Advertisement
Guest User

Addition

a guest
Mar 28th, 2015
261
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 28.32 KB | None | 0 0
  1. Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
  2. Ran by DB at 2015-03-28 13:06:56
  3. Running from C:\Users\DB\Desktop
  4. Boot Mode: Normal
  5. ==========================================================
  6.  
  7.  
  8. ==================== Security Center ========================
  9.  
  10. (If an entry is included in the fixlist, it will be removed.)
  11.  
  12. AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  13. AV: Symantec Endpoint Protection (Enabled - Up to date) {63DF5164-9100-186D-2187-8DC619EFD8BF}
  14. AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  15. AS: Symantec Endpoint Protection (Enabled - Up to date) {D8BEB080-B73A-17E3-1B37-B6B462689202}
  16. FW: Symantec Endpoint Protection (Enabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
  17.  
  18. ==================== Installed Programs ======================
  19.  
  20. (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
  21.  
  22. Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
  23. Adobe Reader XI (11.0.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
  24. Command & Conquer 3 (HKLM-x32\...\{B0C30E93-D3D9-4F04-A2AC-54749B573275}) (Version: 1.00.0000 - Electronic Arts Inc.)
  25. Command & Conquer The First Decade (HKLM-x32\...\{66D6F3BD-CA23-41A4-9FA3-96B26B32528C}) (Version: 1.00.0000 - Electronic Arts)
  26. Commandos 2: Men of Courage (HKLM-x32\...\{F7963BA0-EE1C-11D4-9FA5-00A0C9E6A342}) (Version: - )
  27. Dropbox (HKU\S-1-5-21-2256643418-314661672-1367462778-1001\...\Dropbox) (Version: 3.2.6 - Dropbox, Inc.)
  28. f.lux (HKU\S-1-5-21-2256643418-314661672-1367462778-1001\...\Flux) (Version: - )
  29. Freemake YouTube To MP3 Boom (HKLM-x32\...\Freemake YouTube To MP3 Boom_is1) (Version: 1.0.0 - Ellora Assets Corporation)
  30. Garena 競時通 (HKLM-x32\...\im) (Version: 2011 - 台灣競舞娛樂有限公司)
  31. Garena 英雄聯盟(台灣) (HKLM-x32\...\LoLTW) (Version: 20150320 - 台灣競舞娛樂有限公司)
  32. Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.)
  33. Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
  34. Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
  35. Juniper Networks Network Connect 7.4.0 (HKLM-x32\...\Juniper Network Connect 7.4.0) (Version: 7.4.0.30611 - Juniper Networks)
  36. Juniper Networks Network Connect 8.0 (HKLM-x32\...\Juniper Network Connect 8.0) (Version: 8.0.5.31739 - Juniper Networks)
  37. Juniper Networks Setup Client (HKU\S-1-5-21-2256643418-314661672-1367462778-1001\...\Juniper_Setup_Client) (Version: 8.0.5.47721 - Juniper Networks)
  38. Juniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.)
  39. Juniper Networks, Inc. Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.)
  40. LINE (HKLM-x32\...\LINE) (Version: 4.0.0.278 - LINE Corporation)
  41. Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
  42. MATLAB R2013a (HKLM\...\Matlab R2013a) (Version: 8.1 - The MathWorks, Inc.)
  43. Media Go (HKLM-x32\...\{F66C4A41-C3A8-4523-AB6C-BAA1DB38305C}) (Version: 2.7.357 - Sony)
  44. Media Go Network Downloader (HKLM-x32\...\{73FA7631-3015-4EEC-A002-09488C47A07C}) (Version: 1.5.19.0 - Sony)
  45. Media Go Video Playback Engine 2.4.102.12040 (HKLM-x32\...\{7C5AEEE1-6D7C-8922-4548-7BF9096077EC}) (Version: 2.4.102.12040 - Sony)
  46. Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
  47. Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
  48. Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
  49. Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
  50. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
  51. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
  52. Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
  53. Mozilla Firefox 36.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 36.0.1 (x86 en-US)) (Version: 36.0.1 - Mozilla)
  54. Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
  55. OpenMG Limited Patch 4.7-07-14-05-01 (HKLM-x32\...\OpenMG HotFix4.7-07-13-22-01) (Version: - )
  56. OpenMG Secure Module 4.7.00 (HKLM-x32\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation)
  57. OpenMG Secure Module 4.7.00 (x32 Version: 4.7.00.12140 - Sony Corporation) Hidden
  58. Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
  59. PDF Manual NW-E010 Series (HKLM-x32\...\{4038EAF0-6F8E-4068-88F6-A417958B8AC5}) (Version: 1.0 - Sony Corporation)
  60. Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
  61. SonicStage 4.3 (HKLM-x32\...\{A0EB195B-5876-48E6-879D-33D4B2102610}) (Version: 4.3 - Sony Corporation)
  62. Sony PC Companion 2.10.197 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.197 - Sony)
  63. Symantec Endpoint Protection (HKLM\...\{B53661DC-CD94-4B14-B15F-D9DDCFF72558}) (Version: 12.1.4013.4013 - Symantec Corporation)
  64. Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
  65. VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
  66. WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
  67.  
  68. ==================== Custom CLSID (selected items): ==========================
  69.  
  70. (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
  71.  
  72. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
  73. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  74. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  75. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  76. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  77. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  78. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  79. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  80. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  81. CustomCLSID: HKU\S-1-5-21-2256643418-314661672-1367462778-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\DB\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
  82.  
  83. ==================== Restore Points =========================
  84.  
  85. 11-03-2015 22:57:53 Windows Update
  86. 15-03-2015 21:05:10 Installed Mavis Beacon Teaches Typing Deluxe 17
  87. 23-03-2015 10:33:07 Scheduled Checkpoint
  88. 27-03-2015 11:01:46 Removed Mavis Beacon Teaches Typing Deluxe 17
  89.  
  90. ==================== Hosts content: ==========================
  91.  
  92. (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
  93.  
  94. 2013-08-22 21:25 - 2014-10-29 19:03 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
  95.  
  96. ==================== Scheduled Tasks (whitelisted) =============
  97.  
  98. (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
  99.  
  100. Task: {1046385A-3405-494D-94E1-5B5E8A73864E} - System32\Tasks\{4E8864C9-6302-4B34-AA4B-0C2C6581A804} => pcalua.exe -a E:\STARTUP.EXE -d E:\
  101. Task: {26E73B35-91A3-41B9-B8D9-D32C03FE680F} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-03-11] (Microsoft Corporation)
  102. Task: {41CA5F3F-37FC-4B89-A4EA-D5C75900E7D6} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-18] (Adobe Systems Incorporated)
  103. Task: {552D1C8D-BC64-45E2-A1D2-DA92C8C53577} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
  104. Task: {7C90048D-3BCB-4C0B-A262-77A62387E36D} - System32\Tasks\gg_uac_daemon_DB => C:\Program Files (x86)\Garena Plus\ggdllhost.exe [2015-01-20] ()
  105. Task: {8D4CEC34-2413-44C5-97F9-5FC9BDCA5155} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-15] (Google Inc.)
  106. Task: {9064FCF2-8833-48CC-BB1D-C3273C3BEB21} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-15] (Google Inc.)
  107. Task: {AE608BB6-B7FB-4489-9CAB-E3A1AA5D272F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
  108. Task: {D089A9BD-FE13-4DA6-9D37-3DCB1A1CBE3E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
  109. Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
  110. Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
  111. Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
  112.  
  113. ==================== Loaded Modules (whitelisted) ==============
  114.  
  115. 2014-04-29 17:28 - 2015-01-20 20:20 - 00055896 _____ () C:\Program Files (x86)\Garena Plus\ggdllhost.exe
  116. 2012-10-01 20:36 - 2012-10-01 20:36 - 06522480 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
  117. 2014-04-29 17:28 - 2015-01-20 20:20 - 09981528 _____ () C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe
  118. 2014-04-29 17:28 - 2015-03-23 18:17 - 00797120 _____ () C:\Program Files (x86)\Garena Plus\ggspawn.dll
  119. 2014-04-29 17:28 - 2015-01-20 20:20 - 00111192 _____ () C:\Program Files (x86)\Garena Plus\CommonLib.dll
  120. 2014-04-29 17:28 - 2015-01-20 20:20 - 00040024 _____ () C:\Program Files (x86)\Garena Plus\DibModule.dll
  121. 2014-04-29 17:28 - 2015-03-23 18:17 - 00034752 _____ () C:\Program Files (x86)\Garena Plus\VersionModule.dll
  122. 2014-04-29 17:28 - 2015-01-20 20:20 - 00057944 _____ () C:\Program Files (x86)\Garena Plus\FileLoader.dll
  123. 2014-04-29 17:28 - 2015-01-20 20:20 - 00093784 _____ () C:\Program Files (x86)\Garena Plus\PluginKernel.dll
  124. 2014-04-29 17:28 - 2015-01-20 20:20 - 00493656 _____ () C:\Program Files (x86)\Garena Plus\CxImage.dll
  125. 2014-04-29 17:28 - 2015-01-20 20:20 - 00031832 _____ () C:\Program Files (x86)\Garena Plus\PluginModule.dll
  126. 2014-04-29 17:29 - 2015-01-20 20:20 - 00177240 _____ () C:\Program Files (x86)\Garena Plus\lib\fs\YYFileSystem.dll
  127. 2014-04-29 17:29 - 2015-01-20 20:20 - 00380504 _____ () C:\Program Files (x86)\Garena Plus\lib\Http.dll
  128. 2014-04-29 17:29 - 2015-01-20 20:20 - 00191064 _____ () C:\Program Files (x86)\Garena Plus\lib\MP3Module.dll
  129. 2012-02-22 16:52 - 2012-02-22 16:52 - 00162304 _____ () C:\Program Files (x86)\Garena Plus\lame_enc.DLL
  130. 2014-04-29 17:29 - 2015-01-20 20:20 - 00226392 _____ () C:\Program Files (x86)\Garena Plus\lib\TaskManagerLib.dll
  131. 2014-04-29 17:29 - 2015-01-20 20:20 - 00112728 _____ () C:\Program Files (x86)\Garena Plus\lib\UILayout.dll
  132. 2014-04-29 17:29 - 2015-01-20 20:20 - 00964696 _____ () C:\Program Files (x86)\Garena Plus\lib\XLL.dll
  133. 2014-04-29 17:29 - 2015-01-20 20:20 - 00061528 _____ () C:\Program Files (x86)\Garena Plus\lib\XmlUIModule.dll
  134. 2012-02-22 16:52 - 2012-02-22 16:52 - 00573100 _____ () C:\Program Files (x86)\Garena Plus\sqlite3.dll
  135. 2014-04-29 17:29 - 2015-01-20 20:20 - 00231000 _____ () C:\Program Files (x86)\Garena Plus\Plugins\StatsPlugin.dll
  136. 2014-04-29 17:28 - 2015-01-28 12:04 - 00962136 _____ () C:\Program Files (x86)\Garena Plus\Plugins\ggplugin.dll
  137. 2014-04-29 17:28 - 2015-01-20 20:20 - 00199256 _____ () C:\Program Files (x86)\Garena Plus\ImageModule.dll
  138. 2014-04-29 17:28 - 2015-01-20 20:20 - 00161880 _____ () C:\Program Files (x86)\Garena Plus\libmpg123.dll
  139. 2014-04-29 17:28 - 2015-01-20 20:20 - 02947672 _____ () C:\Program Files (x86)\Garena Plus\ggdownloader.dll
  140. 2014-04-29 17:29 - 2015-01-20 20:20 - 00072280 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\AudioMixerLib.dll
  141. 2014-04-29 17:29 - 2015-01-20 20:20 - 00023128 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\ClientTcp.dll
  142. 2014-04-29 17:29 - 2015-01-20 20:20 - 01551960 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\FileSender.dll
  143. 2013-02-01 13:42 - 2013-02-01 13:42 - 00153088 _____ () C:\Program Files (x86)\Garena Plus\libzmq.dll
  144. 2014-04-29 17:29 - 2015-01-20 20:20 - 00962648 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\GaFileTransfer.dll
  145. 2014-04-29 17:29 - 2015-01-20 20:20 - 00251480 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\MediaEngine.dll
  146. 2014-04-29 17:28 - 2015-01-20 20:20 - 00032856 _____ () C:\Program Files (x86)\Garena Plus\ServerMemAlloc.dll
  147. 2014-04-29 17:29 - 2015-01-20 20:20 - 00523352 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\RSALib.dll
  148. 2014-04-29 17:29 - 2015-01-20 20:20 - 00074840 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\UdtLib.dll
  149. 2015-03-22 15:43 - 2015-03-14 18:12 - 01174856 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\libglesv2.dll
  150. 2015-03-22 15:43 - 2015-03-14 18:12 - 00080200 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\libegl.dll
  151. 2015-03-22 15:43 - 2015-03-14 18:12 - 09278792 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\pdf.dll
  152.  
  153. ==================== Alternate Data Streams (whitelisted) =========
  154.  
  155. (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
  156.  
  157. AlternateDataStreams: C:\Users\DB\SkyDrive:ms-properties
  158.  
  159. ==================== Safe Mode (whitelisted) ===================
  160.  
  161. (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
  162.  
  163. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SepMasterService => ""="Service"
  164. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SmcService => ""="Service"
  165.  
  166. ==================== EXE Association (whitelisted) ===============
  167.  
  168. (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
  169.  
  170.  
  171. ==================== Other Areas ============================
  172.  
  173. (Currently there is no automatic fix for this section.)
  174.  
  175. HKU\S-1-5-21-2256643418-314661672-1367462778-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\DB\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
  176. DNS Servers: 10.10.10.1
  177.  
  178. ==================== MSCONFIG/TASK MANAGER disabled items ==
  179.  
  180. (Currently there is no automatic fix for this section.)
  181.  
  182.  
  183. ==================== Accounts: =============================
  184.  
  185. Administrator (S-1-5-21-2256643418-314661672-1367462778-500 - Administrator - Disabled)
  186. DB (S-1-5-21-2256643418-314661672-1367462778-1001 - Administrator - Enabled) => C:\Users\DB
  187. Guest (S-1-5-21-2256643418-314661672-1367462778-501 - Limited - Disabled)
  188. UpdatusUser (S-1-5-21-2256643418-314661672-1367462778-1022 - Limited - Enabled) => C:\Users\UpdatusUser
  189.  
  190. ==================== Faulty Device Manager Devices =============
  191.  
  192.  
  193. ==================== Event log errors: =========================
  194.  
  195. Application errors:
  196. ==================
  197. Error: (03/28/2015 01:03:45 PM) (Source: Symantec AntiVirus) (EventID: 51) (User: )
  198. Description: Security Risk Found!WS.Reputation.1 in File: C:\Users\DB\Downloads\FRST64.exe by: Auto-Protect scan. Action: Quarantine succeeded : Access denied. Action Description: The file was quarantined successfully.
  199.  
  200. Error: (03/28/2015 11:28:08 AM) (Source: Application Error) (EventID: 1000) (User: )
  201. Description: Faulting application name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  202. Faulting module name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  203. Exception code: 0xc0000005
  204. Fault offset: 0x00387b2a
  205. Faulting process id: 0xf0c
  206. Faulting application start time: 0xGame.exe0
  207. Faulting application path: Game.exe1
  208. Faulting module path: Game.exe2
  209. Report Id: Game.exe3
  210. Faulting package full name: Game.exe4
  211. Faulting package-relative application ID: Game.exe5
  212.  
  213. Error: (03/28/2015 11:19:02 AM) (Source: Application Error) (EventID: 1000) (User: )
  214. Description: Faulting application name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  215. Faulting module name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  216. Exception code: 0xc0000005
  217. Fault offset: 0x0028e270
  218. Faulting process id: 0x12d8
  219. Faulting application start time: 0xGame.exe0
  220. Faulting application path: Game.exe1
  221. Faulting module path: Game.exe2
  222. Report Id: Game.exe3
  223. Faulting package full name: Game.exe4
  224. Faulting package-relative application ID: Game.exe5
  225.  
  226. Error: (03/28/2015 11:17:26 AM) (Source: Application Error) (EventID: 1000) (User: )
  227. Description: Faulting application name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  228. Faulting module name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  229. Exception code: 0xc0000005
  230. Fault offset: 0x0028e270
  231. Faulting process id: 0xe28
  232. Faulting application start time: 0xGame.exe0
  233. Faulting application path: Game.exe1
  234. Faulting module path: Game.exe2
  235. Report Id: Game.exe3
  236. Faulting package full name: Game.exe4
  237. Faulting package-relative application ID: Game.exe5
  238.  
  239. Error: (03/28/2015 10:01:01 AM) (Source: Application Hang) (EventID: 1002) (User: )
  240. Description: The program Game.exe version 1.0.0.1 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
  241.  
  242. Process ID: 1348
  243.  
  244. Start Time: 01d068f885e0731b
  245.  
  246. Termination Time: 4294967295
  247.  
  248. Application Path: D:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exe
  249.  
  250. Report Id: 48111c4a-d4ee-11e4-831d-206a8a1d8657
  251.  
  252. Faulting package full name:
  253.  
  254. Faulting package-relative application ID:
  255.  
  256. Error: (03/28/2015 09:41:50 AM) (Source: Application Error) (EventID: 1000) (User: )
  257. Description: Faulting application name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  258. Faulting module name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  259. Exception code: 0xc0000005
  260. Fault offset: 0x0028e270
  261. Faulting process id: 0x43c
  262. Faulting application start time: 0xGame.exe0
  263. Faulting application path: Game.exe1
  264. Faulting module path: Game.exe2
  265. Report Id: Game.exe3
  266. Faulting package full name: Game.exe4
  267. Faulting package-relative application ID: Game.exe5
  268.  
  269. Error: (03/27/2015 03:33:34 PM) (Source: Application Error) (EventID: 1000) (User: )
  270. Description: Faulting application name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  271. Faulting module name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  272. Exception code: 0xc0000005
  273. Fault offset: 0x0028e270
  274. Faulting process id: 0xe30
  275. Faulting application start time: 0xGame.exe0
  276. Faulting application path: Game.exe1
  277. Faulting module path: Game.exe2
  278. Report Id: Game.exe3
  279. Faulting package full name: Game.exe4
  280. Faulting package-relative application ID: Game.exe5
  281.  
  282. Error: (03/27/2015 01:58:15 PM) (Source: Application Error) (EventID: 1000) (User: )
  283. Description: Faulting application name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  284. Faulting module name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  285. Exception code: 0xc0000005
  286. Fault offset: 0x0028e270
  287. Faulting process id: 0xcc0
  288. Faulting application start time: 0xGame.exe0
  289. Faulting application path: Game.exe1
  290. Faulting module path: Game.exe2
  291. Report Id: Game.exe3
  292. Faulting package full name: Game.exe4
  293. Faulting package-relative application ID: Game.exe5
  294.  
  295. Error: (03/27/2015 11:19:24 AM) (Source: Application Error) (EventID: 1000) (User: )
  296. Description: Faulting application name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  297. Faulting module name: Game.exe, version: 1.0.0.1, time stamp: 0x3b1ebbed
  298. Exception code: 0xc0000005
  299. Fault offset: 0x0028e270
  300. Faulting process id: 0xd94
  301. Faulting application start time: 0xGame.exe0
  302. Faulting application path: Game.exe1
  303. Faulting module path: Game.exe2
  304. Report Id: Game.exe3
  305. Faulting package full name: Game.exe4
  306. Faulting package-relative application ID: Game.exe5
  307.  
  308. Error: (03/27/2015 10:35:58 AM) (Source: Application Hang) (EventID: 1002) (User: )
  309. Description: The program Avira.OE.Setup.Bundle.exe version 1.1.34.19732 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
  310.  
  311. Process ID: 85c
  312.  
  313. Start Time: 01d06836a15cbbd7
  314.  
  315. Termination Time: 4294967295
  316.  
  317. Application Path: C:\ProgramData\Package Cache\{b5675cc4-ab8b-4945-8c1d-4c5479556d6a}\Avira.OE.Setup.Bundle.exe
  318.  
  319. Report Id: fd178216-d429-11e4-8313-206a8a1d8657
  320.  
  321. Faulting package full name:
  322.  
  323. Faulting package-relative application ID:
  324.  
  325.  
  326. System errors:
  327. =============
  328. Error: (03/28/2015 00:14:46 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
  329. Description: 5
  330.  
  331. Error: (03/28/2015 00:19:22 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
  332. Description: 5
  333.  
  334. Error: (03/28/2015 00:00:48 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
  335. Description: 5
  336.  
  337. Error: (03/27/2015 07:45:29 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
  338. Description: 5
  339.  
  340. Error: (03/27/2015 07:42:23 PM) (Source: DCOM) (EventID: 10005) (User: DBLUEWH)
  341. Description: 1084WSearchUnavailable{9E175B68-F52A-11D8-B9A5-505054503030}
  342.  
  343. Error: (03/27/2015 07:42:23 PM) (Source: DCOM) (EventID: 10005) (User: DBLUEWH)
  344. Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
  345.  
  346. Error: (03/27/2015 07:42:13 PM) (Source: DCOM) (EventID: 10005) (User: DBLUEWH)
  347. Description: 1084WSearchUnavailable{9E175B6D-F52A-11D8-B9A5-505054503030}
  348.  
  349. Error: (03/27/2015 07:42:13 PM) (Source: DCOM) (EventID: 10005) (User: DBLUEWH)
  350. Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
  351.  
  352. Error: (03/27/2015 07:37:21 PM) (Source: DCOM) (EventID: 10005) (User: DBLUEWH)
  353. Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
  354.  
  355. Error: (03/27/2015 07:37:21 PM) (Source: DCOM) (EventID: 10005) (User: DBLUEWH)
  356. Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
  357.  
  358.  
  359. Microsoft Office Sessions:
  360. =========================
  361. Error: (03/28/2015 01:03:45 PM) (Source: Symantec AntiVirus) (EventID: 51) (User: )
  362. Description: Security Risk Found!WS.Reputation.1 in File: C:\Users\DB\Downloads\FRST64.exe by: Auto-Protect scan. Action: Quarantine succeeded : Access denied. Action Description: The file was quarantined successfully.
  363.  
  364. Error: (03/28/2015 11:28:08 AM) (Source: Application Error) (EventID: 1000) (User: )
  365. Description: Game.exe1.0.0.13b1ebbedGame.exe1.0.0.13b1ebbedc000000500387b2af0c01d06905f3b3d2bbD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exeD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exe735a85d9-d4fa-11e4-831d-206a8a1d8657
  366.  
  367. Error: (03/28/2015 11:19:02 AM) (Source: Application Error) (EventID: 1000) (User: )
  368. Description: Game.exe1.0.0.13b1ebbedGame.exe1.0.0.13b1ebbedc00000050028e27012d801d06905baa5f2f2D:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exeD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exe2de6cdfb-d4f9-11e4-831d-206a8a1d8657
  369.  
  370. Error: (03/28/2015 11:17:26 AM) (Source: Application Error) (EventID: 1000) (User: )
  371. Description: Game.exe1.0.0.13b1ebbedGame.exe1.0.0.13b1ebbedc00000050028e270e2801d068fb0d8984ebD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exeD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exef52cede7-d4f8-11e4-831d-206a8a1d8657
  372.  
  373. Error: (03/28/2015 10:01:01 AM) (Source: Application Hang) (EventID: 1002) (User: )
  374. Description: Game.exe1.0.0.1134801d068f885e0731b4294967295D:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exe48111c4a-d4ee-11e4-831d-206a8a1d8657
  375.  
  376. Error: (03/28/2015 09:41:50 AM) (Source: Application Error) (EventID: 1000) (User: )
  377. Description: Game.exe1.0.0.13b1ebbedGame.exe1.0.0.13b1ebbedc00000050028e27043c01d068f8145d1efdD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exeD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exe9a20bbeb-d4eb-11e4-831d-206a8a1d8657
  378.  
  379. Error: (03/27/2015 03:33:34 PM) (Source: Application Error) (EventID: 1000) (User: )
  380. Description: Game.exe1.0.0.13b1ebbedGame.exe1.0.0.13b1ebbedc00000050028e270e3001d06858408f7403D:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exeD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exe925f96b2-d453-11e4-8319-206a8a1d8657
  381.  
  382. Error: (03/27/2015 01:58:15 PM) (Source: Application Error) (EventID: 1000) (User: )
  383. Description: Game.exe1.0.0.13b1ebbedGame.exe1.0.0.13b1ebbedc00000050028e270cc001d06852d844518eD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exeD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exe41b72417-d446-11e4-8319-206a8a1d8657
  384.  
  385. Error: (03/27/2015 11:19:24 AM) (Source: Application Error) (EventID: 1000) (User: )
  386. Description: Game.exe1.0.0.13b1ebbedGame.exe1.0.0.13b1ebbedc00000050028e270d9401d0683c6637b220D:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exeD:\Command & Conquer TFD\Command & Conquer Red Alert(tm) II\RA2\Game.exe10e95827-d430-11e4-8318-206a8a1d8657
  387.  
  388. Error: (03/27/2015 10:35:58 AM) (Source: Application Hang) (EventID: 1002) (User: )
  389. Description: Avira.OE.Setup.Bundle.exe1.1.34.1973285c01d06836a15cbbd74294967295C:\ProgramData\Package Cache\{b5675cc4-ab8b-4945-8c1d-4c5479556d6a}\Avira.OE.Setup.Bundle.exefd178216-d429-11e4-8313-206a8a1d8657
  390.  
  391.  
  392. ==================== Memory info ===========================
  393.  
  394. Processor: Intel(R) Pentium(R) CPU P6200 @ 2.13GHz
  395. Percentage of memory in use: 36%
  396. Total physical RAM: 6004.49 MB
  397. Available physical RAM: 3809.59 MB
  398. Total Pagefile: 6964.49 MB
  399. Available Pagefile: 4796.27 MB
  400. Total Virtual: 131072 MB
  401. Available Virtual: 131071.79 MB
  402.  
  403. ==================== Drives ================================
  404.  
  405. Drive c: (ACER) (Fixed) (Total:226.21 GB) (Free:158.56 GB) NTFS
  406. Drive d: (DATA) (Fixed) (Total:226.27 GB) (Free:181.41 GB) NTFS
  407. Drive e: (CNCTFD) (CDROM) (Total:7.7 GB) (Free:0 GB) UDF
  408. Drive h: (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)]
  409.  
  410. ==================== MBR & Partition Table ==================
  411.  
  412. ========================================================
  413. Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: F29EF29E)
  414. Partition 1: (Not Active) - (Size=13.2 GB) - (Type=27)
  415. Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
  416. Partition 3: (Not Active) - (Size=226.2 GB) - (Type=07 NTFS)
  417. Partition 4: (Not Active) - (Size=226.3 GB) - (Type=07 NTFS)
  418.  
  419. ==================== End Of Log ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement