Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-09-2019 01
Ran by mefi (20-09-2019 21:03:53)
Running from C:\Users\mefi\Desktop
Windows 7 Ultimate Service Pack 1 (X64) (2017-10-03 19:56:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3057012151-2773983546-2752199-500 - Administrator - Disabled)
Guest (S-1-5-21-3057012151-2773983546-2752199-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3057012151-2773983546-2752199-1002 - Limited - Enabled)
mefi (S-1-5-21-3057012151-2773983546-2752199-1000 - Administrator - Enabled) => C:\Users\mefi

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-3057012151-2773983546-2752199-1000\...\uTorrent) (Version: 3.5.5.45311 - BitTorrent Inc.)
7-Zip 18.01 (x64) (HKLM\...\7-Zip) (Version: 18.01 - Igor Pavlov)
AccelerometerP11 (HKLM-x32\...\{87434D51-51DB-4109-B68F-A829ECDCF380}) (Version: 2.00.10.33 - STMicroelectronics)
Adobe Lightroom Classic CC (HKLM-x32\...\LTRM_8_2) (Version: 8.2 - Adobe Systems Incorporated)
Aplikace Intel® PROSet/Wireless (HKLM-x32\...\{b6b417a3-1f40-4618-aadd-49628bda7836}) (Version: 16.1.1 - Intel Corporation)
Citrix Receiver 4.11 (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 14.11.0.17061 - Citrix Systems, Inc.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.6.0.0283 - Disc Soft Ltd)
Dell Custom Help (HKLM\...\{BE1CF6CA-3182-45D8-9535-A18055B73607}) (Version: 16.01.1000.0235 - Intel Corporation) Hidden
Dell Feature Enhancement Pack (HKLM\...\{992D1CE7-A20F-4AB0-9D9D-AFC3418844DA}) (Version: 2.2.1 - Dell)
Dell System Detect (HKU\S-1-5-21-3057012151-2773983546-2752199-1000\...\d24084d039586cae) (Version: 8.8.0.1 - Dell)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.1200.101.134 - ALPS ELECTRIC CO., LTD.)
foobar2000 v1.4.6 (HKLM-x32\...\foobar2000) (Version: 1.4.6 - Peter Pawlowski)
Free Alarm Clock (HKLM-x32\...\{8ED5A2F1-338F-4608-8AF7-BCD1ADC1E1F7}_is1) (Version: 4.0.1.0 - Comfort Software Group)
GigaPan 2.1.0161 (HKLM-x32\...\{49A9B72E-7690-4F97-A5A9-DCBFFDCD0D0E}) (Version: 2.1.0161 - GigaPan)
Git version 2.15.1.2 (HKLM-x32\...\Git_is1) (Version: 2.15.1.2 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 76.0.3809.132 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6491.0 - IDT)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.11.1193 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 18.1 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4653 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.8.251 - Intel Corporation)
IntelliJ IDEA 173.3531.6 (HKLM-x32\...\IntelliJ IDEA 173.3531.6) (Version: 173.3531.6 - JetBrains s.r.o.)
IntelliJ IDEA Community Edition 183.4284.36 (HKLM-x32\...\IntelliJ IDEA Community Edition 183.4284.36) (Version: 183.4284.36 - JetBrains s.r.o.)
Jagged Alliance 2 Classic HD version 1.0 (HKLM-x32\...\Jagged Alliance 2 Classic HD_is1) (Version: 1.0 - TopWare Interactive)
Java 8 Update 221 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180221F0}) (Version: 8.0.2210.11 - Oracle Corporation)
Java SE Development Kit 8 Update 152 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180152}) (Version: 8.0.1520.16 - Oracle Corporation)
LibreOffice 5.4.5.1 (HKLM\...\{7E33997B-06D8-4637-8794-5A0049237308}) (Version: 5.4.5.1 - The Document Foundation)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Camera Codec Pack (HKLM\...\{F908EE66-091D-447B-85B1-2FC0A85A2444}) (Version: 6.3.9723.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{d2c8df0e-f15d-4426-9e51-f13f329f9cb4}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.15.26706 (HKLM-x32\...\{95ac1cfa-f4fb-4d1b-8912-7f9d5fbb140d}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (HKLM-x32\...\{7e9fae12-5bbf-47fb-b944-09c49e75c061}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mozilla Firefox 66.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 66.0.2 (x64 cs)) (Version: 66.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0 - Mozilla)
Node.js (HKLM\...\{9CB432A8-2DC4-4AA3-BF63-9A2AE489B167}) (Version: 6.11.4 - Node.js Foundation)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.5.5 - Notepad++ Team)
Online Plug-in (HKLM-x32\...\{796E07BC-0434-42BA-8A53-A65882562CB9}) (Version: 14.11.0.17061 - Citrix Systems, Inc.) Hidden
OpenShot Video Editor verze 2.4.1 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 2.4.1 - OpenShot Studios, LLC)
Pharaoh Gold (HKLM-x32\...\1207659046_is1) (Version: 2.1.0.15 - GOG.com)
RawTherapee verze 5.3 (HKLM\...\RawTherapee5.3_is1) (Version: 5.3 - rawtherapee.com)
RimWorld CZ ALI213 v.1.0.2096 (HKLM-x32\...\RimWorld CZ ALI213 v.1.0.2096) (Version: ALI213 v.1.0.2096 - Libbi)
RtC Wolfenstein CZ v.1.0 (HKLM-x32\...\RtC Wolfenstein CZ v.1.0) (Version: v.1.0 - Libbi)
Samsung ML-371x Series (HKLM-x32\...\Samsung ML-371x Series) (Version: 1.33 (1.8.2017) - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Self-service Plug-in (HKLM-x32\...\{CB2DE5E8-30AB-44AB-B3F5-4B6F2B06E11C}) (Version: 4.11.0.36 - Citrix Systems, Inc.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sublime Text Build 3143 (HKLM\...\Sublime Text 3_is1) (Version:  - Sublime HQ Pty Ltd)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.12 - Ghisler Software GmbH)
TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation)
Uplay (HKLM-x32\...\Uplay) (Version: 43.1 - Ubisoft)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN)
WIDCOMM Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4000 - Broadcom Corporation)
WinX YouTube Downloader (HKLM-x32\...\WinX YouTube Downloader) (Version: 5.2 - Digiarty, Inc.)
Yarn (HKLM-x32\...\{A8BB35DC-B87F-48B3-ABDA-6731626D8CB3}) (Version: 1.1.0 - Yarn Contributors)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3057012151-2773983546-2752199-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-3057012151-2773983546-2752199-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll => No File
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2018-02-27] (Notepad++ -> )
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2017-10-21] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] (Adobe Systems Incorporated -> )

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

==================== Loaded Modules (Whitelisted) ==============

2018-02-04 11:12 - 2018-01-28 17:00 - 000075776 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2017-10-04 23:25 - 2013-02-23 03:38 - 000073728 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.dll
2017-10-15 22:57 - 2014-12-22 14:54 - 000110207 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\FreeAlarmClock\bass.dll
2017-10-15 22:57 - 2014-11-28 15:54 - 000021772 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\FreeAlarmClock\bassflac.dll
2017-10-15 22:57 - 2014-10-20 15:08 - 000017733 _____ (Un4seen Developments) [File not signed] C:\Program Files (x86)\FreeAlarmClock\basswma.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3057012151-2773983546-2752199-1000\...\barclays.com -> hxxps://myworkspace.barclays.com
IE trusted site: HKU\S-1-5-21-3057012151-2773983546-2752199-1000\...\dell.com -> dell.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\WIDCOMM\Bluetooth Software\;C:\Program Files\WIDCOMM\Bluetooth Software\syswow64;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Yarn\bin;C:\Program Files\nodejs\;C:\Program Files (x86)\Git\cmd
HKU\S-1-5-21-3057012151-2773983546-2752199-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\mefi\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.31.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E6A012D9-6AED-45D9-AB98-992056000E30}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation-Mobile Wireless Group -> )
FirewallRules: [TCP Query User{206EB4DC-4B9A-49B3-9AE7-8AA48C8840CC}C:\users\mefi\documents\octgn\octgn\octgn.exe] => (Allow) C:\users\mefi\documents\octgn\octgn\octgn.exe (Octgn) [File not signed]
FirewallRules: [UDP Query User{9A4B28EC-3E06-4FFF-B630-6D0D4878A160}C:\users\mefi\documents\octgn\octgn\octgn.exe] => (Allow) C:\users\mefi\documents\octgn\octgn\octgn.exe (Octgn) [File not signed]
FirewallRules: [{C1742BFB-8AF9-476C-8EFE-7D9FBDBC207C}] => (Block) C:\users\mefi\documents\octgn\octgn\octgn.exe (Octgn) [File not signed]
FirewallRules: [{50712F9F-842F-49BB-A36B-214A465FB318}] => (Block) C:\users\mefi\documents\octgn\octgn\octgn.exe (Octgn) [File not signed]
FirewallRules: [{AD34F9B9-870B-42EE-B06C-CFCB1412237F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{A7F6115E-7B55-4394-ADC2-749F2BC03EED}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{4C874B84-ACF4-45B0-9B57-5FA480BF992C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{D1461370-5C26-49E2-990D-47A2B57A75C5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{4C75EA0C-7558-48C0-AE6D-7505060AD1F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spelunky\Spelunky.exe () [File not signed]
FirewallRules: [{828708F0-2903-445B-A9D4-3E2FDD151938}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spelunky\Spelunky.exe () [File not signed]
FirewallRules: [{BCA2D6F3-8369-40F7-8874-43B423C47B36}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe () [File not signed]
FirewallRules: [{9C18FE91-AC2B-4D31-A22B-3CBEF6D43177}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe () [File not signed]
FirewallRules: [{CC3605B5-44AD-4DED-A9E7-90F0A61F5BC3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TheBridge\The Bridge.exe (Ty Taylor and Mario Castaneda) [File not signed]
FirewallRules: [{E908CA5D-0C7B-4AF6-B508-0E5E16067A7B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TheBridge\The Bridge.exe (Ty Taylor and Mario Castaneda) [File not signed]
FirewallRules: [TCP Query User{E129FDBD-89C1-4098-BA6D-05AA5523542B}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js)
FirewallRules: [UDP Query User{5DD70E6F-FB81-4E6A-924A-FA7BA1BD235C}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js)
FirewallRules: [{C815CAE8-EA79-4AE3-8328-7A328A4396D4}] => (Allow) C:\Users\mefi\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{1693B31C-70CF-45E1-9437-62A2324099DB}] => (Allow) C:\Users\mefi\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{36F6992D-1304-41B2-9350-6ADC4E728159}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dark Train\DarkTrain.exe () [File not signed]
FirewallRules: [{60B36DEE-0C6B-4914-A475-67FCDE2BCDC0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dark Train\DarkTrain.exe () [File not signed]
FirewallRules: [{06EF0C69-4BA9-4A2B-AB7A-26D381196720}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FCAFC7EF-9710-47F7-BD20-15C4C24D7153}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{3FE3D1BB-73EE-49EA-8934-623D0E7C7B7E}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js)
FirewallRules: [UDP Query User{D466757D-B3B9-4F18-9E43-103CD42FF653}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js)
FirewallRules: [{A46F93B7-A343-45DE-B9CE-13FB2D856E1B}] => (Allow) D:\Games\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe No File
FirewallRules: [{9A1BB08A-F113-4CF5-9D4A-823E6324B3AA}] => (Allow) D:\Games\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe No File
FirewallRules: [{24EB42E8-A595-4BA8-AA99-2E44A7FA6714}] => (Allow) D:\Games\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe No File
FirewallRules: [{D4807751-6480-46CA-87EB-8B79CF625348}] => (Allow) D:\Games\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe No File
FirewallRules: [TCP Query User{E86DAB0C-3D68-4142-A83F-1E30860DFA86}C:\program files\openshot video editor\launch.exe] => (Allow) C:\program files\openshot video editor\launch.exe () [File not signed]
FirewallRules: [UDP Query User{2FD1AF0B-9C43-48AD-BCD4-F9259637966C}C:\program files\openshot video editor\launch.exe] => (Allow) C:\program files\openshot video editor\launch.exe () [File not signed]
FirewallRules: [{F061EA08-8E36-4B5F-A0B5-0FAC5151E34A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{8A35E001-ADA5-4D92-A31C-9DF9FD4A3121}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{D0EEB38A-C6E3-444E-8FBE-0010C4EB45BC}C:\program files\jetbrains\intellij idea community edition 183.4284.36\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea community edition 183.4284.36\jre64\bin\java.exe
FirewallRules: [UDP Query User{737BA29C-C714-4283-AC52-B34ABEDA7AE5}C:\program files\jetbrains\intellij idea community edition 183.4284.36\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea community edition 183.4284.36\jre64\bin\java.exe
FirewallRules: [TCP Query User{00820D18-128B-4B7C-BF4B-D1EDB3223181}C:\program files\jetbrains\intellij idea community edition 183.4284.36\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea community edition 183.4284.36\bin\idea64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [UDP Query User{E3C29888-3EC0-44BE-AA89-E7C70BAA2220}C:\program files\jetbrains\intellij idea community edition 183.4284.36\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea community edition 183.4284.36\bin\idea64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [{9A9D2518-E0C3-42E1-AF56-8E79A3A26978}] => (Allow) D:\Games\steamapps\common\Scythe Digital Edition\Scythe.exe () [File not signed]
FirewallRules: [{A89E53B8-572D-48B1-AFC0-892E7934A9D1}] => (Allow) D:\Games\steamapps\common\Scythe Digital Edition\Scythe.exe () [File not signed]
FirewallRules: [{2D25891E-31D0-4EE5-8BD5-2B49CD755164}] => (Allow) D:\Games\steamapps\common\Owlboy\Owlboy.exe (D-Pad Studio) [File not signed]
FirewallRules: [{F2184989-B53F-4338-AA6F-30615162C686}] => (Allow) D:\Games\steamapps\common\Owlboy\Owlboy.exe (D-Pad Studio) [File not signed]
FirewallRules: [{2F12D0D8-DFAB-48A6-A033-67DB1F8A1BAA}] => (Allow) D:\Games\steamapps\common\Portal\hl2.exe (Valve -> )
FirewallRules: [{40A9E571-057A-4798-98A4-CFD04364538D}] => (Allow) D:\Games\steamapps\common\Portal\hl2.exe (Valve -> )
FirewallRules: [{D95E85CD-D2F6-4CAD-BF9C-9F8311304FD0}] => (Allow) D:\Games\steamapps\common\Twilight Struggle\TwilightStruggle.exe () [File not signed]
FirewallRules: [{44DDADC5-AAA6-4017-B1D9-4C84DFBE6D35}] => (Allow) D:\Games\steamapps\common\Twilight Struggle\TwilightStruggle.exe () [File not signed]
FirewallRules: [{9070D088-EDE0-48C9-8F9F-129C673E9BEF}] => (Allow) D:\Games\steamapps\common\Type Rider\TypeRider.exe () [File not signed]
FirewallRules: [{98D79B63-812D-42B0-ACAF-D5065261753F}] => (Allow) D:\Games\steamapps\common\Type Rider\TypeRider.exe () [File not signed]
FirewallRules: [{43673BC5-2559-45F8-BBCC-84D2F7914D68}] => (Allow) D:\Games\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe (Obsidian Entertainment, Inc. -> Obsidian Entertainment, Inc.)
FirewallRules: [{93D877D7-0878-488D-883B-E8A4F1D16664}] => (Allow) D:\Games\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe (Obsidian Entertainment, Inc. -> Obsidian Entertainment, Inc.)
FirewallRules: [{6DA63FD1-C37E-4778-970A-6EEE4A96A557}] => (Allow) D:\Games\steamapps\common\Islanders\ISLANDERS.exe () [File not signed]
FirewallRules: [{FEEDA2C7-D65A-4379-B392-D547B5E26A3F}] => (Allow) D:\Games\steamapps\common\Islanders\ISLANDERS.exe () [File not signed]
FirewallRules: [{EEE54B57-E6D3-41EC-B991-9D5FC48F7B9B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/20/2019 08:51:57 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/16/2019 07:44:33 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/15/2019 08:05:23 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/14/2019 09:46:01 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/14/2019 08:56:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/11/2019 07:51:22 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/08/2019 10:26:04 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Lightroom.exe verze 7.0.0.10 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: fb8

Čas spuštění: 01d5661f01fae3b7

Čas ukončení: 5

Cesta k aplikaci: C:\Program Files (x86)\Adobe\Adobe Lightroom Classic CC\Lightroom.exe

ID hlášení: 4614a328-d212-11e9-ba4e-74e5434e8dd5

Error: (09/08/2019 10:25:20 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.


System errors:
=============
Error: (09/20/2019 08:53:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (09/20/2019 08:53:12 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).

Error: (09/20/2019 08:51:57 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo: 
cdrom

Error: (09/20/2019 08:51:19 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (09/20/2019 08:51:19 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (09/20/2019 08:51:19 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (09/20/2019 08:51:16 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (09/20/2019 08:51:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) PROSet/Wireless Zero Configuration Service byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
===================================
Date: 2019-08-11 02:25:10.705
Description: 
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{BD6F0639-159D-4B78-A0CA-F90425EA94EE}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:NT AUTHORITY\NETWORK SERVICE

Date: 2019-03-15 11:06:03.656
Description: 
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{2275EEC5-4C58-46D6-B268-A357C9EF266F}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:NT AUTHORITY\NETWORK SERVICE

Date: 2019-02-28 09:47:40.711
Description: 
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{8EEDB205-B18B-42B6-A565-A5D5FAFE4617}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání
Uživatel:NT AUTHORITY\NETWORK SERVICE

Date: 2019-05-23 19:49:53.983
Description: 
Modul programu %1 byl ukončen v důsledku neočekávané chyby.
Typ chyby:%5
Kód výjimky:%6
Zdroj:%3

Date: 2018-07-11 20:53:58.325
Description: 
Program Windows Defender zjistil chybu při pokusu o aktualizaci.
Nová verze podpisu:1.271.751.0
Předchozí verze podpisu:1.269.1075.0
Zdroj aktualizace:Uživatel
Typ podpisu:Antispywarový program
Typ aktualizace:Delta
Uživatel:NT AUTHORITY\SYSTEM
Aktuální verze modulu:1.1.15000.2
Předchozí verze modulu:1.1.14901.4
Kód chyby:0x80070666
Popis chyby:Již je nainstalována jiná verze tohoto produktu. Instalaci této verze nelze dokončit. Chcete-li znovu nakonfigurovat nebo odebrat existující verzi produktu, použijte ovládací panel Přidat nebo odebrat programy. 

Date: 2018-07-11 20:53:58.324
Description: 
Program Windows Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu:1.1.15000.2
Předchozí verze modulu:1.1.14901.4
Zdroj aktualizace:Uživatel
Uživatel:NT AUTHORITY\SYSTEM
Kód chyby:0x80070666
Popis chyby:Již je nainstalována jiná verze tohoto produktu. Instalaci této verze nelze dokončit. Chcete-li znovu nakonfigurovat nebo odebrat existující verzi produktu, použijte ovládací panel Přidat nebo odebrat programy. 

Date: 2018-01-17 00:50:56.033
Description: 
Modul programu %1 byl ukončen v důsledku neočekávané chyby.
Typ chyby:%5
Kód výjimky:%6
Zdroj:%3

Date: 2018-01-13 05:31:02.754
Description: 
Modul programu %1 byl ukončen v důsledku neočekávané chyby.
Typ chyby:%5
Kód výjimky:%6
Zdroj:%3

==================== Memory info =========================== 

BIOS: Dell Inc. A20 05/08/2017
Motherboard: Dell Inc. 0KFR9H
Processor: Intel(R) Core(TM) i7-3520M CPU @ 2.90GHz
Percentage of memory in use: 49%
Total physical RAM: 8097.07 MB
Available physical RAM: 4059.26 MB
Total Virtual: 15786.81 MB
Available Virtual: 11632.48 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:123.82 GB) (Free:0.99 GB) NTFS
Drive d: (Data) (Fixed) (Total:341.84 GB) (Free:8.09 GB) NTFS
Drive e: (Photoshop CC 201) (CDROM) (Total:1.72 GB) (Free:0 GB) CDFS

\\?\Volume{c0f0c75e-a873-11e7-b8f8-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 54FD8602)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=123.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=341.8 GB) - (Type=0F Extended)

==================== End of Addition.txt ============================