Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Aplikace v pozadí

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Einee
Návštěvník
Návštěvník
Příspěvky: 38
Registrován: 22 kvě 2012 19:48

Aplikace v pozadí

#1 Příspěvek od Einee »

Dobrý den, na NTB jsem si po X letech stáhl jednu nostalgickou hru, která obsahovala všechny patche, češtinu atd.. ale bohužel asi i něco jiného, jelikož od té doby je NTB zpomalenější, nežli dříve.
W3 stažena zhruba před týdnem, a před pár dny provedena i defragmentace disku a čištění přes CClean, ale bohužel bez zlepšení. Navíc se po spuštění počítače spustí chrome s nějakou reklamní stránkou s bannery, ale řekl bych, že toho na pozadí běží daleko více, protože to neustále chroupe a občas vyskakuje příkazový řádek. (Co se v něm objeví bohužel v rychlosti nestihnu postřehnout)
Vkládám log z FRST a addition. Mnohokrát děkuji za případnou radu.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2019 02
Ran by vojte_000 (administrator) on EINEE (ASUSTeK COMPUTER INC. X550VB) (17-10-2019 22:39:31)
Running from C:\Users\vojte_000\Downloads
Loaded Profiles: vojte_000 (Available Profiles: vojte_000)
Platform: Windows 8.1 (Update) (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Apple Inc. -> Apple, Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTeK Computer Inc. -> AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(ASUSTeK Computer Inc. -> AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(ASUSTeK Computer Inc. -> AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Atheros) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Comodo Security Solutions -> ) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(CyberLink -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Qualcomm Atheros -> ) [File not signed] C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Realtek Semiconductor Corp -> Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13550152 2013-05-30] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1308232 2013-05-20] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2462536 2014-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\nvspcap64.dll [2800296 2014-10-04] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed]
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2017-05-09] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\ecmdS.exe [180736 2019-10-16] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2013-05-01] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) [File not signed]
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [3576784 2012-12-19] (ASUS Cloud Corporation -> ASUS Cloud Corporation)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink -> CyberLink Corp.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694320 2015-02-15] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => D:\office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132736 2013-03-27] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd -> Disc Soft Ltd)
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Run: [GarenaPlus] => "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Run: [Spotify] => C:\Users\vojte_000\AppData\Roaming\Spotify\Spotify.exe [24313232 2018-07-06] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [52142720 2016-04-29] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Run: [Spotify Web Helper] => C:\Users\vojte_000\AppData\Roaming\Spotify\SpotifyWebHelper.exe [781712 2018-07-06] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-05-08] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2019-05-08] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\MountPoints2: {47f70018-0af8-11e8-bf19-240a6488d734} - "G:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\MountPoints2: {a273621c-7fa9-11e8-bf31-d850e61d86c7} - "G:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\MountPoints2: {d536d16e-987c-11e3-be7d-240a6488d734} - "F:\setup_stronghold_crusader_extreme_hd_2.0.0.6.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\Installer\chrmstp.exe [2019-10-16] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.81\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-03-27] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-03-27] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [178632 2014-12-13] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation)
AppInit_DLLs: ,C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [178632 2014-12-13] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [165760 2014-12-13] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\updateSteam.bat [2018-02-04] () [File not signed]
Startup: C:\Users\vojte_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk [2014-11-09]
ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [File not signed]
GroupPolicy: Restriction - Chrome <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0DDB73BB-E9A8-48C7-85F5-43E1321ED4B3} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {15366E5F-F21C-4B57-8BFC-AC997937505F} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [176240 2013-02-26] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {1F8A4456-0FF8-4351-A61E-AA0F57A6A394} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {265B5469-2FE5-4A2C-9FCE-47EC8FAB5A7E} - System32\Tasks\ASUS InstantOn Config => C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1196416 2012-10-24] (ASUSTeK Computer Inc. -> ASUS)
Task: {29C30A11-858F-43A0-8A38-B3C820D77EE4} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240 2012-08-24] (ASUSTeK Computer Inc. -> ASUS)
Task: {2A69C64C-B955-485D-99B1-6ACBDD8CE936} - System32\Tasks\GoogleUpdateTaskMachineCore1d0adc5bd8a892f => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {2AA6863D-DF44-4FF0-93CF-FE4589ABC8F2} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {2E1FB059-3ECC-4522-9FCB-D5EED580E5FE} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54488 2012-11-28] (ASUSTeK Computer Inc. -> ASUS)
Task: {3141AAC7-DE44-4B29-9D2D-F58CA6F46ABD} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
Task: {33FF941E-838C-4990-BF6F-C9DC57B0A899} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bffa25fe3bbe => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {429AC1F0-8765-40D6-ADF6-BA1023B77978} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {58A1AE81-FA15-46DF-98FB-BC813EFE50F1} - System32\Tasks\GoogleUpdateTaskMachineUA1d1ab94175cd5be => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {6811FE29-875C-42D4-AED5-C92281E2F0D2} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [1957040 2013-01-04] (ASUSTeK Computer Inc. -> ) [File not signed]
Task: {6BA34AAC-228D-41EC-9344-0C428496CBA0} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-2166135838-3799228312-1979866301-1002 => {F063A606-6748-4B89-82A0-3D19D94CE8D3} C:\Windows\System32\VaultRoaming.dll [92672 2014-10-29] (Microsoft Windows -> Microsoft)
Task: {6EBFE60F-F945-4D0F-8FD1-1AE87DA7F1E8} - System32\Tasks\GoogleUpdateTaskMachineUA1d1e9a21f4a44e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {71A4028F-FAAC-4ADD-A8D5-834D462CF090} - System32\Tasks\GoogleUpdateTaskMachineCore1d0e14b11a6d8c9 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {7C0C03ED-4D20-4255-B657-BB8A2195D44E} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {94CD9053-54E4-4574-ADC3-46C128E1EEF8} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {9E8067D5-3F47-4D19-B99C-C04117198AD5} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1559936 2012-08-22] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {9FCA8BD4-07E3-406A-87EF-090FD1F0F860} - System32\Tasks\GoogleUpdateTaskMachineUA1d12cc438903531 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {AC39BCF1-53BC-4E54-911A-5EAA8299EF0D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {BC8CEA6C-F195-410A-8300-A52B2D21268E} - System32\Tasks\GoogleUpdateTaskMachineCore1d0f2ba4ef0f53 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {D0BC98EB-68DA-40B9-A568-B0AAC507FDBE} - System32\Tasks\GoogleUpdateTaskMachineUA1d0adc55727ba2 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {D24693DD-FC44-4634-8056-681D7F6D6E32} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [18232 2013-06-28] (ASUSTeK Computer Inc. -> AsusTek)
Task: {E353413D-001A-41C0-B954-C93C0211869C} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1124032 2012-09-18] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {E8DFD93A-5A56-41D9-A99C-ED2D842A1FBB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-23] (Google Inc -> Google Inc.)
Task: {F50F9C5A-8AB7-403A-AEC2-E4D19BF05AAA} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0adc5bd8a892f.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bffa25fe3bbe.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e14b11a6d8c9.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0adc55727ba2.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d12cc438903531.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d1ab94175cd5be.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 62.182.234.11 8.8.8.8
Tcpip\..\Interfaces\{3ACD9553-09DC-4A58-8DC8-ABF56CA546A5}: [DhcpNameServer] 62.182.234.11 8.8.8.8
Tcpip\..\Interfaces\{5D795A39-4066-4DDC-9157-21AFCDB2D7CB}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{5D795A39-4066-4DDC-9157-21AFCDB2D7CB}: [DhcpNameServer] 62.182.234.11 8.8.8.8

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com
SearchScopes: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-03-27] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxp://kitchenplanner.ikea.com/CZ/Core/Player/2020PlayerAX_IKEA_Win32.cab
Handler-x32: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll [2014-02-23] (Adobe Systems Incorporated -> )
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [No File]
FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-02-15] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll [2014-02-23] (Adobe Systems Incorporated -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.301\npGoogleUpdate3.dll [2019-10-09] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.301\npGoogleUpdate3.dll [2019-10-09] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> D:\VLC\npvlc.dll [2014-07-23] (VideoLAN) [File not signed]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-02-15] (Adobe Systems Incorporated -> Adobe Systems)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default [2019-10-17]
CHR Extension: (Prezentace) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Dokumenty) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Disk Google) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-25]
CHR Extension: (YouTube) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-25]
CHR Extension: (Vyhledávání Google) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-25]
CHR Extension: (Fair AdBlocker App) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcnofaichneijfbkdkghmhjjbepjmble [2017-07-01]
CHR Extension: (Tabulky) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Fair Ads) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gagfkmknmijppikpcikmbbkdkhggcmge [2017-07-01]
CHR Extension: (Dokumenty Google offline) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-15]
CHR Extension: (Fair AdBlocker) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgblnfidahcdcjddiepkckcfdhpknnjh [2019-06-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
CHR Extension: (Chrome Media Router) - C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-25]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2014-11-09] (Adobe Systems) [File not signed]
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc. -> Apple Inc.)
R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120 2012-04-13] (ASUSTeK Computer Inc. -> ASUS)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-19] () [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227968 2013-03-27] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2135232 2014-03-08] (Comodo Security Solutions -> )
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2433744 2019-10-16] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2433744 2019-10-16] (ESET, spol. s r.o. -> ESET)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2466448 2012-09-13] (Realtek Semiconductor Corp -> Realsil Microelectronics Inc.)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation -> Intel Corporation)
S3 Microsoft Office Groove Audit Service; D:\office\Office12\GrooveAuditService.exe [64856 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19439944 2014-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-03-27] (Atheros) [File not signed]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\WINDOWS\system32\DRIVERS\athwbx.sys [3837440 2013-08-14] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros Communications, Inc.)
R3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [65784 2013-06-28] (ASUSTeK Computer Inc. -> ASUS Corporation)
S3 bcmfn2; C:\WINDOWS\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [283064 2014-02-23] (Disc Soft Ltd -> Disc Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [149144 2019-10-16] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [241368 2014-10-10] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [189232 2019-10-16] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [113336 2019-10-16] (ESET, spol. s r.o. -> ESET)
S3 jakstaVA; C:\WINDOWS\system32\DRIVERS\jaksta_va.sys [103816 2014-12-09] (Jaksta Technologies Pty Ltd -> e2eSoft)
R3 kbfiltr; C:\WINDOWS\System32\drivers\kbfiltr.sys [14992 2012-08-02] (ASUSTeK Computer Inc. -> )
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [38048 2014-09-04] (Nvidia Corporation -> NVIDIA Corporation)
S3 RZMAELSTROMVADService; C:\WINDOWS\system32\drivers\RzMaelstromVAD.sys [32768 2014-06-09] (Razer Inc. -> Windows (R) Win 7 DDK provider)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2016-03-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-17 22:31 - 2019-10-17 22:39 - 000076617 _____ C:\Users\vojte_000\Downloads\Addition.txt
2019-10-17 22:25 - 2019-10-17 22:40 - 000033972 _____ C:\Users\vojte_000\Downloads\FRST.txt
2019-10-17 22:24 - 2019-10-17 22:40 - 000000000 ____D C:\FRST
2019-10-17 22:22 - 2019-10-17 22:22 - 001616384 _____ (Farbar) C:\Users\vojte_000\Downloads\FRST64.exe
2019-10-17 22:22 - 2019-10-17 22:22 - 001616384 _____ (Farbar) C:\Users\vojte_000\Downloads\FRST64 (1).exe
2019-10-17 20:26 - 2019-10-17 20:32 - 006208105 _____ C:\Users\vojte_000\Desktop\woi.pdf
2019-10-17 20:15 - 2019-10-17 20:16 - 000000000 ____D C:\Users\vojte_000\Desktop\Nová složka (2)
2019-10-13 20:18 - 2019-10-13 20:18 - 000000000 ____D C:\ProgramData\Caphyon
2019-10-13 20:09 - 2019-10-13 20:09 - 000000000 ____D C:\Users\vojte_000\AppData\Roaming\Blizzard
2019-10-13 11:32 - 2019-10-13 11:32 - 000001738 _____ C:\Users\Public\Desktop\Defraggler.lnk
2019-10-13 11:32 - 2019-10-13 11:32 - 000001738 _____ C:\ProgramData\Desktop\Defraggler.lnk
2019-10-13 11:32 - 2019-10-13 11:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2019-10-13 11:32 - 2019-10-13 11:32 - 000000000 ____D C:\Program Files\Defraggler
2019-10-13 11:31 - 2019-10-13 11:31 - 017792000 _____ C:\Users\vojte_000\Downloads\dfsetup222.exe
2019-10-13 11:27 - 2019-10-13 11:27 - 003654042 _____ C:\Users\vojte_000\Downloads\JkDefragGUI105.zip
2019-10-12 19:36 - 2019-10-12 19:44 - 1621994695 _____ C:\Users\vojte_000\Downloads\Warcraft 3 The Frozen Throne v1.26 [CZ Dabing].rar
2019-10-11 12:49 - 2019-10-06 05:47 - 000579584 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-11 12:49 - 2019-10-06 05:36 - 000797696 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-11 12:49 - 2019-10-06 05:34 - 005500928 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-10-11 12:49 - 2019-10-06 05:32 - 020290048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-11 12:49 - 2019-10-06 05:18 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-11 12:49 - 2019-10-06 05:12 - 001033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2019-10-11 12:49 - 2019-10-06 05:10 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-11 12:49 - 2019-10-06 05:05 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2019-10-11 12:49 - 2019-10-06 04:58 - 015413760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-11 12:49 - 2019-10-06 04:57 - 004859904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-11 12:49 - 2019-10-06 04:53 - 004112384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-10-11 12:49 - 2019-10-06 04:53 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2019-10-11 12:49 - 2019-10-06 04:45 - 013808640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-11 12:49 - 2019-10-06 04:35 - 004387840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-11 12:48 - 2019-10-06 06:12 - 025753088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-11 12:48 - 2019-10-06 05:49 - 002909184 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-11 12:48 - 2019-10-06 05:15 - 002302464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-11 12:48 - 2019-10-06 05:03 - 002132992 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-11 12:48 - 2019-10-06 04:49 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2019-10-11 12:48 - 2019-10-06 04:48 - 002058752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-11 12:48 - 2019-10-06 04:45 - 001566208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-11 12:48 - 2019-10-06 04:34 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2019-10-11 12:48 - 2019-10-06 04:32 - 001331712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-11 12:48 - 2019-10-06 04:30 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2019-10-11 12:48 - 2019-09-17 08:55 - 001541144 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-11 12:48 - 2019-09-17 05:48 - 001376768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-11 12:48 - 2019-09-15 06:53 - 000532568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-11 12:48 - 2019-09-15 03:26 - 000517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-11 12:48 - 2019-09-15 03:18 - 000672768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-11 12:48 - 2019-09-07 22:00 - 000537320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-11 12:48 - 2019-09-07 22:00 - 000467040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-11 12:48 - 2019-09-07 22:00 - 000413904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-11 12:48 - 2019-09-07 21:38 - 002535968 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-11 12:48 - 2019-09-07 21:37 - 000157432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-11 12:48 - 2019-09-07 19:17 - 000451024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-11 12:48 - 2019-09-07 19:17 - 000414312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-11 12:48 - 2019-09-07 19:17 - 000372552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-11 12:48 - 2019-09-07 19:13 - 001901904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-11 12:48 - 2019-09-07 17:50 - 001254912 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-11 12:48 - 2019-09-07 17:04 - 007035904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-11 12:48 - 2019-09-07 17:04 - 003551232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-10-11 12:48 - 2019-09-07 17:03 - 003825152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-10-11 12:48 - 2019-09-07 16:57 - 006216192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-11 12:48 - 2019-09-07 16:56 - 003277824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-10-11 12:48 - 2019-09-07 03:32 - 000567048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-10-11 12:48 - 2019-09-07 03:32 - 000430832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-11 12:48 - 2019-09-07 03:15 - 000320240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-11 12:48 - 2019-09-06 18:33 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-11 12:48 - 2019-09-06 18:07 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2019-10-11 12:48 - 2019-09-06 17:37 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2019-10-11 12:48 - 2019-09-06 15:17 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-11 12:48 - 2019-08-31 22:51 - 001737720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-11 12:48 - 2019-08-22 15:31 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-11 12:48 - 2019-08-22 15:31 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-11 12:48 - 2019-08-12 21:02 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2019-10-11 12:47 - 2019-10-06 05:46 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2019-10-11 12:47 - 2019-10-06 05:19 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2019-10-11 12:47 - 2019-10-06 05:17 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2019-10-11 12:47 - 2019-10-06 05:17 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2019-10-11 12:47 - 2019-10-06 05:16 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2019-10-11 12:47 - 2019-10-06 05:07 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2019-10-11 12:47 - 2019-10-06 05:06 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2019-10-11 12:47 - 2019-10-06 05:05 - 000728064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2019-10-11 12:47 - 2019-10-06 04:57 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2019-10-11 12:47 - 2019-10-06 04:56 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2019-10-11 12:47 - 2019-10-06 04:56 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2019-10-11 12:47 - 2019-10-06 04:50 - 000230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2019-10-11 12:47 - 2019-09-19 07:24 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-11 12:47 - 2019-09-16 00:28 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-11 12:47 - 2019-09-07 22:24 - 000038408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-11 12:47 - 2019-09-07 22:00 - 000140136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-11 12:47 - 2019-09-07 19:17 - 000136952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-11 12:47 - 2019-09-07 19:16 - 000033512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-11 12:47 - 2019-09-07 18:26 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-11 12:47 - 2019-09-07 18:17 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-11 12:47 - 2019-09-07 18:13 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-11 12:47 - 2019-09-07 17:54 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-11 12:47 - 2019-09-07 17:43 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-11 12:47 - 2019-09-06 18:32 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-10-11 12:47 - 2019-09-06 15:17 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-11 12:47 - 2019-08-31 22:53 - 001501064 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-11 12:47 - 2019-08-31 22:51 - 001677232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-11 12:47 - 2019-08-31 22:51 - 001537776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-11 12:47 - 2019-08-31 22:51 - 001371472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-11 12:47 - 2019-08-31 22:06 - 007362808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-11 12:47 - 2019-08-31 18:50 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-10-11 12:47 - 2019-08-12 20:16 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
2019-09-28 08:44 - 2019-09-28 09:08 - 2222069907 _____ C:\Users\vojte_000\Downloads\A.Dogs.Journey.2019.1080p.BluRay.H264.DD5.1.(aac).SK.CZ.Titulky.mkv
2019-09-28 08:42 - 2019-09-28 09:09 - 3297309502 _____ C:\Users\vojte_000\Downloads\Spider-Man Daleko od domova (2019) CZ Dabing.mkv

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-17 22:16 - 2013-12-16 20:26 - 000003598 _____ C:\WINDOWS\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2166135838-3799228312-1979866301-1002
2019-10-17 22:11 - 2013-05-01 13:20 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2019-10-17 22:11 - 2013-05-01 13:20 - 000000000 ____D C:\Program Files (x86)\WildGames
2019-10-17 22:07 - 2014-07-20 21:14 - 000000000 ___DO C:\Users\vojte_000\OneDrive
2019-10-17 22:07 - 2013-12-15 19:36 - 000000062 _____ C:\Users\vojte_000\AppData\Roaming\sp_data.sys
2019-10-17 22:05 - 2019-06-20 19:42 - 000000000 ___RD C:\Users\vojte_000\iCloudDrive
2019-10-17 22:03 - 2015-06-23 16:58 - 000000968 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2019-10-17 22:02 - 2013-08-22 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-17 22:00 - 2013-08-22 15:25 - 000524288 ___SH C:\WINDOWS\system32\config\BBI
2019-10-17 21:56 - 2013-12-20 00:22 - 005023232 ___SH C:\Users\vojte_000\Desktop\Thumbs.db
2019-10-17 21:52 - 2015-12-02 07:42 - 000000972 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d12cc438903531.job
2019-10-17 21:52 - 2014-07-20 20:41 - 000000000 ____D C:\Users\vojte_000
2019-10-17 20:32 - 2019-09-07 17:27 - 016416768 _____ C:\Users\vojte_000\Desktop\woi.indd
2019-10-17 20:16 - 2016-08-21 15:13 - 000757760 ___SH C:\Users\vojte_000\Downloads\Thumbs.db
2019-10-17 19:53 - 2014-07-20 21:14 - 000003974 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{59DB4D35-A3D4-48B6-9020-A2A67DAC1224}
2019-10-16 16:31 - 2015-06-23 16:58 - 000002206 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-10-16 16:31 - 2015-06-23 16:58 - 000002165 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-10-16 16:31 - 2015-06-23 16:58 - 000002165 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2019-10-16 16:22 - 2018-07-12 14:22 - 000113336 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2019-10-16 16:22 - 2014-10-10 09:59 - 000189232 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys
2019-10-16 16:22 - 2014-10-10 09:59 - 000149144 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2019-10-16 16:22 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\Inf
2019-10-16 15:49 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-10-16 15:49 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-13 19:30 - 2012-07-26 09:59 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-12 20:16 - 2014-08-14 19:30 - 000000000 ____D C:\Users\vojte_000\AppData\Roaming\vlc
2019-10-12 19:37 - 2013-12-15 21:13 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-12 19:30 - 2013-12-15 21:13 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-09 16:06 - 2019-08-14 05:53 - 001101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2019-10-09 16:05 - 2019-08-14 05:53 - 000856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2019-10-09 16:02 - 2016-07-29 16:03 - 000003388 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1d1e9a21f4a44e
2019-10-09 16:02 - 2015-09-19 11:03 - 000003260 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0f2ba4ef0f53
2019-10-09 16:02 - 2015-06-23 16:58 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-04 16:27 - 2019-06-20 19:49 - 000000000 ____D C:\Users\vojte_000\Desktop\foto WoI
2019-09-18 17:54 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\rescache
2019-09-17 17:41 - 2013-08-22 16:44 - 000593128 _____ C:\WINDOWS\system32\FNTCACHE.DAT

==================== Files in the root of some directories ================

2015-02-27 21:57 - 2015-02-28 11:15 - 000000034 _____ () C:\Users\vojte_000\AppData\Roaming\AdobeWLCMCache.dat
2016-04-28 17:43 - 2017-04-20 21:10 - 000001998 _____ () C:\Users\vojte_000\AppData\Roaming\EINEE.MTBF.txt
2014-03-22 20:40 - 2014-04-01 10:50 - 000045270 _____ () C:\Users\vojte_000\AppData\Roaming\room_v3.dat
2013-12-15 19:36 - 2019-10-17 22:07 - 000000062 _____ () C:\Users\vojte_000\AppData\Roaming\sp_data.sys
2016-04-28 17:47 - 2016-12-17 16:07 - 000007168 _____ () C:\Users\vojte_000\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2019-06-16 11:35 - 2019-06-16 11:35 - 000000724 _____ () C:\Users\vojte_000\AppData\Local\recently-used.xbel
2017-03-18 19:03 - 2017-03-18 19:03 - 000032038 _____ () C:\Users\vojte_000\AppData\Local\SquareClock.Production_Home_Siko_WebIcon.ico

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2019-10-16 16:44
==================== End of FRST.txt ============================






ADDITION






Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02
Ran by vojte_000 (17-10-2019 22:42:31)
Running from C:\Users\vojte_000\Downloads
Windows 8.1 (Update) (X64) (2014-07-20 19:10:11)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2166135838-3799228312-1979866301-500 - Administrator - Disabled)
Guest (S-1-5-21-2166135838-3799228312-1979866301-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2166135838-3799228312-1979866301-1006 - Limited - Enabled)
vojte_000 (S-1-5-21-2166135838-3799228312-1979866301-1002 - Administrator - Enabled) => C:\Users\vojte_000

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AS: ESET Security (Enabled - Up to date) {333C65BB-8923-0EAA-C47E-C486E687BEFD}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.9.1.474 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Adobe InDesign CC 2015 (HKLM-x32\...\{DBFD0312-6E55-1014-8952-E78D43BC0147}) (Version: 11.3.0.034 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0409-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Reader XI - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Aktualizace NVIDIA 16.13.56 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 16.13.56 - NVIDIA Corporation) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Apple Mobile Device Support (HKLM\...\{0A596141-97D5-45FA-9281-98DFAF48D579}) (Version: 10.3.2.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
ASUS InstantOn (HKLM-x32\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 3.0.5 - ASUS)
ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.1.9 - ASUS)
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.1.9 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 2.1.7 - ASUS)
ASUS Screen Saver (HKLM\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.1 - ASUS)
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 2.2.0 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0005 - ASUS)
ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 2.1.5 - ASUS)
ASUS WebStorage Sync Agent (HKLM-x32\...\ASUS WebStorage) (Version: 1.1.18.159 - ASUS Cloud Corporation)
ASUSDVD (HKLM-x32\...\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4126.52 - CyberLink Corp.) Hidden
ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4126.52 - CyberLink Corp.)
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.12.309 - ASUSTEK)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0025 - ASUS)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.55 - Piriform)
Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 31.1.2.0 - COMODO)
Creative Pack Volume 1 (HKLM\...\{997BE27F-A97F-4EF4-B841-D20ABF1CD6DC}) (Version: 4.0.0 - Corel Corporation)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
Dazzle Video Capture DVC100 X64 Driver 1.08 (HKLM-x32\...\{FB4B9EB9-68B2-4C42-8C38-B65F8FE5A5CA}) (Version: 1.08.0000 - Pinnacle)
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
EAGLE 7.2.0 (HKLM-x32\...\EAGLE 7.2.0) (Version: 7.2.0 - CadSoft Computer GmbH)
ESET Security (HKLM\...\{C26AA376-9D1B-4B7B-A1F0-DC41E8530176}) (Version: 12.2.30.0 - ESET, spol. s r.o.)
Fotogaléria (HKLM-x32\...\{9093B0D5-EA59-4C9E-A2E3-CC130138DFCD}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerie (HKLM-x32\...\{A1FBD2B3-6768-472D-BA46-C00EACBCE16C}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotótár (HKLM-x32\...\{E50E3DBC-46AA-4827-B2A6-F995D81DF526}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria fotografii (HKLM-x32\...\{7595CAD2-87D0-4D01-AC02-3FDD3A891BB8}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.120 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Hollywood FX Volumes 1-3 (HKLM\...\{48C2040D-B49F-4B4D-AE4A-0DCED3305692}) (Version: 3.0 - Corel Corporation)
iCloud (HKLM\...\{DA6D808E-3629-4933-8FB3-583F9BCB0DEF}) (Version: 7.12.0.14 - Apple Inc.)
Inkscape 0.91 (HKLM\...\{81922150-317E-4BB0-A31D-FF1C14F707C5}) (Version: 0.91 - inkscape.org)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3308 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
iTunes (HKLM\...\{F0C7385A-9D20-45F3-8101-05D383885180}) (Version: 12.6.1.25 - Apple Inc.)
iZotope Music & Speech Cleaner (HKLM-x32\...\iZotope Music & Speech Cleaner_is1) (Version: 1.00 - iZotope, Inc.)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\SkyDriveSetup.exe) (Version: 17.0.2015.0811 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{2A078A2B-E2C8-43A3-862C-DC57090AB7C2}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{8E6E8CBB-8E58-493C-943F-4664F5F2FEDB}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{9EDF46F0-2D4E-4C00-B2B6-0660666E9F60}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{A035950F-15BA-41C0-9D8F-165FC0536012}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{A47EA9D4-BB87-415E-9239-28860434E5A0}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{ED6C77F9-4D7E-447C-9EC0-9A212D075535}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MyBitCast 2.0 (HKLM-x32\...\MyBitCast) (Version: 2.0 - ASUS)
NewBlue Effects (HKLM\...\{C68BAB1A-C7DF-4D81-83FC-981B31921924}) (Version: 2.1.0 - Corel Corporation)
NVIDIA GeForce Experience 2.1.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.3 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.24.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.24.2 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.09 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
OpenOffice 4.0.1 (HKLM-x32\...\{220C463A-2890-4C7F-B97C-C49FE175B849}) (Version: 4.01.9714 - Apache Software Foundation)
Ovládací panel NVIDIA 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 347.09 - NVIDIA Corporation) Hidden
Pinnacle MyDVD (HKLM-x32\...\{9E90B657-D5B4-40C0-AE05-B29DED063494}) (Version: 1.0.112 - Název společnosti:) Hidden
Pinnacle MyDVD (HKLM-x32\...\{E6D07A42-38B7-4AAF-A857-2DF7177244D7}) (Version: 1.0 - Pinnacle)
Pinnacle Studio 19 - Standard Content Pack (HKLM\...\{91D1B712-604F-49C8-943F-FD257D647161}) (Version: 19.1 - Corel Corporation)
Pinnacle Studio 19 (HKLM\...\{CF91A83C-B84F-43CE-BCCE-7247E6137173}) (Version: 19.5.0.373 - Corel Corporation)
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{C1BCFECF-6EC2-4750-9072-5E2489423F8F}) (Version: 7.5 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{B202C7F5-7DE3-4FBF-B259-E70E625F56FC}) (Version: 7.5 - Apple Inc.)
Podstawowe programy Windows Live (HKLM-x32\...\{A7E73DE5-E5FD-4923-9D88-E09ECD1F3545}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Premium Pack Volumes 1-2 (HKLM-x32\...\{4E62FCE5-6A72-4E13-9F7F-7104748AF838}) (Version: 3.1 - Corel Corporation)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.224 - Qualcomm Atheros Communications)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.7.1025.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6937 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.9200.27030 - Realtek Semiconductor Corp.)
ScoreFitter Volumes 1-2 (HKLM\...\{5CA29919-6361-4A17-91C5-6819E43794B1}) (Version: 3.0 - Corel Corporation)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 3.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 16.13.56 - NVIDIA Corporation) Hidden
Skype™ 7.23 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.23.105 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\Spotify) (Version: 1.0.84.344.gfc674f6f - Spotify AB)
Stronghold Crusader Extreme HD (HKLM-x32\...\GOGPACKSTRONGHOLDCRUSADERHD_is1) (Version: 2.0.0.6 - GOG.com)
Title Extreme (HKLM\...\{3B519225-B4B2-40B7-A431-3C6AAE2831B4}) (Version: 3.0 - Corel Corporation)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Warcraft III - The Frozen Throne v1.26 (HKLM-x32\...\Warcraft III - The Frozen Throne v1.26 1.26) (Version: 1.26 - Blizzard)
Windows Driver Package - ASUS (ATP) Mouse (05/09/2013 1.0.0.173) (HKLM\...\1016059FBF327ED9E3BAE758BD08CF10D3C6252D) (Version: 05/09/2013 1.0.0.173 - ASUS)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.42.0 - ASUS)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

Packages:
=========
- Games App - -> C:\Program Files\WindowsApps\WildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2015-06-27] (WildTangent Games)
ASUS Tutorial -> C:\Program Files\WindowsApps\B9ECED6F.ASUSTutorial_1.0.0.43_neutral__qmba6cd70vzyy [2013-12-15] (ASUSTeK COMPUTER INC.)
Fresh Paint -> C:\Program Files\WindowsApps\Microsoft.FreshPaint_2.0.15133.0_x86__8wekyb3d8bbwe [2016-01-12] (Microsoft Corporation)
Hry -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2014-03-18] (Microsoft Corporation) [MS Ad]
Hudba -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2015-03-14] (Microsoft Corporation) [MS Ad]
MSN Cestování -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2015-07-14] (Microsoft Corporation) [MS Ad]
MSN Finance -> C:\Program Files\WindowsApps\Microsoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-27] (Microsoft Corporation) [MS Ad]
MSN Gurmánský svět -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2015-07-14] (Microsoft Corporation) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-26] (Microsoft Corporation) [MS Ad]
MSN Sport -> C:\Program Files\WindowsApps\Microsoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-04-29] (Microsoft Corporation) [MS Ad]
MSN Zdraví a fitness -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2015-07-14] (Microsoft Corporation) [MS Ad]
MSN Zprávy -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-27] (Microsoft Corporation) [MS Ad]
Music Maker Jam -> C:\Program Files\WindowsApps\MAGIX.MusicMakerJam_2.3.1055.0_x64__a2t3txkz9j1jw [2017-06-09] (MAGIX)
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2015-06-20] (Skype) [MS Ad]
Video -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2015-11-10] (Microsoft Corporation) [MS Ad]
Výběr prohlížeče -> C:\WINDOWS\BrowserChoice [2014-07-25] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\vojte_000\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\vojte_000\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\vojte_000\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\vojte_000\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\vojte_000\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-02-11] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-02-11] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-02-11] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) [File not signed]
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) [File not signed]
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) [File not signed]
ShellIconOverlayIdentifiers-x32-x32: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32-x32: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32-x32: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32-x32: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32-x32: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-02-11] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [Atheros] -> {B8952421-0E55-400B-94A6-FA858FC0A39F} => C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll [2013-03-27] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2019-10-16] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2019-05-08] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [XXX Groove GFS Context Menu Handler XXX] -> {6C467336-8281-4E60-8204-430CED96822D} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2019-10-16] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [BackupContextMenuExtension] -> {b1b96b20-da1d-4a3c-92c1-7229b32f2325} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSContextMenu.DLL [2012-12-19] (ASUS Cloud Corporation -> ASUS Cloud Corporation)
ContextMenuHandlers3: [FTShellContext] -> {AFF81F7B-6942-40c4-AADA-7214EF7B6DD1} => C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll [2013-03-27] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed]
ContextMenuHandlers3-x32: [XXX Groove GFS Context Menu Handler XXX] -> {6C467336-8281-4E60-8204-430CED96822D} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4-x32: [XXX Groove GFS Context Menu Handler XXX] -> {6C467336-8281-4E60-8204-430CED96822D} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\WINDOWS\system32\igfxpph.dll [2013-10-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2014-12-13] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5-x32: [XXX Groove GFS Context Menu Handler XXX] -> {6C467336-8281-4E60-8204-430CED96822D} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-02-11] (Adobe Systems Incorporated -> )
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll [2019-10-16] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [XXX Groove GFS Context Menu Handler XXX] -> {6C467336-8281-4E60-8204-430CED96822D} => D:\office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)

==================== Codecs (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.pDAD] => C:\Windows\SysWOW64\prodad-codec.dll [506312 2014-01-08] (proDAD GmbH -> proDAD GmbH)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\vojte_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Fair AdBlocker App.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=dcnofaichneijfbkdkghmhjjbepjmble

==================== Loaded Modules (Whitelisted) ==============

2013-03-27 12:36 - 2013-03-27 12:36 - 000011264 _____ () [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-03-27 12:33 - 2013-03-27 12:33 - 000086016 _____ () [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll
2012-09-27 09:15 - 2012-09-27 09:15 - 001472512 _____ (ASUS Cloud Corporation.) [File not signed] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll
2012-08-22 16:31 - 2012-08-22 16:31 - 000224256 _____ (ASUSTek Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\ASUS Live Update\alvupdt.dll
2013-10-10 19:43 - 2013-10-10 19:43 - 000348160 ____N (Microsoft Corporation) [File not signed] C:\Program Files (x86)\CyberLink\PowerDVD10\MSVCR71.dll
2014-11-04 16:16 - 2014-10-04 08:35 - 000854680 _____ (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed] C:\Program Files\NVIDIA Corporation\NvStreamSrv\rxinput.dll
2013-03-27 12:39 - 2013-03-27 12:39 - 000107648 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll
2013-03-27 12:39 - 2013-03-27 12:39 - 000033408 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\CommApi.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 000203392 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\FolderViewImpl.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 000085632 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\GattI.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 000126592 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\gatts.DLL
2013-03-27 12:40 - 2013-03-27 12:40 - 000083072 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Handsfree.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 000034432 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\ipc.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 000063104 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\ModuleManager.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 001067648 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\OutLookLib.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 000290944 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 000027264 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\TCPConnection.dll
2013-03-27 12:40 - 2013-03-27 12:40 - 000114816 _____ (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\utils.dll
2013-03-27 12:34 - 2013-03-27 12:34 - 000194560 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\Audio\audio.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000161792 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\BasicPrintProfile\BPP.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000177152 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\BIP\BIP.dll
2013-03-27 12:33 - 2013-03-27 12:33 - 000018432 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\DID\DId.dll
2013-03-27 12:33 - 2013-03-27 12:33 - 000036352 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\FAX\Fax.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000421888 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\FileTransfer\FileTransfer.dll
2013-03-27 12:35 - 2013-03-27 12:35 - 000094208 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\GapSdp\GapSdp.dll
2013-03-27 12:32 - 2013-03-27 12:32 - 000096768 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\goep\goep.dll
2013-03-27 12:33 - 2013-03-27 12:33 - 000029696 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\HCRP\Hcrp.dll
2013-03-27 12:33 - 2013-03-27 12:33 - 000142848 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\HealthDevice\HDP.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000090624 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\L2capLib\l2caplib.dll
2013-03-27 12:33 - 2013-03-27 12:33 - 000308224 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\LE\LE.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000065024 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\OppOperation\OppOperation.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000066560 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\pbap\pbap.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000063488 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\RfcommLib\rfcommlib.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000097280 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\sap\sap.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000087552 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\SesMgr\sesmgr.dll
2013-03-27 12:36 - 2013-03-27 12:36 - 000055296 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\spp\spp.dll
2013-03-27 12:33 - 2013-03-27 12:33 - 000064512 _____ (Qualcomm Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Modules\Sync\Sync.dll
2012-11-26 13:14 - 2012-11-26 13:14 - 001600000 _____ (TODO: <Company name>) [File not signed] C:\Program Files (x86)\ASUS\Splendid\Alb_ASUSLib.dll
2013-01-29 10:53 - 2013-01-29 10:53 - 006221824 _____ (TODO: <Company name>) [File not signed] C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\sony.com -> sony.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files (x86)\Common Files\Adobe\AGL;C:\Program Files (x86)\Skype\Phone\;C:\Program Files (x86)\Common Files\Apple\Internet Services\
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\vojte_000\AppData\Roaming\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp
DNS Servers: 62.182.234.11 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "ASUSWebStorage"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "Razer Synapse"
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\StartupApproved\StartupFolder: => "Curse.lnk"
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\StartupApproved\Run: => "GarenaPlus"
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-2166135838-3799228312-1979866301-1002\...\StartupApproved\Run: => "Skype"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{F598277A-8DDE-429F-94BE-E185074E085B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe No File
FirewallRules: [{99CA5F20-913E-426E-A955-0A50284FD96B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe No File
FirewallRules: [{15D27FE4-CB58-43AB-ABA3-EDB022F7D28E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3109\Agent.exe No File
FirewallRules: [{3DD075D1-2D04-46CB-8C49-21100ACB7C1C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3109\Agent.exe No File
FirewallRules: [{2225F3A6-42CB-4106-ABFB-50D65BEFDCA6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe No File
FirewallRules: [{2CA8A617-534B-44C4-BC82-183690017A15}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe No File
FirewallRules: [{9D2943F3-1647-4FC5-958D-B15D2012B18B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2880\Agent.exe No File
FirewallRules: [{1BFF1CD6-4EB2-439A-8C29-7093437EC8DD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2880\Agent.exe No File
FirewallRules: [{D99085C2-FDA1-4ABE-8FCE-A234F551DDC9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe No File
FirewallRules: [{EA61DEA3-CC03-4F65-B844-E0F1707FC2C1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe No File
FirewallRules: [{4254E779-AFA9-4483-8A7A-C7D3C76AA0DA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe No File
FirewallRules: [{2455DDFD-8518-4F24-BC87-0AE69C364725}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe No File
FirewallRules: [{80282A1D-3512-46F8-B6DE-6514BC374AE0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{2DA04AD6-027E-490A-9836-F8A6433202F1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{98B26919-B2E9-4E24-8C0A-E45766DC7221}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{20AE4E5C-1CD5-49C4-B681-A8C180863F88}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{439D29DF-7B62-4BE1-9B76-E57DF52629BB}] => (Block) C:\users\vojte_000\desktop\age of empires ii\age2_x1.exe No File
FirewallRules: [{BBB91C59-5D10-4CDC-814C-D85B1F0D6436}] => (Block) C:\users\vojte_000\desktop\age of empires ii\age2_x1.exe No File
FirewallRules: [UDP Query User{78DF77BE-202C-4E70-B1F5-201598C28E84}C:\users\vojte_000\desktop\age of empires ii\age2_x1.exe] => (Allow) C:\users\vojte_000\desktop\age of empires ii\age2_x1.exe No File
FirewallRules: [TCP Query User{3D01C6AE-F6C3-495E-AC0D-3D95EE251EA9}C:\users\vojte_000\desktop\age of empires ii\age2_x1.exe] => (Allow) C:\users\vojte_000\desktop\age of empires ii\age2_x1.exe No File
FirewallRules: [UDP Query User{F57E9B51-460B-4E73-ACD8-217A62FB49CA}C:\users\vojte_000\desktop\age of empires 2 & the conquerors expansion\age2_x1.exe] => (Allow) C:\users\vojte_000\desktop\age of empires 2 & the conquerors expansion\age2_x1.exe No File
FirewallRules: [TCP Query User{631C46D1-B46C-48A7-8753-9D0191E836E5}C:\users\vojte_000\desktop\age of empires 2 & the conquerors expansion\age2_x1.exe] => (Allow) C:\users\vojte_000\desktop\age of empires 2 & the conquerors expansion\age2_x1.exe No File
FirewallRules: [UDP Query User{7B888FA4-1918-4A6A-991F-CE9A30F4B099}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{658DB7F6-714A-48D5-B4AD-8221E380488E}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{B41A49C5-C711-453E-A618-622CA5926350}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe No File
FirewallRules: [{A032ED4E-08F3-448B-8540-951FBEE50659}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe No File
FirewallRules: [{A2925DFE-020F-4B7F-91C2-85A82BB66B58}] => (Allow) C:\Program Files (x86)\Garena Plus\Room\garena_room.exe No File
FirewallRules: [{CBCCB4E9-3367-4CD7-882E-A1040FA170D1}] => (Allow) C:\Program Files (x86)\Garena Plus\ggdllhost.exe No File
FirewallRules: [UDP Query User{4BB3AAD9-2FA9-4CA3-A55A-9575986EEBD0}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{2773FFFA-60AF-4D7E-BBAC-13D2A9AD0E79}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{C65163F5-9915-431F-AD79-6321D83AA4D6}C:\users\vojte_000\desktop\age of empires 2 & the conquerors expansion\age2_x1.exe] => (Allow) C:\users\vojte_000\desktop\age of empires 2 & the conquerors expansion\age2_x1.exe No File
FirewallRules: [TCP Query User{36AAB09E-3B3D-4C8D-98A7-FBA5D542ED13}C:\users\vojte_000\desktop\age of empires 2 & the conquerors expansion\age2_x1.exe] => (Allow) C:\users\vojte_000\desktop\age of empires 2 & the conquerors expansion\age2_x1.exe No File
FirewallRules: [UDP Query User{C90EB20B-620C-4F83-830A-7B7BCB9EC63C}C:\users\vojte_000\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\vojte_000\appdata\roaming\gameranger\gameranger\gameranger.exe No File
FirewallRules: [TCP Query User{85CD2D3D-8C7C-4AED-954B-0CA3D192A47B}C:\users\vojte_000\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\vojte_000\appdata\roaming\gameranger\gameranger\gameranger.exe No File
FirewallRules: [{569329EC-588A-41A8-95E5-2469206E3676}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe No File
FirewallRules: [{5EBE47AF-E1E7-491C-A661-2CC2A16CDA56}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe No File
FirewallRules: [{654BD90D-81E1-458A-9642-971B988D2A31}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2680\Agent.exe No File
FirewallRules: [{FA6D183C-A35D-4A26-A283-496195D14783}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2680\Agent.exe No File
FirewallRules: [{2687BE53-572B-4791-9B30-1030E51578A3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe No File
FirewallRules: [{3D3BA27C-A16E-4B7E-87CB-F2268316875D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe No File
FirewallRules: [{B6E170AB-C78B-403F-BAF5-0F0FD1523FD4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2581\Agent.exe No File
FirewallRules: [{A3ECE1BC-041C-4359-A687-DEA4DCA627A4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2581\Agent.exe No File
FirewallRules: [{92EAEFA6-B07B-4E58-821C-B23CCFB0D537}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe No File
FirewallRules: [{B1A3D103-4ADF-467C-9DA2-E0A5A57E537D}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe No File
FirewallRules: [{E8DC665C-E808-4B97-BEAF-CEF774D89614}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{481EC683-D690-4290-89A8-D122BBF7C0A5}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{1F8BD617-37F6-4DEF-AFB4-2DCC52705759}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe No File
FirewallRules: [{0E49DF25-C720-4B29-B665-5F63ECEFA4BE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe No File
FirewallRules: [{C91B862A-6CF3-45DE-A729-E131D67C1B8B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe No File
FirewallRules: [{6B7AE60C-6F83-47C1-A079-EAC48BE6DC02}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe No File
FirewallRules: [{9D66DC8B-E286-4C90-B8DD-482DB1B606E2}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe No File
FirewallRules: [{05581BD2-1C97-4F9E-8745-CDD87BA1B34A}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe No File
FirewallRules: [{3F3D6A5F-C546-4FB2-986B-B181FACD121B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe No File
FirewallRules: [{63FD6C01-3A39-4E8F-A72E-7D5B42740237}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe No File
FirewallRules: [{78B26E11-32B9-425E-B229-3570B0A445D7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.524\Agent.exe No File
FirewallRules: [{281D6C02-E307-4C4E-B01A-9A0D306F3625}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.524\Agent.exe No File
FirewallRules: [{25BD8B64-B50A-4911-9207-52AB042C0BE0}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe No File
FirewallRules: [{D2A95B92-394C-42DB-80EA-0FE371FE980F}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe No File
FirewallRules: [{B01901DC-8176-4BBF-BFA5-EE6962AB51D3}] => (Allow) D:\Steam\Steam.exe No File
FirewallRules: [{2D01FFCA-2231-443E-BE79-A60E32014A2F}] => (Allow) D:\Steam\Steam.exe No File
FirewallRules: [{F90D9386-60A5-44FC-8DBA-F1D9AD7D02E5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE (CyberLink -> CyberLink Corp.)
FirewallRules: [{9437F8DC-8055-4C84-9CBF-E3A5D441C899}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe (CyberLink -> CyberLink Corp.)
FirewallRules: [{2EF1A85A-64C3-497E-9C48-38BFA93A36C2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe No File
FirewallRules: [{377813CB-2442-47D4-9C84-00FFED5C48C4}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe No File
FirewallRules: [{78F8E8DA-219B-4E22-ABF2-C97CF02440A3}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe No File
FirewallRules: [{7A67DBBD-3C40-4086-8EBF-486A984A6433}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe No File
FirewallRules: [{9DF568BF-1BE4-40F8-B58A-90F91C8AEB20}] => (Allow) LPort=1900
FirewallRules: [{D9FDE7C5-91CF-4946-B79E-C7E264DA859C}] => (Allow) LPort=2869
FirewallRules: [{AF702977-4330-41DC-B7EB-971528C7BDD5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FF970FAC-278E-4CF6-BC0F-8C6E817A9AA3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3182\Agent.exe No File
FirewallRules: [{9D3EB4E3-D489-4B60-9B53-3031871057CA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3182\Agent.exe No File
FirewallRules: [{D15CCC46-35F4-4477-BC93-C8E4EBF6CC8E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3235\Agent.exe No File
FirewallRules: [{5D340958-1A2D-4BA3-A083-281B8AAA75C9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3235\Agent.exe No File
FirewallRules: [{27CA8C33-175F-40B9-88C7-22ECE90BB391}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3286\Agent.exe No File
FirewallRules: [{AFD45059-60B5-43DF-9A81-90402DBD8F41}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3286\Agent.exe No File
FirewallRules: [{ABCDE905-B9EE-4441-88DC-EEB561BC85A4}] => (Allow) D:\Steam\bin\steamwebhelper.exe No File
FirewallRules: [{F2A48216-6F3C-430E-9D4C-C209BFD68FAA}] => (Allow) D:\Steam\bin\steamwebhelper.exe No File
FirewallRules: [{9ED1DCC2-433C-4789-8FCE-E4B3AEEAD4CE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3323\Agent.exe No File
FirewallRules: [{191107D6-B235-4176-AA28-C16B85C8B1ED}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3323\Agent.exe No File
FirewallRules: [{EC1F6605-1D37-4103-AB7D-523550C25933}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3334\Agent.exe No File
FirewallRules: [{ACFAF9F2-8A39-4E7B-8473-EE4B1170A9C3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3334\Agent.exe No File
FirewallRules: [{42E0BD00-6E46-4D73-89B5-92558AF75749}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe No File
FirewallRules: [{6925B7EE-475A-459B-BF15-B95A4F314492}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe No File
FirewallRules: [{B6BD5146-8598-4FEF-B285-7B4E604893DD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe No File
FirewallRules: [{0FF26A60-AB5B-4710-830D-D6C208D0D880}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe No File
FirewallRules: [{3F0400C1-1DB2-4136-860D-EEDEFDC8C59A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe No File
FirewallRules: [{818C0B8C-F68D-4674-891C-A3D360468A80}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe No File
FirewallRules: [{86986E2F-827E-47AB-8AEB-20010FCFDCD3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe No File
FirewallRules: [{51AD5356-CA06-45FA-9D35-6A7D4213742B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe No File
FirewallRules: [TCP Query User{D352F500-2F49-428B-A48F-F23E7B4A2E5E}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe No File
FirewallRules: [UDP Query User{5CC885EE-9A68-42F4-B86F-89AAE41360C8}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe No File
FirewallRules: [{32D1C8D2-5535-4781-B024-84290A478A9D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe No File
FirewallRules: [{2E67BEA6-0639-4D1B-8B7B-AB90E137A8A5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe No File
FirewallRules: [{5F19AC6E-4B3E-4D11-90EA-059AB2D66119}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe No File
FirewallRules: [{90CE9527-492C-4701-9833-9B0F7EC859BC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe No File
FirewallRules: [{4AB7205D-D96A-42D9-9ED2-427DACF8F2C9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe No File
FirewallRules: [{F0F9011B-62B8-4A0D-885C-B1EFC9081F11}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe No File
FirewallRules: [{8D22CF64-1DCA-4AEB-9E64-F3029EF72C99}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe No File
FirewallRules: [{6E8B20EF-13A1-4A13-B8A3-63702356F25E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe No File
FirewallRules: [{223D88B6-EA3B-448F-B220-2E2E5399F22E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9FF24336-E0F1-4C66-B92D-EBB829FA2821}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E26EBF8B-B516-45FE-993D-8E8AF708F0F9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6D04D8E2-C377-4247-9630-84FC00D6B639}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{93B051BD-B86D-4A7B-910C-4B4F8979D79D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F95722DF-0738-45AF-870E-27378E2219E4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{776D6C83-93C2-4AB6-9386-15BAEAFA272E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe No File
FirewallRules: [{4E109BBB-9B45-48C6-89E4-77138535A344}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe No File
FirewallRules: [{96B91CBA-A7A4-4B6C-B274-1D87F851F34B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe No File
FirewallRules: [{2A8728A9-4BB5-4C24-8176-8496EBDCF4D4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe No File
FirewallRules: [{098213F0-FC1E-4C2B-AEC9-07127B0FEAAF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe No File
FirewallRules: [{600016E2-FE2B-4FAB-B44C-CFC50276A131}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe No File
FirewallRules: [TCP Query User{30DA30BC-B8CE-4B7C-B976-83F576F7A849}D:\heroes of the storm\versions\base33353\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base33353\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{E47EB797-EC0F-44A0-A8C7-3D4B459E1AE3}D:\heroes of the storm\versions\base33353\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base33353\heroesofthestorm_x64.exe No File
FirewallRules: [{93D16552-97D8-4A34-A4FE-05ADB71B4A38}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe No File
FirewallRules: [{42B12A61-109B-4BF2-8709-15B44164FF1F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe No File
FirewallRules: [{C062556A-FA8B-47A3-AE6A-2955DE9BFF51}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe No File
FirewallRules: [{C8BC422C-0486-4746-A601-154EF22B9373}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe No File
FirewallRules: [TCP Query User{3380150F-2C54-4A21-8B65-EBC28A76EE39}D:\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{A0E1C85E-425A-45CE-A265-8B85DF402494}D:\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe No File
FirewallRules: [{D7767D0A-D22A-4C6C-ADDD-398A4570D27F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe No File
FirewallRules: [{24A68992-DEEE-4EFE-95EE-4CFF45D729CE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe No File
FirewallRules: [{FAE69827-5E99-4398-B960-ACC234DEA47A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe No File
FirewallRules: [{2C9786F0-CBBA-4E59-8A27-AC58BCED025E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe No File
FirewallRules: [{6272A721-FE58-4F55-BCE8-A3C5E8CD5A9F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe No File
FirewallRules: [{A8CA4F89-FFF3-4CA2-AC2E-46FBEA12E8B0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe No File
FirewallRules: [{75F7D94A-520D-48ED-817B-0F2F0D5A954D}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe No File
FirewallRules: [{DBFB159C-6683-415C-89C0-1D6F6CE0A9D0}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe No File
FirewallRules: [{63813CA2-E06D-4780-8E62-98BD16DDE4A6}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe No File
FirewallRules: [{90C525E4-02A4-4792-B40A-94D5948FBF4C}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe No File
FirewallRules: [{EB935363-9A02-4A76-A6C1-BA154DA7C8FA}] => (Allow) C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe No File
FirewallRules: [{D9DD9809-CEB2-413C-ADB2-1ED4CBE105F5}] => (Allow) C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe No File
FirewallRules: [{B045D5C3-E87A-43FF-8163-D1C29D66DFAA}] => (Allow) C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe No File
FirewallRules: [{E55B1877-95A3-482F-8791-6D81133AEFEC}] => (Allow) C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe No File
FirewallRules: [{4B5149A2-0CF7-48E9-9C3A-490F16B03721}] => (Allow) C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.74\deploy\League of Legends.exe No File
FirewallRules: [{E9D9AD80-FCDD-4382-8088-8C538A5EB269}] => (Allow) C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.74\deploy\League of Legends.exe No File
FirewallRules: [{BE905700-6E58-4DE2-A24F-B1E08C40ACF2}] => (Allow) C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.74\deploy\League of Legends.exe No File
FirewallRules: [{24E5E0B1-7A0B-4E19-9443-F2B184CE7143}] => (Allow) C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.74\deploy\League of Legends.exe No File
FirewallRules: [{8A072CCD-CF19-43A8-898B-AE12B19C53F3}] => (Allow) C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.127\deploy\LolClient.exe No File
FirewallRules: [{5946A702-92D2-41BA-8D37-2A5AD0F7F07D}] => (Allow) C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.127\deploy\LolClient.exe No File
FirewallRules: [{CF831D4F-36EC-4378-BFF3-4FB2E7103F83}] => (Allow) C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.127\deploy\LolClient.exe No File
FirewallRules: [{6845D981-57E4-4C80-BF2F-977BD5FA7E85}] => (Allow) C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.127\deploy\LolClient.exe No File
FirewallRules: [{95FFB0E9-4E9E-4F69-8222-B1F0C783F054}] => (Allow) C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.234\deploy\LoLLauncher.exe No File
FirewallRules: [{3895F1F9-4699-4DB0-BC06-FFC27F7B7B52}] => (Allow) C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.234\deploy\LoLLauncher.exe No File
FirewallRules: [{30C88994-79DF-4E3B-BF6E-E6D8847A61F5}] => (Allow) C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.234\deploy\LoLLauncher.exe No File
FirewallRules: [{284D606E-351D-49F9-BEB8-D5A9D9D6FEED}] => (Allow) C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.234\deploy\LoLLauncher.exe No File
FirewallRules: [TCP Query User{6596F1CE-9D31-4CAC-AEAF-2E09618AB1B1}D:\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{32C6A627-7CA8-4107-8B0A-0463D4E78306}D:\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{B90DA91C-2084-4E2F-84FF-51435044971C}D:\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{57FF1863-26F6-4420-86F4-942FA74E6122}D:\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{C95FA793-8EFE-4BF6-8A8A-489277E6A62B}E:\easysetupassistant\easysetupassistant.exe] => (Allow) E:\easysetupassistant\easysetupassistant.exe No File
FirewallRules: [UDP Query User{F4A586A5-CF9C-404A-A39B-1F2F077E503E}E:\easysetupassistant\easysetupassistant.exe] => (Allow) E:\easysetupassistant\easysetupassistant.exe No File
FirewallRules: [TCP Query User{3E6F1B58-4466-4FEA-9FA3-11331F46310F}D:\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{AB5A7AC3-8BB6-4F57-AF9F-7E6AD7803720}D:\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{E383A657-D1C3-4CFE-8DAF-6BCAAA2FC093}D:\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe No File
FirewallRules: [UDP Query User{C25079B3-89D3-46E3-84B4-409D69833985}D:\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe No File
FirewallRules: [TCP Query User{C2C1378D-ECD0-4C5A-BFF4-953285C1CA8B}C:\users\vojte_000\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\vojte_000\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{51534911-AF21-4F91-905C-250B6E78CBA0}C:\users\vojte_000\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\vojte_000\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{074B84E8-3A87-45EB-9BE7-EEB5AECC8FC7}C:\users\vojte_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\vojte_000\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{3F2B4834-A3B9-4EFE-BD34-E466C1B767FE}C:\users\vojte_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\vojte_000\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{98DAC388-8AD6-4821-8553-DC4BBDE11880}] => (Allow) D:\office\Office12\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{918983B1-F0C8-474C-B680-63BE9134EAE3}] => (Allow) D:\office\Office12\GROOVE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{68E155CE-A7E4-4173-A13E-B97A31FCE334}] => (Allow) D:\office\Office12\GROOVE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E24D3B94-DB57-4016-BEAB-018DDA065740}] => (Allow) D:\office\Office12\ONENOTE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4EFB2D83-60F8-4526-A385-3D4969ECA481}] => (Allow) D:\office\Office12\ONENOTE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9A4ECD3E-801B-4B7B-B973-6E6EC55F9ED6}] => (Allow) C:\Program Files\Pinnacle\Studio 19\programs\RM.exe (Corel Corporation -> Pinnacle)
FirewallRules: [{F203F2F9-9492-4990-9037-1BCC70E270E0}] => (Allow) C:\Program Files\Pinnacle\Studio 19\programs\RM.exe (Corel Corporation -> Pinnacle)
FirewallRules: [{219FA277-8DEB-47A3-B8C8-22B357988C3A}] => (Allow) C:\Program Files\Pinnacle\Studio 19\programs\NGStudio.exe (Corel Corporation -> Pinnacle)
FirewallRules: [{C00A8726-0696-4559-BE20-98670DB39553}] => (Allow) C:\Program Files\Pinnacle\Studio 19\programs\NGStudio.exe (Corel Corporation -> Pinnacle)
FirewallRules: [{AFE14FED-AE44-4C41-AC9D-90B857AE2C8E}] => (Allow) C:\Program Files\Pinnacle\Studio 19\programs\UMI.exe (Corel Corporation -> Pinnacle)
FirewallRules: [{F608E581-1528-422C-AE32-8EA7327B5339}] => (Allow) C:\Program Files\Pinnacle\Studio 19\programs\UMI.exe (Corel Corporation -> Pinnacle)
FirewallRules: [TCP Query User{4E9083A3-2DF8-4FAE-913B-1C9DD712FBAD}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{05ADCB7B-70EC-4D76-8076-4EA2D231AB2A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7D063F85-6B71-4EEC-84FC-CF38F22448FB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B41185AA-5621-4556-9F1A-4515E784EFFB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1F86335B-A087-4336-BEC0-9CA69477D9A5}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B54444B2-528F-48DF-8F80-EA5452A752EC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{29FED108-3EBC-45EF-9B78-BA22741ED9D3}D:\hearthstone\hearthstone.exe] => (Allow) D:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [UDP Query User{D989E238-C3FE-4BDB-B26A-05DEC9CD63D7}D:\hearthstone\hearthstone.exe] => (Allow) D:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [{EFEE920F-BC32-4009-9564-8C3E31945230}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{6279CF5D-C702-460E-B6B2-D944FE8EFB9D}] => (Allow) C:\Program Files (x86)\Electronic Arts\The Battle for Middle-earth (tm) II\game.dat No File
FirewallRules: [{EDB820A1-F055-4E67-ABC2-301B312DBFAB}] => (Allow) C:\Program Files (x86)\Electronic Arts\The Battle for Middle-earth (tm) II\game.dat No File
FirewallRules: [TCP Query User{D7F74145-9DC1-43B3-B583-FBC8C66B7FC9}C:\program files (x86)\electronic arts\the battle for middle-earth (tm) ii\game.dat] => (Allow) C:\program files (x86)\electronic arts\the battle for middle-earth (tm) ii\game.dat No File
FirewallRules: [UDP Query User{786D0986-15C8-4CDC-9021-D8ACAAA043F3}C:\program files (x86)\electronic arts\the battle for middle-earth (tm) ii\game.dat] => (Allow) C:\program files (x86)\electronic arts\the battle for middle-earth (tm) ii\game.dat No File
FirewallRules: [TCP Query User{02333207-157D-4A7E-9F49-9C892487F0CC}C:\users\vojte_000\downloads\winbox.exe] => (Allow) C:\users\vojte_000\downloads\winbox.exe () [File not signed]
FirewallRules: [UDP Query User{E086B44C-DC04-4A54-A906-12CB840C0A53}C:\users\vojte_000\downloads\winbox.exe] => (Allow) C:\users\vojte_000\downloads\winbox.exe () [File not signed]
FirewallRules: [{815D9458-F701-492B-B9F2-36B8FFDB2C1B}] => (Block) C:\users\vojte_000\downloads\winbox.exe () [File not signed]
FirewallRules: [{9B139F0C-450E-4102-8BD5-D4EC635B48E7}] => (Block) C:\users\vojte_000\downloads\winbox.exe () [File not signed]
FirewallRules: [TCP Query User{66303C64-3A56-48E7-95E6-113786CA5AD0}C:\gog games\stronghold crusader extreme hd\stronghold crusader.exe] => (Allow) C:\gog games\stronghold crusader extreme hd\stronghold crusader.exe (Firefly Studios Limited -> )
FirewallRules: [UDP Query User{B1BC0698-18F8-4ABF-9472-684C136C30E2}C:\gog games\stronghold crusader extreme hd\stronghold crusader.exe] => (Allow) C:\gog games\stronghold crusader extreme hd\stronghold crusader.exe (Firefly Studios Limited -> )
FirewallRules: [{9C8F58F0-0B44-471F-9188-ACCDA24232A8}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{C52B9FD1-2847-4DA7-A4EA-3D6C7B776587}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

13-10-2019 19:29:21 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/17/2019 09:59:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: Event-ID 1

Error: (10/17/2019 09:53:54 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898008d).

Error: (10/17/2019 09:53:17 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 22219

Error: (10/17/2019 09:53:17 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 22219

Error: (10/17/2019 09:53:17 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (10/17/2019 09:53:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10297

Error: (10/17/2019 09:53:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10297

Error: (10/17/2019 09:53:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second


System errors:
=============
Error: (10/17/2019 09:59:39 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby BrokerInfrastructure bylo dosaženo časového limitu (30000 ms).

Error: (10/17/2019 09:59:08 PM) (Source: DCOM) (EventID: 10010) (User: EINEE)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/17/2019 09:59:07 PM) (Source: DCOM) (EventID: 10010) (User: EINEE)
Description: Server {D63B10C5-BB46-4990-A94F-E40B9D520160} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/17/2019 09:59:07 PM) (Source: DCOM) (EventID: 10010) (User: EINEE)
Description: Server {D63B10C5-BB46-4990-A94F-E40B9D520160} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/17/2019 09:59:07 PM) (Source: DCOM) (EventID: 10010) (User: EINEE)
Description: Server {D63B10C5-BB46-4990-A94F-E40B9D520160} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/17/2019 09:59:07 PM) (Source: DCOM) (EventID: 10010) (User: EINEE)
Description: Server {D63B10C5-BB46-4990-A94F-E40B9D520160} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/17/2019 09:59:07 PM) (Source: DCOM) (EventID: 10010) (User: EINEE)
Description: Server {D63B10C5-BB46-4990-A94F-E40B9D520160} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/17/2019 09:59:07 PM) (Source: DCOM) (EventID: 10010) (User: EINEE)
Description: Server {D63B10C5-BB46-4990-A94F-E40B9D520160} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
===================================
Date: 2017-06-25 11:53:26.988
Description:
Prohledávání Windows Defender zjistilo chybu při pokusu o načtení podpisů a pokusí se o obnovení sady podpisů, jejichž správnost je potvrzena.
Podpisy, které se měly načíst: Zálohování
Kód chyby: 0x80073aba
Popis chyby: Prostředek je zastaralý, a proto není kompatibilní.
Verze podpisu: 1.143.2273.0;1.143.2273.0
Verze modulu: 1.1.9103.0

Date: 2017-06-25 11:53:26.332
Description:
Prohledávání Windows Defender zjistilo chybu při pokusu o načtení podpisů a pokusí se o obnovení sady podpisů, jejichž správnost je potvrzena.
Podpisy, které se měly načíst: Aktuální
Kód chyby: 0x80073aba
Popis chyby: Prostředek je zastaralý, a proto není kompatibilní.
Verze podpisu: 1.165.2118.0;1.165.2118.0
Verze modulu: 1.1.10201.0

Date: 2015-01-10 15:54:51.770
Description:
Funkce Ochrana v reálném čase u prohledávání Windows Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.
Důvod: Antimalwarová ochrana přestala z neznámých důvodů fungovat. V některých případech lze tento problém vyřešit restartováním služby.

Date: 2015-01-10 15:52:55.561
Description:
Funkce Ochrana v reálném čase u prohledávání Windows Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte počítač.

Date: 2014-01-17 10:10:18.749
Description:
Funkce Ochrana v reálném čase u prohledávání Windows Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Monitorování chování
Kód chyby: 0x80501002
Popis chyby: V programu nelze najít soubory definic, které pomáhají rozpoznat nežádoucí software. Zkontrolujte aktualizace definičních souborů a opakujte akci. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.
Důvod: Antimalwarová ochrana přestala z neznámých důvodů fungovat. V některých případech lze tento problém vyřešit restartováním služby.

CodeIntegrity:
===================================

Date: 2019-10-17 22:37:57.740
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-10-17 22:37:56.646
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-10-17 22:37:03.944
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-10-17 22:37:03.116
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-10-17 22:34:14.553
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-10-17 22:34:13.771
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-10-17 22:34:12.599
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2019-10-17 22:34:11.755
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Memory info ===========================

BIOS: American Megatrends Inc. X550VB.213 08/12/2013
Motherboard: ASUSTeK COMPUTER INC. X550VB
Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz
Percentage of memory in use: 64%
Total physical RAM: 3981.68 MB
Available physical RAM: 1397.6 MB
Total Virtual: 4685.68 MB
Available Virtual: 2449.43 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:279.01 GB) (Free:141.21 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (DATA) (Fixed) (Total:398.07 GB) (Free:206.5 GB) NTFS

\\?\Volume{58fa7ef7-1d60-4edf-b905-ac3848736e2f}\ (Recovery) (Fixed) (Total:0.88 GB) (Free:0.53 GB) NTFS
\\?\Volume{2258d452-7e74-4fc4-a995-860328377625}\ () (Fixed) (Total:0.44 GB) (Free:0.18 GB) NTFS
\\?\Volume{122d0591-5cae-47d8-b5df-94764b00401d}\ (Restore) (Fixed) (Total:20.01 GB) (Free:7.82 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 698.6 GB) (Disk ID: 568814A2)

Partition: GPT.

==================== End of Addition.txt ============================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15216
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Aplikace v pozadí

#2 Příspěvek od JaRon »

ahoj,
na zaciatok pouzi postup kolegu
https://forum.viry.cz/viewtopic.php?f=1 ... e#p1525509
oba kroky
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Einee
Návštěvník
Návštěvník
Příspěvky: 38
Registrován: 22 kvě 2012 19:48

Re: Aplikace v pozadí

#3 Příspěvek od Einee »

Zoek.exe v5.0.0.2 Updated 03-May-2018(Online Version)
Tool run by vojte_000 on p  18. 10. 2019 at 17:26:47,52.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\vojte_000\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

18. 10. 2019 17:33:11 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\AGEIA Technologies deleted successfully
C:\PROGRA~2\Applian Technologies deleted successfully
C:\PROGRA~2\by Decepticon deleted successfully
C:\PROGRA~2\WildGames deleted successfully
C:\PROGRA~2\COMMON~1\Pegasus Imaging deleted successfully
C:\Users\vojte_000\AppData\Local\CrashDumps deleted successfully
C:\Users\vojte_000\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\vojte_000\AppData\Local\EmieSiteList deleted successfully
C:\Users\vojte_000\AppData\Local\EmieUserList deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\CrashDumps deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2166135838-3799228312-1979866301-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\AGEIA Technologies not found
C:\PROGRA~2\Applian Technologies not found
C:\PROGRA~2\by Decepticon not found
C:\PROGRA~2\WildGames not found
C:\Users\vojte_000\AppData\Roaming\HearthstoneDeckTracker deleted
C:\Users\vojte_000\AppData\Roaming\EINEE.MTBF.txt deleted
C:\PROGRA~3\SetStretch.VBS deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\WINDOWS\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\Adm deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\WINDOWS\SysWow64\AI_RecycleBin deleted
C:\Users\vojte_000\Documents\Updater deleted

==== Firefox XPI-files found: ======================

- Office Launcher - C:\ProgramData\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_cs-cz.xpi
- Office Launcher - C:\ProgramData\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_en-us.xpi
- Office Launcher - C:\ProgramData\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_hu-hu.xpi
- Office Launcher - C:\ProgramData\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_pl-pl.xpi
- Office Launcher - C:\ProgramData\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_sk-sk.xpi
- Office Launcher - C:\Users\All Users\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_cs-cz.xpi
- Office Launcher - C:\Users\All Users\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_en-us.xpi
- Office Launcher - C:\Users\All Users\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_hu-hu.xpi
- Office Launcher - C:\Users\All Users\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_pl-pl.xpi
- Office Launcher - C:\Users\All Users\Microsoft\OEMOffice15\Office15\x86\15.0.4454.1510\office\data\officefirefox_sk-sk.xpi

==== Chromium Look ======================

Google Chrome Version: 77.0.3865.120


Fair Ads - vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gagfkmknmijppikpcikmbbkdkhggcmge
Chrome Media Router - vojte_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm

==== Chromium Fix ======================

C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_adserver.adtech.de_0.localstorage deleted successfully
C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_adserver.adtech.de_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... &pc=ASU2JS
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... &pc=ASU2JS
HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IE8SRC

==== Reset Google Chrome ======================

C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\vojte_000\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\vojte_000\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\vojte_000\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\vojte_000\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\vojte_000\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=95 folders=53 32705264 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\vojte_000\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\VOJTE_~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on so 19. 10. 2019 at 8:33:19,96 ======================















~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 8.1 x64
Ran by vojte_000 (Administrator) on so 19. 10. 2019 at 13:34:12,02
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 19. 10. 2019 at 13:40:20,17
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15216
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Aplikace v pozadí

#4 Příspěvek od JaRon »

Aoo sa sprava PC?
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Einee
Návštěvník
Návštěvník
Příspěvky: 38
Registrován: 22 kvě 2012 19:48

Re: Aplikace v pozadí

#5 Příspěvek od Einee »

Je o poznání rychlejší, nebo se mi tak alespoň jeví, ale ihned po zapnutí naskočil příkazový řádek, tentokrát jsem si alespoň všiml, že tam bylo napsáno steam update a hned poté opětovně naskočil chrome s banerovou stránkou. viz obrázek
Přílohy
Bez názvu.jpg
Bez názvu.jpg (78.27 KiB) Zobrazeno 1611 x

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15216
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Aplikace v pozadí

#6 Příspěvek od JaRon »

Najdi a zmaz subor updateSteam.bat
Restart
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Einee
Návštěvník
Návštěvník
Příspěvky: 38
Registrován: 22 kvě 2012 19:48

Re: Aplikace v pozadí

#7 Příspěvek od Einee »

Po restartu už stránka nenaskočila :)
Mockrát děkuji. Pravděpodobně tam nic dalšího nebude.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15216
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Aplikace v pozadí

#8 Příspěvek od JaRon »

Rado sa stalo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno