Advertisement
Guest User

Untitled

a guest
Aug 21st, 2015
484
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 56.10 KB | None | 0 0
  1. Additional scan result of Farbar Recovery Scan Tool (x64) Version:21-08-2015
  2. Ran by lenovo (2015-08-21 17:40:49)
  3. Running from C:\Users\lenovo\Desktop
  4. Boot Mode: Normal
  5. ==========================================================
  6.  
  7.  
  8. ==================== Accounts: =============================
  9.  
  10. Administrator (S-1-5-21-1788079078-3419667790-947303609-500 - Administrator - Disabled)
  11. DefaultAccount (S-1-5-21-1788079078-3419667790-947303609-503 - Limited - Disabled)
  12. Guest (S-1-5-21-1788079078-3419667790-947303609-501 - Limited - Disabled)
  13. HomeGroupUser$ (S-1-5-21-1788079078-3419667790-947303609-1004 - Limited - Enabled)
  14. lenovo (S-1-5-21-1788079078-3419667790-947303609-1002 - Administrator - Enabled) => C:\Users\lenovo
  15.  
  16. ==================== Security Center ========================
  17.  
  18. (If an entry is included in the fixlist, it will be removed.)
  19.  
  20. AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
  21. AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  22. AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
  23. AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  24.  
  25. ==================== Installed Programs ======================
  26.  
  27. (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
  28.  
  29. µTorrent (HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
  30. µTorrent (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
  31. µTorrent (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
  32. µTorrent (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
  33. µTorrent (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
  34. Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.14 - Adobe Systems)
  35. Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
  36. Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
  37. Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
  38. Adobe Reader XI (11.0.12) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated)
  39. Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
  40. Arduino (HKLM-x32\...\Arduino) (Version: 1.6.5-r2 - Arduino LLC)
  41. Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive)
  42. Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive)
  43. Avira (HKLM-x32\...\{a5e00a72-db4a-4f77-8874-d1265b8fcd7e}) (Version: 1.1.42.10415 - Avira Operations GmbH & Co. KG)
  44. Avira (x32 Version: 1.1.42.10415 - Avira Operations GmbH & Co. KG) Hidden
  45. Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.12.408 - Avira Operations GmbH & Co. KG)
  46. BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - )
  47. BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - )
  48. bl (x32 Version: 1.0.0 - Your Company Name) Hidden
  49. CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform)
  50. Cisco Networking Academy curriculum 4.0.0.0 (HKLM-x32\...\Cisco Networking Academy curriculum_is1) (Version: - Cisco Systems, Inc.)
  51. Cisco Packet Tracer 6.2 Student (HKLM-x32\...\Cisco Packet Tracer 6.2 Student_is1) (Version: - Cisco Systems, Inc.)
  52. Command and Conquer - Generals (HKLM-x32\...\Command and Conquer - Generals_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky)
  53. Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.55.62 - Conexant)
  54. CyberLink MediaStory (HKLM-x32\...\InstallShield_{55762F9A-FCE3-45d5-817B-051218658423}) (Version: 1.0.1314 - CyberLink Corp.)
  55. CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.2810 - CyberLink Corp.)
  56. CyberLink PowerDirector 10 (Version: 10.0.0.2810 - CyberLink Corp.) Hidden
  57. Dependency Package Update (Version: 1.6.25.00 - Lenovo Inc.) Hidden
  58. Dependency Package Update (Version: 1.6.29.00 - Lenovo Inc.) Hidden
  59. Dependency Package Update (Version: 1.6.36.00 - Lenovo Inc.) Hidden
  60. Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.5.1.1 - Dolby Laboratories Inc)
  61. Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
  62. EAGLE 7.3.0 (HKLM\...\EAGLE 7.3.0) (Version: 7.3.0 - CadSoft Computer GmbH)
  63. ELAN Touchpad 11.15.0.14_X64 (HKLM\...\Elantech) (Version: 11.15.0.14 - ELAN Microelectronic Corp.)
  64. Energy Manager (HKLM-x32\...\InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE}) (Version: 1.0.0.35 - Lenovo)
  65. Energy Manager (x32 Version: 1.0.0.35 - Lenovo) Hidden
  66. EPSON USB Display (HKLM-x32\...\{7650F538-6274-44EA-8F50-843479073333}) (Version: 1.45.000 - SEIKO EPSON CORPORATION)
  67. Google Chrome (HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.)
  68. Google Chrome (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.)
  69. Google Chrome (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.)
  70. Google Chrome (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.)
  71. Google Chrome (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.)
  72. H1Z1 (HKLM-x32\...\Steam App 295110) (Version: - Daybreak Games)
  73. Hightail for Lenovo (HKLM\...\{2F10E937-F6D7-4174-8AB9-B299E8FC5CEC}) (Version: 2.4.97.2857 - Hightail, Inc.)
  74. Host App Service (HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\Pokki) (Version: 0.269.7.738 - Pokki)
  75. Host App Service (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Pokki) (Version: 0.269.7.738 - Pokki)
  76. Host App Service (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Pokki) (Version: 0.269.7.738 - Pokki)
  77. Host App Service (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Pokki) (Version: 0.269.7.738 - Pokki)
  78. Host App Service (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Pokki) (Version: 0.269.7.738 - Pokki)
  79. Icarus Verilog 0.9.7 (HKLM-x32\...\Icarus Verilog 0.9.7_is1) (Version: 0.9.7 - Icarus)
  80. Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
  81. Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3379 - Intel Corporation)
  82. Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1342.2) (HKLM\...\{302600C1-6BDF-4FD1-1311-148929CC1385}) (Version: 3.1.1311.0402 - Intel Corporation)
  83. Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
  84. Intel® PROSet/Wireless Software (HKLM-x32\...\{eff1d9d1-41fa-49ef-a986-082bfe49c293}) (Version: 16.8.0 - Intel Corporation)
  85. Lenovo Browser Guard (HKLM-x32\...\LenovoBrowserGuard) (Version: 2.14.0.129 - ClientConnect LTD) <==== ATTENTION
  86. Lenovo Dependency Package (HKLM\...\Lenovo Dependency Package_is1) (Version: 1.6.25.00 - Lenovo Group Limited)
  87. Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10249 - Realtek Semiconductor Corp.)
  88. Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.)
  89. Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 1.0.19.0 - Lenovo)
  90. Lenovo FusionEngine (HKLM-x32\...\Lenovo FusionEngine) (Version: 1.0.13.0 - Lenovo, Inc.)
  91. Lenovo Mobile Phone Wireless Import (HKLM-x32\...\InstallShield_{DFB2E0D6-8DDE-49A4-B8F7-03C14DACCBA6}) (Version: 1.1.1.9 - Lenovo)
  92. Lenovo Mobile Phone Wireless Import (x32 Version: 1.1.1.9 - Lenovo) Hidden
  93. Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.2105 - CyberLink Corp.)
  94. Lenovo OneKey Recovery (Version: 8.0.0.2105 - CyberLink Corp.) Hidden
  95. Lenovo Photo Master (HKLM-x32\...\InstallShield_{BC94C56A-3649-420C-8756-2ADEBE399D33}) (Version: 1.0.1823.01 - CyberLink Corp.)
  96. Lenovo Photo Master (x32 Version: 1.0.1823.01 - CyberLink Corp.) Hidden
  97. Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5630.52 - CyberLink Corp.)
  98. Lenovo PowerDVD10 (x32 Version: 10.0.5630.52 - CyberLink Corp.) Hidden
  99. Lenovo SHAREit (HKLM-x32\...\Lenovo SHAREit_is1) (Version: 2.0.5.0 - Lenovo Group Limited)
  100. Lenovo Web Start (HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1) (Version: 1.0.2.53457 - Pokki)
  101. Lenovo Web Start (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1) (Version: 1.0.2.53457 - Pokki)
  102. Lenovo Web Start (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1) (Version: 1.0.2.53457 - Pokki)
  103. Lenovo Web Start (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1) (Version: 1.0.2.53457 - Pokki)
  104. Lenovo Web Start (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1) (Version: 1.0.2.53457 - Pokki)
  105. Lightshot-5.2.1.1 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.2.1.1 - Skillbrains)
  106. Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
  107. MATLAB Production Server R2015a (HKLM\...\MATLAB Production Server R2015a) (Version: 2.1 - MathWorks)
  108. Maxthon Cloud Browser (HKLM-x32\...\Maxthon3) (Version: 4.4.1.3000 - Maxthon International Limited)
  109. Metric Collection SDK 35 (x32 Version: 1.2.0001.00 - Lenovo Group Limited) Hidden
  110. Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
  111. Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
  112. Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
  113. Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
  114. Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
  115. Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
  116. Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
  117. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
  118. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
  119. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
  120. Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
  121. Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
  122. Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
  123. Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
  124. Nitro Pro 9 (HKLM\...\{70B831B7-A8EE-4C5F-8F34-F383D24B3A04}) (Version: 9.0.5.9 - Nitro)
  125. Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.9.2 - Notepad++ Team)
  126. NVIDIA GeForce Experience 2.4.5.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.44 - NVIDIA Corporation)
  127. NVIDIA Graphics Driver 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation)
  128. NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
  129. Onekey Theater (HKLM-x32\...\{91CC5BAE-A098-40D3-A43B-C0DC7CE263FE}) (Version: 3.0.1.2 - Lenovo)
  130. Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
  131. PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
  132. ph (x32 Version: 1.0.0 - Your Company Name) Hidden
  133. PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.10.0 - Prolific Technology INC)
  134. Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.10525 - CyberLink Corp.)
  135. Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39052 - Realtek Semiconductor Corp.)
  136. Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
  137. scilab-5.5.2 (64-bit) (HKLM\...\scilab-5.5.2 (64-bit)_is1) (Version: - Scilab Enterprises)
  138. Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
  139. Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
  140. SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden
  141. SHIELD Wireless Controller Driver (Version: 2.4.5.44 - NVIDIA Corporation) Hidden
  142. StageLight (HKLM\...\StageLight) (Version: 1.3.0.4350 - Open Labs, LLC.)
  143. Start Menu (HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\Pokki_Start_Menu) (Version: 0.269.7.738 - Pokki)
  144. Start Menu (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Pokki_Start_Menu) (Version: 0.269.7.738 - Pokki)
  145. Start Menu (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Pokki_Start_Menu) (Version: 0.269.7.738 - Pokki)
  146. Start Menu (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Pokki_Start_Menu) (Version: 0.269.7.738 - Pokki)
  147. Start Menu (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Pokki_Start_Menu) (Version: 0.269.7.738 - Pokki)
  148. Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
  149. TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
  150. TLP LogixPro Simulator (HKLM-x32\...\LogixPro PLC Simulator_is1) (Version: - )
  151. Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{40930C8E-A677-414C-A72F-DFDEB10738FB}) (Version: - Microsoft)
  152. USB Disk Security (HKLM-x32\...\USB Disk Security_is1) (Version: - Zbshareware Lab)
  153. User Manuals (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 3.0.0.3 - Lenovo)
  154. User Manuals (x32 Version: 3.0.0.3 - Lenovo) Hidden
  155. VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
  156. Windows Driver Package - Lenovo (ACPIVPC) System (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo)
  157. Windows Driver Package - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo)
  158. WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
  159. WPS Office (9.1.0.4746) (HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\WPS Office) (Version: 9.1.0.4746 - Kingsoft Corp.)
  160. WPS Office (9.1.0.4746) (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\WPS Office) (Version: 9.1.0.4746 - Kingsoft Corp.)
  161. WPS Office (9.1.0.4746) (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\WPS Office) (Version: 9.1.0.4746 - Kingsoft Corp.)
  162. WPS Office (9.1.0.4746) (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\WPS Office) (Version: 9.1.0.4746 - Kingsoft Corp.)
  163. WPS Office (9.1.0.4746) (HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\WPS Office) (Version: 9.1.0.4746 - Kingsoft Corp.)
  164.  
  165. ==================== Custom CLSID (Whitelisted): ==========================
  166.  
  167. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  168.  
  169. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
  170. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll No File
  171. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  172. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{38216570-5DB1-45F8-A344-B0C4E252B14B}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Google\Update\1.3.26.7\psuser_64.dll No File
  173. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  174. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll (Google Inc.)
  175. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  176. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  177. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  178. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  179. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  180. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  181. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll (Google Inc.)
  182. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
  183. CustomCLSID: HKU\S-1-5-21-1788079078-3419667790-947303609-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation)
  184.  
  185. ==================== Restore Points =========================
  186.  
  187. 20-08-2015 23:57:10 Scheduled Checkpoint
  188.  
  189. ==================== Hosts content: ===============================
  190.  
  191. (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
  192.  
  193. 2013-08-22 21:25 - 2013-08-22 21:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
  194.  
  195. ==================== Scheduled Tasks (Whitelisted) =============
  196.  
  197. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  198.  
  199. Task: {00E9FD61-7142-4471-9EB7-6E0141FB9375} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2015-06-22] (Lenovo)
  200. Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
  201. Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
  202. Task: {0D2231CF-BB23-4BA0-A8D7-75F24A2400FB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-21] (Piriform Ltd)
  203. Task: {117499D1-CBA7-431C-8391-BE3931EBE55D} - System32\Tasks\{5564829C-D4FA-4F28-B27E-DE30A7C7E15B} => pcalua.exe -a "C:\Program Files (x86)\R.G. Mechanics\Command and Conquer - Generals\Command and Conquer Generals Zero Hour\generals.exe" -d "C:\Program Files (x86)\R.G. Mechanics\Command and Conquer - Generals\Command and Conquer Generals Zero Hour"
  204. Task: {14EDE749-F159-45CC-B04B-F4A67815EC02} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2014-05-31] (Lenovo)
  205. Task: {16AD8937-2055-4481-B4F8-1317C3F4F726} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
  206. Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
  207. Task: {1A11A202-E5B6-4C3B-9074-2091AAE36C4A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
  208. Task: {2F52D2FF-DF7D-4944-B908-A615CF10FD26} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
  209. Task: {31C0B13B-D9F5-4E1B-A1BD-A70CDA836169} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1788079078-3419667790-947303609-1002Core => C:\Users\lenovo\AppData\Local\Google\Update\GoogleUpdate.exe [2015-06-22] (Google Inc.)
  210. Task: {35912282-F58B-4DBC-B7A0-A8D40D35F321} - System32\Tasks\PDVDServ Task => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE [2013-03-09] (CyberLink Corp.)
  211. Task: {3C57FC42-7D11-406C-B803-699A0316B5FD} - System32\Tasks\Maxthon Update => C:\Program Files (x86)\Maxthon\Bin\mxup.exe [2014-07-31] (Maxthon International ltd.)
  212. Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
  213. Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
  214. Task: {49697197-12A9-43F4-912D-DFF6D8C1AC79} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
  215. Task: {4CA4C411-FC4D-46AC-80D0-F7B12FAE86F8} - System32\Tasks\WpsNotifyTask_lenovo => C:\Users\lenovo\AppData\Local\Kingsoft\Kingsoft Office\9.1.0.4746\wtoolex\wpsnotify.exe [2015-06-22] (Zhuhai Kingsoft Office Software Co.,Ltd)
  216. Task: {4D981511-3F52-4674-A49B-26A100059034} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
  217. Task: {65FCA39C-2115-4898-8588-7C5BF76AC163} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-15] (Microsoft Corporation)
  218. Task: {69EB4A93-C973-4B05-B5E9-423687D2F758} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe [2014-05-22] ()
  219. Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
  220. Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
  221. Task: {7FE566BA-03BF-4991-ABB6-49F70C3269CE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
  222. Task: {800A1ABE-8403-401C-AC1C-56D6EF33F4B3} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
  223. Task: {86BC59F5-1879-437C-A2A4-70C5C5B0270C} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
  224. Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-30] (Microsoft Corporation)
  225. Task: {90D27B95-382A-4A15-85FE-A5848B6E96AF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
  226. Task: {946EEAD0-F6B5-4EE7-AFE8-5A2ED47370F0} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
  227. Task: {99A793D2-3569-455D-BA26-A55E238BAAB7} - System32\Tasks\WpsUpdateTask_lenovo => C:\Users\lenovo\AppData\Local\Kingsoft\Kingsoft Office\9.1.0.4746\wtoolex\wpsupdate.exe [2015-06-22] (Zhuhai Kingsoft Office Software Co.,Ltd)
  228. Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
  229. Task: {AB98B2EA-A760-4328-9664-E0E4403C6151} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
  230. Task: {B314E661-F981-4798-8623-1A60DF47A104} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
  231. Task: {B4E72C7F-F01E-4907-8698-C9413B038AD6} - System32\Tasks\Microsoft Office 15 Sync Maintenance for Lenovo-PC-lenovo Lenovo-PC => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-06-26] (Microsoft Corporation)
  232. Task: {C481967B-FD97-4478-984E-A8028F95B326} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
  233. Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
  234. Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
  235. Task: {C7248D70-7175-4A7F-9CD7-410DB63C44BC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
  236. Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
  237. Task: {CF822842-2689-412C-96D3-A05E7DBA8082} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1788079078-3419667790-947303609-1002UA => C:\Users\lenovo\AppData\Local\Google\Update\GoogleUpdate.exe [2015-06-22] (Google Inc.)
  238. Task: {D734B748-EF82-4822-B5F2-6C98044F02A4} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
  239. Task: {D8D06D66-13A9-4257-B775-30E50E606D23} - System32\Tasks\Pokki => %LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe
  240. Task: {F9D21396-29DE-4519-A155-BFCAF800D118} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2014-11-28] ()
  241. Task: {FFCD2F33-7D88-428B-A10D-9B8D84FEDD16} - System32\Tasks\update-S-1-5-21-1788079078-3419667790-947303609-1002 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2014-11-28] ()
  242.  
  243. (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
  244.  
  245. Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1788079078-3419667790-947303609-1002Core.job => C:\Users\lenovo\AppData\Local\Google\Update\GoogleUpdate.exe
  246. Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1788079078-3419667790-947303609-1002UA.job => C:\Users\lenovo\AppData\Local\Google\Update\GoogleUpdate.exe
  247. Task: C:\WINDOWS\Tasks\update-S-1-5-21-1788079078-3419667790-947303609-1002.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
  248. Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
  249. Task: C:\WINDOWS\Tasks\WpsNotifyTask_lenovo.job => C:\Users\lenovo\AppData\Local\Kingsoft\Kingsoft Office\9.1.0.4746\wtoolex\wpsnotify.exe
  250. Task: C:\WINDOWS\Tasks\WpsUpdateTask_lenovo.job => C:\Users\lenovo\AppData\Local\Kingsoft\Kingsoft Office\9.1.0.4746\wtoolex\wpsupdate.exe
  251.  
  252. ==================== Loaded Modules (Whitelisted) ==============
  253.  
  254. 2015-07-30 15:57 - 2015-07-30 15:57 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
  255. 2015-07-30 15:57 - 2015-07-30 15:57 - 00403968 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
  256. 2014-10-28 21:53 - 2012-04-24 18:43 - 00390632 ____N () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
  257. 2015-07-30 00:05 - 2015-07-23 09:10 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
  258. 2015-08-06 07:44 - 2015-07-30 14:05 - 02498808 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
  259. 2015-07-18 00:35 - 2015-07-18 00:35 - 00396688 _____ () C:\WINDOWS\system32\igfxTray.exe
  260. 2015-08-06 07:44 - 2015-07-30 14:05 - 02498808 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
  261. 2015-06-16 16:31 - 2015-06-16 16:31 - 08898720 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
  262. 2015-04-16 04:13 - 2015-04-16 04:13 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
  263. 2015-07-10 18:59 - 2015-07-10 18:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
  264. 2015-08-12 18:20 - 2015-08-03 09:11 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
  265. 2015-07-10 19:00 - 2015-07-10 21:15 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
  266. 2015-08-12 18:20 - 2015-08-03 09:08 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
  267. 2015-08-12 18:20 - 2015-08-03 09:09 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
  268. 2014-10-28 21:16 - 2010-10-26 12:40 - 00049056 _____ () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
  269. 2014-10-28 21:07 - 2013-09-17 03:20 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
  270. 2015-06-22 19:41 - 2015-06-04 05:06 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
  271. 2015-06-16 16:31 - 2015-06-16 16:31 - 08898720 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
  272. 2015-08-21 01:23 - 2015-08-18 13:23 - 01405768 _____ () C:\Users\lenovo\AppData\Local\Google\Chrome\Application\44.0.2403.157\libglesv2.dll
  273. 2015-08-21 01:23 - 2015-08-18 13:23 - 00081224 _____ () C:\Users\lenovo\AppData\Local\Google\Chrome\Application\44.0.2403.157\libegl.dll
  274. 2015-08-21 01:23 - 2015-08-18 13:23 - 16393032 _____ () C:\Users\lenovo\AppData\Local\Google\Chrome\Application\44.0.2403.157\PepperFlash\pepflashplayer.dll
  275.  
  276. ==================== Alternate Data Streams (Whitelisted) =========
  277.  
  278. (If an entry is included in the fixlist, only the ADS will be removed.)
  279.  
  280.  
  281. ==================== Safe Mode (Whitelisted) ===================
  282.  
  283. (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
  284.  
  285. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
  286. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
  287. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
  288. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
  289. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
  290. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
  291. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
  292. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
  293. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
  294. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
  295.  
  296. ==================== EXE Association (Whitelisted) ===============
  297.  
  298. (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
  299.  
  300.  
  301. ==================== Internet Explorer trusted/restricted ===============
  302.  
  303. (If an entry is included in the fixlist, it will be removed from the registry.)
  304.  
  305. IE trusted site: HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\clonewarsadventures.com -> clonewarsadventures.com
  306. IE trusted site: HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\freerealms.com -> freerealms.com
  307. IE trusted site: HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\soe.com -> soe.com
  308. IE trusted site: HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\sony.com -> sony.com
  309.  
  310.  
  311. ==================== Other Areas ============================
  312.  
  313. (Currently there is no automatic fix for this section.)
  314.  
  315. HKU\S-1-5-21-1788079078-3419667790-947303609-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
  316. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
  317. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
  318. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
  319. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
  320. DNS Servers: 85.114.135.20 - 8.8.8.8
  321. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
  322. Windows Firewall is enabled.
  323.  
  324. ==================== MSCONFIG/TASK MANAGER disabled items ==
  325.  
  326. (Currently there is no automatic fix for this section.)
  327.  
  328. HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\StartupApproved\Run: => "uTorrent"
  329. HKU\S-1-5-21-1788079078-3419667790-947303609-1002\...\StartupApproved\Run: => "Steam"
  330. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "uTorrent"
  331. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "Steam"
  332. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\StartupApproved\Run: => "uTorrent"
  333. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\StartupApproved\Run: => "Steam"
  334. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\StartupApproved\Run: => "uTorrent"
  335. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\StartupApproved\Run: => "Steam"
  336. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\StartupApproved\Run: => "uTorrent"
  337. HKU\S-1-5-21-1788079078-3419667790-947303609-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\StartupApproved\Run: => "Steam"
  338.  
  339. ==================== FirewallRules (Whitelisted) ===============
  340.  
  341. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  342.  
  343. FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
  344. FirewallRules: [UDP Query User{59F69010-86C1-4171-9C6E-15D06B59C376}C:\users\lenovo\desktop\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Allow) C:\users\lenovo\desktop\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe
  345. FirewallRules: [TCP Query User{2CB5AB9E-F73A-40D9-9859-7F1ECB24032E}C:\users\lenovo\desktop\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Allow) C:\users\lenovo\desktop\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe
  346. FirewallRules: [UDP Query User{E1534E8F-5CDC-4DB2-86AC-7A1447075D6A}C:\users\lenovo\desktop\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Allow) C:\users\lenovo\desktop\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe
  347. FirewallRules: [TCP Query User{580E9983-B7EB-4517-88D1-60BA815B0DCE}C:\users\lenovo\desktop\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Allow) C:\users\lenovo\desktop\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe
  348. FirewallRules: [{88E5028C-94FA-46F6-8EB8-E5F6121271A6}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
  349. FirewallRules: [{02F611B1-45C6-40B1-80DB-1F24AA353580}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
  350. FirewallRules: [{1D90B60F-270B-43F2-9A5D-28632D8809C3}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
  351. FirewallRules: [{F2F67D94-8D17-43FD-BE15-5BD8948738A0}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
  352. FirewallRules: [{33835855-4357-4F3C-99C7-D75618C6A8AD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 2\arma2.exe
  353. FirewallRules: [{5F73A5D8-8A30-418B-9871-2DE38E87009C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 2\arma2.exe
  354. FirewallRules: [{5ED476CA-1E1A-44D6-96C5-DC93EF51BCDC}] => (Allow) LPort=7935
  355. FirewallRules: [{44FB4EF4-4B7A-41B8-9A0D-8E60686F5329}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe
  356. FirewallRules: [{37FB0F34-6915-42D9-9F21-2FDE6C31C845}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe
  357. FirewallRules: [UDP Query User{9DBC6417-11D1-4FC5-8712-532FFAD425B0}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Block) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
  358. FirewallRules: [TCP Query User{25910C5F-5CB0-4E8B-BFD5-7DA821421AB5}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Block) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
  359. FirewallRules: [UDP Query User{C7370CBA-4DCE-40E2-96B8-1A95E5442611}C:\program files\matlab\matlab production server\r2015a\bin\win64\matlab.exe] => (Allow) C:\program files\matlab\matlab production server\r2015a\bin\win64\matlab.exe
  360. FirewallRules: [TCP Query User{DD0D6B83-307E-4FAC-9D60-091F41BBC334}C:\program files\matlab\matlab production server\r2015a\bin\win64\matlab.exe] => (Allow) C:\program files\matlab\matlab production server\r2015a\bin\win64\matlab.exe
  361. FirewallRules: [UDP Query User{B9FD0371-D715-4DE5-AEC2-E6461B08A5E3}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
  362. FirewallRules: [TCP Query User{8CA4A216-76BE-4BFA-B9AF-CACAA4131842}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
  363. FirewallRules: [{2547EC73-86F6-434B-89F3-97CA9653F748}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1\LaunchPad.exe
  364. FirewallRules: [{DEFD5B5A-94B8-404F-AC5E-BF7D4659D19E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1\LaunchPad.exe
  365. FirewallRules: [{741748A9-DC0F-4B12-A86B-D94E83A96AAE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe
  366. FirewallRules: [{DC13B019-DFA2-4955-8DE7-7A5E1284F287}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe
  367. FirewallRules: [{277594F4-A076-4A17-A8A3-C504D3F2D497}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe
  368. FirewallRules: [{00C7E04A-54E0-408A-92CF-AEE79D620353}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe
  369. FirewallRules: [{5A7E3272-180A-4142-92EB-C420894BBAC3}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
  370. FirewallRules: [{13322BAD-D335-43AD-829A-3EAD2D16E03B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
  371. FirewallRules: [{92FEC6E1-0FEE-4906-AFE2-EDFCF828FB81}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
  372. FirewallRules: [{B0C7CEC7-E3DD-41D3-8F88-9747DAE3D8CD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
  373. FirewallRules: [UDP Query User{EA513CD2-E7D4-4A81-A940-B89BE3360535}C:\program files\matlab\matlab production server\r2015a\bin\win64\matlab.exe] => (Allow) C:\program files\matlab\matlab production server\r2015a\bin\win64\matlab.exe
  374. FirewallRules: [TCP Query User{DD189C84-6090-4E4E-98BF-3E23BA7A8AA7}C:\program files\matlab\matlab production server\r2015a\bin\win64\matlab.exe] => (Allow) C:\program files\matlab\matlab production server\r2015a\bin\win64\matlab.exe
  375. FirewallRules: [{6FFFDAC1-D928-434E-A03F-ACBFCC156B2E}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
  376. FirewallRules: [{8A19EDD1-D479-4424-BAB9-1E4BDF9B524A}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
  377. FirewallRules: [{7C85DB03-E065-4B9A-8CFB-A0E67A6E5AF3}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
  378. FirewallRules: [{956C8075-7D26-4073-9FF3-C7C21E577550}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
  379. FirewallRules: [{3607340F-E466-477D-BFF5-93C71B685C12}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
  380. FirewallRules: [{B36CFD14-3667-4B6C-BDF6-2B805E57E51B}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
  381. FirewallRules: [{A8CF25F6-C365-4B98-AD11-E318DCFB3637}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
  382. FirewallRules: [{3731FD93-E46C-44AD-BC3C-A04BA4DE9968}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
  383. FirewallRules: [{E34EFD1B-B4A0-4C5A-A949-0B09312ECEF0}] => (Allow) C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe
  384. FirewallRules: [{A0C11EFB-A216-4E4D-985B-B373449028D9}] => (Allow) C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe
  385. FirewallRules: [{7BCCDA08-0A8A-4780-8859-8DC9ED69A943}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
  386. FirewallRules: [{5C5FBD4F-7BAE-4285-B649-093C0231D0BC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
  387. FirewallRules: [{96DDF074-2F66-4DF3-BA0B-23E00BA9ABD6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
  388. FirewallRules: [{2A9197DA-2CCB-43A7-86CC-4D0EEFFA13C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
  389. FirewallRules: [{13431281-2F5E-4B4D-9C34-FC5206D21EA3}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
  390. FirewallRules: [{A388A29F-D0D3-4925-B3FF-197740A13E4F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
  391. FirewallRules: [{A100AD0A-EB39-452A-B95E-8D851C4A5019}] => (Allow) C:\Program Files\Lenovo PhotoMasterImport\PhotoMasterImport.exe
  392. FirewallRules: [{C72DF2AF-C496-4203-92C2-1A027DF1257A}] => (Allow) LPort=55100
  393. FirewallRules: [{5A88F3F3-A106-4192-A013-0FEF76F22440}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe
  394. FirewallRules: [{2CCE76F1-9C74-41F3-9382-8D45561E622F}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe
  395. FirewallRules: [{798D329C-AD0A-4563-BFCD-EDC3CD4037FF}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE
  396. FirewallRules: [{2F5A980B-69AA-4CCC-B2E5-29D3A2BBD6BD}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
  397. FirewallRules: [{B7FA839D-B300-46F2-BB51-4D9D4B980F97}] => (Allow) C:\Program Files\CyberLink\PowerDirector10\PDR10.EXE
  398. FirewallRules: [{1A551C43-E6C5-4673-A778-7D391BA26646}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
  399. FirewallRules: [{F3C4045A-7E53-4583-B271-27001AE98EA9}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
  400. FirewallRules: [{24BF3512-F724-414A-B79B-C65A60B86F31}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe
  401. FirewallRules: [{7C795B7E-A109-4A6C-AA22-4105EEFEFE59}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe
  402. FirewallRules: [{A161ABBD-E089-48BA-97B5-C6A95F45EF5D}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
  403. FirewallRules: [{E4D99B80-78D4-4A33-B8C9-527D5D5F0622}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
  404. FirewallRules: [{E5B4DEE1-342C-434A-94BF-9E3BA4B170A6}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
  405. FirewallRules: [TCP Query User{B7534E78-5BC3-4EAF-9A54-AEF87C648D10}C:\users\lenovo\desktop\cs\czero.exe] => (Allow) C:\users\lenovo\desktop\cs\czero.exe
  406. FirewallRules: [UDP Query User{59923860-A0C3-4D02-8077-1DF44B43B217}C:\users\lenovo\desktop\cs\czero.exe] => (Allow) C:\users\lenovo\desktop\cs\czero.exe
  407. FirewallRules: [TCP Query User{261003B5-B055-4A73-B9FE-6F8884DDA89B}C:\users\lenovo\desktop\cs\czero.exe] => (Allow) C:\users\lenovo\desktop\cs\czero.exe
  408. FirewallRules: [UDP Query User{7AB58505-5014-4DBB-83BD-7C616B299791}C:\users\lenovo\desktop\cs\czero.exe] => (Allow) C:\users\lenovo\desktop\cs\czero.exe
  409. FirewallRules: [TCP Query User{87DF26F4-4475-4113-A90C-AB087893C9C5}C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe] => (Allow) C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe
  410. FirewallRules: [UDP Query User{A1EF0B7B-BE9E-4FE9-AA4C-2960FD8AFEE0}C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe] => (Allow) C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe
  411. FirewallRules: [TCP Query User{1592223A-063E-4A1E-9193-F15888AB52F5}C:\users\lenovo\desktop\games\cs\czero.exe] => (Allow) C:\users\lenovo\desktop\games\cs\czero.exe
  412. FirewallRules: [UDP Query User{382A17CF-8EC3-430C-A1FB-B1803FDBDCC1}C:\users\lenovo\desktop\games\cs\czero.exe] => (Allow) C:\users\lenovo\desktop\games\cs\czero.exe
  413. FirewallRules: [{8300F3BE-A522-4E01-966B-70418C2022AD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\dota.exe
  414. FirewallRules: [{4CD9F353-662F-4267-80E7-F4988E1DD5F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\dota.exe
  415. FirewallRules: [TCP Query User{2B05F6A9-D66A-492B-BDEA-30657776591B}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe
  416. FirewallRules: [UDP Query User{54E8B285-622E-4FA0-81FA-D53760ABA732}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe
  417. FirewallRules: [TCP Query User{2E0317BC-7B5F-412B-A785-6B0FF8147A2C}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Block) C:\program files (x86)\arduino\java\bin\javaw.exe
  418. FirewallRules: [UDP Query User{DC1378FC-B03A-4B98-96D8-101267D56361}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Block) C:\program files (x86)\arduino\java\bin\javaw.exe
  419.  
  420. ==================== Faulty Device Manager Devices =============
  421.  
  422.  
  423. ==================== Event log errors: =========================
  424.  
  425. Application errors:
  426. ==================
  427. Error: (08/21/2015 05:29:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  428. Description: Activation of app Microsoft.MicrosoftOfficeHub_8wekyb3d8bbwe!Microsoft.MicrosoftOfficeHub failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  429.  
  430. Error: (08/21/2015 05:15:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  431. Description: Activation of app E046963F.LenovoCompanion_k1h2ywk1493x8!App failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  432.  
  433. Error: (08/21/2015 05:13:24 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  434. Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  435.  
  436. Error: (08/21/2015 05:07:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  437. Description: Activation of app Microsoft.Windows.Photos_8wekyb3d8bbwe!App failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  438.  
  439. Error: (08/21/2015 04:54:04 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  440. Description: Activation of app E046963F.LenovoCompanion_k1h2ywk1493x8!App failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  441.  
  442. Error: (08/21/2015 04:53:16 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  443. Description: Activation of app E046963F.LenovoCompanion_k1h2ywk1493x8!App failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  444.  
  445. Error: (08/21/2015 04:53:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  446. Description: Activation of app Microsoft.Windows.Photos_8wekyb3d8bbwe!App failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  447.  
  448. Error: (08/21/2015 04:43:21 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  449. Description: Activation of app Microsoft.Windows.Photos_8wekyb3d8bbwe!App failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  450.  
  451. Error: (08/21/2015 04:43:21 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  452. Description: Activation of app Microsoft.WindowsStore_8wekyb3d8bbwe!App failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  453.  
  454. Error: (08/21/2015 04:29:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  455. Description: Activation of app Microsoft.Windows.Photos_8wekyb3d8bbwe!App failed with error: -2147009284 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  456.  
  457.  
  458. System errors:
  459. =============
  460. Error: (08/21/2015 05:18:38 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
  461. Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
  462.  
  463. Error: (08/21/2015 05:13:34 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
  464. Description: A timeout was reached (30000 milliseconds) while waiting for the Sync Host_Session2 service to connect.
  465.  
  466. Error: (08/21/2015 05:13:24 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC)
  467. Description: CortanaUI.AppXtpp90jhw9p0njjb85kvhxpppgrqfp117.mca
  468.  
  469. Error: (08/21/2015 05:13:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
  470. Description: The Sync Host_Session2 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
  471.  
  472. Error: (08/21/2015 12:08:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
  473. Description: The MBAMScheduler service terminated unexpectedly. It has done this 1 time(s).
  474.  
  475. Error: (08/21/2015 12:08:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
  476. Description: The MBAMService service terminated unexpectedly. It has done this 1 time(s).
  477.  
  478. Error: (08/21/2015 10:24:00 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
  479. Description: {F3B4E234-7A68-4E43-B813-E4BA55A065F6}
  480.  
  481. Error: (08/20/2015 11:37:23 PM) (Source: volsnap) (EventID: 36) (User: )
  482. Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
  483.  
  484. Error: (08/20/2015 08:06:07 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
  485. Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
  486.  
  487. Error: (08/20/2015 07:24:40 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC)
  488. Description: CortanaUI.AppXd4tad4d57t4wtdbnnmb8v2xtzym8c1n8.mca
  489.  
  490.  
  491. Microsoft Office:
  492. =========================
  493. Error: (08/21/2015 05:29:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  494. Description: Microsoft.MicrosoftOfficeHub_8wekyb3d8bbwe!Microsoft.MicrosoftOfficeHub-2147009284
  495.  
  496. Error: (08/21/2015 05:15:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  497. Description: E046963F.LenovoCompanion_k1h2ywk1493x8!App-2147009284
  498.  
  499. Error: (08/21/2015 05:13:24 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  500. Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141
  501.  
  502. Error: (08/21/2015 05:07:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  503. Description: Microsoft.Windows.Photos_8wekyb3d8bbwe!App-2147009284
  504.  
  505. Error: (08/21/2015 04:54:04 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  506. Description: E046963F.LenovoCompanion_k1h2ywk1493x8!App-2147009284
  507.  
  508. Error: (08/21/2015 04:53:16 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  509. Description: E046963F.LenovoCompanion_k1h2ywk1493x8!App-2147009284
  510.  
  511. Error: (08/21/2015 04:53:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  512. Description: Microsoft.Windows.Photos_8wekyb3d8bbwe!App-2147009284
  513.  
  514. Error: (08/21/2015 04:43:21 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  515. Description: Microsoft.Windows.Photos_8wekyb3d8bbwe!App-2147009284
  516.  
  517. Error: (08/21/2015 04:43:21 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  518. Description: Microsoft.WindowsStore_8wekyb3d8bbwe!App-2147009284
  519.  
  520. Error: (08/21/2015 04:29:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC)
  521. Description: Microsoft.Windows.Photos_8wekyb3d8bbwe!App-2147009284
  522.  
  523.  
  524. CodeIntegrity:
  525. ===================================
  526. Date: 2015-08-20 13:25:06.909
  527. Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  528.  
  529. Date: 2015-08-20 13:25:06.322
  530. Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
  531.  
  532.  
  533. ==================== Memory info ===========================
  534.  
  535. Processor: Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
  536. Percentage of memory in use: 61%
  537. Total physical RAM: 3988.27 MB
  538. Available physical RAM: 1531.86 MB
  539. Total Virtual: 6676.27 MB
  540. Available Virtual: 3495.89 MB
  541.  
  542. ==================== Drives ================================
  543.  
  544. Drive c: (Windows8_OS) (Fixed) (Total:479.32 GB) (Free:263.89 GB) NTFS ==>[system with boot components (obtained from reading drive)]
  545. Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:21.42 GB) NTFS
  546.  
  547. ==================== MBR & Partition Table ==================
  548.  
  549. ========================================================
  550. Disk: 0 (Size: 931.5 GB) (Disk ID: E8354AB7)
  551.  
  552. Partition: GPT.
  553.  
  554. ==================== End of log ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement