Teď jsem zapl PC a zapl se mi Internet s nějakou reklamou, takže je infikován i Google.... nicméně FRST64.exe se mi povedl stáhnout a tady je log:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-06-2017
Ran by test (13-06-2017 16:07:17)
Running from C:\Users\test\Desktop
Windows 7 Professional Service Pack 1 (X64) (2015-11-14 22:59:25)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1906927588-4285542165-1585533686-500 - Administrator - Disabled)
Guest (S-1-5-21-1906927588-4285542165-1585533686-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1906927588-4285542165-1585533686-1002 - Limited - Enabled)
test (S-1-5-21-1906927588-4285542165-1585533686-1000 - Administrator - Enabled) => C:\Users\test
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7 Days to Die (HKLM\...\Steam App 251570) (Version: - The Fun Pimps)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated)
Adobe Flash Player 25 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 25.0.0.171 - Adobe Systems Incorporated)
Adobe Flash Player 25 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.2 (HKLM-x32\...\{315BE77E-D725-477D-9C71-63F78844363C}) (Version: 12.2.2.172 - Adobe Systems, Inc)
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.4.194 - Adobe Systems, Inc.)
AdVenture Capitalist (HKLM-x32\...\Steam App 346900) (Version: - Hyper Hippo Games)
AIO Ultimate Patch v8.2.0 (HKLM-x32\...\AIO Ultimate Patch_is1) (Version: 8.2.0 - Zexdestroyer)
Aktualizace NVIDIA 24.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 24.0.0.0 - NVIDIA Corporation)
ASRock App Charger v1.0.6 (HKLM\...\ASRock App Charger_is1) (Version: 1.0.6 - ASRock Inc.)
ASRock OC DNA v1.12 (HKLM-x32\...\ASRock OC DNA_is1) (Version: - )
ASRock OC Tuner v2.4.70 (HKLM-x32\...\ASRock OC Tuner_is1) (Version: - )
ASRock XFast RAM v2.0.28 (HKLM\...\ASRock XFast RAM_is1) (Version: - ASRock Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.4.2294 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Cities: Skylines (HKLM\...\Steam App 255710) (Version: - Colossal Order Ltd.)
Counter-Strike 1.6 (HKU\S-1-5-21-1906927588-4285542165-1585533686-1000\...\Counter-Strike 1.6) (Version: - )
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
CPUCores :: Maximize Your FPS (HKLM\...\Steam App 384300) (Version: - Tim Sullivan)
CPUID CPU-Z OC Formula 1.74 (HKLM\...\CPUID CPU-Z OC Formula_is1) (Version: 1.74 - CPUID, Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd)
Dead by Daylight (HKLM\...\Steam App 381210) (Version: - Behaviour Digital Inc.)
Don't Starve Together (HKLM\...\Steam App 322330) (Version: - Klei Entertainment)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Google Drive (HKLM-x32\...\{A1238426-ECDF-4639-BE2F-8D12A97AE23C}) (Version: 2.34.5075.1619 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.86 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
H1Z1: King of the Kill (HKLM\...\Steam App 433850) (Version: - Daybreak Game Company)
Half-Life 2 (HKLM\...\Steam App 220) (Version: - Valve)
HAWKEN (HKLM\...\Steam App 271290) (Version: - Reloaded Games)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment)
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.1.0.2 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Cheat Engine 6.5.1 (HKLM-x32\...\Cheat Engine 6.5.1_is1) (Version: - Cheat Engine)
Cheat Engine 6.6 (HKLM-x32\...\Cheat Engine 6.6_is1) (Version: - Cheat Engine)
Interplanetary (HKLM\...\Steam App 278910) (Version: - Team Jolly Roger)
Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
Last Man Standing (HKLM\...\Steam App 506540) (Version: - Free Reign Entertainment)
Malwarebytes verze 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes)
Microsoft .NET Framework 4.6.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
My Game Long Name (HKLM\...\UDK-c66cc16b-979b-444a-8a9c-c6712143e3e9) (Version: - Epic Games, Inc.)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.11.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.3.5 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 358.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 358.91 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 358.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 358.91 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
NvTelemetry (Version: 2.4.5.0 - NVIDIA Corporation) Hidden
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
Overwatch Test (HKLM-x32\...\Overwatch Test) (Version: - Blizzard Entertainment)
Ovládací panel NVIDIA 358.91 (Version: 358.91 - NVIDIA Corporation) Hidden
Platform (x32 Version: 1.36 - VIA Technologies, Inc.) Hidden
PokeCraft_GameTeam_1.7.10 (HKLM-x32\...\PokeCraft_GameTeam_1.7.10) (Version: - )
Poker Night at the Inventory (HKLM-x32\...\Steam App 31280) (Version: - Telltale Games)
Reus (HKLM-x32\...\Steam App 222730) (Version: - Abbey Games)
ROBLOX Player (HKLM-x32\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - ROBLOX Corporation)
Rocket League (HKLM\...\Steam App 252950) (Version: - Psyonix, Inc.)
SafeZone Stable 3.55.2393.607 (x32 Version: 3.55.2393.607 - Avast Software) Hidden
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation)
Skype™ 7.37 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.37.103 - Skype Technologies S.A.)
Source Filmmaker (HKLM\...\Steam App 1840) (Version: - Valve)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
theHunter (HKLM-x32\...\Steam App 253710) (Version: - Expansive Worlds)
Tom Clancy's Rainbow Six Siege (HKLM\...\Steam App 359550) (Version: - Ubisoft Montreal)
Tom Clancy's The Division (HKLM\...\Steam App 365590) (Version: - Massive Entertainment)
Town of Salem (HKLM\...\Steam App 334230) (Version: - BlankMediaGames)
VIA Platforma Ovladače zařízení (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Wallpaper Engine (HKLM\...\Steam App 431960) (Version: - Kristjan Skutta)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.31 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
Worm.is: The Game (HKLM\...\Steam App 466910) (Version: - Freakinware Studios)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\test\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\test\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-1906927588-4285542165-1585533686-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\test\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll => No File
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {10A4EB57-22E8-4D8C-8309-591A03D24FF8} - System32\Tasks\BossseedUpdateTaskMachineCore => C:\Program Files (x86)\Bossseed\Update\BossseedUpdate.exe <==== ATTENTION
Task: {12C4500E-EBCB-4C7D-8B6A-BA4F10E5AF3F} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-03-28] (NVIDIA Corporation)
Task: {14088108-5386-4661-A00A-ADFACBA5FE88} - System32\Tasks\youfreenewscombcoms => "" [Argument = youfreenews.com/bcoms]
Task: {1F486116-419B-495E-892B-811EE074763B} - System32\Tasks\OnfatUpdateTaskMachineCore => C:\Program Files (x86)\Onfat\Update\OnfatUpdate.exe <==== ATTENTION
Task: {1F55D9E5-9B6A-486E-B6A5-F36377AFD9B0} - System32\Tasks\Games\UpdateCheck_S-1-5-21-1906927588-4285542165-1585533686-1000
Task: {221480A1-4E05-4BE5-BF50-105E435395CF} - System32\Tasks\SafeZone scheduled Autoupdate 1468859727 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-05-17] (Avast Software)
Task: {238971E7-3658-4FCE-AA0A-52058014C1AE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-09] (Adobe Systems Incorporated)
Task: {29C35668-F1D4-4110-B746-0E1398157208} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-03-28] (NVIDIA Corporation)
Task: {314912C8-7E04-4FDD-8FDD-B0587056E929} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-03-28] (NVIDIA Corporation)
Task: {322EBE09-E94B-415C-943D-615A3E712500} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-03-28] (NVIDIA Corporation)
Task: {43789D00-80F2-4355-93FC-F13F71C4A549} - System32\Tasks\AdobeAAMUpdater-1.0-test-PC-test => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
Task: {4F967D56-9C4C-415D-B0E1-977668333E6F} - System32\Tasks\{E9E4F67C-4149-457E-9DA0-22F90420D7B2} => pcalua.exe -a "C:\Program Files (x86)\MPC Cleaner\Uninstall.exe" -c /xuninstall
Task: {51C84AA4-5F81-4384-88D4-8F14EF1CB855} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-03-28] (NVIDIA Corporation)
Task: {5934F67B-6718-4006-98E3-925B5625D19C} - System32\Tasks\JunetoeUpdateTaskMachineUA => C:\Program Files (x86)\Junetoe\Update\JunetoeUpdate.exe <==== ATTENTION
Task: {6EB7126A-0CD4-4B66-A117-A5B99CC16706} - System32\Tasks\ChelfNotify Task => C:\ProgramData\ChelfNotify\BrowserUpdate.exe <==== ATTENTION
Task: {702AB7DB-00D1-4F6A-A9A5-9818AE6B3813} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software)
Task: {8AE17116-9657-4F45-839F-C8C9D9A9283C} - System32\Tasks\BossseedUpdateTaskMachineUA => C:\Program Files (x86)\Bossseed\Update\BossseedUpdate.exe <==== ATTENTION
Task: {8F3C9A63-DA4C-4888-9427-382CE9741B57} - System32\Tasks\GoogleUpdateTaskMachineCore1d12d273b5e9ef8 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-21] (Google Inc.)
Task: {9A970427-6206-404F-A566-86C90C55A772} - System32\Tasks\OnfatUpdateTaskMachineUA => C:\Program Files (x86)\Onfat\Update\OnfatUpdate.exe <==== ATTENTION
Task: {AFE0B9BF-DF67-4DCF-BB2A-52BE2497CBDB} - System32\Tasks\InternetE => "" [Argument =
http://howtobleases.xyz/kreps]
Task: {B0D8A2F8-77D7-483B-B5C8-79920F089B72} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_25_0_0_171_pepper.exe [2017-05-09] (Adobe Systems Incorporated)
Task: {BEDB5EB5-85CB-4B0C-A1ED-1F68DB31EEF6} - \GoogleUpdateTaskMachineUA1d12d273beedd3d -> No File <==== ATTENTION
Task: {C846EDC7-ED3C-48B6-A101-2AD56907111E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated)
Task: {CB9CE33C-D093-4F90-98C2-55D9081F476D} - System32\Tasks\GoogleUpdateTaskMachineUA1d15d7bd5d2ebca => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-21] (Google Inc.)
Task: {E93DD05A-7B74-4FE3-AF3A-EB3B0841E4EC} - System32\Tasks\Gerkmiwegh Cache => C:\Program Files (x86)\Bvafivagh\grkCachePhg.exe
Task: {F2D18390-9770-4EDD-83A5-DACA480C15A1} - System32\Tasks\JunetoeUpdateTaskMachineCore => C:\Program Files (x86)\Junetoe\Update\JunetoeUpdate.exe <==== ATTENTION
Task: {FE34FF4E-D15A-4BEA-B5AB-1AF7505A8302} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-05-09] (AVAST Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\test\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ВКонтакте.lnk -> C:\Users\test\AppData\Local\Amigo\Application\amigo.exe (No File) <===== Cyrillic
Shortcut: C:\Users\test\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Одноклассники.lnk -> C:\Users\test\AppData\Local\Amigo\Application\amigo.exe (No File) <===== Cyrillic
ShortcutWithArgument: C:\Users\test\AppData\Local\Microsoft\Start Menu\Вoйти в Интeрнeт.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> "hxxp://haxtaxy.ru/?utm_source=startlink03&utm_content=c9929528e6af3413fb1863d8e75afaa4&utm_term=6459F5F86A23F50FD4964C16789E6D8E&utm_d=20160820"
ShortcutWithArgument: C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online\Imperia Online.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://
www.imperiaonline.org/?ref_ad=src123 --app-window-size=1440,900
ShortcutWithArgument: C:\Users\test\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mail.Ru.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> url,FileProtocolHandler "hxxp://
www.mail.ru/cnt/20775012?gp=811035"
==================== Loaded Modules (Whitelisted) ==============
2015-11-15 01:12 - 2015-11-05 17:13 - 00116528 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-11-15 01:04 - 2015-11-09 21:43 - 00078448 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll
2015-11-15 01:04 - 2015-11-09 21:43 - 00386160 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll
2015-11-15 01:04 - 2015-11-09 21:43 - 00621168 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Skin.dll
2017-06-12 17:08 - 2017-06-03 10:21 - 03807064 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.86\libglesv2.dll
2017-06-12 17:08 - 2017-06-03 10:21 - 00100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.86\libegl.dll
2017-05-09 16:48 - 2017-05-09 16:48 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-05-09 16:48 - 2017-05-09 16:48 - 00176992 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-05-09 16:48 - 2017-05-09 16:48 - 00223224 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2017-06-13 05:22 - 2017-06-13 05:22 - 05778720 _____ () C:\Program Files\AVAST Software\Avast\defs\17061202\algo.dll
2017-05-09 16:48 - 2017-05-09 16:48 - 00684656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2017-05-09 16:48 - 2017-05-09 16:48 - 00230632 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2017-05-09 16:48 - 2017-05-09 16:48 - 00997896 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll
2017-05-09 16:48 - 2017-05-09 16:48 - 67717632 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-05-09 16:48 - 2017-05-09 16:48 - 00291824 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2016-07-17 13:58 - 2017-05-17 03:54 - 00678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-07-17 13:58 - 2016-09-01 03:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-07-17 13:58 - 2016-09-01 03:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-07-17 13:58 - 2016-09-01 03:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-07-17 13:58 - 2017-06-08 07:42 - 02485536 _____ () C:\Program Files (x86)\Steam\video.dll
2016-07-17 13:57 - 2016-01-27 09:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2016-07-17 13:57 - 2016-01-27 09:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2016-07-17 13:57 - 2016-01-27 09:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2016-07-17 13:57 - 2016-01-27 09:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2016-07-17 13:57 - 2016-01-27 09:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-07-17 13:58 - 2017-06-08 07:42 - 00877856 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-07-17 13:57 - 2016-07-05 00:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2017-05-31 11:41 - 2017-05-31 11:41 - 01982976 ____R () C:\Program Files (x86)\Skype\Phone\skypert.dll
2016-12-13 06:56 - 2017-05-08 21:45 - 69516064 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2017-06-09 12:57 - 2017-05-17 03:54 - 00678176 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll
2016-07-17 13:58 - 2017-06-08 07:42 - 00385312 _____ () C:\Program Files (x86)\Steam\steam.dll
2016-07-17 13:57 - 2015-09-25 01:52 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PAexec => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PAexec => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:34 - 2016-08-24 13:35 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1906927588-4285542165-1585533686-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\test\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\startupreg: Clownfish => "C:\Program Files (x86)\Clownfish\Clownfish.exe"
MSCONFIG\startupreg: cz.seznam.software.autoupdate => "C:\Users\test\AppData\Roaming\Seznam.cz\szninstall.exe" -c
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "C:\Users\test\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{0E6AD7D0-EDBC-4A76-A991-3B0E016EC448}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{C9B5E9BE-A0F2-4AB9-8A73-1C0908A88DA9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{FF7229D0-4EB6-406C-82A0-49D40D2436DC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{B7B143E2-A1D9-4D5F-AAC6-FA6C32843994}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{FD91C39F-9D42-45EC-B9A0-563B94A5BCB2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0B545220-D025-4A34-8320-2C5B60D069FF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{98A83A41-EE13-4F86-A708-5CE3BBE92B12}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{0283AE8F-6DC2-47C5-9ACD-42827C092244}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{408E90C7-1CDA-4D9E-A277-2D9BB762CB6D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{C8B4F896-8A78-4BAE-A7FD-8579109AC8DD}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{AA889EF1-07C6-4EC0-9F46-93F448C6597B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Emily is Away\emily is away.exe
FirewallRules: [{13CFB8ED-CF84-4AD3-A86E-08776BCB4FC2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Emily is Away\emily is away.exe
FirewallRules: [{F0C0CEA0-985E-46D9-82CF-44B7DAC10821}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe
FirewallRules: [{931B76C7-A7A2-4A2F-877D-E2C22FAD915D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe
FirewallRules: [{E7A4641F-0767-4092-8CAA-C87E461F7C21}] => (Allow) LPort=80
FirewallRules: [{933824CE-C590-42C8-B0BC-77B66C0C7E59}] => (Allow) LPort=443
FirewallRules: [{183FCB46-E0CB-4678-A256-8F9AA2F002A3}] => (Allow) LPort=20010
FirewallRules: [{C7F429B4-E931-4786-B05C-86A7E50E7240}] => (Allow) LPort=3478
FirewallRules: [{9DD75338-548B-4BD3-88EE-B71F9A8DE017}] => (Allow) LPort=7850
FirewallRules: [{78553959-7542-4398-B15C-DA1A676178C2}] => (Allow) LPort=7852
FirewallRules: [{6B464B8C-FA04-4DE5-96E1-20FAF534DABE}] => (Allow) LPort=7853
FirewallRules: [{F847119A-1845-4351-836A-44E5EAFE3A03}] => (Allow) LPort=27022
FirewallRules: [{7B3CFA27-E645-4D3E-9A98-311A273068C6}] => (Allow) LPort=6881
FirewallRules: [{A052E274-7212-4D22-9B65-2C260B914E9A}] => (Allow) LPort=33333
FirewallRules: [{3D1A2733-9630-4A32-9EA4-D0050D5B466C}] => (Allow) LPort=20443
FirewallRules: [{0214E2C0-1ADF-4E24-A307-D7795DC3ADDF}] => (Allow) LPort=8090
FirewallRules: [{8A62B8FE-6502-4BAA-9FA5-1BCC15FC001D}] => (Allow) C:\Games\World_of_Warplanes\WoWPLauncher.exe
FirewallRules: [{7522A6A4-3D64-419E-947F-049D690DC8AD}] => (Allow) C:\Games\World_of_Warplanes\WoWPLauncher.exe
FirewallRules: [{2A2F1D8C-67ED-4611-939E-4D751262C1A7}] => (Allow) C:\Games\World_of_Warplanes\worldofwarplanes.exe
FirewallRules: [{66E59FDB-4743-4FB5-A628-634B7F9FD34B}] => (Allow) C:\Games\World_of_Warplanes\worldofwarplanes.exe
FirewallRules: [{199FA038-EAE5-48A0-B513-2E22E29EF789}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\aceofspades\aos.exe
FirewallRules: [{C71ED3BD-8B2F-4729-8711-A7E64244169C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\aceofspades\aos.exe
FirewallRules: [{AC618B69-204E-4E4D-B784-25CF84C36FDB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Poker Night at the Inventory\CelebrityPoker.exe
FirewallRules: [{E1A715A2-D1AA-40C9-A7D0-6589B83FD1BB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Poker Night at the Inventory\CelebrityPoker.exe
FirewallRules: [{CB697421-7470-47F6-B13B-741477FD47E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\theHunter\launcher\launcher.exe
FirewallRules: [{5A5AEFF9-1495-467A-94E9-07D496E6C938}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\theHunter\launcher\launcher.exe
FirewallRules: [{ED157A95-E066-4A16-BDFF-879CC9786809}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Reus\Reus.exe
FirewallRules: [{8F782635-AB83-405D-8E2B-EF2533D2E345}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Reus\Reus.exe
FirewallRules: [TCP Query User{33808FD3-2D40-4C64-99AC-ED8C1F2E18F3}C:\users\test\appdata\local\mycomgames\mycomgames.exe] => (Block) C:\users\test\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [UDP Query User{AB1ADC4D-FA26-4D17-978C-C55EB6A976AC}C:\users\test\appdata\local\mycomgames\mycomgames.exe] => (Block) C:\users\test\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [{BABF82D2-8A8D-4D4F-84C7-577A77A936DD}] => (Allow) C:\WarThunder\bpreport.exe
FirewallRules: [{0A0FC683-08DB-46F1-9EB5-7E000EC3CB06}] => (Allow) C:\WarThunder\bpreport.exe
FirewallRules: [{DC4EB25F-CE22-4239-8213-DCB52AD5F657}] => (Allow) C:\SimCity 2013 Offline\SimCity\SimCity.exe
FirewallRules: [{D7DF51B4-8932-4404-BDEA-FCA88559EBC4}] => (Allow) C:\SimCity 2013 Offline\SimCity\SimCity.exe
FirewallRules: [{44104974-E2C7-466C-A171-5943F76B4E42}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
FirewallRules: [{3B1EF7AE-D321-4FF8-8EB5-1166B3955175}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
FirewallRules: [{1E132540-C7D8-42E4-901E-786C76E81F31}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{3CD00620-A5A5-4A50-8E96-0BB80679043F}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{69948A0B-9A84-41BB-B19C-D8712EA3D63C}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{1C6583ED-A738-4B9A-8D42-C5903C69C10D}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{0E180605-EFA2-453E-9322-D36861D6D6C7}] => (Block) C:\warthunder\aces.exe
FirewallRules: [{A2F6E597-0247-4D0B-96EB-4E96F69295C5}] => (Block) C:\warthunder\aces.exe
FirewallRules: [{1CEF16DD-CC04-49A4-906B-EED68A5CD09E}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{F6A6175F-F58C-4B90-8CE6-176185604B07}] => (Allow) LPort=2869
FirewallRules: [{A46BCE63-CD15-4A41-A83F-0F8BE929A118}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{1196EF31-D066-470F-BC43-C2258D8000EF}C:\users\test\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\test\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{FE6FF8E0-7384-4EE3-ABF8-F80D3642F90D}C:\users\test\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\test\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{9D95FAC6-0ED6-4211-8105-55AA2385DDA8}C:\users\test\appdata\local\temp\rar$exa0.875\ark survival evolved\shootergame\binaries\win64\shootergame.exe] => (Allow) C:\users\test\appdata\local\temp\rar$exa0.875\ark survival evolved\shootergame\binaries\win64\shootergame.exe
FirewallRules: [UDP Query User{1B5AB156-73EC-4982-85D7-D20D07F2D96B}C:\users\test\appdata\local\temp\rar$exa0.875\ark survival evolved\shootergame\binaries\win64\shootergame.exe] => (Allow) C:\users\test\appdata\local\temp\rar$exa0.875\ark survival evolved\shootergame\binaries\win64\shootergame.exe
FirewallRules: [TCP Query User{EA9DF7EF-D71C-4296-A593-BE16D71D0AD6}C:\users\test\appdata\local\temp\rar$exa0.875\ark survival evolved\shootergame\binaries\win64\shootergameserver.exe] => (Allow) C:\users\test\appdata\local\temp\rar$exa0.875\ark survival evolved\shootergame\binaries\win64\shootergameserver.exe
FirewallRules: [UDP Query User{7753E8CC-82B6-4B6A-A699-896171F0ADBC}C:\users\test\appdata\local\temp\rar$exa0.875\ark survival evolved\shootergame\binaries\win64\shootergameserver.exe] => (Allow) C:\users\test\appdata\local\temp\rar$exa0.875\ark survival evolved\shootergame\binaries\win64\shootergameserver.exe
FirewallRules: [TCP Query User{E9E6E397-A85F-460E-AC93-9D68C30741DB}C:\program files (x86)\java\jre1.8.0_77\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_77\bin\javaw.exe
FirewallRules: [UDP Query User{525532BE-CF30-4E6C-9196-74B37AE45763}C:\program files (x86)\java\jre1.8.0_77\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_77\bin\javaw.exe
FirewallRules: [TCP Query User{0F5D4570-5CD6-4A96-8AD7-4B760033F93D}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{4BAD9F7B-2B7D-48D4-BC0C-1E5D4659700D}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{210D4729-A425-4B77-92D2-0914E880FE31}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{55C5E529-144C-41D2-95D5-FC3CCC102781}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{9CA46917-0841-4F78-A52C-D1FFE282D7E5}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{80894295-FF7A-4FC3-B7C4-B650E339280F}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{936865F0-CDC9-4A23-A21C-219B6E024EE4}] => (Allow) C:\Games\World_of_Tanks\worldoftanks.exe
FirewallRules: [{1630A6F3-E06F-4450-8527-2DF516CDD065}] => (Allow) C:\Games\World_of_Tanks\worldoftanks.exe
FirewallRules: [{EDF0C294-264A-49D5-90AC-1BAF119A51AA}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{8EEF7B44-69C5-4E8B-85F8-01F0B595690B}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [TCP Query User{92007C46-0ED6-4ED8-97DB-605F5FB8238E}C:\program files (x86)\steam\steamapps\common\dino d-day\dinodday.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dino d-day\dinodday.exe
FirewallRules: [UDP Query User{2CA40B3E-E314-4C18-AAA9-188DAD5B355C}C:\program files (x86)\steam\steamapps\common\dino d-day\dinodday.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dino d-day\dinodday.exe
FirewallRules: [{83ED9335-6A3E-4EEB-95A0-60E8D105B63E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{BBC7E534-069C-4F24-9104-038AC031D1D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{1EAEF6B9-1E08-48C3-8219-8DF68182A31F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe
FirewallRules: [{04D43BB3-0A81-4D3A-9C61-21468BF8E4F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe
FirewallRules: [{F9650580-05BC-4FDB-B5E6-2A9A215401B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Worm.is The Game\Wormis.exe
FirewallRules: [{309B0CA6-B29A-4997-B54D-CD116BDD62B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Worm.is The Game\Wormis.exe
FirewallRules: [TCP Query User{44F2F862-FCAF-491E-9463-2D88003A6780}C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [UDP Query User{3A74B7F1-2FDD-4E27-A57D-B7F60DC02340}C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [TCP Query User{BD17EE0B-D999-4511-8824-C626C3940F8D}C:\program files (x86)\steam\steamapps\common\war thunder\win32\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win32\aces.exe
FirewallRules: [UDP Query User{E9F2C230-611B-4B62-A38A-F6028A11D7D3}C:\program files (x86)\steam\steamapps\common\war thunder\win32\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win32\aces.exe
FirewallRules: [{FCA42EE0-B528-44E8-916D-09DC51EBD4B7}] => (Allow) C:\Users\test\AppData\Local\Temp\MPCOnline\MPCDownload.exe
FirewallRules: [{2455E91A-F595-43FB-820C-C7C6C9BF1652}] => (Allow) C:\Users\test\AppData\Local\Temp\MPCOnline\MPCDownload.exe
FirewallRules: [{8058F56C-4F47-46D1-9434-AD3B080B5DD8}] => (Allow) C:\Users\test\AppData\Roaming\Nox\bin\Nox.exe
FirewallRules: [{FDA4DC05-E3EA-4E0B-96A0-6C6267940F35}] => (Allow) C:\Program Files\Bignox\BigNoxVM\RTNoxVMHandle.exe
FirewallRules: [{E93EFEA3-19A1-4E5B-A94B-3D4A5BEB0584}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SourceFilmmaker\game\sfm.exe
FirewallRules: [{200C1B5C-FA46-477A-B858-B50E8A0265FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SourceFilmmaker\game\sfm.exe
FirewallRules: [{21C42A22-CF3A-45D7-8595-66ABEA831D9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{0AED041D-41D0-4C7F-90F0-B0AC9362772E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{70FB37F1-E1FC-44B5-BB4B-43F46478C9E3}] => (Allow) C:\ProgramData\Junetoe\Junetoe.exe
FirewallRules: [TCP Query User{3F4AC3C5-B250-465B-A34D-8B43B6B60E45}C:\users\test\counter-strike 1.6\hl.exe] => (Allow) C:\users\test\counter-strike 1.6\hl.exe
FirewallRules: [UDP Query User{E2BA28C1-C0A8-461C-93C6-215B65C8849A}C:\users\test\counter-strike 1.6\hl.exe] => (Allow) C:\users\test\counter-strike 1.6\hl.exe
FirewallRules: [{03224F0D-25BA-49DF-A5C5-9F51BBDECEF5}] => (Allow) C:\Program Files (x86)\Bossseed\Update\BossseedUpdate.exe
FirewallRules: [{28CCCE5D-4E36-4DDA-9C84-91CEFBDB03C3}] => (Allow) C:\ProgramData\Bossseed\Bossseed.exe
FirewallRules: [{986E9482-92D3-4C52-AFF8-DCADAD134773}] => (Allow) C:\Games\World_of_Tanks_CT\WoTLauncher.exe
FirewallRules: [{DA0B3E02-738D-47E1-9C1E-DF87B792B125}] => (Allow) C:\Games\World_of_Tanks_CT\WoTLauncher.exe
FirewallRules: [{9D8DD9A7-A430-48EB-A69D-404D217D994F}] => (Allow) C:\Games\World_of_Tanks_CT\worldoftanks.exe
FirewallRules: [{B24A0AED-9946-4DA5-87FC-9ECE82568984}] => (Allow) C:\Games\World_of_Tanks_CT\worldoftanks.exe
FirewallRules: [TCP Query User{9492F7D9-F02F-4ADE-A7EA-334EC80DC826}C:\program files (x86)\bangboat\application\chrome.exe] => (Block) C:\program files (x86)\bangboat\application\chrome.exe
FirewallRules: [UDP Query User{B2294BAF-E530-4E81-9B59-C45A3EB0F17B}C:\program files (x86)\bangboat\application\chrome.exe] => (Block) C:\program files (x86)\bangboat\application\chrome.exe
FirewallRules: [TCP Query User{BE5023FC-0D42-4B3F-BE60-522C9194D0BE}C:\users\test\appdata\local\temp\rar$exa0.077\calm.down.stalin.v1.0.3\engine\binaries\win64\ue4game-win64-shipping.exe] => (Allow) C:\users\test\appdata\local\temp\rar$exa0.077\calm.down.stalin.v1.0.3\engine\binaries\win64\ue4game-win64-shipping.exe
FirewallRules: [UDP Query User{36D417A9-103D-4518-A97F-2B89DA171A57}C:\users\test\appdata\local\temp\rar$exa0.077\calm.down.stalin.v1.0.3\engine\binaries\win64\ue4game-win64-shipping.exe] => (Allow) C:\users\test\appdata\local\temp\rar$exa0.077\calm.down.stalin.v1.0.3\engine\binaries\win64\ue4game-win64-shipping.exe
FirewallRules: [{4127386A-2E7E-4CF7-9D21-863A19D4518B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BlockNLoad\Win64\BlockNLoad.exe
FirewallRules: [{819EAC4A-A522-4B37-9A97-DF250C6D162B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BlockNLoad\Win64\BlockNLoad.exe
FirewallRules: [{2340A0C9-E88F-46A9-B826-F98FFF923E28}] => (Allow) C:\Users\test\AppData\Local\Temp\andy-x64\Setup.exe
FirewallRules: [{54193372-6A78-4A61-B410-AE13E460A3C8}] => (Allow) C:\Users\test\AppData\Local\Temp\andy-x64\Setup.exe
FirewallRules: [{A6F5A9D5-F65F-4B68-9CB3-AED80322B5D0}] => (Allow) C:\Program Files\Andy\andy.exe
FirewallRules: [{FAFC884C-1AA3-445F-A251-12C7FD6E4CB6}] => (Allow) C:\Program Files\Andy\andy.exe
FirewallRules: [{EE9EFA04-7915-4C53-BA0C-7F6D08152195}] => (Allow) C:\Program Files\Andy\AndyConsole.exe
FirewallRules: [{B779BEDC-31B2-4A6F-A444-1C50F114AD7A}] => (Allow) C:\Program Files\Andy\AndyConsole.exe
FirewallRules: [{484521CC-8BD3-4BB5-AEBC-40460C0E6C4B}] => (Allow) C:\Program Files\Andy\HandyAndy.exe
FirewallRules: [{019C0CE5-9F9A-48D1-92EF-62D7C1701F03}] => (Allow) C:\Program Files\Andy\HandyAndy.exe
FirewallRules: [{BB3AD760-C507-49A1-B3C3-379BDA82F3BA}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe
FirewallRules: [{6AC05D2C-6E9B-4454-9060-532081F60F88}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe
FirewallRules: [{4F324C39-D9A4-4196-8771-1A52036C0141}] => (Allow) C:\Users\test\AppData\Local\Temp\RemoveTemp.exe
FirewallRules: [{685B9439-5CBA-4334-9506-22715F6F00FD}] => (Allow) C:\Users\test\AppData\Local\Temp\RemoveTemp.exe
FirewallRules: [{5F696A45-A003-42EB-BE54-3BFF4A188A57}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe
FirewallRules: [{AC32C19A-AA9F-4094-81C2-809741BD0D6A}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe
FirewallRules: [{86D27381-5DB4-4377-8140-D95805A04D92}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe
FirewallRules: [{E0B81AA3-D787-4F37-BBE6-405A1A17D1C1}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe
FirewallRules: [{29C5D60F-D80F-42BA-95A7-1F4594907A48}] => (Allow) C:\Program Files (x86)\Hotson\Application\chrome.exe
FirewallRules: [{3F4E2191-C9AA-4629-BE75-56786C6F6516}] => (Allow) C:\Users\test\AppData\Local\Amigo\Application\amigo.exe
FirewallRules: [{E3A70F68-AA50-4ACC-B9B7-14FFE018E66A}] => (Allow) C:\WarThunder\run.exe
FirewallRules: [{02E7F1EB-EE82-47AC-B08C-EE304107613D}] => (Allow) C:\WarThunder\run.exe
FirewallRules: [{ACB342F9-BF00-4A2A-BE95-E5E53EFB3586}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{E0697C14-1DB5-43D0-9184-1DC0C765E393}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{D266EFED-0C6D-4F21-B059-4C76145B9188}] => (Allow) C:\Games\World_of_Warships\WoWSLauncher.exe
FirewallRules: [{893D001C-69F9-4172-AE90-BBA72D53C4FD}] => (Allow) C:\Games\World_of_Warships\WoWSLauncher.exe
FirewallRules: [{AA3034F2-ABB7-411B-9326-6FB41EC41379}] => (Allow) C:\Games\World_of_Warships\worldofwarships.exe
FirewallRules: [{A22C99A4-EF1D-4F29-8766-4EF16EE58560}] => (Allow) C:\Games\World_of_Warships\worldofwarships.exe
FirewallRules: [{08A5C465-2563-4665-8812-093EA19A0890}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3SP.exe
FirewallRules: [{ED90CE52-5845-4BD9-BC23-63AC3AB1E427}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3SP.exe
FirewallRules: [{6EE1EFE3-BAAC-4874-AE84-6D988806B205}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3MP.exe
FirewallRules: [{80927AFE-18BC-4966-8DFB-ACC1540E7897}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3MP.exe
FirewallRules: [{CB86FAB6-D2CF-4DC3-B356-DA9FC2DEC0F5}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{7D156FA2-F6E8-4577-9927-D097CE5D96BA}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{5F47E6EC-8520-4DD3-A2F1-32BB6DC13655}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{CAA3A2E5-5C32-4B2D-99C6-8C511D9DED48}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [TCP Query User{EF57E874-8ED0-46EE-B377-5716839477D4}C:\users\test\appdata\local\temp\rar$exa0.928\astroneer.pre-alpha.v0.2.90.0\astro\binaries\win64\astro-win64-shipping.exe] => (Allow) C:\users\test\appdata\local\temp\rar$exa0.928\astroneer.pre-alpha.v0.2.90.0\astro\binaries\win64\astro-win64-shipping.exe
FirewallRules: [UDP Query User{1BE457E4-C422-4B4B-BE9F-C643CC7EEDEC}C:\users\test\appdata\local\temp\rar$exa0.928\astroneer.pre-alpha.v0.2.90.0\astro\binaries\win64\astro-win64-shipping.exe] => (Allow) C:\users\test\appdata\local\temp\rar$exa0.928\astroneer.pre-alpha.v0.2.90.0\astro\binaries\win64\astro-win64-shipping.exe
FirewallRules: [TCP Query User{B49C353B-2FCD-4F07-811F-21C3E73FB892}C:\program files (x86)\steam\steamapps\common\7 days to die\7daystodie.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\7 days to die\7daystodie.exe
FirewallRules: [UDP Query User{139CE9A0-DA93-47FF-A35C-562A774A311F}C:\program files (x86)\steam\steamapps\common\7 days to die\7daystodie.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\7 days to die\7daystodie.exe
FirewallRules: [TCP Query User{31118C0C-DB20-489D-97A7-6A6FE6C42FBA}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{A7EB4C73-14AB-4A94-BF0F-902DCF893D22}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [{56F1DB8C-18F6-49E8-BD40-5D4929EEB5B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AXYOS\Binaries\Win32\UDK.exe
FirewallRules: [{3001F469-6F77-4479-9520-D03C0598581E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AXYOS\Binaries\Win32\UDK.exe
FirewallRules: [TCP Query User{788BB940-0898-42DD-A028-1FE1DF761722}C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [UDP Query User{B47B8332-0443-4EAE-B57C-434FB02B50D3}C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [{787CD32A-1DFC-4E2A-9429-B7485BA88A0E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{FD476BCB-C114-4A11-BCE8-23DAC376F4EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [TCP Query User{2D2738F1-82F8-4769-B6DA-38872C5F5B84}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [UDP Query User{D288579B-F7AF-4E70-9BC6-37BAA90F676B}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [TCP Query User{65D77DD3-52E5-47F0-AC3D-68C2142DBABC}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{FED4F3AC-BF1A-4F54-B11C-E5314009A47D}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{3E7DAB11-AA5A-4098-A7C5-67649A171FDB}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{A17B120F-AAC8-471D-A953-154C469D88F5}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{EF82E4CE-A0AF-4F52-A432-B8FE2A090932}C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{31E069E8-5E92-4050-BF96-97D9C77F3A56}C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
FirewallRules: [{83956A1D-D3EC-4824-BC93-C2BE41992919}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{26994B77-5B0D-4611-882F-DDCB6CAA078D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{A08E63EE-7FE0-4A7A-AC7B-44E4D14157DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{E9366309-1DFC-4783-88F7-939BB87FCABE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [TCP Query User{84DAA171-E390-48E8-9A47-B1D5D0A14AE0}C:\counter-strike 1.6\hl.exe] => (Allow) C:\counter-strike 1.6\hl.exe
FirewallRules: [UDP Query User{CA6D2542-C43C-460C-8072-EE301AF81238}C:\counter-strike 1.6\hl.exe] => (Allow) C:\counter-strike 1.6\hl.exe
FirewallRules: [{04B2DA5E-239C-4408-B3AA-E6984B37194F}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596_0\SZBrowser.exe
FirewallRules: [{EB2EECEE-D874-40D5-B6A5-AFEC1F31BE4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{0611052B-FE98-4B8C-BD0F-B2CED48629CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{326AA0EB-0E05-4C8B-891D-16C088D687FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\launcher.exe
FirewallRules: [{34E1A068-F4E6-4E46-9EE2-9D4D2D6C7C10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\launcher.exe
FirewallRules: [{77D1C243-FB7A-48F3-9E62-81B68828DFAE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CPUCores\cpucores.exe
FirewallRules: [{ADCE9264-E060-410E-B405-E7F646944502}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CPUCores\cpucores.exe
FirewallRules: [{5EF1536F-CF53-4062-82F1-3DE9D5888321}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\LMS\Launcher.exe
FirewallRules: [{8B41EB11-B9C6-4883-AD6D-610897DE7CB1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\LMS\Launcher.exe
FirewallRules: [TCP Query User{9EE30590-B31B-4436-A954-7086D80F8CE7}C:\program files (x86)\steam\steamapps\common\lms\lms.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\lms\lms.exe
FirewallRules: [UDP Query User{37A95CE0-E3F2-49EE-85B1-AE99F446D586}C:\program files (x86)\steam\steamapps\common\lms\lms.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\lms\lms.exe
FirewallRules: [{FBD85846-0E34-4BB0-A7C3-243745D695E6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{EA6B55D3-E3EC-435F-8ACB-28902B09508B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{2E8E3AE0-5B12-415C-9B41-D375B11BB490}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{D612E0BC-AB51-4B34-AE5B-C7D96AF759FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{2C104C91-554E-4376-8C8D-12BC0691D72F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [{42CB8C72-59DC-42A6-AD7F-5B1566BF09B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [TCP Query User{B094E4BF-0924-4789-9EF9-6F3329BFACD6}C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe
FirewallRules: [UDP Query User{82826D3E-7867-4594-B578-0221BE424ABC}C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe
FirewallRules: [{FBFFEA70-5A8C-403E-8980-A43B46C55DA8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Interplanetary\Interplanetary.exe
FirewallRules: [{CA0985C7-68BC-4556-9D95-46DE14E63DDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Interplanetary\Interplanetary.exe
FirewallRules: [TCP Query User{F1B1931B-07F1-449E-90F7-C2F5ACE5597E}C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{053F55C0-ED34-4B9C-8248-9DFCB7A9B961}C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{6847E965-A691-4C4C-88A1-C9DE5FDC8F71}C:\program files\java\jre1.8.0_111\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_111\bin\javaw.exe
FirewallRules: [UDP Query User{1D0FE6B2-33FC-4F5A-847C-918C7942097A}C:\program files\java\jre1.8.0_111\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_111\bin\javaw.exe
FirewallRules: [{EE267A2C-5673-4E21-998A-4FF31270B637}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{0DE4852B-F8CE-4B6D-924A-261CA6218667}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{1764A0B6-1842-4D6E-B890-65039DF69D95}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Town of Salem\TownOfSalem.exe
FirewallRules: [{BA439052-EC32-4E2A-A30F-CDEC6F0605CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Town of Salem\TownOfSalem.exe
FirewallRules: [{B4EA289E-35BF-41B9-AA14-AAF9457B58FB}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.607\SZBrowser.exe
FirewallRules: [TCP Query User{64965E23-C9C9-4750-97E8-1ACB8D2423DE}C:\program files (x86)\overwatch test\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\overwatch.exe
FirewallRules: [UDP Query User{B1E42C03-E6B4-42A2-B67A-6445CC689833}C:\program files (x86)\overwatch test\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\overwatch.exe
FirewallRules: [{ECF67AF7-7521-4244-B933-D23997E79EF1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\7 Days To Die\7dLauncher.exe
FirewallRules: [{BB50E2DC-C93F-4415-AAC5-BF6047EEEA30}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\7 Days To Die\7dLauncher.exe
FirewallRules: [TCP Query User{8C7F7774-7F73-43C2-8066-3679EAF4B512}C:\users\test\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\test\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{FD83EA29-B04F-493E-884A-EB60824C2B38}C:\users\test\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\test\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{D839F3CA-17C0-4789-90A2-39661BC72F6C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
Name: avast! SecureLine TAP Adapter v3
Description: avast! SecureLine TAP Adapter v3
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: TAP-Windows Provider V9
Service: aswTap
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (06/13/2017 04:00:20 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/13/2017 05:18:28 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/12/2017 07:18:56 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program mbam.exe verze 3.0.0.1068 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 1b14
Čas spuštění: 01d2e39f52c0e366
Čas ukončení: 60000
Cesta k aplikaci: C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
ID hlášení: 0a499c91-4f93-11e7-92ed-bc5ff4a88402
Error: (06/12/2017 12:57:45 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/12/2017 05:19:23 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/11/2017 05:30:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/11/2017 11:30:07 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/10/2017 11:57:21 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/09/2017 12:57:47 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/08/2017 10:05:07 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
System errors:
=============
Error: (06/13/2017 04:02:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update Service(OnfatU) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (06/13/2017 04:02:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Install Service(OnfatDL) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (06/13/2017 04:02:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update Service(JunetoeU) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (06/13/2017 04:02:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Gerkmiwegh Cache neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (06/13/2017 04:02:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba ed2k idle service neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (06/13/2017 04:02:16 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update Service(BossseedU) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (06/13/2017 04:00:16 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
MPCKpt
Error: (06/13/2017 03:59:42 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SoEasySvc neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (06/13/2017 05:20:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update Service(OnfatU) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (06/13/2017 05:20:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Install Service(OnfatDL) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
CodeIntegrity:
===================================
Date: 2016-08-20 13:12:09.388
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\MPCKpt.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-20 12:27:03.189
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-20 12:23:46.093
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-20 12:23:45.828
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-19 10:48:16.436
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-19 10:43:55.218
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-19 10:43:55.140
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-18 18:17:21.705
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-18 18:13:17.203
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system.
Date: 2016-08-18 18:13:16.875
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Processor: AMD Phenom(tm) 9950 Quad-Core Processor
Percentage of memory in use: 29%
Total physical RAM: 8191.24 MB
Available physical RAM: 5736.31 MB
Total Virtual: 16380.67 MB
Available Virtual: 13796.73 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:293.34 GB) (Free:56.79 GB) NTFS
Drive d: (Nový svazek) (Fixed) (Total:302.73 GB) (Free:302.49 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 40788ADD)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=293.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=302.7 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================