FULL Ultra File Opener 5.6.3.131 Incl Patch Key !LINK!
LINK - https://urlin.us/2t866V
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-12-2017Ran by Dr. Ron (13-12-2017 10:11:52)Running from C:\Users\Dr. Ron\DesktopWindows 10 Pro Version 1511 10586.916 (X64) (2017-05-16 21:36:36)Boot Mode: Normal============================================================================== Accounts: =============================Administrator (S-1-5-21-1937093168-1187263909-1636579775-500 - Administrator - Disabled)DefaultAccount (S-1-5-21-1937093168-1187263909-1636579775-503 - Limited - Disabled)Dr. Ron (S-1-5-21-1937093168-1187263909-1636579775-1000 - Administrator - Enabled) => C:\Users\Dr. RonGuest (S-1-5-21-1937093168-1187263909-1636579775-501 - Limited - Disabled)==================== Security Center ========================(If an entry is included in the fixlist, it will be removed.)AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}==================== Installed Programs ======================(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)µTorrent (HKU\S-1-5-21-1937093168-1187263909-1636579775-1000\...\uTorrent) (Version: 3.5.0.44294 - BitTorrent Inc.)7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)Active@ Password Changer 8 (HKLM\...\{06DC3F36-F3F7-408E-909B-6D861D49E2E4}_is1) (Version: 8 - LSoft Technologies Inc)Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated)Adobe Flash Player 28 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 28.0.0.126 - Adobe Systems Incorporated)Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.0 - Adobe Systems Incorporated)Classic Shell (HKLM\...\{383BB30A-B4A7-4666-9A83-22CFA8640097}) (Version: 4.3.0 - IvoSoft)Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) HiddenFlashPeak Slimjet (HKLM-x32\...\Slimjet) (Version: 14.0.8.0 - FlashPeak Inc.)Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.0.0.29935 - Foxit Software Inc.)Free File Viewer 2014 (HKLM-x32\...\FreeFileViewer_is1) (Version: 2014.2.16.0 - Bitberry Software) C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft)ContextMenuHandlers1: [!NetFax0] -> {35308360-D4A6-436D-B701-1FEC7E96BA48} => C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxShell64.dll [2015-03-10] (Samsung Electronics Co., Ltd.)ContextMenuHandlers1: [!NetFax1] -> {35308360-D4A6-436D-B701-1FEC7E96BA48} => C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxShell64.dll [2015-03-10] (Samsung Electronics Co., Ltd.)ContextMenuHandlers1: [!NetFax2] -> {35308360-D4A6-436D-B701-1FEC7E96BA48} => C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxShell64.dll [2015-03-10] (Samsung Electronics Co., Ltd.)ContextMenuHandlers1: [!NetFax3] -> {35308360-D4A6-436D-B701-1FEC7E96BA48} => C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxShell64.dll [2015-03-10] (Samsung Electronics Co., Ltd.)ContextMenuHandlers1: [!NetFax4] -> {35308360-D4A6-436D-B701-1FEC7E96BA48} => C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxShell64.dll [2015-03-10] (Samsung Electronics Co., Ltd.)ContextMenuHandlers1: [!NetFax5] -> {35308360-D4A6-436D-B701-1FEC7E96BA48} => C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxShell64.dll [2015-03-10] (Samsung Electronics Co., Ltd.)ContextMenuHandlers1: [!NetFax6] -> {35308360-D4A6-436D-B701-1FEC7E96BA48} => C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxShell64.dll [2015-03-10] (Samsung Electronics Co., Ltd.)ContextMenuHandlers1: [!NetFax7] -> {35308360-D4A6-436D-B701-1FEC7E96BA48} => C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxShell64.dll [2015-03-10] (Samsung Electronics Co., Ltd.)ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2016-03-08] (Piriform Ltd)ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\ConvertToPDFShellExtension_x64.dll [2017-10-21] (Foxit Software Inc.)ContextMenuHandlers2-x32: [QuickFinderMenu] -> {C0E10002-0028-0004-C0E1-C0E1C0E1C0E1} => C:\Program Files (x86)\WordPerfect Office 11\Programs\PFSE110.DLL [2003-03-07] (Novell, Inc., c/o Corel Corporation Limited)ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)ContextMenuHandlers4-x32: [QuickFinderMenu] -> {C0E10002-0028-0004-C0E1-C0E1C0E1C0E1} => C:\Program Files (x86)\WordPerfect Office 11\Programs\PFSE110.DLL [2003-03-07] (Novell, Inc., c/o Corel Corporation Limited)ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2016-03-08] (Piriform Ltd)ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\ConvertToPDFShellExtension_x64.dll [2017-10-21] (Foxit Software Inc.)ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll [2016-12-15] (VS Revo Group)ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2016-07-30] (IvoSoft)==================== Scheduled Tasks (Whitelisted) =============(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)Task: {024048C1-3E50-45CB-8F7A-D4D23F54D6CC} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exeTask: {069D46B7-AF5E-412A-B4BE-600482166046} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exeTask: {06C6BDC0-4E5A-45E5-B865-749414BC8114} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-11-08] (HP Inc.)Task: {0862DBE1-07E0-40D3-B9FC-F7CC782B2A87} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)Task: {0A8550CD-DAB2-4224-9354-A24DDE88FF36} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.)Task: {1199BD83-570C-442E-9AED-F27F3802B453} - System32\Tasks\SlimCleaner Plus (Scheduled Scan - Dr. Ron) => C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exeTask: {11D59671-84B4-4A9A-84BB-0F80F23E7DA4} - System32\Tasks\GEN_Interval => C:\Users\Dr. Ron\AppData\Local\Programs\GEN\GEN.exe [2017-02-11] ( ) C:\WINDOWS\ehome\ehPrivJob.exeTask: {311EAD56-9068-4E6D-8111-8424B297B270} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exeTask: {3151D25D-A3C2-4E7D-9E65-A617025C4D81} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exeTask: {3391BE50-0D1F-4FE2-B2C8-0B7E895F76E0} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exeTask: {35DF2EE7-30A3-4D5B-BE85-0D267A546511} - System32\Tasks\HPCeeScheduleForDr. Ron => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-06-24] (HP Inc.)Task: {39D5BE29-4A2D-4777-9AA6-AA5C64EFE1C8} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exeTask: {403B8951-9AFC-4A01-83D4-8B4B6859514E} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exeTask: {4255A942-E125-4035-BB8A-6BB6F37F3C2B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_28_0_0_126_pepper.exe [2017-12-13] (Adobe Systems Incorporated)Task: {434916D3-BD59-421F-9EBA-7765FBCD034D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File C:\WINDOWS\ehome\ehPrivJob.exeTask: {4CFA42B8-2B34-40E2-85A4-B855E0FEFD97} - System32\Tasks\R@1n-KMS\Windows64Professional => wmic [Argument = path SoftwareLicensingProduct where (ID="2de67392-b7a7-462a-b1ca-108dd189f588") call Activate]Task: {4DB80BB3-724B-40B9-B571-4D907C894DE0} - System32\Tasks\Opera scheduled Autoupdate 1509594744 => C:\Program Files\Opera\launcher.exe [2017-10-24] (Opera Software)Task: {4FCFC630-CB02-4DCF-BE2D-C9B90AFC1C79} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exeTask: {517F0400-0775-444C-95AB-FB77BCEE2D53} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exeTask: {53CAE391-8E5E-46C1-B020-88B6EC0077C4} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exeTask: {57B73214-C5ED-4CFA-B567-0947B24AAE16} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exeTask: {58FB3915-6AB2-45DF-B78F-0CC9BE22BFF0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated)Task: {59609538-27C7-4801-9196-23D799735972} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exeTask: {59AADC6E-BAA7-4FE3-A3C4-CC38C43C33AC} - System32\Tasks\Online Application V2G2 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-02-07] (Microleaves LTD) C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe [2017-04-18] (Microleaves) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-10-11] (HP Inc.)Task: {67C871E0-F22C-447D-A3D7-B841253266D2} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exeTask: {6A45D14C-BCA8-4636-823E-782180A56F9F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)Task: {6EBCD0F9-DF25-4872-A12B-74B6FEF4463C} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exeTask: {752D68AF-1DDA-4D7E-A3AC-3A88D9877742} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2017-11-19] ()Task: {7DD279E2-C4BB-46A0-992F-B10D5A4E2356} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-11-08] (HP Inc.)Task: {82A780BF-017F-4F28-B34A-67625AE37FDE} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [2017-05-17] ()Task: {85060C71-3474-47B9-8662-F3400642AF77} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.)Task: {878D2277-A3E5-41F3-82D9-78F2F0FC1699} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.)Task: {89A4BFD1-404A-4EF8-AFF3-747B0AE1D0FC} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exeTask: {9BEC2D10-861A-4413-ABBC-9862A3708BBE} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2014-01-23] (Microsoft Corporation)Task: {A94AEAE9-7170-4E00-8A93-9DD195B10E51} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)Task: {AB58475B-0679-4261-A197-99842E3BC2C2} - System32\Tasks\Online Application V2G1 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-02-07] (Microleaves LTD) C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-02-07] (Microleaves LTD) C:\WINDOWS\ehome\mcupdate.exeTask: {B66E7984-6C76-4D23-AAC9-467BE4D0F26E} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-12-13] (Adobe Systems Incorporated)Task: {B675713F-BCA4-4332-8E61-86180CDF4980} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exeTask: {C692A921-BC9D-40DE-A567-B1C4ECC9DDFE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File C:\Program Files\CCleaner\CCleaner.exe [2017-05-19] (Piriform Ltd)Task: {C9FE7AE6-4B41-4FC0-BB08-C6EBDC777762} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exeTask: {CD7C3AFE-3A5D-4726-85A1-3531662319DB} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exeTask: {D7ABF0EE-C12E-4CF9-B7BD-D2009DDD33D0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.)Task: {DB5C4042-E0CC-441A-97B1-BED0993EB243} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exeTask: {E146BC9D-2030-43FB-9959-62082F758D67} - System32\Tasks\FreeFileViewerUpdateChecker => C:\Program Files (x86)\FreeFileViewer\FFVCheckForUpdates.exe [2015-12-30] (Bitberry Software) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.)Task: {F1206799-F859-4B22-9314-E324DB233D9A} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File C:\Users\Dr. Ron\AppData\Local\Programs\GEN\GEN.exe [2017-02-11] ( ) C:\WINDOWS\ehome\ehPrivJob.exe(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exeTask: C:\WINDOWS\Tasks\FreeFileViewerUpdateChecker.job => C:\Program Files (x86)\FreeFileViewer\FFVCheckForUpdates.exe C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exeTask: C:\WINDOWS\Tasks\Online Application V2G1.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exeTask: C:\WINDOWS\Tasks\Updater_Online_Application.job => C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe c:\windows\web\wallpaper\theme1\img3.jpgDNS Servers: 209.18.47.62 - 209.18.47.61HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)Windows Firewall is enabled.==================== MSCONFIG/TASK MANAGER disabled items ==MSCONFIG\Services: Dataup =>==================== FirewallRules (Whitelisted) ===============(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)FirewallRules: [{281F59C2-81E2-4D54-B4E5-85865DAB698A}] => (Allow) C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\Rtldhcp.exeFirewallRules: [{BFC4B33F-B723-427C-BF2D-BCB136B2FFD8}] => (Allow) LPort=53FirewallRules: [{3468D766-685E-4CE4-9259-53DCFEDB6678}] => (Allow) LPort=53FirewallRules: [{4522A9A9-8137-4916-852E-B93781835E8E}] => (Allow) LPort=68FirewallRules: [{B3545055-B962-45C3-88B0-67FB4CC794CD}] => (Allow) LPort=67FirewallRules: [{B873226C-09F7-4ABC-9281-3B4DAEC41859}] => (Allow) LPort=53FirewallRules: [{510F081F-ED14-4961-925C-D3D5CE4EEF54}] => (Allow) LPort=1542FirewallRules: [{A424C477-F265-4858-8E60-F068FB6EB1E3}] => (Allow) LPort=1542FirewallRules: [{296BDF6F-C6D8-4097-AE1B-EECB89E419E3}] => (Allow) C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\RtWLan.exeFirewallRules: [{5B06A56E-AC8B-4C3E-B7B1-064DE4381329}] => (Allow) C:\Program Files (x86)\REALTEK\USB Wireless LAN Utility\RtWLan.exeFirewallRules: [{32F4A9CF-83C5-427C-90AE-CFD4564792F8}] => (Allow) C:\Windows\KMS-R@1n.exeFirewallRules: [{BB56E4BD-C11B-462A-8F3A-A84AF5B0E63E}] => (Allow) C:\Windows\KMS-R@1n.exeFirewallRules: [{2A9831F9-9F3F-4D1F-8833-C6BDFBC6EC20}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exeFirewallRules: [{27BBF7E7-822C-41DD-BEB1-AAB5C14E87B4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exeFirewallRules: [{96636E05-7405-4D94-A014-C68A5A0C9688}] => (Allow) C:\Users\Dr. Ron\AppData\Roaming\uTorrent\uTorrent.exeFirewallRules: [{51297958-C695-45C9-8AB7-024ABA1B3521}] => (Allow) C:\Users\Dr. Ron\AppData\Roaming\uTorrent\uTorrent.exeFirewallRules: [{0351FE3A-8EC0-4A6E-85B5-B8FF54C9FB05}] => (Allow) C:\Users\Dr. Ron\AppData\Roaming\uTorrent\uTorrent.exeFirewallRules: [{58170F95-FBD9-44C5-8CC8-4C60880DBAB9}] => (Allow) C:\Users\Dr. Ron\AppData\Roaming\uTorrent\uTorrent.exeFirewallRules: [{263EC752-A4FA-4F55-955C-9BA4F1702E01}] => (Allow) C:\Users\Dr. Ron\AppData\Roaming\uTorrent\uTorrent.exeFirewallRules: [{6C86DECA-0D8B-44AD-B11F-74DD2609EE72}] => (Allow) C:\Users\Dr. Ron\AppData\Roaming\uTorrent\uTorrent.exeFirewallRules: [{A3679ADC-2F73-40F0-A8ED-ED47790CEB9B}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exeFirewallRules: [{44B45722-F130-494F-97EB-74C23429AAE5}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exeFirewallRules: [{93CDD0EF-DEB8-4EF0-9B2A-CFB773153891}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exeFirewallRules: [{AE9E3214-E856-453C-82C2-C1838BA04E51}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exeFirewallRules: [{0A1705C6-C935-48A5-BE88-F6EE51F7E448}] => (Allow) F:\New folder\Microsoft Toolkit.exeFirewallRules: [{9F30AD9B-EB71-4DC1-B2B7-AE6FB54CA5FC}] => (Allow) F:\New folder\Microsoft Toolkit.exeFirewallRules: [{094550CC-4212-4C0F-A4EE-FF8B8B2FB7D7}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exeFirewallRules: [{EE3FFD75-CC75-4204-AE62-15A05045A7DA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exeFirewallRules: [{DA81B61B-964B-41DF-9BA0-D5FC7926A047}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exeFirewallRules: [{B80D4FE0-25D6-4214-B733-8C9D9966F33C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exeFirewallRules: [{5FAB5572-91E0-4B66-8074-5E99447F030A}] => (Allow) C:\Users\Dr. Ron\Documents\customer\Desktop\Microsoft Toolkit.exeFirewallRules: [{2D4D25E0-84EF-486F-8A78-ED1E65D6BD62}] => (Allow) C:\Users\Dr. Ron\Documents\customer\Desktop\Microsoft Toolkit.exeFirewallRules: [{FB9B0923-52F3-4FAB-B652-DC56ABDA5CD9}] => (Allow) C:\Windows\twain_32\Samsung\CLX3300\SCNSearch\USDAgent.exeFirewallRules: [{4D1FAD55-B84E-4982-9899-B315D7A13C8E}] => (Allow) C:\Windows\twain_32\Samsung\CLX3300\SCNSearch\USDAgent.exeFirewallRules: [{D02D4808-925E-4938-9506-65BE08CB0761}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exeFirewallRules: [{96806A83-B026-4A8C-8C5F-0AC8F6A11B69}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exeFirewallRules: [{A104ADA6-E2C1-426C-9277-D88283F51772}] => (Allow) C:\Program Files (x86)\Samsung\Network PC Fax\drv\NetFaxMon64.exeFirewallRules: [{AF2DB1E5-7853-489A-B316-8FE705C1410B}] => (Allow) C:\Program Files (x86)\Samsung\Network PC Fax\drv\NetFaxMon.exeFirewallRules: [{5874EA1E-ADEB-45B2-AC68-F545E66E4CE8}] => (Allow) C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxMon64.exeFirewallRules: [{2B415828-9EBA-4B50-B76F-BF18F8460AEE}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exeFirewallRules: [{DF08F7EB-37CA-4B8A-BE78-112143BB21F7}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exeFirewallRules: [TCP Query User{D7217DCC-E8B4-4153-8C31-E1D2A80ADFB9}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exeFirewallRules: [UDP Query User{ECD1C55E-F970-44E0-B85B-A0D98BC35C17}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exeFirewallRules: [{E68403D8-D9C2-4CFB-8A2E-98893614B151}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ICCUpdater.exeFirewallRules: [{DFBB3B45-FAC7-48CF-8495-546088E3E764}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ICCUpdater.exeFirewallRules: [{D59F7CAE-93C0-4C15-970A-EEA6E187F411}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exeFirewallRules: [{F7F93719-DAE7-4D36-83DD-F1B13EEB5C0D}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exeFirewallRules: [{12949652-703A-43A0-A218-A6E6B529A26C}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Center\SamsungPrinterCenter.exeFirewallRules: [{2E30DAD1-592A-4480-806A-A247FC1EBDA9}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exeFirewallRules: [{3BB0E57B-F87A-4D76-A803-CAD52665BB57}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exeFirewallRules: [{7E3143C4-A3AF-494A-946F-D83820FE0722}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exeFirewallRules: [{F2C2C5E6-316A-4FEC-83DD-8693D1C8E083}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exeFirewallRules: [TCP Query User{CBDDAAF2-89B5-4868-B356-4A3E865804D0}C:\program files (x86)\slimjet\slimjet.exe] => (Allow) C:\program files (x86)\slimjet\slimjet.exeFirewallRules: [UDP Query User{97EB105C-42BB-46A5-A356-99104BD843B8}C:\program files (x86)\slimjet\slimjet.exe] => (Allow) C:\program files (x86)\slimjet\slimjet.exeFirewallRules: [TCP Query User{918B8BB6-CDF9-4B54-B46A-1D66D68666CA}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exeFirewallRules: [UDP Query User{C0546531-BB7F-4613-9D19-37123FAE8F74}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exeFirewallRules: [TCP Query User{03F86B70-79E0-4C5A-BDE1-4B2070E1F374}C:\program files (x86)\slimjet\slimjet.exe] => (Allow) C:\program files (x86)\slimjet\slimjet.exeFirewallRules: [UDP Query User{29139723-FF0C-4D4A-AC96-3666EFBE3278}C:\program files (x86)\slimjet\slimjet.exe] => (Allow) C:\program files (x86)\slimjet\slimjet.exeFirewallRules: [{2935F3A8-D0EB-4A9C-BD91-73506E05A4AD}] => (Allow) C:\Windows\twain_32\Samsung\CLX3300\SCNSearch\USDAgent.exeFirewallRules: [{7A03D995-BD10-4679-950D-E0F725FB2DBB}] => (Allow) C:\Windows\twain_32\Samsung\CLX3300\SCNSearch\USDAgent.exeFirewallRules: [{0A39A34E-B71D-40D1-AEA9-E4C36F4D55C9}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exeFirewallRules: [{20C8658A-D69B-4365-9DD7-3C7A2FE61306}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exeFirewallRules: [{63CF3858-E3C8-4D9C-8AF9-F760EAC1E5D6}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDS.Application.exeFirewallRules: [{1F9A5C35-483E-47C3-946E-F3F50FA66095}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exeFirewallRules: [{D2D10F43-D023-4A5D-8EBC-FCFF48936542}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDSAlert.exeFirewallRules: [{E36DAEC2-5C66-4D36-8A54-B514E789A856}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\uninstall.exeFirewallRules: [{73791923-3359-404B-AE38-76E22AF60F67}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exeFirewallRules: [{C98EB3EE-6023-4A1B-8455-835B0215D656}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\ScanProcess.exeFirewallRules: [{36244945-C399-4B43-B83F-05F69BAAE6C0}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\Scan2PCNotify.exeFirewallRules: [{7A553AE6-B791-47CD-BA46-F3C686F5F642}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ICCUpdater.exeFirewallRules: [{571CFA49-E152-4745-8B65-E20FE6BBBBFA}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ICCUpdater.exeFirewallRules: [{10B4F7B9-9D67-44D2-960B-0EB33521BF01}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exeFirewallRules: [{9A75572D-AD11-4BEF-9016-A1993DBE0B60}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exeFirewallRules: [{8ED06F2A-AF44-4A86-ADC0-9B0A134CF82A}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Diagnostics\SEInstall\SPD\ESM.exeFirewallRules: [{0C6F95B8-42BC-40EE-8268-A6A9DE449922}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Diagnostics\SEInstall\SPD\WebInstallAgent\SPNTInst.exeFirewallRules: [{867D26E0-BF88-4DF7-9C58-FA17FDEA2FBC}] => (Allow) C:\Users\Dr. Ron\AppData\Local\Temp\196661\SCPSetup\SCPSetup.exeFirewallRules: [{A1EEF40C-A4BD-4B55-892E-3FF4C4CAFE08}] => (Allow) C:\Users\Dr. Ron\AppData\Local\Temp\196661\SCPSetup\SCPSetup.exeFirewallRules: [{483B4E8C-7EE6-4AC8-8FA1-87870C7B1F8E}] => (Allow) C:\Users\Dr. Ron\AppData\Local\Temp\196661\SCPSetup\SCPSetup.exeFirewallRules: [{65E70F2C-191D-42E2-A751-DAE319D836F0}] => (Allow) C:\Users\Dr. Ron\AppData\Local\Temp\196661\SCPSetup\SCPSetup.exeFirewallRules: [TCP Query User{ADFEEB5F-870C-45F5-AED3-8D24735AA89B}C:\program files (x86)\samsung\easy printer manager\ids.application.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\ids.application.exeFirewallRules: [UDP Query User{2C45F3A4-6D1B-468B-A94C-35A7A8CDCB22}C:\program files (x86)\samsung\easy printer manager\ids.application.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\ids.application.exeFirewallRules: [{C5ADDCFF-7F10-43B9-B601-9C33704D3F56}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exeFirewallRules: [{989DF835-2EC2-43E0-BF4C-CC393ECA93B9}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exeFirewallRules: [{30ABD1D3-CBF0-4460-9546-A54C7170EAB1}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Diagnostics\SEInstall\SPD\ESM.exeFirewallRules: [{201FAF1D-F2E4-4FE8-9CEA-6C39E85C9A86}] => (Allow) C:\Program Files\Opera\48.0.2685.52\opera.exeFirewallRules: [{A34F6C58-A5EA-49B8-B204-698170034149}] => (Allow) C:\Program Files\Opera\48.0.2685.52_0\opera.exeFirewallRules: [{91F2CE96-4748-4199-ACB9-E06BF6466241}] => (Allow) C:\Program Files (x86)\FreeFileViewer\FFVCheckForUpdates.exeFirewallRules: [{35B86420-E05E-4B0E-950C-F7DF0D632DE9}] => (Allow) C:\WINDOWS\AutoKMS\AutoKMS.exeFirewallRules: [{5526BC3E-D5B9-4DDE-95B3-BB0C51F3B743}] => (Allow) C:\WINDOWS\AutoKMS\AutoKMS.exe==================== Restore Points =========================23-11-2017 15:00:47 Scheduled Checkpoint02-12-2017 23:07:59 Scheduled Checkpoint12-12-2017 18:06:43 Installed ESET NOD32 Antivirus==================== Faulty Device Manager Devices ================================= Event log errors: =========================Application errors:==================Error: (12/13/2017 10:11:33 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: AutoKMS.exe, version: 2.6.0.0, time stamp: 0x5610111dFaulting module name: KERNELBASE.dll, version: 10.0.10586.916, time stamp: 0x59029143Exception code: 0xe0434352Fault offset: 0x0000000000071f28Faulting process id: 0x6c4Faulting application start time: 0x01d37422eaa89589Faulting application path: C:\WINDOWS\AutoKMS\AutoKMS.exeFaulting module path: C:\WINDOWS\system32\KERNELBASE.dllReport Id: 297752c5-eae5-4984-96c1-5622215003cfFaulting package full name:Faulting package-relative application ID:Error: (12/13/2017 10:10:57 AM) (Source: .NET Runtime) (EventID: 1026) (User: )Description: Application: AutoKMS.exeFramework Version: v4.0.30319Description: The process was terminated due to an unhandled exception.Exception Info: System.UnauthorizedAccessException at System.IO.__Error.WinIOError(Int32, System.String) at System.IO.FileInfo.Delete() at ##.#IA(System.String) at ##.#ty() at #j.#Lf.#Jf(#P.#cb, System.String, Boolean, System.String, Int32, System.String, System.String, Boolean, Boolean, Boolean, Boolean, Boolean, Boolean, System.String, System.String) at ##.#ay(System.String, Boolean, Boolean, Boolean, System.String, System.String, System.String, Boolean, Boolean, System.String, Int32, #P.#cb, Boolean, Boolean) at ##.#GA(#Eb.#Eb) at #Eb.#e.#d()Error: (12/13/2017 10:04:09 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: launcher.exe_Opera Internet Browser, version: 48.0.2685.52, time stamp: 0x59ee3b6cFaulting module name: launcher.exe, version: 48.0.2685.52, time stamp: 0x59ee3b6cException code: 0x80000003Fault offset: 0x0000000000040476Faulting process id: 0x994Faulting application start time: 0x01d374239bdffca7Faulting application path: C:\Program Files\Opera\launcher.exeFaulting module path: C:\Program Files\Opera\launcher.exeReport Id: c3c63d27-f89e-4482-b179-0af6f362d583Faulting package full name:Faulting package-relative application ID:Error: (12/13/2017 09:59:56 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DrRon-PC)Description: Activation of app Microsoft.ZuneVideo_8wekyb3d8bbwe!Microsoft.ZuneVideo failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.Error: (12/13/2017 09:59:49 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DrRon-PC)Description: Activation of app Microsoft.CommsPhone_8wekyb3d8bbwe!App failed with error: -2147023170 See the Microsoft-Windows-TWinUI/Operational log for additional information.Error: (12/13/2017 09:59:49 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DrRon-PC)Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.Error: (12/13/2017 09:59:49 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DrRon-PC)Description: Activation of app Microsoft.CommsPhone_8wekyb3d8bbwe!App failed with error: -2147023170 See the Microsoft-Windows-TWinUI/Operational log for additional information.Error: (12/13/2017 10:36:00 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: launcher.exe_Opera Internet Browser, version: 48.0.2685.52, time stamp: 0x59ee3b6cFaulting module name: launcher.exe, version: 48.0.2685.52, time stamp: 0x59ee3b6cException code: 0x80000003Fault offset: 0x0000000000040476Faulting process id: 0x1b68Faulting application start time: 0x01d374281107b334Faulting application path: C:\Program Files\Opera\launcher.exeFaulting module path: C:\Program Files\Opera\launcher.exeReport Id: 0bd110aa-ebeb-4808-8d7f-50d90bcb5a17Faulting package full name:Faulting package-relative application ID:Error: (12/13/2017 10:53:49 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: Online-Guardian.exe, version: 2.0.9.0, time stamp: 0x58998359Faulting module name: ntdll.dll, version: 10.0.10586.672, time stamp: 0x580efaf8Exception code: 0xc0000005Fault offset: 0x00041385Faulting process id: 0x3a38Faulting application start time: 0x01d3742a7392ff18Faulting application path: C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exeFaulting module path: C:\WINDOWS\SYSTEM32\ntdll.dllReport Id: b37ed2e3-6baf-43d5-a364-9634d67d1eb9Faulting package full name:Faulting package-relative application ID:Error: (12/13/2017 10:14:31 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: launcher.exe_Opera Internet Browser, version: 48.0.2685.52, time stamp: 0x59ee3b6cFaulting module name: launcher.exe, version: 48.0.2685.52, time stamp: 0x59ee3b6cException code: 0x80000003Fault offset: 0x0000000000040476Faulting process id: 0x166cFaulting application start time: 0x01d374250fc905e9Faulting application path: C:\Program Files\Opera\launcher.exeFaulting module path: C:\Program Files\Opera\launcher.exeReport Id: 06bf63a5-fa15-481c-9594-a74c80958039Faulting package full name:Faulting package-relative application ID:System errors:=============Error: (12/13/2017 10:05:39 AM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: The Windows Defender Service service failed to start due to the following error:The requested resource is in use.Error: (12/13/2017 10:05:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: The Windows Defender Service service failed to start due to the following error:The requested resource is in use.Error: (12/13/2017 10:04:08 AM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: The Windows Defender Service service failed to start due to the following error:The requested resource is in use.Error: (12/13/2017 10:02:42 AM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: The HP Touchpoint Analytics service failed to start due to the following error:The requested resource is in use.Error: (12/13/2017 09:59:56 AM) (Source: DCOM) (EventID: 10010) (User: DrRon-PC)Description: The server Microsoft.ZuneVideo.AppXjgy0dfr6tssa93yj5px65cbv2gsc8r39.mca did not register with DCOM within the required timeout.Error: (12/13/2017 09:59:48 AM) (Source: DCOM) (EventID: 10010) (User: DrRon-PC)Description: The server CortanaUI.AppXtpp90jhw9p0njjb85kvhxpppgrqfp117.mca did not register with DCOM within the required timeout.Error: (12/13/2017 09:59:09 AM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: The WinDefend service failed to start due to the following error:The requested resource is in use.Error: (12/13/2017 09:59:09 AM) (Source: Service Control Manager) (EventID: 7001) (User: )Description: The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error:The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.Error: (12/13/2017 10:25:58 AM) (Source: Service Control Manager) (EventID: 7031) (User: )Description: The User Data Access_42c730 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.Error: (12/13/2017 10:25:58 AM) (Source: Service Control Manager) (EventID: 7031) (User: )Description: The User Data Storage_42c730 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.CodeIntegrity:=================================== Date: 2017-10-15 20:52:06.107 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2017-10-15 20:42:33.424 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2017-08-27 08:34:22.818 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-25 12:04:47.734 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-24 10:20:13.139 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-18 15:20:40.665 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-06 16:05:18.003 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-04 09:07:56.866 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-02 17:49:58.466 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-01 18:18:17.076 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.==================== Memory info ===========================Processor: Intel® Core™ i5 CPU M 450 @ 2.40GHzPercentage of memory in use: 38%Total physical RAM: 6005.86 MBAvailable physical RAM: 3676.56 MBTotal Virtual: 12149.86 MBAvailable Virtual: 9805.28 MB==================== Drives ================================Drive c: () (Fixed) (Total:675.14 GB) (Free:581.48 GB) NTFS ==>[drive with boot components (obtained from BCD)]Drive d: (SYSTEM) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[system with boot components (obtained from drive)]==================== MBR & Partition Table ==========================================================================Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 10A444CC)Partition 1: (Not Active) - (Size=100 MB) - (Type=07 NTFS)Partition 2: (Active) - (Size=675.1 GB) - (Type=07 NTFS)Partition 3: (Not Active) - (Size=23.4 GB) - (Type=27)==================== End of Addition.txt ============================ 2b1af7f3a8