Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Additional scan result of Farbar Recovery Scan Tool (x64) Version:14-08-2015 01
- Ran by Silja (2015-08-17 05:15:32)
- Running from C:\Users\Silja\Desktop
- Boot Mode: Normal
- ==========================================================
- ==================== Accounts: =============================
- Administrator (S-1-5-21-959445010-2885263195-2765435330-500 - Administrator - Disabled)
- Guest (S-1-5-21-959445010-2885263195-2765435330-501 - Limited - Disabled)
- HomeGroupUser$ (S-1-5-21-959445010-2885263195-2765435330-1002 - Limited - Enabled)
- Silja (S-1-5-21-959445010-2885263195-2765435330-1000 - Administrator - Enabled) => C:\Users\Silja
- ==================== Security Center ========================
- (If an entry is included in the fixlist, it will be removed.)
- AV: Norton Internet Security (Disabled - Out of date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
- AV: 360杀毒 (Enabled - Up to date) {6F7A6B22-2309-7CD0-AF79-D11A4916C60C}
- AS: 360安全卫士 (Enabled - Up to date) {90070FFA-C3F2-CD79-5E3F-7527D7EF99C0}
- AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- AS: Norton Internet Security (Disabled - Out of date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}
- FW: Norton Internet Security (Disabled) {6BFC5632-188D-B806-D13E-C607121B42A0}
- ==================== Installed Programs ======================
- (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
- 360安全卫士 (HKLM-x32\...\360安全卫士) (Version: 10.0.0.2001 - 360安全中心)
- 360杀毒 (HKLM-x32\...\360SD) (Version: 5.0.0.5104 - 360安全中心)
- 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
- Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated)
- Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0409-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
- Adobe Reader X (10.1.13) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
- ÂìÒϰ²È«ä¯ÀÀÆ÷ Õýʽ°æ (HKU\S-1-5-21-959445010-2885263195-2765435330-1000\...\ÂìÒÏä¯ÀÀÆ÷(MyIE9)) (Version: Õýʽ°æ - [email protected])
- Amazon Kindle (HKU\S-1-5-21-959445010-2885263195-2765435330-1000\...\Amazon Kindle) (Version: - Amazon)
- Apple Application Support (HKLM-x32\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.)
- Apple Mobile Device Support (HKLM\...\{B678797F-DF38-4556-8A31-8B818E261868}) (Version: 8.0.0.23 - Apple Inc.)
- Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
- AVG PC TuneUp 2015 (en-US) (x32 Version: 15.0.1001.518 - AVG Technologies) Hidden
- Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
- Dev-C++ 5 beta 9 release (4.9.9.2) (HKLM-x32\...\Dev-C++) (Version: - )
- Dropbox (HKU\S-1-5-21-959445010-2885263195-2765435330-1000\...\Dropbox) (Version: 3.8.6 - Dropbox, Inc.)
- DTS Sound (HKLM-x32\...\{791692AD-63B2-4A87-A097-4E8DD3CE4BC9}) (Version: 1.00.0079 - DTS, Inc.)
- Easy Timer version 1.01 (HKLM-x32\...\Easy Timer_is1) (Version: - )
- Evernote v. 5.2.1 (HKLM-x32\...\{5E6D0ABA-ABDE-11E3-9AED-00163E98E7D6}) (Version: 5.2.1.3108 - Evernote Corp.)
- Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.)
- Google Earth Pro (HKLM-x32\...\{44FC61F0-2F8A-11E3-8CAE-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
- Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
- Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
- iCloud (HKLM\...\{309768A4-A2BB-4930-A5A2-8169678C9B4C}) (Version: 4.0.6.28 - Apple Inc.)
- Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.30.1349 - Intel Corporation)
- Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3062 - Intel Corporation)
- Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.0.4.1001 - Intel Corporation)
- Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
- Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.7.248 - Intel Corporation)
- iTunes (HKLM\...\{F46AA0F1-E284-4878-A462-5F11B9166C0E}) (Version: 11.4.0.18 - Apple Inc.)
- Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation)
- Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
- Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
- KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.9.0.128 - PandoraTV)
- LINE (HKLM-x32\...\LINE) (Version: 4.1.2.516 - LINE Corporation)
- Lingoes 2.9.1 (HKLM-x32\...\Lingoes Translator_is1) (Version: 2.9.1 - Lingoes Project)
- Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
- Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
- Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110404-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
- Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
- MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
- ѸÀ×7 (HKLM-x32\...\thunder_is1) (Version: 7.9.35.4922 - ѸÀ×ÍøÂç¼¼ÊõÓÐÏÞ¹«Ë¾)
- NHIICC (HKLM-x32\...\{809F5AFC-0428-4C1A-8142-6FD9D245713E}) (Version: 1.0.0 - Default Company Name)
- Norton Anti-Theft (HKLM-x32\...\NAT) (Version: 1.10.0.9 - Symantec Corporation)
- Norton Internet Security (HKLM-x32\...\NIS) (Version: 20.6.0.27 - Symantec Corporation)
- PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
- QQ旋风4.7 (HKLM-x32\...\QQ旋风) (Version: 4.7.769.400 - 腾讯科技(深圳)有限公司)
- Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.16 - Qualcomm Atheros Communications Inc.)
- Quick Notes Plus 5.0 (HKLM-x32\...\Quick Notes Plus_is1) (Version: - Conceptworld Corporation)
- Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6899 - Realtek Semiconductor Corp.)
- Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.39041 - Realtek Semiconductor Corp.)
- Realtek WLAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4fed-B2B9-173001290E16}) (Version: 2.00.0021 - REALTEK Semiconductor Corp.)
- Skype(TM) 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
- Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.3.10.4 - Synaptics Incorporated)
- TOSHIBA Application Installer (HKLM-x32\...\{970472D0-F5F9-4158-A6E3-1AE49EFEF2D3}) (Version: 9.0.1.2 - TOSHIBA)
- TOSHIBA Assist (HKLM-x32\...\{C2A276E3-154E-44DC-AAF1-FFDD7FD30E35}) (Version: 4.2.3.1 - TOSHIBA CORPORATION)
- TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.12 for x64 - TOSHIBA Corporation)
- TOSHIBA eco Utility (HKLM\...\{F5AFF327-9B52-4E96-B5A0-BD2488A8EEC9}) (Version: 1.3.23.64 - TOSHIBA Corporation)
- TOSHIBA Hardware Setup (HKLM-x32\...\{6D622295-07A8-4CB3-8E0E-6E3D7C782A7B}) (Version: 3.1.0.10 - TOSHIBA Corporation)
- TOSHIBA Quality Application (HKLM-x32\...\{E69992ED-A7F6-406C-9280-1C156417BC49}) (Version: 1.0.4 - TOSHIBA)
- TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.7.52020010 - TOSHIBA CORPORATION)
- TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.2.13 - TOSHIBA)
- TOSHIBA Supervisor Password (HKLM-x32\...\{661C3409-C3CC-4869-A0AC-90EAB15F5E93}) (Version: 3.1.0.2 - TOSHIBA Corporation)
- TOSHIBA User's Guide (HKLM-x32\...\{3384E1D9-3F18-4A98-8655-180FEF0DFC02}) (Version: 1.00.02 - TOSHIBA)
- TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.6.0035.6406 - TOSHIBA Corporation)
- TPO1-34模考软件V4.3 4.3 (HKLM-x32\...\4831-6378-9433-8584) (Version: 4.3 - HM)
- VMware Player (HKLM-x32\...\VMware_Player) (Version: 6.0.2 - VMware, Inc)
- VMware Player (Version: 6.0.2 - VMware, Inc.) Hidden
- 有道词典 (HKU\S-1-5-21-959445010-2885263195-2765435330-1000\...\有道词典) (Version: 6.1 - 网易公司)
- 模考软件 5.0 (HKLM-x32\...\7023-2782-6160-5471) (Version: 5.0 - HM)
- 百度云管家 (HKLM-x32\...\百度云管家) (Version: 5.0.1 - 百度在线网络技术(北京)有限公司)
- 百度软件中心助手 1.3.0.14 (HKLM-x32\...\BaiduRJDownloader) (Version: 1.3.0.14 - Beijing baidu Netcom science and technology co.ltd)
- 腾讯QQ (HKLM-x32\...\{052CFB79-9D62-42E3-8A15-DE66C2C97C3E}) (Version: 6.4.12582.0 - 腾讯科技(深圳)有限公司)
- ==================== Custom CLSID (Whitelisted): ==========================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{679F137C-3162-45da-BE3C-2F9C3D093F64}\InprocServer32 -> C:\Windows\system32\shdocvw.dll (Microsoft Corporation)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- CustomCLSID: HKU\S-1-5-21-959445010-2885263195-2765435330-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Silja\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.)
- ==================== Restore Points =========================
- Check "winmgmt" service or repair WMI.
- ==================== Hosts content: ===============================
- (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
- 2009-07-14 10:34 - 2009-06-11 05:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
- ==================== Scheduled Tasks (Whitelisted) =============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- Task: {12371658-5E31-4D9A-A02D-EF15014E2E6C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-13] (Adobe Systems Incorporated)
- Task: {60FDE923-112B-46FE-9CE2-A5917D814C83} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\20.5.0.28\WSCStub.exe
- Task: {7DC24C90-163B-4F38-84DD-F8BB7FB9E1CE} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\20.5.0.28\SymErr.exe
- Task: {82065796-AA11-477D-B19C-85B5507B2AF9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-17] (Google Inc.)
- Task: {96AD194B-FF6B-42A4-B2CE-4821BAF276F7} - System32\Tasks\Norton Anti-Theft\Norton Error Analyzer => C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\SymErr.exe [2013-08-01] (Symantec Corporation)
- Task: {B66968C5-FC33-4142-8139-92AB87C98D73} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-17] (Google Inc.)
- Task: {B6953CA3-F9D1-4246-80D1-AA64212D7825} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\20.5.0.28\SymErr.exe
- Task: {D7D48AD8-E92F-4066-B9A7-F97CA5E3D0D7} - System32\Tasks\Norton Anti-Theft\Norton Error Processor => C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\SymErr.exe [2013-08-01] (Symantec Corporation)
- Task: {E93CA61D-939B-4D95-A25E-33DB7F7758F0} - System32\Tasks\{44E33E65-72EE-4D8F-A058-C1843D8C8824} => Chrome.exe http://ui.skype.com/ui/0/6.11.0.102/en/abandoninstall?source=lightinstaller&page=tsBing
- Task: {F0393C3E-A0A5-49BB-A57C-1FF990AADABF} - System32\Tasks\{479076DC-65F0-4517-A584-1ABA4582CEEE} => pcalua.exe -a C:\Users\Silja\Desktop\ps902.exe -d C:\Users\Silja\Desktop
- Task: {FCC1F708-5E21-43E8-9658-285AE57AB4A2} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-02] (Apple Inc.)
- (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
- Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-959445010-2885263195-2765435330-1000Core1d0c1cad935b21f.job => C:\Users\Silja\AppData\Local\Dropbox\Update\DropboxUpdate.exe
- Task: C:\windows\Tasks\QQBrowser Udpater Task(Core).job => C:\Program Files (x86)\Tencent\QQBrowser\QQBrowser.exe
- Task: C:\windows\Tasks\QQBrowser Udpater Task.job => C:\Program Files (x86)\Tencent\QQBrowser\QQBrowser.exe
- ==================== Loaded Modules (Whitelisted) ==============
- 2013-06-01 07:56 - 2013-06-01 07:56 - 00016720 _____ () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
- 2011-08-23 06:19 - 2011-08-23 06:19 - 11204992 _____ () C:\Program Files\Toshiba\FlashCards\BlackPng.dll
- 2012-03-03 07:08 - 2012-03-03 07:08 - 00595840 _____ () C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
- 2010-12-16 07:19 - 2010-12-16 07:19 - 00124320 _____ () C:\Program Files\Toshiba\TECO\MUIHelp.dll
- 2014-11-10 08:04 - 2014-11-10 08:04 - 00254920 _____ () C:\Users\Silja\AppData\Roaming\baidu\BaiduYunGuanjia\YunShellExt64.dll
- ==================== Alternate Data Streams (Whitelisted) =========
- (If an entry is included in the fixlist, only the ADS will be removed.)
- ==================== Safe Mode (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
- ==================== EXE Association (Whitelisted) ===============
- (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
- ==================== Internet Explorer trusted/restricted ===============
- (If an entry is included in the fixlist, it will be removed from the registry.)
- ==================== Other Areas ============================
- (Currently there is no automatic fix for this section.)
- HKU\S-1-5-21-959445010-2885263195-2765435330-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Silja\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
- DNS Servers: 196.45.144.2 - 196.45.144.3
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
- Windows Firewall is enabled.
- ==================== MSCONFIG/TASK MANAGER disabled items ==
- (Currently there is no automatic fix for this section.)
- ==================== FirewallRules (Whitelisted) ===============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
- FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
- FirewallRules: [{82280AAA-FF60-488A-9D2A-54F74A4FB151}] => (Allow) C:\Program Files (x86)\Naver\LINE\Line.exe
- FirewallRules: [{5E2DAA92-9D91-4EA2-AA57-5E698AA0F19A}] => (Allow) C:\Program Files (x86)\Naver\LINE\Line.exe
- FirewallRules: [{398460D8-F283-4BBB-AA39-974F92DACAE3}] => (Allow) C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe
- FirewallRules: [{13F6EE85-AD97-48D7-A9CA-9645411C8633}] => (Allow) C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe
- FirewallRules: [{CD91DACF-C03C-4A7C-9E0B-D44929E85AEE}] => (Allow) C:\Users\Public\Documents\Tencent\QQGameMicro\QQGameMicro.exe
- FirewallRules: [{98B12927-840D-4432-851F-775DF6FC1694}] => (Allow) C:\Program Files (x86)\Tencent\QQMusic\QzoneMusic\QzoneMusic.exe
- FirewallRules: [{6072E400-ED5C-4C21-B3C5-2EC65A033AED}] => (Allow) C:\Program Files (x86)\Tencent\QQMusic\QzoneMusic\QzoneMusic.exe
- FirewallRules: [{DDA5A9D8-9F04-40B7-BE24-1A6371CD140E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
- FirewallRules: [{D3523014-E55A-44B9-A605-57674E60CB14}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
- FirewallRules: [{FA638582-C56B-43F2-AB80-6B41A0D85B41}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
- FirewallRules: [{15061FC5-84C1-4455-AFA2-07B1D21A04AB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
- FirewallRules: [{3D590E29-DE05-4864-8125-486C4036DD9D}] => (Allow) C:\Program Files (x86)\360\360Safe\safemon\360Tray.exe
- FirewallRules: [{00400E5E-084A-458B-AFA4-1E63D43D4E41}] => (Allow) C:\Program Files (x86)\360\360Safe\safemon\360Tray.exe
- FirewallRules: [{27F7719D-8E61-4488-8896-A59E6973940F}] => (Allow) C:\Program Files (x86)\360\360Safe\LiveUpdate360.exe
- FirewallRules: [{CA1609CA-5522-4F84-8C04-13625362547A}] => (Allow) C:\Program Files (x86)\360\360Safe\LiveUpdate360.exe
- FirewallRules: [TCP Query User{F92533BA-0D29-4BD2-AD90-C494C66DCCAE}C:\program files (x86)\conceptworld\qnplus\qnplus.exe] => (Allow) C:\program files (x86)\conceptworld\qnplus\qnplus.exe
- FirewallRules: [UDP Query User{AE71EFB6-BEB3-4DCC-A8EB-2363F7E75CAF}C:\program files (x86)\conceptworld\qnplus\qnplus.exe] => (Allow) C:\program files (x86)\conceptworld\qnplus\qnplus.exe
- FirewallRules: [{FF55BC4A-7443-4F19-A1FB-C6A6379F8D60}] => (Allow) C:\Users\Public\Documents\Tencent\QQGameMicro\QQGameMicro.exe
- FirewallRules: [{1A3071A3-389E-4EB2-8493-8EA33B270AE1}] => (Allow) C:\Program Files (x86)\Tencent\QQ\QQProtect\Bin\QQProtect.exe
- FirewallRules: [{12E1AED6-B318-4A2B-BB5B-32FECDC51081}] => (Allow) C:\Program Files (x86)\Tencent\QQ\QQProtect\Bin\QQProtect.exe
- FirewallRules: [{1F859BF5-0915-4739-A8F1-854A6E78B4CA}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\QQ.exe
- FirewallRules: [{B50CAC20-56A3-4971-90E1-DE2447444823}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\QQ.exe
- FirewallRules: [{EC572946-D154-42A3-ADAD-3C89ACF13C5D}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\auclt.exe
- FirewallRules: [{F23CD864-4671-4A26-A596-5818DC6DC042}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\auclt.exe
- FirewallRules: [{B729B793-1D17-4521-A38F-BCA60BF9B7BE}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\maLauncher.exe
- FirewallRules: [{6806546E-3102-489C-8BEB-C025E39E17ED}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\maLauncher.exe
- FirewallRules: [{D81A785A-2714-43F8-B464-31FBDDE4F82D}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\maUpdat.exe
- FirewallRules: [{F815B302-E08B-465F-B407-24461BA6D518}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\maUpdat.exe
- FirewallRules: [{0967B6E5-A76B-43E5-9121-2DF46716E6E7}] => (Allow) C:\Users\Public\Documents\Tencent\QQGameMicro\QQGameMicro.exe
- FirewallRules: [TCP Query User{241A254F-7F36-4578-A5A9-AE97AC6F7E8E}C:\program files (x86)\conceptworld\qnplus\qnplus.exe] => (Allow) C:\program files (x86)\conceptworld\qnplus\qnplus.exe
- FirewallRules: [UDP Query User{DEACEFB0-3065-43DF-957B-3447249EDACF}C:\program files (x86)\conceptworld\qnplus\qnplus.exe] => (Allow) C:\program files (x86)\conceptworld\qnplus\qnplus.exe
- FirewallRules: [TCP Query User{2B5527D1-1D29-4047-807E-764F6264A63F}C:\program files (x86)\naver\line\line.exe] => (Allow) C:\program files (x86)\naver\line\line.exe
- FirewallRules: [UDP Query User{C3013786-4EA8-4AAD-BFAF-C86DC7672F11}C:\program files (x86)\naver\line\line.exe] => (Allow) C:\program files (x86)\naver\line\line.exe
- FirewallRules: [{71452AB1-4645-4991-AFA4-E32D0C040C62}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
- FirewallRules: [{8F294BD6-13D4-4156-A3B2-D0BE63909A34}] => (Allow) C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- FirewallRules: [{39C55A5B-CE4D-4772-8DA6-E1BED2FC7C1E}] => (Allow) C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- FirewallRules: [TCP Query User{355B47C6-8C0F-4ACD-861C-A048FD3D73B7}C:\program files (x86)\tencent\qq\bin\qq.exe] => (Allow) C:\program files (x86)\tencent\qq\bin\qq.exe
- FirewallRules: [UDP Query User{539947D3-3F0C-435F-A9C5-13B458ED00F8}C:\program files (x86)\tencent\qq\bin\qq.exe] => (Allow) C:\program files (x86)\tencent\qq\bin\qq.exe
- FirewallRules: [{181655E3-191D-4FE3-A151-75CAD3B1F143}] => (Allow) C:\Program Files (x86)\360\360Safe\LiveUpdate360.exe
- FirewallRules: [{A5EF10E8-759A-4BE5-AFCD-F3044DE49036}] => (Allow) C:\Program Files (x86)\360\360Safe\LiveUpdate360.exe
- FirewallRules: [{0AF136F3-3A20-4FE4-A3A5-A82ACAA27A3E}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\QQDownload.exe
- FirewallRules: [{F5B20AFC-BD98-4DB3-B856-78B84F1B3261}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\QQDownload.exe
- FirewallRules: [{BB62ED58-FB65-4383-8973-348737B7B7E6}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\QDAutoUpdate.exe
- FirewallRules: [{11694641-8CC3-4B13-876E-BAF3419C0341}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\QDAutoUpdate.exe
- FirewallRules: [{D2F81FF9-2C55-4F6A-927C-53F1A8C4447F}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\bugreport.exe
- FirewallRules: [{848AAEDB-4E51-46F1-A97C-BA7C1C66322F}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\bugreport.exe
- FirewallRules: [TCP Query User{AA17D095-C217-4B3D-85A8-AC1CEC7B5C0A}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
- FirewallRules: [UDP Query User{C4484BD9-F52A-488A-8947-389A3EC87C38}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
- FirewallRules: [TCP Query User{A93BEC19-2FEA-4A0E-9450-F62DB375B341}C:\program files (x86)\360\360sd\360sdupd.exe] => (Allow) C:\program files (x86)\360\360sd\360sdupd.exe
- FirewallRules: [UDP Query User{BC8EAB59-30D2-40B9-8110-C711E262B156}C:\program files (x86)\360\360sd\360sdupd.exe] => (Allow) C:\program files (x86)\360\360sd\360sdupd.exe
- FirewallRules: [{9C591944-4F40-4441-BF74-24B897173220}] => (Allow) C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe
- FirewallRules: [{B0A02B5A-16F7-49AA-BD31-831858D4E50A}] => (Allow) C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe
- FirewallRules: [{49C87393-5BF4-4396-9DDA-C00ED918A0F3}] => (Allow) C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe
- FirewallRules: [{56C9DEE9-9107-4A7C-9018-6917B825A3D7}] => (Allow) C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe
- FirewallRules: [TCP Query User{B863F319-9AE8-453A-B7D3-AD5D84EDDE17}C:\program files (x86)\搜狐影音\sohuva.exe] => (Allow) C:\program files (x86)\搜狐影音\sohuva.exe
- FirewallRules: [UDP Query User{FB558AD0-9023-4A04-9CD3-EC264370BCBA}C:\program files (x86)\搜狐影音\sohuva.exe] => (Allow) C:\program files (x86)\搜狐影音\sohuva.exe
- FirewallRules: [TCP Query User{4E4DE21B-A6E5-4A0B-B4EC-C72C7A16606A}C:\program files (x86)\搜狐影音\shplayer.exe] => (Allow) C:\program files (x86)\搜狐影音\shplayer.exe
- FirewallRules: [UDP Query User{BACB04DB-B03F-4D81-A7CF-73556CC9D593}C:\program files (x86)\搜狐影音\shplayer.exe] => (Allow) C:\program files (x86)\搜狐影音\shplayer.exe
- FirewallRules: [TCP Query User{B2D0E898-609C-4E81-BA9C-0F0BDB16B440}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
- FirewallRules: [UDP Query User{624E29A9-9FFD-4856-808F-8E131F78C77B}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
- FirewallRules: [{3AC8BE86-ED4A-4069-BEE2-87FECE90BEC9}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
- FirewallRules: [{36FB955B-B49F-4517-9757-554499087204}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
- FirewallRules: [TCP Query User{E4746632-85E7-4461-894B-855020029250}C:\program files (x86)\360\360safe\360leakfixer.exe] => (Allow) C:\program files (x86)\360\360safe\360leakfixer.exe
- FirewallRules: [UDP Query User{91BE7C5B-BEB3-4AB7-A183-AAF1A5C5EF8A}C:\program files (x86)\360\360safe\360leakfixer.exe] => (Allow) C:\program files (x86)\360\360safe\360leakfixer.exe
- FirewallRules: [TCP Query User{B2378900-FC53-49B9-B30A-817212584E79}C:\program files (x86)\common files\tencent\qqdownload\119\tencentdl.exe] => (Block) C:\program files (x86)\common files\tencent\qqdownload\119\tencentdl.exe
- FirewallRules: [UDP Query User{0EEDA087-4F34-41EE-B6AA-48B6D2058257}C:\program files (x86)\common files\tencent\qqdownload\119\tencentdl.exe] => (Block) C:\program files (x86)\common files\tencent\qqdownload\119\tencentdl.exe
- FirewallRules: [TCP Query User{6588907E-47FE-4F2E-A4C2-3EE7847F9C91}C:\program files (x86)\360\360sd\360sdupd.exe] => (Allow) C:\program files (x86)\360\360sd\360sdupd.exe
- FirewallRules: [UDP Query User{00F8F75B-BAC6-4040-B145-0801CA1D8060}C:\program files (x86)\360\360sd\360sdupd.exe] => (Allow) C:\program files (x86)\360\360sd\360sdupd.exe
- FirewallRules: [{C80F9EDB-E03B-4E03-A368-4FC143D06235}] => (Allow) C:\Program Files (x86)\Tencent\QQ\Bin\QQ.exe
- FirewallRules: [{33776C2D-13AF-4401-A445-50A248450AFC}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\128\tencentdl.exe
- FirewallRules: [{ABEC5952-5CD3-47E9-A9A3-2775F85184F0}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\128\bugreport_xf.exe
- FirewallRules: [{0CB9E45A-9E5D-41CB-8C5F-25F5C7773FBD}] => (Allow) C:\Program Files (x86)\Tencent\QQMusic\QzoneMusic\QzoneMusic.exe
- FirewallRules: [{E1D979F3-1ADC-48B5-A346-EC6CBC68EC66}] => (Allow) C:\Program Files (x86)\Tencent\QQMusic\QzoneMusic\QzoneMusic.exe
- FirewallRules: [{768F94CA-AA94-4CCF-89FD-55E4AC1E5791}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
- FirewallRules: [{5C1B6865-0F11-4321-9C0B-DEF7C78EC34F}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\128\tencentdl.exe
- FirewallRules: [{18D89465-23B2-4DB8-ADDB-41E46C4F68D6}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\128\bugreport_xf.exe
- FirewallRules: [TCP Query User{C0CAB2B6-203B-4CF0-AFED-A13003369D9B}C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe] => (Allow) C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe
- FirewallRules: [UDP Query User{1266780C-471B-4BA6-B25A-F99B0AB971CA}C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe] => (Allow) C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe
- FirewallRules: [{888D6CE0-9FF3-4F55-9575-5773F880A77C}] => (Block) C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe
- FirewallRules: [{82C0108E-4932-41E9-A433-E5B2C6EA758E}] => (Block) C:\program files (x86)\tencent\qq\bin\setupex\qqsetupex.exe
- FirewallRules: [{B2F4AFF3-6423-4B00-8EC9-3F7A39B360C3}] => (Allow) C:\Windows\SysWOW64\Weibo.exe
- FirewallRules: [{EBFA8E63-DE80-4F1C-B3F2-DCEEB99023A6}] => (Allow) C:\Windows\SysWOW64\Weibo.exe
- FirewallRules: [TCP Query User{8DCC2C7B-18C9-4676-8C27-3EC097D80308}C:\users\silja\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe] => (Allow) C:\users\silja\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe
- FirewallRules: [UDP Query User{195DEE6B-4EE8-430A-B8F8-1464BAFFAA33}C:\users\silja\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe] => (Allow) C:\users\silja\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe
- FirewallRules: [{3F8D892B-44D0-46A0-AD35-E8AFC3CE1B21}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- FirewallRules: [TCP Query User{96143477-2EA7-4F2C-B8E7-78F3CAE155D9}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
- FirewallRules: [UDP Query User{55D0D0D1-1F1E-45B6-81E9-58EB705CEEC0}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
- FirewallRules: [{44550D65-439F-4637-8F34-092DFC02A1E6}] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
- FirewallRules: [{43128F4C-8849-45F0-8B18-9CC7B1F00B14}] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
- FirewallRules: [{DE8DC7A8-64C4-4306-BF75-2232E1B078E8}] => (Allow) C:\users\silja\appdata\roaming\dropbox\bin\dropbox.exe
- FirewallRules: [{EA128809-37A1-4AC4-BE07-2EFDB593F09D}] => (Allow) C:\users\silja\appdata\roaming\dropbox\bin\dropbox.exe
- FirewallRules: [TCP Query User{26CA1D10-0B66-4CA8-8AAB-82765127FC0F}C:\users\silja\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\silja\appdata\roaming\dropbox\bin\dropbox.exe
- FirewallRules: [UDP Query User{DCCDB10C-56F8-4B66-8590-4B93C39D2935}C:\users\silja\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\silja\appdata\roaming\dropbox\bin\dropbox.exe
- FirewallRules: [{98B0809F-4580-4B1A-8A45-4E4B5ABC6A45}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- FirewallRules: [{591B090A-BE1A-4387-AD28-05865DB05467}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\QQDownload.exe
- FirewallRules: [{FD13EAAB-6E80-461C-AC30-D27125633EB0}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\QQDownload.exe
- FirewallRules: [{A34463F6-181D-45EB-9B4D-BA9943FC2013}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\QDAutoUpdate.exe
- FirewallRules: [{6925C11A-0F15-433A-9CF3-4061B9BE3F7B}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\QDAutoUpdate.exe
- FirewallRules: [{347653A1-413D-41BF-9C73-560DF5F2A00D}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\bugreport.exe
- FirewallRules: [{0DBCDD28-3568-47AA-8C87-AA28B22CEDB6}] => (Allow) C:\Program Files (x86)\Tencent\QQDownload\bugreport.exe
- FirewallRules: [{15785C66-4322-4321-B1AA-757DBCA736C4}] => (Allow) C:\Program Files (x86)\Common Files\Thunder Network\TP\Ver1\1.1.2.254_1111\ThunderPlatform.exe
- FirewallRules: [{7342D0E4-94A5-43A9-AD3B-0619DC418A11}] => (Allow) C:\Program Files (x86)\Common Files\Thunder Network\TP\Ver1\1.1.2.254_1111\ThunderPlatform.exe
- FirewallRules: [{BC294C80-3FAD-41C6-BD28-74A3F66D6A80}] => (Allow) C:\Program Files (x86)\Common Files\Thunder Network\TP\Ver1\1.1.2.254_1111\XLBugReport.exe
- FirewallRules: [{4D716F88-37B5-4039-AB09-B0D2A33D103A}] => (Allow) C:\Program Files (x86)\Common Files\Thunder Network\TP\Ver1\1.1.2.254_1111\XLBugReport.exe
- FirewallRules: [{AC37B6D6-B53D-4DB4-A907-F8DAFD228381}] => (Allow) C:\Program Files (x86)\Thunder Network\Thunder\Program\Thunder.exe
- FirewallRules: [{39894FC5-0251-43CD-B19B-CCBE9D23E154}] => (Allow) LPort=33673
- FirewallRules: [{4C42D34C-92D9-4AB8-8927-F458A253E56D}] => (Allow) LPort=33674
- FirewallRules: [{4D88E926-0A7A-4641-8BCE-AD204D19D934}] => (Allow) LPort=9527
- FirewallRules: [{9E9F7E6B-12CA-4DE7-BB85-67A53693C35C}] => (Allow) C:\Program Files (x86)\Thunder Network\Thunder\Program\Thunder.exe
- FirewallRules: [TCP Query User{AE6F7BE0-7A69-43DC-AA8C-005C8429FCD2}C:\program files (x86)\thunder network\thunder\program\thunder.exe] => (Block) C:\program files (x86)\thunder network\thunder\program\thunder.exe
- FirewallRules: [UDP Query User{44EAC695-EA0A-4D78-B51E-F7D6921A04F8}C:\program files (x86)\thunder network\thunder\program\thunder.exe] => (Block) C:\program files (x86)\thunder network\thunder\program\thunder.exe
- FirewallRules: [TCP Query User{A186B54F-6142-45F0-8A0E-9446951B9655}C:\program files (x86)\common files\thunder network\tp\ver1\1.1.2.254_1111\thunderplatform.exe] => (Allow) C:\program files (x86)\common files\thunder network\tp\ver1\1.1.2.254_1111\thunderplatform.exe
- FirewallRules: [UDP Query User{9C671314-00D1-4CE7-972E-DDDC1B9354F8}C:\program files (x86)\common files\thunder network\tp\ver1\1.1.2.254_1111\thunderplatform.exe] => (Allow) C:\program files (x86)\common files\thunder network\tp\ver1\1.1.2.254_1111\thunderplatform.exe
- FirewallRules: [{831AC086-6DAB-47B8-B354-36457B61CB77}] => (Allow) C:\Program Files (x86)\360\360Safe\mobilemgr\360MobileMgr.exe
- FirewallRules: [{3F4118E2-AD42-4122-9BC8-9E1F2FDF5E44}] => (Allow) C:\Program Files (x86)\360\360Safe\mobilemgr\360MobileMgr.exe
- FirewallRules: [{2B972AC9-4896-4701-BB0F-56E029A76017}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduYunGuanjia\BaiduYunGuanjia.exe
- FirewallRules: [{DE84BD9A-675C-4B63-B87C-18DCBBA9B28C}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduYunGuanjia\BaiduYunGuanjia.exe
- FirewallRules: [{D8989A71-45C9-4A28-B8AB-C72D610E4411}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\swdlex.exe
- FirewallRules: [{F1AAA769-832A-4061-A46E-1D8D15B8AD5B}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\swdlex.exe
- FirewallRules: [{B02220A2-793F-4A00-8007-FAAB1F392914}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\swdlex.exe
- FirewallRules: [{4EE313AB-409C-4601-BDE0-838DA81F3359}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\BugReport.exe
- FirewallRules: [{A89A29C4-7E2C-41A8-A139-0BD6AD52CCC5}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\BugReport.exe
- FirewallRules: [{79177B7F-903E-4732-A24F-3AEAAE0B4B7B}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\BugReport.exe
- FirewallRules: [{BAC953CF-605F-420F-BF24-EC696C7AEACE}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\uninstaller.exe
- FirewallRules: [{35E75B05-698F-40E3-AE11-D66D1E107888}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\uninstaller.exe
- FirewallRules: [{2F244DB7-3E11-4295-BF9A-48B448BB307E}] => (Allow) C:\Users\Silja\AppData\Roaming\baidu\BaiduRJDownloader\1.3.0.14\uninstaller.exe
- ==================== Faulty Device Manager Devices =============
- ==================== Event log errors: =========================
- Application errors:
- ==================
- Error: (08/17/2015 05:11:45 AM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4
- Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
- Exception code: 0xc0000005
- Fault offset: 0x0000000000000000
- Faulting process id: 0xbf0
- Faulting application start time: 0xExplorer.EXE0
- Faulting application path: Explorer.EXE1
- Faulting module path: Explorer.EXE2
- Report Id: Explorer.EXE3
- Error: (08/17/2015 04:38:11 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
- Description: The Windows Search Service has failed to create the new search index. Internal error <10, 0x80071a91, Failed to save Crawl Scope Manager changes: >.
- Error: (08/17/2015 04:38:11 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
- Description: Windows Search Service failed to process the list of included and excluded locations with the error <20, 0x80071a91, "">.
- Error: (08/17/2015 04:37:48 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
- Description: The Windows Search Service has failed to create the new search index. Internal error <10, 0x80071a91, Failed to save Crawl Scope Manager changes: >.
- Error: (08/17/2015 04:37:48 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
- Description: Windows Search Service failed to process the list of included and excluded locations with the error <20, 0x80071a91, "">.
- Error: (08/17/2015 04:37:31 AM) (Source: WinMgmt) (EventID: 10) (User: )
- Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
- Error: (08/17/2015 04:37:07 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
- Description: The Windows Search Service has failed to create the new search index. Internal error <10, 0x80071a91, Failed to save Crawl Scope Manager changes: >.
- Error: (08/17/2015 04:37:07 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
- Description: Windows Search Service failed to process the list of included and excluded locations with the error <20, 0x80071a91, "">.
- Error: (08/17/2015 04:36:36 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
- Description: The Windows Search Service has failed to create the new search index. Internal error <10, 0x80071a91, Failed to save Crawl Scope Manager changes: >.
- Error: (08/17/2015 04:36:36 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
- Description: Windows Search Service failed to process the list of included and excluded locations with the error <20, 0x80071a91, "">.
- System errors:
- =============
- Error: (08/17/2015 05:15:34 AM) (Source: DCOM) (EventID: 10000) (User: )
- Description: C:\windows\system32\DllHost.exe /Processid:{F32D97DF-E3E5-4CB9-9E3E-0EB5B4E49801}2{883FF1FC-09E1-48E5-8E54-E2469ACB0CFD}
- Error: (08/17/2015 05:13:20 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
- Description: The Windows Search service terminated unexpectedly. It has done this 16 time(s).
- Error: (08/17/2015 05:13:20 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
- Description: The Windows Search service terminated with the following error:
- %%6801
- Error: (08/17/2015 05:13:11 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
- Description: The Windows Search service terminated unexpectedly. It has done this 15 time(s).
- Error: (08/17/2015 05:13:11 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
- Description: The Windows Search service terminated with the following error:
- %%6801
- Error: (08/17/2015 05:12:42 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
- Description: The Windows Search service terminated unexpectedly. It has done this 14 time(s).
- Error: (08/17/2015 05:12:42 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
- Description: The Windows Search service terminated with the following error:
- %%6801
- Error: (08/17/2015 05:11:19 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
- Description: The Windows Search service terminated unexpectedly. It has done this 13 time(s).
- Error: (08/17/2015 05:11:19 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
- Description: The Windows Search service terminated with the following error:
- %%6801
- Error: (08/17/2015 05:10:58 AM) (Source: DCOM) (EventID: 10000) (User: )
- Description: C:\windows\system32\DllHost.exe /Processid:{3AD05575-8857-4850-9277-11B85BDB8E09}2{3AD05575-8857-4850-9277-11B85BDB8E09}
- Microsoft Office:
- =========================
- Error: (08/17/2015 05:11:45 AM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Explorer.EXE6.1.7601.175674d672ee4unknown0.0.0.000000000c00000050000000000000000bf001d0d8632ab8ce11C:\windows\Explorer.EXEunknown65c7d4f3-445b-11e5-ae96-ebea41f3a975
- Error: (08/17/2015 04:38:11 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
- Description: 100x80071a91Failed to save Crawl Scope Manager changes:
- Error: (08/17/2015 04:38:11 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
- Description: 200x80071a91
- Error: (08/17/2015 04:37:48 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
- Description: 100x80071a91Failed to save Crawl Scope Manager changes:
- Error: (08/17/2015 04:37:48 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
- Description: 200x80071a91
- Error: (08/17/2015 04:37:31 AM) (Source: WinMgmt) (EventID: 10) (User: )
- Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
- Error: (08/17/2015 04:37:07 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
- Description: 100x80071a91Failed to save Crawl Scope Manager changes:
- Error: (08/17/2015 04:37:07 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
- Description: 200x80071a91
- Error: (08/17/2015 04:36:36 AM) (Source: Windows Search Service) (EventID: 1006) (User: )
- Description: 100x80071a91Failed to save Crawl Scope Manager changes:
- Error: (08/17/2015 04:36:36 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
- Description: 200x80071a91
- CodeIntegrity:
- ===================================
- Date: 2015-08-14 10:18:50.641
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system.
- Date: 2015-08-14 10:18:50.411
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system.
- Date: 2015-08-14 10:18:50.061
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system.
- Date: 2015-08-14 10:18:49.834
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system.
- ==================== Memory info ===========================
- Processor: Intel(R) Celeron(R) CPU 1005M @ 1.90GHz
- Percentage of memory in use: 37%
- Total physical RAM: 6026.36 MB
- Available physical RAM: 3788.06 MB
- Total Virtual: 12050.89 MB
- Available Virtual: 8771.46 MB
- ==================== Drives ================================
- Drive c: (TI10670300B) (Fixed) (Total:453.93 GB) (Free:37.96 GB) NTFS ==>[system with boot components (obtained from reading drive)]
- Drive f: (SILJA) (Removable) (Total:1.88 GB) (Free:1.51 GB) FAT32
- ==================== MBR & Partition Table ==================
- ========================================================
- Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: E06DF272)
- Partition 1: (Active) - (Size=1.5 GB) - (Type=27)
- Partition 2: (Not Active) - (Size=453.9 GB) - (Type=07 NTFS)
- Partition 3: (Not Active) - (Size=10.4 GB) - (Type=17)
- Attempted reading MBR returned 0 bytes.
- Could not read MBR for disk 1.
- ==================== End of log ============================
Advertisement
Add Comment
Please, Sign In to add comment