﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-07-2016
Ran by Milan (2016-07-03 07:14:45)
Running from C:\Users\Milan\Downloads
Windows 10 Pro Version 1511 (X64) (2015-12-06 17:35:00)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2007596338-2558511808-3841995970-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2007596338-2558511808-3841995970-503 - Limited - Disabled)
Guest (S-1-5-21-2007596338-2558511808-3841995970-501 - Limited - Disabled) => C:\Users\Guest
HomeGroupUser$ (S-1-5-21-2007596338-2558511808-3841995970-1010 - Limited - Enabled)
Milan (S-1-5-21-2007596338-2558511808-3841995970-1001 - Administrator - Enabled) => C:\Users\Milan

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\uTorrent) (Version: 3.3.1.30003 - BitTorrent Inc.)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
Adobe Flash Player 22 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated)
CCleaner (HKLM\...\CCleaner) (Version: 5.19 - Piriform)
CPUID CPU-Z 1.75 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0327 - DT Soft Ltd)
dreamboxEDIT -- The one and only settings editor for your Dreambox (HKLM-x32\...\dreamboxEDIT) (Version:  - )
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version:  - SCS Software)
FastShare.cz verze 2.3.1 (HKLM-x32\...\FastShare.cz_is1) (Version: 2.3.1 - )
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.2.2.802 - Foxit Corporation)
Google Drive (HKLM-x32\...\{709316AD-161C-4D5C-9AE7-0B3A822DA271}) (Version: 1.30.2170.0459 - Google, Inc.)
Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.)
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version:  - EFD Software)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation)
Intel® Chipset Device Software (x32 Version: 10.0.27 - Intel(R) Corporation) Hidden
IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.42 - Irfan Skiljan)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Kodi (HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\Kodi) (Version:  - XBMC-Foundation)
Malwarebytes Anti-Malware verze 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 44.0.2 (x86 cs) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 cs)) (Version: 44.0.2 - Mozilla)
NEF to JPG (HKLM-x32\...\{13D87B39-2A3B-4675-A0D9-B8B01EA2F8E3}_is1) (Version:  - neftojpg.com)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
OpenOffice 4.1.2 (HKLM-x32\...\{69D27D4C-36CE-4CB2-A290-C38B0A990955}) (Version: 4.12.9782 - Apache Software Foundation)
Opera Stable 38.0.2220.31 (HKLM-x32\...\Opera 38.0.2220.31) (Version: 38.0.2220.31 - Opera Software)
PhotoScape (HKLM-x32\...\PhotoScape) (Version:  - )
Project CARS (HKLM-x32\...\UHJvamVjdENBUlM=_is1) (Version: 1 - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
Trackmania Turbo (HKLM-x32\...\Trackmania Turbo_is1) (Version:  - )
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
WinRAR 5.10 beta 4 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.10.4 - win.rar GmbH)
xKarel 2.0.0b5 (HKLM-x32\...\xKarel_is1) (Version:  - )
Zoner Photo Studio 17 (HKLM\...\ZonerPhotoStudio17_CZ_is1) (Version: 17.0.1.12 - ZONER software)
Zoner Photo Studio 18 (HKLM\...\ZonerPhotoStudio18_CZ_is1) (Version: 18.0.1.6 - ZONER software)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2007596338-2558511808-3841995970-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Milan\AppData\Local\Microsoft\OneDrive\17.3.6302.0225_20\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {123C1501-5981-4DF6-9959-6E15824E9F3E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {1DE983CE-5BA2-46B4-AD1C-B62D28F8E772} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {1FD6FE64-801A-4CD8-90EA-A14C9F3111CB} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-06-14] (Microsoft Corporation)
Task: {3D7CABD0-C4BD-482B-BF2E-79D9A5DFAFA2} - System32\Tasks\{A8B8B134-8C45-475E-A1A9-3008C07BB197} => pcalua.exe -a C:\Users\Milan\AppData\Roaming\Seznam.cz\szninstall.exe -c -X
Task: {4E418ABF-7284-4D1D-9FC0-BFF7B3FFFB6E} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_192_pepper.exe [2016-06-17] (Adobe Systems Incorporated)
Task: {5445BE01-1B70-4410-8AA5-08AD62800DA0} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {5DC103BC-A665-4CE2-9991-5D0FE0D49925} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {847F5EDE-3C78-4163-A6B9-F1A049E63CEC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {896837BD-CC49-4AC3-9A12-AAF4C20A5A09} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-06-10] (Piriform Ltd)
Task: {BC66EDDA-9DEE-4F13-8C26-1AE71FECF6F3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {C820FD1E-9BC9-47B6-8FE2-91F952DA06FC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {C9261BE6-C64D-4929-ACE7-32CA7DE4B36C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {CF447251-A097-478F-8D8F-13DC27D2A35C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {D5815CEF-03F2-40BF-830B-8B42C169E2F6} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D6812A34-6B1F-4674-83E6-E2381683F7DA} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {D86B5E7E-9612-49D7-95B6-6CE51FE907A9} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {DBF2A272-DBA8-4D05-9922-DADC6B990C7E} - System32\Tasks\Opera scheduled Autoupdate 1458479466 => C:\Program Files (x86)\Opera\launcher.exe [2016-06-13] (Opera Software)
Task: {DEA1985E-6F03-44CC-85A4-E5D2DC6CD49C} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-06-17] (Adobe Systems Incorporated)
Task: {E17D7778-1085-496E-BB82-49918603D5D6} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-2007596338-2558511808-3841995970-1001 => C:\Users\Milan\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
Task: {EF184F3E-8826-4E2D-87EA-C7ED3DD45DD7} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {F22FE486-36E1-4666-A1D2-55C6A8108C7D} - System32\Tasks\{2289670C-EA59-413A-8AD2-8C9026E30655} => pcalua.exe -a C:\Users\Milan\AppData\Roaming\istartsurf\UninstallManager.exe -c  -ptid=obw
Task: {FF654502-0E59-4D39-AF33-776EFA804236} - System32\Tasks\Trigger KMS Activation => C:\Program Files\KMSnano Final\TriggerKMS.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_192_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-12-06 19:09 - 2014-01-28 11:16 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
2016-04-12 23:59 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-12 23:59 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-04-19 04:32 - 2016-04-19 04:32 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-12-18 17:07 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-05-10 19:45 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-06-14 23:10 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-06-14 23:10 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-06-14 23:11 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-06-14 23:11 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-06-10 17:22 - 2016-06-10 17:22 - 00050688 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-12-06 19:09 - 2016-07-03 06:56 - 00025088 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll
2015-12-06 19:09 - 2014-01-28 11:16 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2016-04-19 04:32 - 2016-04-19 04:32 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-04-19 04:32 - 2016-04-19 04:32 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2014-07-27 16:53 - 2013-09-16 12:17 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\com -> hxxp://*.Wondershare.com
IE restricted site: HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\omiga-plus.com -> hxxp://isearch.omiga-plus.com
IE restricted site: HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\skype.com -> hxxps://apps.skype.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-26 07:26 - 2016-03-20 12:08 - 00000050 ____A C:\WINDOWS\system32\Drivers\etc\hosts

㈱⸷⸰⸰‱†††潬慣桬獯൴㨊ㄺ†††氠捯污潨瑳਍

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Milan\Pictures\DSC_1038.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run: => "StartCCC"
HKLM\...\StartupApproved\Run: => "SpywareTerminatorShield"
HKLM\...\StartupApproved\Run: => "SpywareTerminatorUpdater"
HKLM\...\StartupApproved\Run32: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "pinterestdownloader"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "GoogleDriveSync"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "HydraVisionDesktopManager"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "ISUSPM"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "Zoner Photo Studio Service 16"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "Raptr"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "MyDriveConnect.exe"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "TomTomHOME.exe"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "SkyDrive"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-2007596338-2558511808-3841995970-1001\...\StartupApproved\Run: => "SeznamInstall-uninstall:6a554ab8e493479525f55210b0b6dfed"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{4F5B9693-0BA9-4A14-9B92-38AF60C390CF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{321E79BA-E53F-442E-AD1F-494379BC0B15}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{8955EDE2-66D8-4076-936C-2177CCBCD630}D:\dreambox\dreambox 800hdse\dcc-e2 - 1.50\dcc_e2.exe] => (Allow) D:\dreambox\dreambox 800hdse\dcc-e2 - 1.50\dcc_e2.exe
FirewallRules: [TCP Query User{639FB2DE-1E01-492F-8DBE-B86FB97BE4E9}D:\dreambox\dreambox 800hdse\dcc-e2 - 1.50\dcc_e2.exe] => (Allow) D:\dreambox\dreambox 800hdse\dcc-e2 - 1.50\dcc_e2.exe
FirewallRules: [{BE7EDB25-DEE8-4B32-A447-648CA143B3C9}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{E8AFBFF6-B25C-4D1B-9658-37C61F74A4C0}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{FE5CA8F1-D606-4D18-81C8-F4271B160271}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe
FirewallRules: [{9AA43219-8F8B-4FCD-9465-3F90F6BD22BE}] => (Allow) D:\Zoner\Photo Studio 17\Program32\MediaServer.exe
FirewallRules: [UDP Query User{BE0B921E-CED6-4002-826E-DB704B2F478A}D:\assetto corsa\acs.exe] => (Block) D:\assetto corsa\acs.exe
FirewallRules: [TCP Query User{AB21EA69-84AD-499A-BB91-35200151332E}D:\assetto corsa\acs.exe] => (Block) D:\assetto corsa\acs.exe
FirewallRules: [UDP Query User{AAF1FAAE-01CC-4102-A73D-24E72B7E4C3A}C:\users\milan\appdata\roaming\utorrent\updates\3.4.2_32239.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.4.2_32239.exe
FirewallRules: [TCP Query User{0C3B7846-934B-4AFF-95A9-985AFDC0367D}C:\users\milan\appdata\roaming\utorrent\updates\3.4.2_32239.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.4.2_32239.exe
FirewallRules: [UDP Query User{A7B98FA9-0E2D-47D5-831B-EE60F92D9EF9}C:\users\milan\appdata\roaming\utorrent\updates\3.4.2_31893.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.4.2_31893.exe
FirewallRules: [TCP Query User{73AC1EF7-CFF8-48DB-9D7E-498449A09EBC}C:\users\milan\appdata\roaming\utorrent\updates\3.4.2_31893.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.4.2_31893.exe
FirewallRules: [UDP Query User{353EE5A8-9FE6-4459-8E13-1ACD4E43DE27}C:\users\milan\appdata\roaming\utorrent\updates\3.4.1_31395.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.4.1_31395.exe
FirewallRules: [TCP Query User{08D82BBF-555B-4636-A601-B189231BEC52}C:\users\milan\appdata\roaming\utorrent\updates\3.4.1_31395.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.4.1_31395.exe
FirewallRules: [UDP Query User{8B518726-F46E-4212-A9CB-636F3F7B91E5}C:\users\milan\appdata\roaming\utorrent\updates\3.4.1_31139.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.4.1_31139.exe
FirewallRules: [TCP Query User{F26DF50D-056F-400F-9A8C-72A7606AD131}C:\users\milan\appdata\roaming\utorrent\updates\3.4.1_31139.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.4.1_31139.exe
FirewallRules: [UDP Query User{AE50BABF-C3F1-4D85-980C-7528A03B0174}C:\users\milan\appdata\roaming\utorrent\updates\3.3.2_30488.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.3.2_30488.exe
FirewallRules: [TCP Query User{9EEA5E9A-3F1E-4B3F-86AA-806B07EDEEC2}C:\users\milan\appdata\roaming\utorrent\updates\3.3.2_30488.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.3.2_30488.exe
FirewallRules: [{F71286E7-85CF-4164-B75D-D83D7D456A77}] => (Block) C:\users\milan\appdata\roaming\utorrent\updates\3.3.1_30017.exe
FirewallRules: [{4C839496-7149-4B92-872E-8B7B62C7EF1C}] => (Block) C:\users\milan\appdata\roaming\utorrent\updates\3.3.1_30017.exe
FirewallRules: [UDP Query User{AE10EC20-22E9-4FA5-8F38-ACAE571249D9}C:\users\milan\appdata\roaming\utorrent\updates\3.3.1_30017.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.3.1_30017.exe
FirewallRules: [TCP Query User{750A19DC-42C6-4310-B9FC-96EBF2718B36}C:\users\milan\appdata\roaming\utorrent\updates\3.3.1_30017.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\updates\3.3.1_30017.exe
FirewallRules: [UDP Query User{11B3A91A-B50E-4B73-8D0F-4E4FB81A9410}C:\users\milan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{722D81F9-5769-4778-95A7-96DDF532A0F8}C:\users\milan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{3482717E-449F-496A-9DD3-539C4657C9B5}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe
FirewallRules: [TCP Query User{0CAD9361-6F31-4705-A55D-24C35C92878A}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe
FirewallRules: [{F8A49904-C592-4ECC-BE71-D81A227FAA9C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{CA62F187-B0AD-4F32-A877-8E40875FC887}] => (Allow) LPort=1689
FirewallRules: [TCP Query User{8E7826DD-6F7D-445B-BB6E-1B6D2D3D63F3}D:\assetto corsa\acs.exe] => (Block) D:\assetto corsa\acs.exe
FirewallRules: [UDP Query User{DF41B735-E0D9-4CDB-BCB9-D519DF142F1C}D:\assetto corsa\acs.exe] => (Block) D:\assetto corsa\acs.exe
FirewallRules: [TCP Query User{7F51572B-4391-4502-9257-59972685668E}C:\users\milan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{D37F45D7-74E6-4930-A8F1-60FA62250904}C:\users\milan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\milan\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{28C20706-15ED-4FD5-A14A-964B7DEAD932}] => (Allow) LPort=8743
FirewallRules: [{BC14174B-E2B2-4655-9784-194C49C4D2AC}] => (Allow) LPort=8643
FirewallRules: [{003A63B4-2CBD-4DFF-A5CA-015BB2F1A70D}] => (Allow) LPort=7676
FirewallRules: [{2DA14CA4-55AB-4CE6-9CCD-BBCDCC0CAB15}] => (Allow) LPort=7679
FirewallRules: [{3E79684F-1AE3-4183-889D-A4028314EF15}] => (Allow) LPort=24234
FirewallRules: [{15461D28-0FC3-4824-A9DA-929B6A318135}] => (Allow) LPort=7900
FirewallRules: [{F5979A30-618F-4F2F-9F3C-B588D2303D07}] => (Allow) LPort=1900
FirewallRules: [{5FC8A8BD-BAB9-4B7B-934D-34AA765B35D7}] => (Allow) LPort=1688
FirewallRules: [{4651D61C-295A-4204-87C2-F7E590CCA7F4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{BB93E327-7D80-4D19-84EB-E0DA5B6FBC45}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{6DE2504C-7121-4F38-831B-D8D07785FFB2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{281D0F1A-953E-4EAE-B904-4582063486CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{5C99F6F5-A105-40E1-910D-688279CA746D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EE5C2EF3-CED1-4CAC-BE41-1EC02E7C028D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{8896CFF3-760B-4165-9D86-E028EFA051F9}D:\vlc\vlc.exe] => (Allow) D:\vlc\vlc.exe
FirewallRules: [UDP Query User{48339B49-2680-4661-853D-87C74F679D7B}D:\vlc\vlc.exe] => (Allow) D:\vlc\vlc.exe
FirewallRules: [TCP Query User{81C65DE7-1DBF-4380-8A5B-F4BDFF341742}C:\program files\n3v games\tane\tane.exe] => (Allow) C:\program files\n3v games\tane\tane.exe
FirewallRules: [UDP Query User{FB0592BA-C992-4ABF-B966-911EA3D529BB}C:\program files\n3v games\tane\tane.exe] => (Allow) C:\program files\n3v games\tane\tane.exe
FirewallRules: [TCP Query User{46AF1329-7390-4322-8CE3-A52CFEA22572}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [UDP Query User{BC4BAFFB-1DD4-49C3-B228-53D578AF4D0C}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [{E308A2B9-F804-4A0E-86E9-6A10A0FA6199}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe
FirewallRules: [TCP Query User{FA4F479B-6B1F-425E-8851-86BB5106F1B5}D:\dreambox\návod\dreambox 800hd pvr\dcc-e2 - 1.50\dcc_e2.exe] => (Allow) D:\dreambox\návod\dreambox 800hd pvr\dcc-e2 - 1.50\dcc_e2.exe
FirewallRules: [UDP Query User{E360CAB5-B918-494E-B45D-41A92CE9D666}D:\dreambox\návod\dreambox 800hd pvr\dcc-e2 - 1.50\dcc_e2.exe] => (Allow) D:\dreambox\návod\dreambox 800hd pvr\dcc-e2 - 1.50\dcc_e2.exe
FirewallRules: [{FDC8816C-6102-45AE-B46F-CEACB0BE4F7D}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll
FirewallRules: [{8B50DD38-6699-4574-8181-1390A88BC206}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll
FirewallRules: [{F5AA1299-C7CF-4E56-B5B3-A665125C83D4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{C0043A6C-4C44-47EB-9977-D4A74F68D6F2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{A29ACD33-6958-4675-8B77-22A1C98FCFA9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{9F99DC19-AF9C-4375-B069-BBA0DD106740}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{B872D1FC-FB96-4178-B1D7-EFDE6E80E46E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe

==================== Restore Points =========================

12-06-2016 20:04:40 Naplánovaný kontrolní bod
17-06-2016 14:00:28 Windows Update
23-06-2016 04:40:35 Windows Update
30-06-2016 20:47:11 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices =============

Name: AMD High Definition Audio Device
Description: AMD High Definition Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Advanced Micro Devices
Service: AtiHDAudioService
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
 This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/30/2016 08:47:25 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (06/30/2016 10:51:10 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (06/23/2016 04:40:50 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (06/22/2016 04:37:37 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MILAN)
Description: Aplikaci Microsoft.WindowsMaps_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927148. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/17/2016 02:01:27 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (06/17/2016 08:33:45 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MILAN)
Description: Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147009280. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (06/16/2016 11:19:15 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2 na řádku C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest.

Error: (06/14/2016 11:27:06 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (06/12/2016 08:04:55 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (06/07/2016 07:30:26 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8


System errors:
=============
Error: (07/03/2016 06:59:41 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (07/03/2016 06:55:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_3a7fa byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (07/03/2016 06:55:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_3a7fa byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (07/03/2016 06:55:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_3a7fa byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (07/03/2016 06:55:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_3a7fa byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (07/03/2016 06:55:37 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (07/03/2016 06:55:30 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Media Player Network Sharing byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (07/03/2016 06:55:30 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Dynamic Application Loader Host Interface Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/03/2016 06:55:30 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (07/03/2016 06:55:30 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MBAMScheduler byla neočekávaně ukončena. Tento stav nastal již 1krát.


CodeIntegrity:
===================================
  Date: 2016-07-02 21:12:16.283
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 20:22:53.239
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 09:07:53.140
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 09:07:53.115
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 09:07:51.767
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 09:07:51.744
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 09:07:46.914
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 09:07:46.889
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 09:07:45.905
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-07-01 09:07:45.882
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU G3420 @ 3.20GHz
Percentage of memory in use: 25%
Total physical RAM: 8130.43 MB
Available physical RAM: 6025.19 MB
Total Virtual: 16322.43 MB
Available Virtual: 14359.78 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.44 GB) (Free:131.5 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:1397.26 GB) (Free:828.26 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: E30CE30C)
Partition 1: (Active) - (Size=232.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=450 MB) - (Type=27)

========================================================
Disk: 1 (Size: 1397.3 GB) (Disk ID: 6D374343)
Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================