Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-11-2017
Ran by Pejcha Petr (03-12-2017 12:03:20)
Running from C:\Users\Pejcha Petr\Desktop
Windows 10 Pro Version 1703 15063.726 (X64) (2017-07-20 18:33:40)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3501514266-2958078906-2016536124-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3501514266-2958078906-2016536124-503 - Limited - Disabled)
Guest (S-1-5-21-3501514266-2958078906-2016536124-501 - Limited - Disabled)
Pejcha Petr (S-1-5-21-3501514266-2958078906-2016536124-1001 - Administrator - Enabled) => C:\Users\Pejcha Petr

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated)
ASRock Restart to UEFI v1.0.5 (HKLM-x32\...\ASRock Restart to UEFI_is1) (Version: 1.0.5 - )
ASRock XFast RAM v3.0.2 (HKLM\...\ASRock XFast RAM_is1) (Version:  - ASRock Inc.)
A-Tuning v2.0.95 (HKLM-x32\...\A-Tuning_is1) (Version: 2.0.95 - )
CCleaner (HKLM\...\CCleaner) (Version: 5.26 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.3.0.0152 - Disc Soft Ltd)
DWGSee Pro 2017 (HKLM-x32\...\{95EBD9FE-2F20-454A-84FC-6D22A8978A0A}) (Version: 4.43 - AutoDWG)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.1.0.001 - HTC Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Intel(R) Sideband Fabric Device Driver (HKLM-x32\...\C5A8BC6E-723A-4C0F-96E1-C426D1A4BCA9) (Version: 1.0.0.1002 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1.0.0.1050 - Intel Corporation)
Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
Keyboard Lock Status driver 3.0 (HKLM-x32\...\Keyboard Lock Status driver_is1) (Version:  - )
KMSpico v9.1.3 (HKLM\...\KMSpico_is1) (Version: 9.1.3 - )
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Magic Photo Recovery 4.3 (HKLM-x32\...\Magic Photo Recovery) (Version:  - )
Malwarebytes verze 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Mi PC Suite (HKU\S-1-5-21-3501514266-2958078906-2016536124-1001\...\MiPhoneManager) (Version:  - Xiaomi Inc.)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3501514266-2958078906-2016536124-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 43.0.1 (x86 cs) (HKLM-x32\...\Mozilla Firefox 43.0.1 (x86 cs)) (Version: 43.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.1.5828 - Mozilla)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PDF Architect 3 (HKLM-x32\...\PDF Architect 3) (Version: 3.0.45.22485 - pdfforge GmbH)
PDF Architect 3 Create Module (HKLM-x32\...\{F7144535-B40C-4941-98A7-17A6BCA5F780}) (Version: 3.0.8.22528 - pdfforge GmbH) Hidden
PDF Architect 3 Edit Module (HKLM-x32\...\{5F6E03CD-0C09-4CE5-8ED7-331A6A82C502}) (Version: 3.0.8.22528 - pdfforge GmbH) Hidden
PDF Architect 3 View Module (HKLM-x32\...\{E124E636-C449-4F78-8AD0-AEC0B5F1E00E}) (Version: 3.0.8.22528 - pdfforge GmbH) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.1.0 - pdfforge)
Potplayer-64 Bits (HKLM\...\PotPlayer64) (Version:  - Kakao Corp.)
Rajče průvodce verze 1.59.54.269 (HKLM-x32\...\rajce.net_is1) (Version:  - rajce.net)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.25.108.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7560 - Realtek Semiconductor Corp.)
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-3501514266-2958078906-2016536124-1001\...\Spotify) (Version: 1.0.67.582.g19436fa3 - Spotify AB)
Sweet Home 3D version 5.4 (HKLM\...\Sweet Home 3D_is1) (Version: 5.4 - eTeks)
The KMPlayer 3,9,1,134 (HKLM-x32\...\The KMPlayer 3,9,1,134) (Version:  - )
Torchlight II version 1.25.5.2 (HKLM-x32\...\Torchlight II_is1) (Version: 1.25.5.2 - )
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
UninstallFujitsu Mouse (HKLM-x32\...\{A3BE2F96-2FC2-420D-980B-EC4B856F07FA}_is1) (Version:  - Fujitsu Mouse)
Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod)
Update for Skype for Business 2015 (KB4011255) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FCBDF81E-8BA7-4705-A8BB-048A3FB755D7}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4011255) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FCBDF81E-8BA7-4705-A8BB-048A3FB755D7}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4011255) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.PROPLUS_{FCBDF81E-8BA7-4705-A8BB-048A3FB755D7}) (Version:  - Microsoft)
UsbFix Anti-Malware Premium (HKLM-x32\...\Usbfix) (Version: 10.0.0.1 - SOSVirus (SOSVirus.Net))
Viber (HKLM-x32\...\{3D241290-3AB5-4D3E-9EA1-0CC741A98B11}) (Version: 6.1.0.1623 - Viber Media Inc.) Hidden
Viber (HKU\S-1-5-21-3501514266-2958078906-2016536124-1001\...\{31f7057b-ec8e-431b-a621-6351f771f4ed}) (Version: 6.1.0.1623 - Viber Media Inc.)
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
XFast LAN v10.10 (HKLM\...\XFast LAN) (Version: 10.10 - cFos Software GmbH, Bonn)
XiaoMiFlash (HKLM-x32\...\{9AF75396-D38E-4F07-831C-9F78923DC015}) (Version: 1.0.0 - XiaoMi)
XnView 2.32 (HKLM-x32\...\XnView_is1) (Version: 2.32 - Gougelet Pierre-e)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3501514266-2958078906-2016536124-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
ShellIconOverlayIdentifiers: [.KLive_OverlayIcon_ForbidSync] -> {2A301372-EF60-4a54-9071-E93655AF2377} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers: [.KLive_OverlayIcon_Synced] -> {7EE556A7-CACD-4a70-8C73-FCFD5BD487F9} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers: [.KLive_OverlayIcon_Syncing] -> {72F4CD64-93FD-42da-BEBC-F516496A1C44} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers: [.Klive_OverlayIcon_SyncRoot] -> {C27658FE-3C0E-4813-88ED-298DD68C12A0} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers: [.Klive_OverlayIcon_Unlock] -> {0ACC30E4-6A52-4765-99F1-6240C60E8816} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers-x32-x32-x32-x32: [.KLive_OverlayIcon_ForbidSync] -> {2A301372-EF60-4a54-9071-E93655AF2377} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers-x32-x32-x32-x32: [.KLive_OverlayIcon_Synced] -> {7EE556A7-CACD-4a70-8C73-FCFD5BD487F9} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers-x32-x32-x32-x32: [.KLive_OverlayIcon_Syncing] -> {72F4CD64-93FD-42da-BEBC-F516496A1C44} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers-x32-x32-x32-x32: [.Klive_OverlayIcon_SyncRoot] -> {C27658FE-3C0E-4813-88ED-298DD68C12A0} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ShellIconOverlayIdentifiers-x32-x32-x32-x32: [.Klive_OverlayIcon_Unlock] -> {0ACC30E4-6A52-4765-99F1-6240C60E8816} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ContextMenuHandlers1: [DWGSeeMenu] -> {A6EAF440-149E-4AF3-AE84-5DA3CF791E3B} => C:\Program Files (x86)\AutoDWG\DWGSee Pro 2017\DWGSeeMenu64.dll [2012-07-13] (TODO: <Company name>)
ContextMenuHandlers1: [KLive_ContextMenuExt] -> {680CF4BD-3E40-4DC0-B91D-243DF54DE733} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ContextMenuHandlers1-x32: [PDFArchitect3_PDFManagerExt] -> {7519DD38-AA6F-4250-8E81-F1576DA1A05E} => C:\Program Files (x86)\PDF Architect 3\creator-context-menu.dll [2015-03-20] (pdfforge GmbH)
ContextMenuHandlers1-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-15] (Alexander Roshal)
ContextMenuHandlers1-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-15] (Alexander Roshal)
ContextMenuHandlers2: [KLive_ContextMenuExt] -> {680CF4BD-3E40-4DC0-B91D-243DF54DE733} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ContextMenuHandlers2-x32: [Magic Photo Recovery] -> {A1F666FE-3758-4172-9163-6A0DEE39A2AD} => C:\Program Files (x86)\East Imperial Soft\Magic Photo Recovery 4.3\Resources\DiskMenu.dll [2015-12-02] ()
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers4: [KLive_ContextMenuExt] -> {680CF4BD-3E40-4DC0-B91D-243DF54DE733} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-05-03] (Intel Corporation)
ContextMenuHandlers5: [KLive_ContextMenuExt] -> {680CF4BD-3E40-4DC0-B91D-243DF54DE733} => C:\Program Files (x86)\Kuaipan\Klive\kuaipanshellext64.dll [2016-06-06] (ShenZhen Xunlei Networking Technologies Ltd.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0B96009E-E207-48F9-B5A4-108BE5181CBA} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2013-12-11] ()
Task: {145D1481-28DB-4AE5-B7CC-71103C5A0AEE} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {1D86BEAF-9CBD-4201-B9AA-250A26E00AA9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-21] (Google Inc.)
Task: {24E4EE3C-71D0-4EB8-B5E0-E5055955F0FB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-21] (Piriform Ltd)
Task: {29DFFF76-4751-4FAE-B555-F365D166F4F1} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe
Task: {2E5F958F-E8B9-41A8-A487-12E8E33479E0} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {3447815B-C8DF-49CC-BD68-1E05E2438AA8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {3C667949-FE83-4A99-AA31-CB41587069B5} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {4A1B1D76-20BD-4874-80DC-CDA202B833F5} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {4CAF0CDB-901A-41F5-B904-E1BF6523BBA2} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {603820B7-F72E-4DD5-A46B-3556C0A76D8E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {683E7420-3F01-45CB-B8B3-484899CFBA43} - System32\Tasks\{4B8C250C-BC53-4732-9B97-3FC23DC83806} => C:\Windows\system32\pcalua.exe -a "C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe" -c --lang=enGB --uid=battle.net --displayname="Battle.net"
Task: {808C01AD-0A75-4B65-A581-07D39A7CD76F} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {B4DAEFE4-9220-4C16-8DE9-BD19C4E57388} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {BB3F17ED-4F58-4F94-8910-C29E0767B038} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {C07E7C4A-021F-4802-8751-93DCD2E75BEE} - System32\Tasks\Trigger KMS Activation => C:\Download\office\TriggerKMS.exe
Task: {C1068579-2BCA-40D4-BEA2-61E64E03235A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {C30B54ED-8B90-49C7-920A-3F91082E2F2A} - System32\Tasks\cFos\Registration Tasks\Open Browser => c:\program files (x86)\google\chrome\application\chrome.exe "hxxp://www.cfos.de/cs/download/download.htm?reg-10.10.2238-asrock&days=1&upd=r"
Task: {C52E6ABA-346C-4910-BE0F-7EF71BA79A2F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated)
Task: {CB02675B-4B76-47AF-9EDE-78545B5A19C5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {E2E65FDC-83C0-44A6-8FB7-FC75871E4FB7} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {EF8402D9-3F73-415B-97E9-E9AE46DD09AA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-21] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2015-03-22 09:19 - 2013-07-25 15:04 - 000454656 _____ () C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\IOMonitorSrv.exe
2017-12-03 11:41 - 2017-11-01 08:54 - 002358736 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2017-12-03 11:41 - 2017-11-01 08:55 - 002299344 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-18 21:59 - 2017-03-19 03:30 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-11-15 09:28 - 2017-10-15 15:51 - 004125080 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentDeliveryManager.Background.dll
2017-03-18 21:59 - 2017-03-19 03:31 - 002487712 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentManagementSDK.dll
2017-11-16 05:36 - 2017-11-10 10:57 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libglesv2.dll
2017-11-16 05:36 - 2017-11-10 10:57 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libegl.dll
2017-11-05 20:23 - 2017-11-05 20:23 - 000146224 ____N () C:\Users\Pejcha Petr\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe
2015-05-05 18:03 - 2008-05-02 13:32 - 000310784 _____ () C:\Program Files (x86)\Fujitsu Keyboard Lock Status driver\Keyboard Lock Status driver\3.0\SkeyLock.exe
2017-11-30 04:29 - 2017-11-30 04:31 - 000087040 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-11-30 04:29 - 2017-11-30 04:31 - 000202752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-11-30 04:29 - 2017-11-30 04:31 - 025600000 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-11-30 04:29 - 2017-11-30 04:31 - 002546176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\skypert.dll
2017-11-30 04:29 - 2017-11-30 04:30 - 000672256 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.9.604.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2017-06-17 19:33 - 2013-12-11 14:59 - 001051416 _____ () C:\Program Files\KMSpico\AutoPico.exe
2015-03-21 23:39 - 2015-03-21 23:39 - 000016896 _____ () C:\Program Files\KMSpico\WinDivert.dll
2016-06-15 17:24 - 2016-06-15 17:24 - 000042064 _____ () C:\Users\Pejcha Petr\AppData\Local\Viber\qrencode.dll
2016-06-15 17:26 - 2016-06-15 17:26 - 000397904 _____ () C:\Users\Pejcha Petr\AppData\Local\Viber\imageformats\qsvg.dll
2016-06-15 17:26 - 2016-06-15 17:26 - 000699472 _____ () C:\Users\Pejcha Petr\AppData\Local\Viber\QtQuick\Controls\qtquickcontrolsplugin.dll
2017-11-05 20:23 - 2017-11-05 20:23 - 000127280 ____N () C:\Users\Pejcha Petr\AppData\Local\MiPhoneManager\main\MiPlugin4NSIS.dll
2017-11-05 20:23 - 2017-11-05 20:23 - 000018736 ____N () C:\Users\Pejcha Petr\AppData\Local\MiPhoneManager\main\MiTrace.dll
2017-11-05 20:23 - 2017-11-05 20:23 - 000066352 ____N () C:\Users\Pejcha Petr\AppData\Local\MiPhoneManager\main\MiFramework.dll
2017-11-05 20:23 - 2017-11-05 20:23 - 000099600 ____N () C:\Users\Pejcha Petr\AppData\Local\MiPhoneManager\main\zlib1.dll
2015-05-05 18:03 - 2008-05-02 13:32 - 000049152 _____ () C:\Program Files (x86)\Fujitsu Keyboard Lock Status driver\Keyboard Lock Status driver\3.0\kLockDll.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3501514266-2958078906-2016536124-1001\...\garmin.com -> hxxps://my.garmin.com
IE restricted site: HKU\S-1-5-21-3501514266-2958078906-2016536124-1001\...\player.kmpmedia.net -> player.kmpmedia.net

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2015-04-05 15:39 - 000000763 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3501514266-2958078906-2016536124-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKU\S-1-5-21-3501514266-2958078906-2016536124-1001\...\StartupApproved\Run: => "CCleaner Monitoring"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{72049094-528F-467D-AC50-5C85FBF4F47A}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{C8212FD1-0E1A-47AC-8FE8-709246431000}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{A27268AD-0711-42DF-AABF-0F717F236C89}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{92440CEF-AD2A-4A12-910E-824F8876F776}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{5EEBA845-3EED-4A87-AA1D-DCBA788868BF}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{31EB3494-3A39-489D-B422-150327B8D680}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{D76F39FA-4891-430F-B745-C783E957B7D8}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{DAB5051F-B79A-4414-AD12-9D7CFCA55B3C}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{366F49D4-E31E-4F22-9636-C16BDC28BA75}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{B40287A9-DC77-44E7-93F1-F3B3BE069F39}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{F7099774-6390-4645-B44E-781ED6ACF35D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{AA35FAC8-F829-41F0-8B06-7F0761D14578}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{7495AF67-6CA0-4E83-B2CC-08381A76BF09}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5C8B7D19-C0D7-4B7B-804F-408B6AABC65C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{6EAE9B32-07EC-403D-AFA8-7FEDE9CC79BC}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{E33AB9EA-BABD-4E2D-B5EF-6C78820EACE4}C:\program files\totalcmd\totalcmd.exe] => (Allow) C:\program files\totalcmd\totalcmd.exe
FirewallRules: [TCP Query User{E99DC7BA-8BCE-49B0-9E04-A182E7274F88}C:\program files\totalcmd\totalcmd.exe] => (Allow) C:\program files\totalcmd\totalcmd.exe
FirewallRules: [{3247511B-ABEA-4483-B9E6-93A993293B11}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7576B998-1DB3-4ADE-95C1-7048EFE44103}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{75B4C023-6CE2-4B1E-AFBF-0E56B6EF7E65}] => (Allow) C:\Program Files (x86)\uTorrent\utorrent.exe
FirewallRules: [{0E1902B8-43B5-42F0-BD62-B72F457A3013}] => (Allow) C:\Program Files (x86)\uTorrent\utorrent.exe
FirewallRules: [{2191DBFC-B37F-4DEB-8F5B-46D8B56C9066}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{0049B56B-90F1-4933-B8B4-32D76DC99193}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{93901BF1-FF6F-4C09-BC34-7F24FBE4FF36}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{166388C4-4BAD-447B-8335-C81378679E28}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [TCP Query User{0D8F6918-5C16-4D36-A16C-37A25AE16B39}C:\program files\totalcmd\totalcmd.exe] => (Allow) C:\program files\totalcmd\totalcmd.exe
FirewallRules: [UDP Query User{B4C41E10-6FE5-4B00-816D-C84605439C3B}C:\program files\totalcmd\totalcmd.exe] => (Allow) C:\program files\totalcmd\totalcmd.exe
FirewallRules: [{BF443B2A-DAFB-44B2-BBC2-6EAC9ABD0062}] => (Allow) C:\Users\Pejcha Petr\AppData\Local\MiPhoneManager\main\MiPCSuite.exe
FirewallRules: [{45A2FAC9-FB23-41A1-A933-886956E57CA8}] => (Allow) LPort=1688
FirewallRules: [{9C3BEF91-0B61-4823-B179-4DA233AD507C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{84ACE01C-C17F-4D30-BE0C-9A053243E2B3}C:\users\pejcha petr\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\pejcha petr\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{7B9958EB-F335-4BCB-B6EA-E0166EC660C8}C:\users\pejcha petr\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\pejcha petr\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{EE225625-FB7F-4462-873F-C68029DA35BC}C:\users\pejcha petr\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\pejcha petr\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{8B6CB809-6FAA-44A4-A69F-4F9DE58BCC99}C:\users\pejcha petr\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\pejcha petr\appdata\roaming\spotify\spotify.exe
FirewallRules: [{0A6B68BF-CD0B-4ACD-8D7E-5759AD7795AE}] => (Allow) LPort=1688

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (12/03/2017 11:59:49 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: EURONYMOUS)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!microsoft.windowslive.mail se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (12/03/2017 11:59:29 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.15063.674 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 1814

Čas spuštění: 01d36c2541f6b3ff

Čas ukončení: 0

Cesta k aplikaci: C:\Windows\explorer.exe

ID hlášení: 593c074a-ee79-473e-aa4e-45a0b7b2c786

Úplný název balíčku s chybou: 

ID aplikace související s balíčkem s chybou:

Error: (12/03/2017 11:55:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Service_KMS.exe, verze: 11.0.0.0, časové razítko: 0x52a8d15d
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0x00000000
Posun chyby: 0x00007ffec6920668
ID chybujícího procesu: 0xdcc
Čas spuštění chybující aplikace: 0x01d36c2534bcdcc8
Cesta k chybující aplikaci: C:\Program Files\KMSpico\Service_KMS.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 2a7f9ed7-a26a-4ff5-9612-3005dddf6b86
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/02/2017 06:24:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.15063.483, časové razítko: 0x88a53c1d
Kód výjimky: 0xc000041d
Posun chyby: 0x00005836
ID chybujícího procesu: 0x334
Čas spuštění chybující aplikace: 0x01d36b9134189fe9
Cesta k chybující aplikaci: C:\Program Files (x86)\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: c84dd05b-8e98-426f-a6d3-3155f0927d1a
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/02/2017 05:53:45 PM) (Source: ESENT) (EventID: 476) (User: )
Description: svchost (9820) Unistore: Ověření načtení stránky databáze ze souboru C:\Users\Pejcha Petr\AppData\Local\Comms\UnistoreDB\store.vol na posunu 44630016 (0x0000000002a90000) (stránka databáze 10895 (0x2A8F)) o 4096 (0x00001000) bajtů selhalo. Stránka neobsahuje žádná data. Operace čtení selže a dojde k chybě -1019 (0xfffffc05). Pokud s tím budou dál problémy, obnovte prosím databázi z předchozí zálohy. Tento problém je pravděpodobně způsobený vadným hardwarem. O další pomoc s diagnostikováním problému požádejte dodavatele hardwaru.

Error: (12/02/2017 12:25:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AcroRd32.exe, verze: 18.9.20050.57426, časové razítko: 0x5a1c73c5
Název chybujícího modulu: PPKLite.api_unloaded, verze: 18.9.20044.55097, časové razítko: 0x59fe1c6a
Kód výjimky: 0xc0000005
Posun chyby: 0x002110ba
ID chybujícího procesu: 0x21d0
Čas spuštění chybující aplikace: 0x01d36b6027fea607
Cesta k chybující aplikaci: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
Cesta k chybujícímu modulu: PPKLite.api
ID zprávy: 87d99038-3c1d-4b00-990b-f8149549bff0
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/02/2017 12:25:02 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AcroRd32.exe, verze: 18.9.20050.57426, časové razítko: 0x5a1c73c5
Název chybujícího modulu: PPKLite.api_unloaded, verze: 18.9.20044.55097, časové razítko: 0x59fe1c6a
Kód výjimky: 0xc00001a5
Posun chyby: 0x00402fa0
ID chybujícího procesu: 0x21d0
Čas spuštění chybující aplikace: 0x01d36b6027fea607
Cesta k chybující aplikaci: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
Cesta k chybujícímu modulu: PPKLite.api
ID zprávy: 2c361aee-6256-4bca-9bc8-f9307297345b
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/02/2017 12:20:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.15063.483, časové razítko: 0x88a53c1d
Kód výjimky: 0xc000041d
Posun chyby: 0x00005836
ID chybujícího procesu: 0x287c
Čas spuštění chybující aplikace: 0x01d36ae45a454815
Cesta k chybující aplikaci: C:\Program Files (x86)\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: 36f92c1c-c548-476d-84b1-662a2ff917a7
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/01/2017 04:35:00 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: EURONYMOUS)
Description: Aplikaci Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (11/30/2017 08:37:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.15063.483, časové razítko: 0x88a53c1d
Kód výjimky: 0xc000041d
Posun chyby: 0x00005836
ID chybujícího procesu: 0x19c
Čas spuštění chybující aplikace: 0x01d367be90e8bf14
Cesta k chybující aplikaci: C:\Program Files (x86)\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: 52a21737-0937-4ee2-b491-593b53b6eece
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (12/03/2017 11:55:44 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Service KMSELDI byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/03/2017 11:55:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba CldFlt neuspěla při spuštění v důsledku následující chyby: 
Požadavek není podporován.

Error: (12/03/2017 11:55:04 AM) (Source: Microsoft-Windows-EnhancedStorage-EhStorTcgDrv) (EventID: 10) (User: NT AUTHORITY)
Description: A TCG Command has returned an error.
Desc: AuthenticateSession
Param1: 0x1
Param2: 0x60000001c
Param3: 0x900000006
Param4: 0x0
Status: 0x12

Error: (12/03/2017 11:54:39 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {FDA74D11-C4A6-4577-9F73-D7CA8586E10D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/03/2017 11:54:39 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {FDA74D11-C4A6-4577-9F73-D7CA8586E10D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/03/2017 11:54:39 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {FDA74D11-C4A6-4577-9F73-D7CA8586E10D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/03/2017 11:54:38 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {FDA74D11-C4A6-4577-9F73-D7CA8586E10D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/03/2017 11:54:38 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {FDA74D11-C4A6-4577-9F73-D7CA8586E10D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/03/2017 11:54:38 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {FDA74D11-C4A6-4577-9F73-D7CA8586E10D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/03/2017 11:54:38 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {FDA74D11-C4A6-4577-9F73-D7CA8586E10D} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===================================
  Date: 2017-12-03 11:42:36.409
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.

  Date: 2017-11-26 11:26:21.823
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-11-18 09:09:24.806
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-11-16 18:28:32.926
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-10-13 18:27:18.050
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-09-14 18:23:42.794
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-09-03 19:05:36.954
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-08-19 15:44:31.324
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-08-09 21:57:39.597
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-07-28 18:46:57.974
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\Windows.UI.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Celeron(R) CPU J1900 @ 1.99GHz
Percentage of memory in use: 84%
Total physical RAM: 3797.64 MB
Available physical RAM: 604.89 MB
Total Virtual: 6741.64 MB
Available Virtual: 2933.07 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:118.29 GB) (Free:12.42 GB) NTFS
Drive d: () (Removable) (Total:3.73 GB) (Free:3.59 GB) FAT32
Drive e: () (Removable) (Total:15.06 GB) (Free:14.82 GB) NTFS
Drive h: () (Removable) (Total:7.47 GB) (Free:1.63 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (Size: 7.5 GB) (Disk ID: 1B08624B)
Partition 1: (Not Active) - (Size=7.5 GB) - (Type=0C)

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 3.7 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=3.7 GB) - (Type=0B)

========================================================
Disk: 3 (Size: 15.1 GB) (Disk ID: 00000001)
Partition 1: (Not Active) - (Size=15.1 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================