Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-04-2017
Ran by tomix (26-04-2017 19:51:16)
Running from C:\Users\tomix\Desktop
Windows 10 Pro Version 1607 (X64) (2016-09-25 12:32:59)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1162317334-830760081-1635928212-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1162317334-830760081-1635928212-503 - Limited - Disabled)
Guest (S-1-5-21-1162317334-830760081-1635928212-501 - Limited - Disabled)
tomix (S-1-5-21-1162317334-830760081-1635928212-1001 - Administrator - Enabled) => C:\Users\tomix

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated)
Adobe Reader XI - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Apple Software Update (HKLM-x32\...\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}) (Version: 2.1.1.116 - Apple Inc.)
Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.)
Bonjour Print Services (HKLM\...\{0DA20600-6130-443B-9D4B-F30520315FA6}) (Version: 2.0.2.0 - Apple Inc.)
calibre (HKLM-x32\...\{263E62B9-CB1E-4864-A8A7-37DEAC651484}) (Version: 2.63.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.24 - Piriform)
Dropbox (HKLM-x32\...\Dropbox) (Version: 24.4.16 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.59.1 - Dropbox, Inc.) Hidden
FormApps Signing Extension (HKLM-x32\...\{ACA43D91-8B42-4D42-8C8B-A893BD6AA40D}) (Version: 2.8.2.28 - Software602 a.s.)
Git version 2.8.2 (HKLM\...\Git_is1) (Version: 2.8.2 - The Git Development Community)
Google Chrome (HKU\S-1-5-21-1162317334-830760081-1635928212-1001\...\Google Chrome) (Version: 57.0.2987.133 - Google Inc.)
IBM Notes 9.0.1 Social Edition (HKLM-x32\...\{0BAFD1B9-473A-4EA6-8D77-B54460B2C199}) (Version: 9.01.13294 - IBM)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
Java 8 Update 101 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Java SE Development Kit 8 Update 101 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180101}) (Version: 8.0.1010.13 - Oracle Corporation)
KeePass Password Safe 1.31 (HKLM-x32\...\KeePass Password Safe_is1) (Version: 1.31 - Dominik Reichl)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1162317334-830760081-1635928212-1001\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 51.0.1 (x86 cs) (HKLM-x32\...\Mozilla Firefox 51.0.1 (x86 cs)) (Version: 51.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 51.0.1.6234 - Mozilla)
MySQL Workbench 6.3 CE (HKLM\...\{85664F8E-BFC5-46DE-AB5C-1EA6536AACBE}) (Version: 6.3.8 - Oracle Corporation)
OpenOffice 4.1.2 (HKLM-x32\...\{69D27D4C-36CE-4CB2-A290-C38B0A990955}) (Version: 4.12.9782 - Apache Software Foundation)
OpenOffice 4.1.2 Language Pack (Czech) (HKLM-x32\...\{E70E663E-19DE-425B-98EB-3ADBDE08D5EA}) (Version: 4.12.9782 - Apache Software Foundation)
OpenVPN 2.2.0 (HKLM-x32\...\OpenVPN) (Version: 2.2.0 - )
Opera Stable 44.0.2510.1449 (HKLM-x32\...\Opera 44.0.2510.1449) (Version: 44.0.2510.1449 - Opera Software)
PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.317.0 - Tracker Software Products Ltd)
Polar FlowSync version 2.6.2 (HKLM-x32\...\{A1538F5C-7B65-4DB6-9FFB-FFC0DF2E85D8}_is1) (Version: 2.6.2 - Polar Electro Oy)
PSPad editor (HKLM-x32\...\PSPad editor_is1) (Version: 4.5.8.2500 - Jan Fiala)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version:  - Microsoft) Hidden
Seznam Software (HKU\S-1-5-21-1162317334-830760081-1635928212-1001\...\SeznamInstall) (Version:  - Seznam.cz)
Skype™ 7.31 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.31.104 - Skype Technologies S.A.)
Software pro tiskárnu Xerox (HKLM-x32\...\{05793354-0E04-4048-81E0-274B91C510EC}) (Version: 1.000.00.01 - Xerox)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.0 - Synaptics Incorporated)
Test Mail Server Tool (HKLM-x32\...\{5781A356-8BC3-4AD1-8214-DDD0CCA85B2A}) (Version: 2.54 - Toolheap)
TortoiseGit 2.1.0.0 (64 bit) (HKLM\...\{C84D9F56-A545-41CC-845E-A3AD7E9E9130}) (Version: 2.1.0.0 - TortoiseGit)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
WampServer 2.4 (HKLM-x32\...\WampServer 2_is1) (Version:  - Hervé Leclerc (HeL))
Xerox Phaser 3010 (HKLM-x32\...\InstallShield_{96723F0E-7E93-428F-97C0-7FDD0C3F5FCF}) (Version: 1.029.00 - Xerox)
Xerox Phaser 3010 (x32 Version: 1.029.00 - Xerox) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1162317334-830760081-1635928212-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\tomix\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-1162317334-830760081-1635928212-1001_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\tomix\AppData\Local\Google\Update\1.3.33.3\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1162317334-830760081-1635928212-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\tomix\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-1162317334-830760081-1635928212-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\tomix\AppData\Local\Google\Update\1.3.33.3\psuser_64.dll (Google Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {357278D1-744E-423A-8267-C17F3FF602C8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1162317334-830760081-1635928212-1001Core => C:\Users\tomix\AppData\Local\Google\Update\GoogleUpdate.exe [2016-09-30] (Google Inc.)
Task: {3B64C997-4905-471E-AC9D-501716AA6EBB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1162317334-830760081-1635928212-1001UA => C:\Users\tomix\AppData\Local\Google\Update\GoogleUpdate.exe [2016-09-30] (Google Inc.)
Task: {5A0B7D9A-599F-49AD-AB94-C8CA52EDA354} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-11-15] (Piriform Ltd)
Task: {768D1231-E6B5-4292-8C2F-4B280262E47C} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe [2017-02-20] (Adobe Systems Incorporated)
Task: {ACB80343-854F-4003-87E7-7F9C93DA9802} - System32\Tasks\Opera scheduled Autoupdate 1462742763 => C:\Program Files (x86)\Opera\launcher.exe [2017-04-25] (Opera Software)
Task: {B9BAF7F2-FD3D-4A42-A35F-D98BD68B3305} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {DB6A6933-50FB-4EF4-81AB-91AB00BD3EA2} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\tomix\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe 
Task: {EA80EC2A-E42C-4297-BBE5-B33CB76E6C6F} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-05-11] (Dropbox, Inc.)
Task: {F5015C62-4CAD-499C-A837-1B959BAF85D0} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-05-11] (Dropbox, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2017-04-11 20:56 - 2017-03-28 08:22 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2017-03-27 22:19 - 2017-02-08 13:38 - 00079872 _____ () C:\Users\tomix\AppData\Roaming\Seznam.cz\bin\5092libfoxloader-x64.dll
2017-04-11 20:56 - 2017-03-28 08:22 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-09-25 15:21 - 2016-09-25 15:21 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-15 22:09 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-03-15 22:09 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-15 22:09 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-03-15 22:09 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-04-11 20:55 - 2017-03-28 07:08 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-04-11 20:56 - 2017-03-28 07:11 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2017-04-26 19:10 - 2017-04-26 19:10 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-04-26 19:10 - 2017-04-26 19:10 - 00190464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-04-26 19:10 - 2017-04-26 19:10 - 43011072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-04-26 19:10 - 2017-04-26 19:10 - 02451456 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\skypert.dll
2017-03-27 22:19 - 2017-04-05 14:49 - 00464576 _____ () C:\Users\tomix\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
2017-03-27 22:19 - 2017-02-08 13:39 - 00080576 _____ () C:\Users\tomix\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
2016-03-26 02:04 - 2016-03-26 02:04 - 00948848 _____ () C:\Program Files\TortoiseGit\bin\libgit2_tgit.dll
2016-03-26 02:04 - 2016-03-26 02:04 - 00087656 _____ () C:\Program Files\TortoiseGit\bin\zlib1_tgit.dll
2017-03-27 22:19 - 2015-05-26 13:37 - 00078504 _____ () C:\Users\tomix\AppData\Roaming\Seznam.cz\bin\5092libfoxloader.dll
2016-05-21 08:12 - 2015-11-19 15:56 - 01759232 _____ () C:\Program Files (x86)\Polar\Polar FlowSync\polar20.dll
2017-03-27 22:19 - 2015-05-26 13:38 - 00862888 _____ () C:\Users\tomix\AppData\Roaming\Seznam.cz\bin\lightspeed.dll
2017-04-20 22:42 - 2017-04-17 17:09 - 00870720 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_watchdog.dll
2016-05-11 23:57 - 2017-03-29 01:54 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2016-05-11 23:57 - 2017-03-29 01:54 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2016-05-11 23:57 - 2017-03-29 01:54 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2016-05-11 23:57 - 2017-04-17 17:13 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00020824 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2016-05-11 23:57 - 2017-03-29 01:54 - 00123856 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2016-05-11 23:57 - 2017-03-29 01:54 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 01729360 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2017-04-20 22:42 - 2017-03-29 01:54 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2017-04-20 22:42 - 2017-03-29 01:54 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2017-04-20 22:42 - 2017-03-29 01:54 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2016-05-11 23:57 - 2017-03-29 01:56 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-08-05 21:03 - 2017-04-17 17:13 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00060736 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00038712 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2017-04-20 22:42 - 2017-03-29 01:54 - 00392656 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2017-04-20 22:42 - 2017-03-29 01:56 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2016-05-11 23:57 - 2017-04-17 17:13 - 00392512 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-08-05 21:03 - 2017-04-17 17:14 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00246608 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00027488 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-08-05 21:03 - 2017-03-29 01:55 - 00241104 _____ () C:\Program Files (x86)\Dropbox\Client\_jpegtran.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00022336 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2016-05-11 23:57 - 2017-04-17 17:14 - 00025432 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 01826104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2016-05-11 23:57 - 2017-03-29 01:54 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 01972024 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 03928896 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00171336 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00042816 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00531264 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00133432 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00224064 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00207680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2017-02-28 07:38 - 2017-04-17 17:14 - 00054608 _____ () C:\Program Files (x86)\Dropbox\Client\winrpcserver.compiled._RPCServer.pyd
2017-01-24 19:04 - 2017-04-17 17:14 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32.compiled._winffi_user32.pyd
2016-05-11 23:57 - 2017-04-17 17:13 - 00069968 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2017-01-24 19:04 - 2017-04-17 17:13 - 00022872 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd
2017-01-24 19:04 - 2017-04-17 17:14 - 00021848 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror.compiled._winffi_winerror.pyd
2017-01-24 19:04 - 2017-04-17 17:14 - 00022872 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet.compiled._winffi_wininet.pyd
2016-05-11 23:57 - 2017-03-29 01:56 - 00349128 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00103232 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWinExtras.pyd
2016-05-11 23:57 - 2017-04-17 17:14 - 00023896 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00025936 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2017-04-20 22:42 - 2017-03-29 01:52 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2017-04-20 22:42 - 2017-04-17 17:13 - 00033112 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2017-04-20 22:42 - 2017-03-22 23:21 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2017-04-20 22:42 - 2017-04-17 17:13 - 00084288 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2016-07-12 19:02 - 2017-04-17 17:13 - 00030536 _____ () C:\Program Files (x86)\Dropbox\Client\wind3d11.compiled._wind3d11.pyd
2017-04-20 22:42 - 2017-03-29 02:00 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2017-04-20 22:42 - 2017-03-29 02:00 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2017-04-20 22:42 - 2017-04-17 17:13 - 00357688 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2016-08-05 21:03 - 2017-04-17 17:14 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2017-04-20 22:42 - 2017-04-17 17:13 - 00546104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2016-08-02 23:19 - 2014-10-31 16:37 - 01498112 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2016-08-02 23:19 - 2014-05-19 17:19 - 00137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2017-04-26 17:24 - 2017-04-25 08:20 - 63890520 _____ () C:\Program Files (x86)\Opera\44.0.2510.1449\opera_browser.dll
2016-03-26 02:01 - 2016-03-26 02:01 - 00704624 _____ () C:\Program Files\TortoiseGit\bin\libgit232_tgit.dll
2016-03-26 02:01 - 2016-03-26 02:01 - 00076912 _____ () C:\Program Files\TortoiseGit\bin\zlib132_tgit.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2017-04-26 17:24 - 2017-04-25 08:20 - 02101336 _____ () C:\Program Files (x86)\Opera\44.0.2510.1449\libglesv2.dll
2017-04-26 17:24 - 2017-04-25 08:20 - 00087128 _____ () C:\Program Files (x86)\Opera\44.0.2510.1449\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 09:24 - 2017-02-27 22:25 - 00001679 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1       localhost127.0.0.1 plastex_new
127.0.0.1 plastex.new
127.0.0.1 plastex_old
127.0.0.1 plastex.old
127.0.0.1 btjunior
127.0.0.1 altima
127.0.0.1 smfu
127.0.0.1 nekvinda
127.0.0.1 polak
127.0.0.1 solarventi
127.0.0.1 solarventisk
127.0.0.1 cykloman
127.0.0.1 7dvoru
127.0.0.1 flava
127.0.0.1 celar
127.0.0.1 ukalvarie
127.0.0.1 pohary
127.0.0.1       localhost
127.0.0.1 tepelna-cerpadla
127.0.0.1 solarventicz
127.0.0.1 eshopdarphincz

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1162317334-830760081-1635928212-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{9B3383B6-2B8B-4CD3-B30C-06BA600FB11D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{518ADF14-484E-4C3E-9B22-709940A25F33}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6FF3B884-6DE4-4C21-A9CC-82AE879A910B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{2E9FA60E-176C-4830-A386-1FFB200C9CE4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{24665442-A08F-46F6-A798-8A0A4D591AEA}] => (Allow) LPort=5354
FirewallRules: [{A5F0B1DD-6673-46EF-A2A7-95CC841A01A2}] => (Allow) LPort=5354
FirewallRules: [{A217C286-0CE9-4B3C-894F-4463FEC0211B}] => (Allow) LPort=5354
FirewallRules: [{951727BB-89A6-4BD9-8DD7-3223F395E779}] => (Allow) LPort=5354
FirewallRules: [{1F05D030-E964-42A6-9946-52BBBD6959B2}] => (Allow) LPort=5354
FirewallRules: [{1813A1CC-CE27-4EC7-951D-3710F86FE5FB}] => (Allow) LPort=5354
FirewallRules: [{C3A47F07-9F18-4BF2-9FF8-ADDD12428C3C}] => (Allow) LPort=5354
FirewallRules: [{0F446D50-BB3C-4E13-A7B2-FB839D1E0E68}] => (Allow) LPort=5354
FirewallRules: [{740B8B4E-0AEC-4F0E-BAC9-B432F0B0DFBA}] => (Allow) LPort=5354
FirewallRules: [{F4ADBB86-2A56-40DE-AD6C-1DC3ECB10852}] => (Allow) LPort=5354
FirewallRules: [{1D16768D-954D-4BF1-BBF8-8ED4B5A2F712}] => (Allow) LPort=5354
FirewallRules: [{A00F1626-E50C-4696-BAA5-C163102288FE}] => (Allow) LPort=5354
FirewallRules: [UDP Query User{DEC3F8DF-60EA-4E1F-A227-EA818CD0954D}C:\program files (x86)\toolheap\test mail server tool\testmailservertool.exe] => (Allow) C:\program files (x86)\toolheap\test mail server tool\testmailservertool.exe
FirewallRules: [TCP Query User{382BA684-272F-4E0A-ADC5-8EC01EBA6A19}C:\program files (x86)\toolheap\test mail server tool\testmailservertool.exe] => (Allow) C:\program files (x86)\toolheap\test mail server tool\testmailservertool.exe
FirewallRules: [{BC46BF0E-F7F0-4A9D-BFEE-ABB1DCC2BF6B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{16328B9A-0611-4BA7-B751-B0E236740505}C:\app\totalcmd\totalcmd64.exe] => (Allow) C:\app\totalcmd\totalcmd64.exe
FirewallRules: [TCP Query User{A5B81994-5D69-4351-9A37-D818ED4FA71C}C:\app\totalcmd\totalcmd64.exe] => (Allow) C:\app\totalcmd\totalcmd64.exe
FirewallRules: [{F14DFF93-586B-4DE4-A989-526EDEA3365C}] => (Block) D:\xampp\mysql\bin\mysqld.exe
FirewallRules: [{59C72056-4756-4119-B47E-79412BF78746}] => (Block) D:\xampp\mysql\bin\mysqld.exe
FirewallRules: [UDP Query User{D8DC278C-ABD1-42AD-B0A0-B65D99B9CD05}D:\xampp\mysql\bin\mysqld.exe] => (Allow) D:\xampp\mysql\bin\mysqld.exe
FirewallRules: [TCP Query User{30BE2BA7-095E-4106-AFCD-C671B33B0437}D:\xampp\mysql\bin\mysqld.exe] => (Allow) D:\xampp\mysql\bin\mysqld.exe
FirewallRules: [{3F946B9B-C979-406D-8D3D-2A7314DB08EB}] => (Block) D:\xampp\apache\bin\apache.exe
FirewallRules: [{3BFF1E71-7EB6-4D02-A062-1C79332F0FB4}] => (Block) D:\xampp\apache\bin\apache.exe
FirewallRules: [UDP Query User{E7993E24-8FA8-4BF6-BD23-A579E249DC86}D:\xampp\apache\bin\apache.exe] => (Allow) D:\xampp\apache\bin\apache.exe
FirewallRules: [TCP Query User{D9C773AB-D658-49EC-BE25-05D47794E8B6}D:\xampp\apache\bin\apache.exe] => (Allow) D:\xampp\apache\bin\apache.exe
FirewallRules: [TCP Query User{E4971247-4B2C-447E-9A7F-700417FA9B7D}D:\wamp\bin\apache\apache2.4.4\bin\httpd.exe] => (Allow) D:\wamp\bin\apache\apache2.4.4\bin\httpd.exe
FirewallRules: [UDP Query User{75D8E23B-7647-4815-9856-977A3319FC2E}D:\wamp\bin\apache\apache2.4.4\bin\httpd.exe] => (Allow) D:\wamp\bin\apache\apache2.4.4\bin\httpd.exe
FirewallRules: [{87BF9D8D-077B-434B-A9A9-8D9E09F89B8D}] => (Allow) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe
FirewallRules: [{1C5EBD8B-8357-4DB0-9553-4560A28FB379}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{3477EFD6-455F-4092-9332-1C3DD824CE83}] => (Allow) C:\Program Files (x86)\Opera\44.0.2510.1449\opera.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============

Name: Základní systémové zařízení
Description: Základní systémové zařízení
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Sériový port sběrnice PCI
Description: Sériový port sběrnice PCI
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/26/2017 07:43:55 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 676: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně ukončeno vzdáleným hostitelem.)

Error: (04/26/2017 06:54:42 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: Client application bug: DNSServiceResolve(Friendly_1C49685E46A51507_481A410841AA9277._bp2p._tcp.local.) active for over two minutes. This places considerable burden on the network.

Error: (04/26/2017 06:54:42 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: Client application bug: DNSServiceResolve(062df91b5a5bd9e7cc724a033db376._tunnel._tcp.local.) active for over two minutes. This places considerable burden on the network.

Error: (04/26/2017 06:53:03 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: AppendDNSNameString: Illegal empty label in name "."

Error: (04/26/2017 06:52:16 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: 908: ERROR: read_msg errno 0 (Operace byla dokončena úspěšně.)

Error: (04/26/2017 06:52:16 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053

Error: (04/26/2017 06:52:16 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: 748: ERROR: read_msg errno 0 (Operace byla dokončena úspěšně.)

Error: (04/26/2017 06:52:16 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053

Error: (04/26/2017 06:52:16 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: 820: ERROR: read_msg errno 0 (Operace byla dokončena úspěšně.)

Error: (04/26/2017 06:52:16 PM) (Source: RIM MDNS) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053


System errors:
=============
Error: (04/26/2017 07:45:06 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 07:44:50 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 a APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 07:44:50 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 a APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 07:44:50 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 a APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 07:43:55 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 07:39:09 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 05:53:26 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 05:18:58 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 a APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 05:18:58 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 a APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (04/26/2017 05:18:49 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (17:02:05, ‎26.‎04.‎2017) bylo neočekávané.


CodeIntegrity:
===================================
  Date: 2017-04-17 19:34:09.033
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-04-04 21:21:17.130
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-03-26 19:24:13.350
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-03-18 12:42:26.224
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-01-15 19:35:19.202
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-12-22 20:26:05.269
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-12-11 13:41:18.352
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-20 14:40:08.158
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-19 12:15:05.300
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-12 14:00:03.861
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-2540M CPU @ 2.60GHz
Percentage of memory in use: 15%
Total physical RAM: 16334.36 MB
Available physical RAM: 13859.39 MB
Total Virtual: 18766.36 MB
Available Virtual: 15927.23 MB

==================== Drives ================================

Drive c: (SystemSSD) (Fixed) (Total:124.23 GB) (Free:78.74 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (DataSSD) (Fixed) (Total:340.76 GB) (Free:144.17 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 8574FA7C)
Partition 1: (Active) - (Size=124.2 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=782 MB) - (Type=27)
Partition 3: (Not Active) - (Size=340.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================