6F6-096DBE5EAB82}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (HKLM\...\{51F85784-6799-5CA3-97B2-2E5904FC3E58}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (HKLM\...\{55A4D3AB-C8DF-26B2-89A8-7E16E1E40700}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (HKLM\...\{A16E186C-58C4-3BDC-5CCE-714EFEF5F27F}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{36EDC500-E4C0-371C-9865-08450415C1E9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{62098A5F-E03B-31A3-5F9C-51A7F7D25744}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{84C3F2C5-F7B2-2F08-CDF4-79EF7CC55D74}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{A0407E39-2AA4-60B3-885F-3C5347B6909E}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{C3EE628C-7394-FE2C-0C90-C05284EB528D}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{0989D0EA-AFF3-5F9A-3D25-20EE133E409B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{0E8A3B17-D603-B1B6-C205-1685EBDD23E9}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{1757AD9B-0E3C-05F9-FE43-4343BED7DA85}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{2F544F46-5F6E-97BB-3550-A0242A3C5754}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{1E7D3072-1D28-E33A-99DF-85D9F7ECD06E}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{66B06F29-EE4F-9130-D96A-754826093FEA}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{A8689A0F-5928-7300-B82B-C5E85131B7BA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{FC4086D6-E345-5F43-08BB-280FB57DAF49}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{76AAF56B-93D8-161D-809A-EC05F3B913DA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{821D0A0E-F246-BE40-0D68-93883C14C410}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{BA26B70C-3D8C-2D14-4122-211FB3E6F691}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{F8EBE530-A4D5-BF51-F623-3787E6B8A878}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{063CED74-F5F0-870E-DC9C-2D78FDEDA3EE}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{42FBD43F-DE53-6D4D-5134-E3C93B45CBEF}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{5FEACE78-C338-9AED-FF05-7DE7E273C774}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{88BD74C4-23AB-4554-915C-6E1F0C81F6CD}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{13BB60AA-88F7-4B1F-2DEC-D81EEDE8B3AA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{A3795528-F572-6314-C4E3-EE9DAF0FBF02}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{A48E2AB0-0866-7783-9657-E1709EB18D02}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{AC85CF50-9A55-0103-ADBF-365C37603AA4}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{37AA6227-FF2C-95AC-87C0-45DCC0BB87DA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{4853A56D-7931-A08B-5BA7-8E2D61043DF9}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{B349892D-B015-033C-4CA8-3635E6B655D7}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{E61CEF9A-BAC3-EAEE-F735-E257D2354DF2}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{B28CF677-E2C8-12CA-52BB-19B6F066D36A}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{BE8D6AB1-3049-2F0C-67FA-00C0A5D321A3}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{DA0326BB-657D-AAFC-752C-363E8FA33755}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{EB328356-1DF0-1CCE-3607-6361DD329219}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{365AEAB2-4CF3-7CBB-0DAC-E9E14B688E65}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{45907537-804A-514F-5280-5F4F12A6DCBC}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{8E6F5592-ED7E-9C50-74AC-BF417B1FE291}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{E42911E5-48F8-8557-ED20-D72AD1907D25}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{7ABC6D83-816E-6D48-E65D-B0CEDD294E4E}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{962364E4-08BB-347D-32E7-2B789F37BF8A}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{AD28960A-6190-C991-C964-308B86EAA2E2}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{B4C30EF4-B2C5-1395-B534-7B63BCB6E8E4}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{26567561-DFB2-2B63-9BA8-6A490ED37016}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{43F6D22B-E0E9-EE90-9B62-1C5FC5D15A55}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{87E6EC29-AEC5-28CB-F773-93EB6C1B8A2B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{B873A1FB-5EA0-EE5F-A861-1E38880AD08E}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{0809FEC1-EF86-51E9-8210-DC1B1BDB6745}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{CA55697D-BD74-3ED8-6B21-D7EDAD3B7D02}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{D4490E0F-8E7B-1097-B56A-7643C75F1C28}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{EC9DF9FF-9D75-4CDD-1D58-A2E887B0A42E}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{5FD706FF-6AD8-E372-A35A-879409982655}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{7ABACA7E-6E59-0EF9-8FA3-6B32E5F58127}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{CFC860C8-4F51-E08C-A74C-2E444ED06160}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{DAB44116-0266-C65B-B643-AC11217C3041}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{3AF70346-52C7-0334-606F-118D1C1CB7A2}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{3E196AAF-F81C-B384-E2AB-28EE2398FE5F}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{9338D693-38B7-1ED4-9B42-BFA1D5600CCB}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{A4E7CA0C-84EB-5E29-2F04-06C4E4790C2F}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{53AE8AC7-5213-67AF-0DC0-CED696B77643}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{59D2664C-949B-7FA7-9880-ECB993B6616A}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{C971C145-258D-6650-7088-13DDB161327A}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{DAEFFE0C-CD05-1355-6AFC-7B3D4106A820}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{970A40CA-46AB-986C-1798-976ED0EA00FA}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{DC9DFCBF-87DA-892C-6151-99CC9EF46E3E}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{E392A425-53A7-DF90-96A0-E287A75DD3B2}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{EBA09DAF-14B4-7BE7-676E-6E2FB21EDBDD}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{4707CBFC-8ED4-463E-0FF9-DE86F4A743E9}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{9AA4DD93-94BF-22EA-C9D2-7084F304A31B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{C1EFF2A2-DF4A-F6D1-B99C-1ED194AE9E78}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{D6F47BB4-700A-F612-0671-5F69EA311BB7}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{01FD9A26-3F61-9236-B360-BE5D043D82C0}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{379D900B-A785-6DB0-012E-434356A365B3}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{46EB68BE-8AAC-8C2B-7284-8DEDE6B5CD2A}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{C14A3A5B-8A86-C239-37D7-158211778C54}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{366C4FB5-CF6E-258B-418D-E6D29549A278}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{64D4CCC3-63DF-252D-D29D-03491670225D}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{7A6E431B-CF43-EC3E-FD7E-0A0AAB1B25FC}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{A50C89BC-8D8E-8828-824A-7171F6D583D5}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{0B5633F0-C415-2F08-671E-4C9E2FAACD45}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{89A1F076-19B8-A2B1-D5A3-E8247EFAF157}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{8DF90937-B869-9F76-5D45-5A8BDA0A33B6}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{B10089DE-934F-6E0F-683A-B788F89348DF}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.35 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.9.0.0650 - Disc Soft Ltd)
dr.fone (Version 9.5.0) (HKLM-x32\...\{E8F86DA8-B8E4-42C7-AFD4-EBB692AC43FD}_is1) (Version: 9.5.0.15 - Wondershare Technology Co.,Ltd.)
Epic Games Launcher (HKLM-x32\...\{0E63B233-DC24-442C-BD38-0B91D90FEC5B}) (Version: 1.1.167.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
FIFA 19 version final (HKLM-x32\...\FIFA 19_is1) (Version: final - The)
FormApps Signing Extension (HKLM-x32\...\{ACA43D91-8B42-4D42-8C8B-A893BD6AA40D}) (Version: 2.8.2.28 - Software602 a.s.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 76.0.3809.100 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
GoTo Opener (HKLM-x32\...\{2C183CF0-3077-43D0-B001-F93AC5E68942}) (Version: 1.0.487 - LogMeIn, Inc.)
GoToMeeting 8.46.0.13761 (HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\GoToMeeting) (Version: 8.46.0.13761 - LogMeIn, Inc.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Photosmart 5510d series Nápověda (HKLM-x32\...\{E59ADA18-03DB-44F5-9EF5-0FA25E4D4384}) (Version: 140.0.2.2 - Hewlett Packard)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
iCloud (HKLM\...\{C8127F91-0244-4FF0-8014-0C432E15E09D}) (Version: 7.5.0.34 - Apple Inc.)
Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
Java 8 Update 151 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LYNX Trading (HKLM\...\5556-0005-2700-0000) (Version: (972.1e) 20180530 17:29:40 - LYNX)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\OneDriveSetup.exe) (Version: 19.123.0624.0005 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Norton Security (HKLM-x32\...\NGC) (Version: 22.17.3.50 - Symantec Corporation)
Norton Security Scan (HKLM-x32\...\NSS) (Version: 4.6.1.150 - Symantec Corporation)
Opera Stable 62.0.3331.116 (HKLM-x32\...\Opera 62.0.3331.116) (Version: 62.0.3331.116 - Opera Software)
PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC)
Pillars of Eternity II Deadfire The Forgotten Sanctum (HKLM-x32\...\Pillars of Eternity II Deadfire The Forgotten Sanctum_is1) (Version:  - )
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.22.1-r122396-release - Plays.tv, LLC)
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{C56BA005-F02C-461B-ACA5-A0CE3E32578F}) (Version: 6.5 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{C8087B7C-8496-45BE-92FB-91D31EB73969}) (Version: 6.5 - Apple Inc.)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.8-r120085-release - Raptr, Inc)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.2.2558 - TeamViewer)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.8 - VideoLAN)
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.51.0 (HKLM\...\VulkanRT1.0.51.0) (Version: 1.0.51.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0-2) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
WhatsApp (HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\WhatsApp) (Version: 0.2.9998 - WhatsApp)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
XCOM 2 (HKLM-x32\...\XCOM 2_is1) (Version:  - )
Základní software zařízení HP Photosmart 5510d series (HKLM\...\{6F2486E1-2778-4AF5-B67B-C1DD85FBA767}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)

Packages:
=========
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.145.301.0_x86__kgqvnymyfvs32 [2019-08-12] (king.com)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_100.1.581.0_x64__v10z8vjag6ke6 [2019-07-19] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-09] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-09] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.31.12124.0_x64__8wekyb3d8bbwe [2019-08-07] (Microsoft Corporation) [MS Ad]
Microsoft Průvodce pro telefon -> C:\Program Files\WindowsApps\Microsoft.WindowsPhone_10.1802.311.0_x64__8wekyb3d8bbwe [2018-02-13] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.6132.0_x64__8wekyb3d8bbwe [2019-06-16] (Microsoft Studios) [MS Ad]
Microsoft Telefon -> C:\Program Files\WindowsApps\Microsoft.CommsPhone_3.43.20002.1000_x64__8wekyb3d8bbwe [2018-09-18] (Microsoft Corporation)
MSN Money -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-19] (Microsoft Corporation) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-20] (Microsoft Corporation) [MS Ad]
MSN Sport -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-19] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11901.20184.0_x64__8wekyb3d8bbwe [2019-08-02] (Microsoft Corporation) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-18] (Twitter Inc.)
WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2016-07-22] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1378127302-1103651912-2866801594-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Petr\AppData\Local\GoToMeeting\10793\G2MOutlookAddin64.dll => No File
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\programy\office\Office14\GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.17.3.50\buShell.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.17.3.50\buShell.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.17.3.50\buShell.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers-x32: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.17.3.50\buShell.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.17.3.50\buShell.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.17.3.50\buShell.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.17.3.50\buShell.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers1: [FineReader12ContextMenu] -> {55344AC6-630B-430C-B292-C7BE21F90061} => D:\programy\abbyy\FRIntegration.x64.dll [2014-07-14] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2018-05-23] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers1: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.17.3.50\NavShExt.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\programy\winrar\rarext64.dll [2015-02-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\programy\winrar\rarext.dll [2015-02-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.17.3.50\NavShExt.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Workstation\vmdkShellExt.dll [2012-11-01] (VMware, Inc. -> VMware, Inc.)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2019-03-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> No File
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.17.3.50\buShell.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers6: [FineReader12ContextMenu] -> {55344AC6-630B-430C-B292-C7BE21F90061} => D:\programy\abbyy\FRIntegration.x64.dll [2014-07-14] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers6: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.17.3.50\NavShExt.dll [2019-06-20] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\programy\winrar\rarext64.dll [2015-02-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\programy\winrar\rarext.dll [2015-02-18] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2017-04-21 22:18 - 2017-04-21 22:18 - 000033280 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\cx_Logging.cp35-win32.pyd
2017-04-21 22:18 - 2017-04-21 22:18 - 001780736 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
2017-04-21 22:18 - 2017-04-21 22:18 - 001934336 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
2017-04-21 22:18 - 2017-04-21 22:18 - 000505856 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
2017-04-21 22:18 - 2017-04-21 22:18 - 003812864 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
2017-04-21 22:18 - 2017-04-21 22:18 - 000405504 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom35.dll
2017-04-21 22:18 - 2017-04-21 22:18 - 000111616 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes35.dll
2017-04-21 22:18 - 2017-04-21 22:18 - 000077824 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
2017-04-21 22:18 - 2017-04-21 22:18 - 000103424 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
2017-04-21 22:18 - 2017-04-21 22:18 - 000173568 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
2017-04-21 22:18 - 2017-04-21 22:18 - 000041984 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
2019-01-24 15:38 - 2019-01-24 15:38 - 000014336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2019-01-24 15:38 - 2019-01-24 15:38 - 002551808 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2019-03-26 23:40 - 2019-03-26 23:40 - 000256512 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\WirelessVR-windesktop64.dll
2018-03-13 04:47 - 2018-03-13 04:47 - 000912896 _____ () [File not signed] C:\Program Files\AMD\Performance Profile Client\aws-cpp-sdk-core.dll
2018-03-13 04:47 - 2018-03-13 04:47 - 003109888 _____ () [File not signed] C:\Program Files\AMD\Performance Profile Client\aws-cpp-sdk-s3.dll
2015-02-19 01:13 - 2015-02-19 01:13 - 000817152 _____ () [File not signed] C:\Program Files\AMD\Performance Profile Client\Device.dll
2015-02-19 01:13 - 2015-02-19 01:13 - 003650560 _____ () [File not signed] C:\Program Files\AMD\Performance Profile Client\Platform.dll
2019-03-26 23:38 - 2019-03-26 23:38 - 000043008 _____ (AMD) [File not signed] C:\Program Files\AMD\Performance Profile Client\AUEPLauncher.exe
2019-03-26 23:38 - 2019-03-26 23:38 - 000572928 _____ (AMD) [File not signed] C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
2019-03-26 23:38 - 2019-03-26 23:38 - 000159232 _____ (AMD) [File not signed] C:\Program Files\AMD\Performance Profile Client\AUEPUF.exe
2013-01-20 14:30 - 2012-05-20 18:24 - 000073728 ____R (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.dll
2012-11-01 02:37 - 2012-11-01 02:37 - 001019392 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\VMware\VMware Workstation\libeay32.dll
2012-11-01 02:37 - 2012-11-01 02:37 - 000211456 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\VMware\VMware Workstation\ssleay32.dll
2017-04-21 22:18 - 2017-04-21 22:18 - 004626432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\Qt5Core.dll
2017-04-21 22:18 - 2017-04-21 22:18 - 004854784 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\Qt5Gui.dll
2017-04-21 22:18 - 2017-04-21 22:18 - 000847872 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\Qt5Network.dll
2017-04-21 22:18 - 2017-04-21 22:18 - 004439552 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\Qt5Widgets.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000345600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000024576 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000502784 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 001413632 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2019-03-26 23:50 - 2019-03-26 23:50 - 005786112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 006303232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 001077248 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 000323584 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 003556352 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 003699712 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 000331264 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 000355328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 076171264 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2019-01-24 15:37 - 2019-01-24 15:37 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 005590528 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000461312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000189952 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 002821632 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000327680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000137728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000089600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2019-01-24 15:38 - 2019-01-24 15:38 - 000135680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\styles\qwindowsvistastyle.dll
2012-11-01 01:47 - 2012-11-01 01:47 - 000086528 _____ (VMware, Inc.) [File not signed] C:\Program Files (x86)\VMware\VMware Workstation\amqp.DLL
2012-11-01 01:48 - 2012-11-01 01:48 - 000079872 _____ (VMware, Inc.) [File not signed] C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:07F6D9E4 [136]
AlternateDataStreams: C:\ProgramData\TEMP:6387AA6C [130]
AlternateDataStreams: C:\ProgramData\TEMP:85AA7074 [286]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nm => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nm.sys => ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\mojebanka.cz -> hxxps://etrading.mojebanka.cz

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2015-01-20 16:41 - 000000027 ____N C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1       localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%CommonProgramFiles%\Microsoft Shared\Windows Live;C:\Program Files (x86)\Intel\iCLS Client;C:\Program Files\Intel\iCLS Client;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;D:\programy\calibre;D:\ati\ATI.ACE\Core-Static;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;D:\programy\calibre\;C:\Program Files (x86)\QuickTime\QTSystem\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Petr\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\lenovowallpaper.jpg
DNS Servers: 208.67.222.222 - 208.67.220.220
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\startupreg: AceStream => C:\Users\Petr\AppData\Roaming\ACEStream\engine\ace_engine.exe
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: DAEMON Tools Lite => "D:\programy\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: Raptr => C:\Program Files (x86)\Raptr\raptrstub.exe --startup
MSCONFIG\startupreg: Steam => "D:\programy\steam\Steam.exe" -silent
MSCONFIG\startupreg: uTorrent => "C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe"  /MINIMIZED
HKLM\...\StartupApproved\Run: => "StartCN"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Bonus.SSR.FR12"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "vmware-tray.exe"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "OscarX7Mouse5Mode"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "iCloudServices"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "iCloudDrive"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "EpicGamesLauncher"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


FirewallRules: [{82359D55-B08E-4C57-A296-42822EBF68F3}] => (Allow) D:\programy\steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{A010E0E1-980A-4D0F-AFED-D439C47B2345}] => (Allow) D:\programy\steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{B8F8E49C-26A3-43EC-BB32-C91F015C7061}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9E16F91B-A04A-41A5-B825-51EF87320F5A}] => (Allow) C:\Program Files\HP\HP Photosmart 5510d series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{0B5E2C7C-151A-4C9B-8640-F45DF6134686}] => (Allow) C:\Program Files\HP\HP Photosmart 5510d series\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{83653658-D3C4-41B1-B471-FADDB61B573B}] => (Allow) C:\Program Files\HP\HP Photosmart 5510d series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [UDP Query User{3BE53508-A0AD-4DCF-9262-7B6B22A0B969}D:\programy\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Block) D:\programy\steam\steamapps\common\outlast\binaries\win64\olgame.exe No File
FirewallRules: [TCP Query User{38420DD8-C758-4017-B8FE-36AE6D261020}D:\programy\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Block) D:\programy\steam\steamapps\common\outlast\binaries\win64\olgame.exe No File
FirewallRules: [UDP Query User{BA0B7CBB-6190-49E7-8E1F-90108EDBBD5A}D:\games\fifa 17\fifa17.exe] => (Block) D:\games\fifa 17\fifa17.exe No File
FirewallRules: [TCP Query User{8CF181CE-F6EB-4603-9020-718F5825D124}D:\games\fifa 17\fifa17.exe] => (Block) D:\games\fifa 17\fifa17.exe No File
FirewallRules: [{601EB894-BF76-4AEF-BF88-B1B9D797C3A0}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe (Plays.tv, LLC -> Copyright (c) 2017 Plays.tv, LLC)
FirewallRules: [{3FA48DBE-93F8-40E6-BB51-37A31FC2B51E}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe (Plays.tv, LLC -> Copyright (c) 2017 Plays.tv, LLC)
FirewallRules: [{11C30D82-A793-4556-9E84-A22CFB0D7419}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe (Raptr, Inc -> Raptr, Inc)
FirewallRules: [{32609668-FADF-4851-BAE5-4AB83AF4AA31}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe (Raptr, Inc -> Raptr, Inc)
FirewallRules: [{9CBB4D43-BF47-4554-B1A3-26C13357387A}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe (Raptr, Inc -> Raptr, Inc)
FirewallRules: [{623E0E9B-1AB5-4126-A40C-E5C555063BD6}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe (Raptr, Inc -> Raptr, Inc)
FirewallRules: [UDP Query User{73A6CB40-4F34-488E-9FE3-C2F4E4A74CA1}C:\games\far cry primal\bin\fcprimal.exe] => (Block) C:\games\far cry primal\bin\fcprimal.exe No File
FirewallRules: [TCP Query User{BA7E9BA8-AEDF-49D6-BE32-6316885E32D6}C:\games\far cry primal\bin\fcprimal.exe] => (Block) C:\games\far cry primal\bin\fcprimal.exe No File
FirewallRules: [{817F68C4-065A-4D2E-A1B8-34C681E417D5}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{1FBA1CC5-BD13-4DC6-AF16-6DF026949F8D}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{FB53F34F-B7A1-4CF8-8733-B997A6C6446A}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{4FFA8809-FFFA-4A49-912D-3A9597204DD8}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{0F9E5EF9-6EC6-4458-B6D0-13489C1BC599}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{F1D8FEAB-1C69-4CA5-BCD8-A521007B6F8D}] => (Allow) C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{3923D4CD-529E-4E2B-B6D6-58C183C10013}D:\games\xcom 2\binaries\win64\xcom2.exe] => (Block) D:\games\xcom 2\binaries\win64\xcom2.exe (Valve Corp. -> Firaxis Games) [File not signed]
FirewallRules: [TCP Query User{A6642074-5228-4E44-85BF-1517B69E976C}D:\games\xcom 2\binaries\win64\xcom2.exe] => (Block) D:\games\xcom 2\binaries\win64\xcom2.exe (Valve Corp. -> Firaxis Games) [File not signed]
FirewallRules: [UDP Query User{3BA76610-0E53-410A-9F44-A642E0BA2633}D:\users\petr\downloads\odorik(1).exe] => (Allow) D:\users\petr\downloads\odorik(1).exe (Odorik.cz) [File not signed]
FirewallRules: [TCP Query User{05E8A83D-A6E4-4094-927B-AA38518E6BC2}D:\users\petr\downloads\odorik(1).exe] => (Allow) D:\users\petr\downloads\odorik(1).exe (Odorik.cz) [File not signed]
FirewallRules: [{961D43BE-6BEB-48FB-ACBE-7E9DB114D8C9}] => (Allow) D:\games\Diablo III\Battle.net\Battle.net.exe No File
FirewallRules: [{95C9352E-54BF-4459-8AF0-CFA3743FCC8D}] => (Allow) D:\games\Diablo III\Battle.net\Battle.net.exe No File
FirewallRules: [{5BCEECDF-76E3-4883-A6BF-253B4432BD3D}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{6253D2E4-626A-4A8F-B97D-20CF8E493344}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{136F3E64-8A40-4213-AABF-8F3E46D77168}D:\games\gtav\gta5.exe] => (Allow) D:\games\gtav\gta5.exe No File
FirewallRules: [TCP Query User{A5099D94-8202-46B7-8BDD-40C0C1CC71AA}D:\games\gtav\gta5.exe] => (Allow) D:\games\gtav\gta5.exe No File
FirewallRules: [UDP Query User{0FFFD954-6097-4E4A-B700-B416DDDB5AA9}D:\games\pro evolution soccer 2015\pes2015.exe] => (Block) D:\games\pro evolution soccer 2015\pes2015.exe No File
FirewallRules: [TCP Query User{32061A49-AA58-42B3-9A18-8422B9BCFAF4}D:\games\pro evolution soccer 2015\pes2015.exe] => (Block) D:\games\pro evolution soccer 2015\pes2015.exe No File
FirewallRules: [UDP Query User{E55EF42C-8BB9-46DC-B224-91238C96C0B9}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{1721592C-D2C3-4CEB-B0BE-C65F891FEB33}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{CF013533-BA7B-456F-99BF-CD80791D0C58}D:\users\petr\downloads\odorik.exe] => (Allow) D:\users\petr\downloads\odorik.exe (Odorik.cz) [File not signed]
FirewallRules: [TCP Query User{C2B448BC-C095-4D24-BBFC-B27713D68F28}D:\users\petr\downloads\odorik.exe] => (Allow) D:\users\petr\downloads\odorik.exe (Odorik.cz) [File not signed]
FirewallRules: [{62446D82-5886-48CA-831A-8F9329647C73}] => (Allow) D:\games\Might & Magic X - Legacy\Might and Magic X Legacy.exe (Limbic Entertainment GmbH -> )
FirewallRules: [{0535B82B-BE9B-4374-955D-938D339A4653}] => (Allow) D:\programy\steam\bin\steamwebhelper.exe No File
FirewallRules: [{A761A82E-A3AD-4E8E-AAA9-5063F8907DB5}] => (Allow) D:\programy\steam\bin\steamwebhelper.exe No File
FirewallRules: [UDP Query User{A23ADB47-8EB9-4C79-9718-3C4889A9B5E8}D:\programy\paradise casino\paradisecasino\casino.exe] => (Allow) D:\programy\paradise casino\paradisecasino\casino.exe () [File not signed]
FirewallRules: [TCP Query User{81958F7D-6D91-4AAB-AC95-FA115FCF5600}D:\programy\paradise casino\paradisecasino\casino.exe] => (Allow) D:\programy\paradise casino\paradisecasino\casino.exe () [File not signed]
FirewallRules: [UDP Query User{A32D435B-ECF5-4BE9-8CC4-0FDCC23B45CC}D:\games\diablo iii\diablo iii.exe] => (Block) D:\games\diablo iii\diablo iii.exe No File
FirewallRules: [TCP Query User{AF86155E-29FA-4FB7-85AF-1F892888F119}D:\games\diablo iii\diablo iii.exe] => (Block) D:\games\diablo iii\diablo iii.exe No File
FirewallRules: [{1EE6AAF8-2CC0-420E-ADFB-424545034E97}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe No File
FirewallRules: [{899300F3-2F28-42E0-9823-8DC75458C88D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{3D6383AA-A9FD-4409-9780-8A418C9969DD}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{6A240BE3-2A63-4426-9D6B-F625CC6C377D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{7F755ACD-9BA4-48E8-9A6A-721DA0919DEB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [UDP Query User{E6D6BE28-8305-4EAB-89D7-277035C41023}D:\programy\icq\icq7m\icq.exe] => (Allow) D:\programy\icq\icq7m\icq.exe (ICQ -> ICQ, LLC.)
FirewallRules: [TCP Query User{0724B1A5-ECBB-4F97-8EED-A9B56B45912E}D:\programy\icq\icq7m\icq.exe] => (Allow) D:\programy\icq\icq7m\icq.exe (ICQ -> ICQ, LLC.)
FirewallRules: [{00754F1F-A924-41EC-B650-5C35E5B20BB2}] => (Allow) D:\programy\steam\SteamApps\common\Skyrim\SkyrimLauncher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{6FFEF029-B75B-4B49-8D58-E925EB64BE53}] => (Allow) D:\programy\steam\SteamApps\common\Skyrim\SkyrimLauncher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [UDP Query User{86C08803-BD98-4A95-A841-140EB1D03BA4}D:\games\need for speed most wanted\nfs13.exe] => (Block) D:\games\need for speed most wanted\nfs13.exe No File
FirewallRules: [TCP Query User{7DFD3AE8-28DD-4A35-BCEC-8440B772BB1C}D:\games\need for speed most wanted\nfs13.exe] => (Block) D:\games\need for speed most wanted\nfs13.exe No File
FirewallRules: [{4793B6F4-1640-4134-AFC5-F56E5059746D}] => (Allow) D:\programy\steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{9BF50F3C-A643-499B-B40D-5BDCF6B78AA7}] => (Allow) D:\programy\steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{A1870A61-C260-4F5B-89D7-E4C56D185D51}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe () [File not signed]
FirewallRules: [{606B7FF2-0337-42D4-9384-DFDCB1918EB7}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe () [File not signed]
FirewallRules: [{B7D682D6-BD7C-44F1-B726-A02A220B8638}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc.) [File not signed]
FirewallRules: [{1B1F656B-596D-45B2-B1FC-DC102B59D016}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc.) [File not signed]
FirewallRules: [UDP Query User{D311F560-72FF-4971-8261-17B1E5D0FF60}D:\programy\paradise casino\paradisecasino\casino.exe] => (Allow) D:\programy\paradise casino\paradisecasino\casino.exe () [File not signed]
FirewallRules: [TCP Query User{FFC504F1-D0C2-4D56-AF59-31EC24316237}D:\programy\paradise casino\paradisecasino\casino.exe] => (Allow) D:\programy\paradise casino\paradisecasino\casino.exe () [File not signed]
FirewallRules: [{2B44B40E-016D-4BC7-9C03-1E9DB36BEAF9}] => (Allow) D:\programy\icq\ICQ7M\ICQ.exe (ICQ -> ICQ, LLC.)
FirewallRules: [{18DE4EF0-F7C0-4F97-966B-A5916C093ED4}] => (Allow) D:\programy\icq\ICQ7M\ICQ.exe (ICQ -> ICQ, LLC.)
FirewallRules: [{3B3D7234-58FD-43A1-A681-CE5CC3E57358}] => (Allow) D:\programy\icq\ICQ7M\ICQ.exe (ICQ -> ICQ, LLC.)
FirewallRules: [{FEAEF795-570D-4610-B2AF-2571925B48F1}] => (Allow) D:\programy\icq\ICQ7M\ICQ.exe (ICQ -> ICQ, LLC.)
FirewallRules: [{E4039661-5345-434D-94D0-65AE5E1F959E}] => (Allow) D:\games\Diablo III\Diablo III.exe No File
FirewallRules: [{DED42FD3-835F-4F1F-9A83-7DCDDD2DC917}] => (Allow) D:\games\Diablo III\Diablo III.exe No File
FirewallRules: [{0E240DA9-D1D5-4061-B333-866D8BC082B8}] => (Allow) D:\programy\office\Office14\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C6081C57-67C3-4853-9C5B-4F62D9CA88E5}] => (Allow) D:\programy\office\Office14\ONENOTE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A7437225-715E-4114-A407-E6A8249AF3EB}] => (Allow) D:\programy\office\Office14\ONENOTE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{299F4AC2-DA3D-4A19-97AF-6D4969B6A923}] => (Allow) D:\programy\office\Office14\GROOVE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E84E6805-512E-4B7E-8076-B0E4CCDC3266}] => (Allow) D:\programy\office\Office14\GROOVE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CF9A3900-8535-4210-BFCA-52E2CC2BEFCF}] => (Allow) D:\programy\utorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{3BE18F6A-AD68-445F-9DF3-F6BA0BDFB795}] => (Allow) D:\programy\utorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{A90B965E-D04E-4317-8F4D-2EE994876AA9}D:\games\fifa18\fifa18.exe] => (Block) D:\games\fifa18\fifa18.exe No File
FirewallRules: [UDP Query User{948D9E6D-84AF-433D-A717-D7443D8B2EE4}D:\games\fifa18\fifa18.exe] => (Block) D:\games\fifa18\fifa18.exe No File
FirewallRules: [{B76972DA-9BC8-4EDA-800C-3C9035C5AB2A}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [TCP Query User{D9CDC0C2-5BA3-4F8E-B9DD-BFC9B32FDB95}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{C3358CBB-04E9-435D-8C80-E6942E20555F}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{75BC9D1A-5918-4373-AFF2-8659C7FA8F1C}] => (Allow) D:\programy\steam\SteamApps\common\TheLongDark\tld.exe () [File not signed]
FirewallRules: [{EA69E181-E275-4445-875B-BCDEDFDE849C}] => (Allow) D:\programy\steam\SteamApps\common\TheLongDark\tld.exe () [File not signed]
FirewallRules: [{89D7C090-1F8F-41C6-AEB6-68F197AE9C83}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{4F995C37-368B-4988-A2A4-157C449E1C1A}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{EB7EE7F4-BBB0-4C3B-974C-AB70306ED2A7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{463D5481-2E33-40D3-B343-CF5820707540}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{03E9CD54-2B3B-4467-BA4E-8CB01E9EA902}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{170470C3-7DE0-44DA-B89C-67352FE226FD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CCBB32ED-9C2B-476D-98F6-64E73500BD04}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{09CC288C-6F24-456D-B3E8-7436F37F214A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FBC56DDA-96AF-4E4F-98F3-C2B6870C6F64}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{93A477C9-55A6-4218-B17A-AA0B0C06B788}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{29C20C06-6FD9-42E2-B0BA-19E38CC78584}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{755A42F3-51FB-4DE0-8318-CA6D618A1158}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F8AD1998-840A-41C8-94D8-6F4D4C380589}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2D1EEE01-8587-4E91-8C7E-598B3EF0F476}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{53DD3A30-F497-4CBD-B188-3F1133137BB2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F9ACD8A9-979C-428C-9617-5B757B7E2145}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E11A1731-298B-4A3B-9BA3-0FC05B2DF7A8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8D6D12E0-4F63-42C4-8764-3A7491887A86}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{92F189C4-5B6A-495B-BDC6-769D0252DE87}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8132B8B3-5383-4A4F-9A8B-FA0FD54955A3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4995BB21-748C-41B4-AAD4-27B0733F5491}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{134470B3-A6B3-473F-9D1B-52EB377F4194}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4A28EE07-CB92-4FE5-BC43-4C0B72F82D57}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B9D01C73-34DB-442D-9DBE-9636DE53A415}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4620ED39-5468-48F7-AA9B-BE5BD01D489A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D64ABB78-DB11-4E74-B147-117D432D184B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C164A6AC-E7A6-462F-8F14-64F30D2C35EC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A08BC1AD-0949-491F-B4EF-0835FB0E185E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E25AD663-20B4-4F74-8F66-5E353A9472FF}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{34A763C0-FB08-4C1D-A4B6-1EE0039E2C7A}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{0F59F766-0E0D-4BC3-A8F5-075F5D161C66}] => (Allow) C:\WINDOWS\TEMP\nlfrv575A.tmp\svchost.exe No File
FirewallRules: [{381582DB-4D74-4D30-A598-DEED6D20B307}] => (Allow) C:\WINDOWS\TEMP\nlfrv575A.tmp\svchost.exe No File
FirewallRules: [{6F6410BA-A3B8-4ADB-92C2-D5ED3BED7038}] => (Allow) C:\WINDOWS\TEMP\glsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{2BC96459-2F11-40A8-8124-4CBCA17B3104}] => (Allow) C:\WINDOWS\TEMP\glsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{B98FED15-113B-4184-BB03-47AC302326F7}] => (Allow) C:\WINDOWS\TEMP\rllab142X.tmp\lsass.exe No File
FirewallRules: [{DA0BD9D6-E52B-432E-BC2B-2C71CEE71AAD}] => (Allow) C:\WINDOWS\TEMP\rllab142X.tmp\lsass.exe No File
FirewallRules: [{7922FEE4-2CFC-4489-8289-53CF60410474}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9BB0087A-5593-417F-B9A3-6299E91855E6}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{49D9CA9A-5998-4634-BEE9-6423A000217F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CA6E412C-BD5E-455B-90D2-4256770AAC4E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FBD8C2AA-9461-4F56-977E-F00B27B86526}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{36532A98-1CB0-41DF-8194-8579889DD09C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{33453460-BC95-4000-992D-0CBF02727263}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{9EC117CB-78A5-4192-BB1B-30E320D04FE1}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{6AF66682-E173-4721-9F1D-7174233249F6}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{D4BB5EE5-083D-48CD-BAD9-9853281FF0A6}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{DF859864-9399-43EE-90CB-84048130754B}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{5300C6F8-6754-4C9B-AB14-9488C7ABF672}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{401A8720-7971-49C4-8DBF-202F29F977DA}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{B8B524F5-5EA9-417C-84A7-2A6BE4184E7B}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{9A366004-9CB1-4F19-962B-41F4861D36FD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{DEC50606-9F33-4DD5-8A4C-DDCB51C2FEEC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{8328A553-7763-4A52-B1CB-925F92FA12EA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{949DF42A-E23D-464F-9E6A-1473DE663999}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{D2CDB85A-4A7D-4FEE-8EA9-486448BB822D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B5D91E15-385D-4738-81E0-FB6441EFA20D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D79D21EB-82DE-4633-BCA0-23ADC1CCE2E6}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{85711936-8DCC-4D47-819D-E6C44E94B974}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{70476A89-6E8F-4ED5-BF70-78D48455ECCF}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{75605DB6-142D-4A98-AC0A-6BA9BC12B3DE}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{BA65F6CB-821C-4435-AE24-2A908C0563A6}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{67DC7689-BB57-4D89-9178-AC2ED51EA497}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{DACFE023-06DF-43A1-A3C2-97A3C8287DFC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E860BC54-842E-4450-B271-31320230BE85}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{07315072-CF8E-4244-9C6F-F88846AB2B0A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CA4EDA86-9B76-4EDD-9F38-13C8271BBE43}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{D488FF3E-2B99-490E-B30D-14B9C8B82E9B}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{53A6BCEE-6EB2-44FB-9CA9-B89AC61110F8}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{02BCF0D8-CB46-4DE8-8BD2-35A93613B4C1}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{8C25F95C-27A9-4AA3-A348-A67054A855D0}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{9DFAA092-C195-4193-B58F-1032DFD33DD4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E38EB1F0-5D23-409C-9B04-18AFA1C36C57}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{9B39D523-FF49-4808-9038-AC9A7F76B7DF}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{064667F9-8399-427E-A041-12371989F03D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{296D9582-68C8-444A-A121-BEDF3A07668F}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{6A5E0E9D-CBC0-4EF9-907D-69ED3E1C475C}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{D9C2C564-1FCE-47E6-BF3D-65C1A2FFA07E}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{6B5FAE00-0C2A-4998-8A00-E60D7FF19157}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{F1A25658-FB9A-4E3B-9528-4693B5A8A82C}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{4295CF6E-6739-439E-B385-3E0A7A711EA2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{85326D9B-5BD0-4D6A-BA5F-FDD38EC741E0}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F08ABF6C-9389-4390-9B5B-9939A983C819}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{A66A8293-B9E4-48DA-9650-FC6A4AEDB08D}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{F4521D4D-90DF-4AD2-9119-C8FE0FB8577A}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{0113DD5C-181A-4304-846C-82237609B2F6}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{63FD4360-158A-4607-A3E2-2A85B85E46C6}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{A995FE81-19DB-4756-BD0C-5707D0265675}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{20915E20-0EE9-4DD7-A706-B52D0B660EE6}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{ED06CF22-F57F-4263-92D7-9A45201C962C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E90D18BC-DD35-4ABD-886C-F6945A76C282}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{D5A21253-6065-43EB-9D94-B34EECDF75FC}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{7129A17E-ECDB-4619-8995-02C95D0DAF1F}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{27B59990-B2E3-4C84-AFBC-F2970419D026}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{A75F1776-EBB8-449D-AB3F-B22D3753DA0D}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{22B1F8DE-0ABC-4820-8964-6056E7F0EF3E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1C8E77ED-C4AB-4901-B226-878B3267062E}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{3B943C5E-D25F-4F3A-9B74-214DBC1758F8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A2D6E861-527F-4D5E-A465-50C252AA1982}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{1EF2737E-3BAE-48F9-ACE7-E72A65DD5CE3}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{195A384E-D733-475A-A488-9AF3631C784C}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{BB742EE9-D63A-4682-BC43-F07DC686684D}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{4206018A-0E18-4A9C-9E1B-811C42D2CA4E}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{646F0ED3-387E-4EBE-BA00-A6E7D56B57C9}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{ACEC03CB-3D58-4453-8374-89ABEE1896E2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{AB64F535-EAC6-4271-A9EE-D0149B2752D5}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{A222A80E-F267-4902-9884-BDB32314303B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{7426F943-F5CE-4300-9540-C3BB073FA57B}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{7E40919B-3C91-48E9-BAA7-24D04CF041DF}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{3F966353-35E4-4EDD-9617-90174A1A452D}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{BAA07A5B-11F1-4EDC-864F-36339EB4F757}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{90802FA1-F741-4C39-A470-89EA321D2F87}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6F5A616B-6DD3-49E7-97B1-43020C8375C8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{501A7690-3E72-4072-92FF-F9E70B060590}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{29A0F0FC-7222-42D9-AB2A-5F9034E040EA}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1A4C0D92-EB73-4B52-8257-496E2940EAE7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FD3D61E1-23C5-4C2E-BF4D-CC827FED69D8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1CC698B1-DCA5-4BAF-A702-C6E210C50C60}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{ABC3F5DB-F143-4C9E-A10F-C10B527D9701}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D5C77562-D2C3-4744-BE3F-DE30CE3BF2C6}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{BF73FCB8-9D16-42BD-AA6E-5C9B8395ACE5}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{E66237E5-1A19-4125-B7B1-DBCDBFA04832}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{2F003132-C0BA-4E79-AB86-CE8B854F2789}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{46A3ED41-F5E2-4D7F-88BC-06111B34CF30}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{64107F71-6F82-41F8-8F67-8A4B9DAEB559}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{EC4D093D-F606-448D-8A2E-0E9899D4BACC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FD8F37D8-4291-4E8D-8FD2-888B90223F2E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{AF15EC75-99DB-4F64-BE5A-5B0D2819A0F4}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{ABCAA793-C904-40B9-954C-608BCFD3B15D}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{14FFB0BC-9B5D-4474-8CA9-F8B3744CECF6}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{2974F491-DED0-41A4-A7B1-B975E1A353E1}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{92FBBB4C-167C-44C1-94EE-0BA8C4913421}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{91B795B9-7596-4D99-93B0-161066D5CF30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B3D2C24E-5808-48D7-A3B9-E60D68E467AB}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{379C4AE5-44B5-4726-82D8-AE4EA8F32F7E}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{F6401BA6-6BB6-45BE-8683-F4A19C1BA3BF}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{9670A701-6B26-4104-88E1-1C40B9CC4385}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{A079A6B6-F693-40B9-99E1-C4CA3A29E47A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{BFD19B3D-85C5-4A31-9D94-E0BC8B2718C9}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{70E2A72F-5EC3-4950-A8D1-BB8953B9C466}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{125CA1AA-A907-46DD-931F-21BFCD5E524B}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{6FAB6E45-C831-4250-93C4-B8794F5E458B}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{A90C7FB3-0E28-435D-8177-B61DE3D99F34}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{F40CF036-52ED-4545-9498-85262D1D31AD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{78571A5C-3B2C-4D33-B644-EE0991EBC5CF}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{3A069527-1B35-44BF-9572-3D8ABFF57A58}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{C2AAD9AB-E52D-4DBB-8B25-AE6E174AF357}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{E2FFC4E8-D915-4332-9CFB-5DAD866E4204}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{881EC3F1-F51C-4F3A-ACA9-673CBC481D8F}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{F734E325-CF81-4FC8-AD8C-79B78C3764E0}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FC2D947D-5EBD-44AC-927F-B51F1C375DC8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{79F35426-002D-487D-811A-905CC1FF6526}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{A9709427-B5DE-44EE-A98A-388738092DBA}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{56FB4ED0-9410-49F5-B7B9-CD2FB9C9C4FB}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{73D605DF-6E95-482A-8B67-5838F2EF5612}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{585685F2-80BD-4F85-9AC8-7C7A04F574D3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C27CB324-AE91-4B9A-93E7-18A15476DFE7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{14947D9A-B387-4DF6-BE70-5B858BB0BFD1}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{F93A217D-6C9E-44C3-BCD3-A7FCD24128F2}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{4E9974AA-3933-4704-8D82-BE6AF0376857}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{06E31FAF-6051-4FA5-A761-6E66C3471775}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{1904E795-A285-4748-BAE8-651527DD0722}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{05B424C3-9511-47DB-B7B4-8CBFB965E4DB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C27A3A6A-0482-4BB4-9603-6125C0811782}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{CA160026-BE76-4124-94E5-BA5E80F6B710}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{C07F9F96-A5DF-4AFA-85A7-77AFE41CC8C5}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{91087938-4C5A-4F27-A929-B9123884776C}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{F2BF5E4E-581A-4E12-94CD-A717A1F3F9DA}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CB27A645-6BC1-411F-85A8-8A641E74870B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B29C608B-DA9A-4DAC-87A9-19FCD6838D83}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{55F5654F-A052-4E6D-BB93-ED32759AC534}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{08DA614A-B385-4B4E-83C9-5A214E5225FE}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{01A30484-AF8B-4FC7-9957-3D8A703E415F}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{8D7C0201-3227-434B-9F44-332E80E8BACD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{DFD0E2FB-DFC5-444A-BA74-7060EC36D68B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FC06B5C2-472C-4BF0-B88C-7FA993A235D9}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{0A4E49BC-8DB6-42B5-B748-27553AB648F4}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{35B898ED-3C31-4871-8484-4970C890085E}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{B1122636-377A-43C6-BFEE-CDB828696033}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{8E66C1C4-B472-44CF-80ED-41D0C1A6F221}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{ABFF4351-61B1-4CE3-8571-0FD1C29CDAC2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{14D349EA-3D00-4BED-9482-1FA0D8F13772}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{57BCC3F0-3864-4342-B8F8-A20F9BD8C913}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{36473FDB-1935-47AB-A29E-B73818D82F72}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{4FC1F7B0-74AC-47DD-9D4B-1B76EC5D5A13}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{BAFC50A7-BBFE-40CE-A259-BB6A026784C7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{977FD28E-EF0F-41B5-91B0-226E3435E2D5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CB789718-958E-4F04-BB6F-ABBC2740D869}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{BFB4A8C4-7C69-4718-AC39-B9ABD97D1862}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{628C9B3F-2859-43F7-9EDC-28225EC8B70F}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{151A6A48-4730-46D3-8DAB-5A683F0DC9D7}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{5A6959A8-25A8-468C-A028-958C1EC7BCAF}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CE9AB8BD-4D22-4FCD-BF36-224DAA89CB5F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{144D9C44-62E3-453B-BCD7-9D8C1C42375C}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{85FB4A7F-282A-48F6-AC8F-E74EA121D8D3}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{246B8959-AE56-41FB-A53A-B740CF03D55D}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{5FF87B2E-9C04-4AC4-B40A-2E940F5DD784}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{0D967742-5964-4223-B862-31B80D1D3F00}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9BE1FFA9-D79A-4919-BD2A-8A3F7F6E8E5A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{95683165-66A7-4964-BE30-F39E0BDBBBEA}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{A3E9CD4C-3505-4B15-9977-64B40D58CB70}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{28D9534A-570C-47D5-A0E3-6B0EA5C87BF9}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{823F975C-EAB2-4F3B-B5C7-5B9451447159}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{71DFD485-A594-4CAD-8F36-C96089656FE7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EB31F20F-952C-47D6-B411-9B5012B01552}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CACA7CAA-1FB8-486C-8FD5-715B92A74529}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{CC7D9238-09A2-4656-9DEE-5E4358C15A86}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{475E9B6F-86FE-4DF1-BD3C-F419F1800759}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{1285137E-35D1-438C-9F78-0C666EEECBD1}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{C2663027-A60D-4764-9D50-B47CBF989F30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6C06BA36-47CD-4669-AEF6-5FBD1CED98CD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{247C7636-9B21-4789-A5E9-0EBA8E57D604}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{1CFCAF42-D645-4B6B-BECA-8029E35379AB}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{4079853C-D726-48B4-B252-4D86493A366C}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{BC90B014-1255-43A5-91D9-D0265767BDA0}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{D1A9C147-60E0-4E26-BB65-F560C0EC34A4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FBB12B90-3B76-4C52-9B49-D2AA5FAD9284}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C321A11D-89A9-46E9-B9DF-2A279690A589}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{A3140F28-E3DE-42B4-A419-AC500B3683B5}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{61EB8FE9-FE00-40E5-B04B-B977109D067D}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{088F2785-5C52-41C1-A33E-ED2498A6E16B}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{185BD877-CD2A-4D46-AE9B-9FF4E61122CB}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{921DBBEF-BC7C-4A08-9408-B6619F5B9D47}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{AE104427-09B8-4C4C-B4DA-3BE4F4C7D595}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{17B5A820-19DE-43A7-B259-61C2BF089619}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F9D71A15-FCB0-4620-BF92-9EA55EDC165B}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{C1EC378F-9679-450E-B5E2-DDF05052C83E}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{32400829-10B6-4D30-ACEA-3DD396DF0C94}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{1CCA375A-C90A-424B-A219-6D52245F56FD}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{74C25D11-EC01-4FBC-BD6E-89DDE3A6FB2C}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{076FA383-CB4A-427A-91DD-D5D8EB7DA991}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{67F2B512-55C0-4BDE-9984-0D0169333366}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D463932E-697C-4532-B2DE-4D63002D7D41}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{68BC7CE8-A407-49E7-8EEB-E054C668CE4C}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{7A3B9061-3E9C-476B-A768-22CEE292F579}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{49184415-D670-4412-9EE6-638FB1D1E55C}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{A4D563FA-B1F3-4FBA-83CA-DEBBBCB6309F}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{78D041B9-59EE-4C5E-A132-B09A357B4E30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2E8E2059-DC2E-4DAE-A895-CEE3F2012EFE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EFABC81A-463A-4062-BC37-5F25FD79698F}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{EC7544D8-6730-432F-B0F8-80907C91EA91}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{80631A85-B022-476A-BADA-5884E20057E9}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{EE75E354-71CA-459A-8961-58915E5235B1}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{E2A7C011-3089-4734-BF26-54A8A9048A07}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8A8E5978-63BE-4E7D-B1A5-FDD43954F6F8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D08EBB5E-B825-4C07-A8B1-5CFDDF8BF9F4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D74959FA-80D9-4BCA-A9C3-CF3DE912108B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C63F5F99-298F-4DA1-BBB8-5084893005EB}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{26E5B6CE-CF8E-4A38-8251-A1DC61726D07}] => (Allow) C:\WINDOWS\TEMP\nfrv575A.tmp\svchost.exe No File
FirewallRules: [{948E66C1-80B5-4950-AC77-637A978AD0AC}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{E8E19F1D-D580-4135-A713-1E0BB16A4E8E}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{247995CD-88D6-45AB-BB9A-265D3A818E9C}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{11F5949B-8AAE-4047-8729-978F93FB9307}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{1EBAC70F-0ACB-4474-8B88-0D98A77EB9E9}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{30DC30E7-2358-45B7-B5F5-387A52822427}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{63FEA095-BCDB-4A33-844D-F1C06AEAE71E}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{2ED4A2B1-47A0-46A2-8ED8-571FA3814A95}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{EECC5A59-D7B7-4285-96E9-B762AE942181}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{4199CE13-FC7E-4594-A205-66849CCC75F6}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{03148D31-C8E4-4691-AF27-5E3F1CA57C41}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{F6D02D16-A240-4C67-A569-4F0B745FE380}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{F7E3332B-C1C7-4C68-8817-2ED2EA2439DA}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{6BA3E6A4-3532-4BA8-B66B-FD00E0FA8313}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{F7ED5A05-5592-4D8F-A744-D187226B470B}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{BC957CC6-413D-4A54-A045-D2E65DEF4C25}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{1F7F877E-5BFE-4207-BC36-FF01EE80257B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2063BC94-EDE8-4578-8D8B-4CA26BD356A9}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{304C9044-9904-4C90-98B2-0BACA6658666}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{8E3C99C9-B01C-4550-801C-57F694DEC5C3}] => (Allow) C:\WINDOWS\TEMP\steam.vbe No File
FirewallRules: [{5EF988B7-2DAD-4BA5-82EA-4384B96CDD74}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{E383C127-2EBC-4A17-9B51-ED985C50CBD3}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{373B7C1C-B906-4D0E-81D1-05B3CCA613A1}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{DCFFBE5F-DB35-4A01-8A54-124180DD619C}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{160DCC0F-2504-4772-A442-1143B505E709}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{30D9EA2B-AE03-4DEF-910A-31D23F6411E6}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{BDE07EA3-0B23-48C2-A496-0FE955F69252}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{D02A5F21-0417-4888-ABC4-388FC7BEB379}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{8A01CFAC-BC03-45ED-9D49-7210FD33D30C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CD27A17B-BE90-4ABD-9E86-82094689A0CC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E589992E-07B2-41AB-8DE8-F5B6F256CB44}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{1AEBF462-522A-4FA0-9056-424D91C37D6A}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{49FFE2F9-7A79-42D0-89AB-BDCDDFC8503F}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{18C1FF48-4CC7-4319-BE9C-CF433D4D617D}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{69FF0E25-4E7B-405A-8D54-6A041B9CA480}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{1B5B8486-EDB6-4D58-B537-9C53E8CA0B68}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{89D053B2-3142-4690-8DF1-1DD85C5EBFFB}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{4F77835E-A0F6-440E-AE47-1CC204648EF3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{803275FC-2BE9-4EAA-A8DD-C18D38631291}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{650068C5-D706-4AA2-8010-930A73023E3A}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{B8A7C324-E28A-44EF-8B16-8A6A8F2540DB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{05BC4E4A-9854-4F6F-8997-D10E48EA2E4A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{14E1F86F-0E66-410B-AD8C-A3B12B826171}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{7A90229A-9247-44C0-8BFA-47F2F92C9BC4}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{C5A68D68-ACB4-4042-A4A1-9291C49FDA08}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{CAAD6516-9983-45A8-B414-C0C13D5FCB2B}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{47FD5E18-B017-4C6E-BB89-AB1F0982BA4B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1D8546E4-9B74-461C-A5FE-A14C62702636}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8FC0661A-F8AB-467E-B65D-A1E93A0A0CF7}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{DACABB2C-BB82-4845-B4F2-E8492B0B23D5}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{DF0B8F67-4663-47A9-92C4-5F51ECDDE616}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{0814611E-9DC3-445A-8241-BDAA0DB63EE4}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{CA0A9F31-2997-43A4-B9D6-9AE888D25A86}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1A8EC6FC-10E0-486A-8044-23066A7D68BB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{25DAE10B-931E-4788-8699-FDABF09DE92F}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{8A0790D5-FE86-4F2E-A6C2-7DDFAF3843D6}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{A0BC8F22-1B92-474C-A98F-4E5DB3C73B5F}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{A15892B5-74F1-49C1-BB57-3FCDA1196BE4}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{2342B824-E68A-47A1-AFAF-D482F2168AE3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{41CB2B48-ECBC-4C84-8360-C10609D375F5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{5BC0A8B3-9791-4E1E-8113-2F6B3AFDE897}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{08E135E4-03DE-452C-89C1-067203AD4914}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{4D9C0513-CAAF-40AF-BBD7-D8A739AB5CB3}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{C72F7040-B252-400E-990C-70DE57C7F124}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{F2826CCE-A9E0-4E40-B742-1543E0861D4D}] => (Allow) c:\program files (x86)\opera\62.0.3331.99\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{23EB1D4C-4E6C-46BF-A41A-9818570EAA33}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{66E28081-16D0-464C-8A5C-D2C41BD2885A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{926662A4-B6B3-4843-8C5E-494DB73EB019}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D881B31B-EF63-42AB-BA76-DEF883BAA8BC}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{0C7AC2E2-1B2A-42C3-BA84-1C635660A009}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{6090186F-52F0-4DA4-82CB-0660EE8932D5}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{DF0A17D8-4572-4CBF-8023-0491A14FF8FA}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{63C5FFA5-0E15-4B5A-8550-4EBF1F347DC4}] => (Allow) c:\program files (x86)\opera\62.0.3331.116\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{914581FD-C1C1-488A-9055-A7EC052366F0}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6B402BBC-56A8-4686-A5F6-CCEF59939FDC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{24A02407-6325-485A-9912-42D3237896D6}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{8648D2FC-2523-47C4-817C-6BD535BB6BCD}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{95A668B0-7643-4EEE-BEA8-AD78A7AE8D5C}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{3196EA60-70CC-4A34-A862-660A3719FC4A}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{68176118-548D-4B2D-B51F-176570ED0C77}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C8790AD1-8A9F-4625-803A-3E2961C9B2B3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{15CFA486-38AD-4D6D-886C-EBE9AD001FA8}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{88291BA1-ED84-4B99-9446-B7F56354E638}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{4A20E358-0017-4174-B0A8-0668D5F21726}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{6F56511E-0178-4C25-BF74-B19336E3163C}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{F4327D52-292B-401A-BB7E-5F91F1B10EC0}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A873F155-EE8A-4DDB-952F-533A7D5D9072}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{7C3F16CA-412C-475E-AB96-80590DA26F05}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{EC3ED90E-7B32-4684-B3F6-B056589AE0E3}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{E0CF9490-6A7B-4FBF-9F37-2792931137A2}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{9D496F7A-CCD8-46E7-9293-0B7D672BC593}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{D041BBF8-2126-4C45-853B-0AD972B099AD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D75ACA00-6D97-479B-AA78-1A0F4D0681A5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CE52619A-C784-4224-9EC2-C967870FE249}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{85BDDB1B-F644-4705-80DC-157A1C9DBCEE}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{88B795A8-FE75-41A6-83B6-8506D90FE057}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{E46AFDD1-7C7B-4B3C-BDF8-422798A5A08F}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{13FAB2C8-673C-4A83-8253-53E9E5C3EC98}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C88F7E99-B73C-408E-B7A6-E82E39F6CC13}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{7E83A6D5-B628-4D10-9A7C-2C60AE7C3222}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{4A84CBE7-0939-4841-9D01-7C80BFB11833}] => (Allow) C:\WINDOWS\TEMP\gsrk357Y.tmp\nvtray.exe No File
FirewallRules: [{6FD96676-EED3-4901-9073-FD1E59E8F909}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File
FirewallRules: [{E9C079CF-B343-41FF-9BF1-4CDD0B88CDC0}] => (Allow) C:\WINDOWS\TEMP\rlab142X.tmp\lsass.exe No File

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:118.24 GB) (Free:9.77 GB) (8%)

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/07/2019 06:10:19 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: Petr-PC)
Description: httphttp-2147467263

Error: (08/07/2019 06:00:51 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: Petr-PC)
Description: httphttp-2147467263

Error: (08/04/2019 09:43:01 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AUEPMaster.exe, verze: 1850.31.1.326, časové razítko: 0x5c9af04c
Název chybujícího modulu: AUEPMaster.exe, verze: 1850.31.1.326, časové razítko: 0x5c9af04c
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000006b42
ID chybujícího procesu: 0x6bc
Čas spuštění chybující aplikace: 0x01d54444b891a30d
Cesta k chybující aplikaci: C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
Cesta k chybujícímu modulu: C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
ID zprávy: 11c70491-bfa8-4d6b-a791-645a9720b28e
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (08/01/2019 11:15:43 AM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: Petr-PC)
Description: httphttp-2147467263

Error: (07/31/2019 10:16:18 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: Petr-PC)
Description: httphttp-2147467263

Error: (07/26/2019 02:11:22 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: Petr-PC)
Description: httphttp-2147467263

Error: (07/23/2019 11:07:01 AM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: Petr-PC)
Description: httphttp-2147467263

Error: (07/22/2019 08:20:08 AM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: Petr-PC)
Description: httphttp-2147467263


System errors:
=============
Error: (08/13/2019 08:25:56 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Launch pro serverovou aplikaci COM s identifikátorem CLSID 
Windows.SecurityCenter.WscBrokerManager
 a APPID 
Unavailable
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/13/2019 08:23:54 AM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba VMware Workstation Server skončila s následující chybou specifickou pro službu: 
%%4294967295

Error: (08/13/2019 08:23:54 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění application-specific neuděluje oprávnění Local Activation pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli NT AUTHORITY\NETWORK SERVICE (SID: S-1-5-20) z adresy LocalHost (Using LRPC) běžící v kontejneru aplikací Unavailable – SID (Unavailable). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (08/13/2019 08:23:41 AM) (Source: volmgr) (EventID: 46) (User: )
Description: Inicializace výpisu stavu systému se nezdařila.

Error: (08/13/2019 08:23:25 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD User Experience Program Launcher byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/13/2019 03:15:12 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (08/13/2019 03:15:10 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (08/13/2019 03:15:08 AM) (Source: Disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.


CodeIntegrity:
===================================

Date: 2019-08-07 17:55:51.508
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.17.3.50\BuShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-08-07 17:55:51.479
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.17.3.50\BuShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-08-07 17:55:51.458
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.17.3.50\BuShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-08-07 17:55:51.305
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll that did not meet the Microsoft signing level requirements.

Date: 2019-08-07 17:55:51.228
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.17.3.50\BuShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-08-07 17:55:51.214
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.17.3.50\BuShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-08-07 17:55:51.201
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.17.3.50\BuShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-07-31 22:08:58.641
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.17.3.50\BuShell.dll that did not meet the Microsoft signing level requirements.

==================== Memory info =========================== 

BIOS: American Megatrends Inc. 0501 09/28/2012
Motherboard: ASUSTeK COMPUTER INC. P8Z77-V LX2
Processor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz
Percentage of memory in use: 21%
Total physical RAM: 16336.44 MB
Available physical RAM: 12754.92 MB
Total Virtual: 16336.44 MB
Available Virtual: 11734.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:118.24 GB) (Free:9.77 GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:116.92 GB) NTFS
Drive l: () (Removable) (Total:0.49 GB) (Free:0.05 GB) FAT32

\\?\Volume{51991546-62f6-11e2-9ae3-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
\\?\Volume{e1e29c8c-0000-0000-0000-70951d000000}\ () (Fixed) (Total:0.91 GB) (Free:0.45 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: E1E29CF1)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 119.2 GB) (Disk ID: E1E29C8C)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=928 MB) - (Type=27)

========================================================
Disk: 2 (Size: 500 MB) (Disk ID: 8CBEC8FD)
Partition 1: (Active) - (Size=500 MB) - (Type=0B)

==================== End of Addition.txt ============================