Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Additional scan result of Farbar Recovery Scan Tool (x64) Version:14-05-2016
- Ran by Miloš (2016-05-15 19:26:43)
- Running from C:\Users\Miloš\Desktop
- Windows 10 Pro Version 1511 (X64) (2016-05-03 07:37:38)
- Boot Mode: Normal
- ==========================================================
- ==================== Accounts: =============================
- Administrator (S-1-5-21-460443204-1062480050-2524767075-500 - Administrator - Disabled)
- AEE43FEB2C5B4E3EBCD2 (S-1-5-21-460443204-1062480050-2524767075-1004 - Limited - Enabled)
- DefaultAccount (S-1-5-21-460443204-1062480050-2524767075-503 - Limited - Disabled)
- FABAC1DFEEAE41BBA358 (S-1-5-21-460443204-1062480050-2524767075-1002 - Limited - Enabled)
- Guest (S-1-5-21-460443204-1062480050-2524767075-501 - Limited - Disabled)
- Miloš (S-1-5-21-460443204-1062480050-2524767075-1001 - Administrator - Enabled) => C:\Users\Miloš
- ==================== Security Center ========================
- (If an entry is included in the fixlist, it will be removed.)
- AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
- AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
- ==================== Installed Programs ======================
- (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
- µTorrent (HKLM-x32\...\uTorrent) (Version: 2.2.1 - )
- Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.1 - Adobe Systems Incorporated)
- Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.1.2 - Adobe Systems Incorporated)
- AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.20.1165, 21.12.2012 - AIMP DevTeam)
- AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.)
- Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team)
- Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.2.2262 - AVAST Software)
- calibre 64bit (HKLM\...\{937FF115-A06A-4BF2-84FB-F1ADFB639A29}) (Version: 2.56.0 - Kovid Goyal)
- Catalyst Control Center Next Localization BR (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CHS (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CHT (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CS (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization DA (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization DE (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization EL (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization ES (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization FI (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization FR (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization HU (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization IT (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization JA (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization KO (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization NL (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization NO (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization PL (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization RU (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization SV (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization TH (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization TR (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden
- CCleaner (HKLM\...\CCleaner) (Version: 5.11 - Piriform)
- FileASSASSIN (HKLM-x32\...\FileASSASSIN) (Version: 1.06 - Malwarebytes)
- Focusrite USB 2.0 Audio Driver 2.5.1 (HKLM\...\Focusrite USB 2.0 Audio Driver_is1) (Version: 2.5.1 - Focusrite Audio Engineering Limited.)
- Fraps (HKLM-x32\...\Fraps) (Version: - )
- Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.102 - Google Inc.)
- Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
- IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.42 - Irfan Skiljan)
- Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
- Microsoft Office 2013 alatke za proveru - srpski (HKLM\...\{90150000-001F-081A-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation)
- Microsoft Office 2013 alatke za proveru - srpski (HKLM-x32\...\{90150000-001F-081A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation)
- Microsoft Office 2013 алатке за проверу - српски (HKLM\...\{90150000-001F-0C1A-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation)
- Microsoft Office 2013 алатке за проверу - српски (HKLM-x32\...\{90150000-001F-0C1A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation)
- Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
- Microsoft Office Proofing Tools 2013 - English (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
- Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
- Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
- Mozilla Firefox 46.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 46.0.1 (x64 en-US)) (Version: 46.0.1 - Mozilla)
- Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 46.0.1 - Mozilla)
- MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team)
- Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: - Native Instruments)
- Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: 5.2.0.2770 - Native Instruments)
- Native Instruments Guitar Rig Mobile IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Mobile IO Driver) (Version: - Native Instruments)
- Native Instruments Guitar Rig Session IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Session IO Driver) (Version: - Native Instruments)
- Native Instruments Rig Kontrol 3 Driver (HKLM-x32\...\Native Instruments Rig Kontrol 3 Driver) (Version: - Native Instruments)
- NEF Codec (HKLM-x32\...\{D6506521-0959-4FA3-875F-E2E28830B0D2}) (Version: 1.28.0 - Nikon Corporation)
- Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
- Nitro Reader 5 (HKLM\...\{1DF310B2-0BE7-4CD7-8FCF-54B1ADB067D3}) (Version: 5.5.6.21 - Nitro)
- Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
- PowerISO (HKLM-x32\...\PowerISO) (Version: 6.5 - Power Software Ltd)
- Psychonauts (HKLM-x32\...\1207658807_is1) (Version: 2.1.0.12 - GOG.com)
- Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.)
- Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7801 - Realtek Semiconductor Corp.)
- SafeZone Stable 1.48.2066.101 (x32 Version: 1.48.2066.101 - Avast Software) Hidden
- Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.0 - Safer Networking Limited)
- Stellaris: Galaxy Edition (HKLM-x32\...\Stellaris: Galaxy Edition_is1) (Version: - )
- Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.2.1.8 - Synaptics Incorporated)
- Tau Analyzer (remove only) (HKLM-x32\...\Tau Analyzer) (Version: - )
- TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.59131 - TeamViewer)
- Temple of Elemental Evil (HKLM-x32\...\GOGPACKTEMPLEOFELEMENTALEVIL_is1) (Version: 2.0.0.13 - GOG.com)
- Tom Clancy's Splinter Cell® Blacklist™ (HKLM-x32\...\{A6356F2F-D3E1-4D83-9AA2-72871DD0C298}) (Version: 1.03 - Ubisoft)
- Topaz Adjust 5 (HKLM-x32\...\Topaz Adjust 5) (Version: 5.1.0 - Topaz Labs, LLC)
- Topaz B&W Effects (HKLM-x32\...\Topaz BW Effects 2) (Version: 2.1.0 - Topaz Labs, LLC)
- Topaz Clarity (HKLM-x32\...\Topaz Clarity) (Version: 1.0.0 - Topaz Labs, LLC)
- Topaz Clean 3 (HKLM-x32\...\Topaz Clean 3) (Version: 3.1.0 - Topaz Labs, LLC)
- Topaz DeJpeg 4 (HKLM-x32\...\Topaz DeJpeg 4) (Version: 4.0.2 - Topaz Labs, LLC)
- Topaz DeNoise 5 (HKLM-x32\...\Topaz DeNoise 5) (Version: 5.1.0 - Topaz Labs, LLC)
- Topaz Detail 3 (HKLM-x32\...\Topaz Detail 3) (Version: 3.2.0 - Topaz Labs, LLC)
- Topaz Fusion Express 2 (HKLM-x32\...\Topaz Fusion Express 2) (Version: 2.1.3 - Topaz Labs, LLC)
- Topaz InFocus (HKLM-x32\...\Topaz InFocus) (Version: 1.0.0 - Topaz Labs, LLC)
- Topaz Lens Effects (HKLM-x32\...\Topaz Lens Effects) (Version: 1.2.0 - Topaz Labs, LLC)
- Topaz ReMask 5 (HKLM-x32\...\Topaz ReMask 5) (Version: 5.0.0 - Topaz Labs, LLC)
- Topaz ReStyle (HKLM-x32\...\Topaz ReStyle) (Version: 1.0.0 - Topaz Labs, LLC)
- Topaz Simplify 4 (HKLM-x32\...\Topaz Simplify 4) (Version: 4.1.1 - Topaz Labs, LLC)
- Topaz Star Effects (HKLM-x32\...\Topaz Star Effects) (Version: 1.1.0 - Topaz Labs, LLC)
- Uplay (HKLM-x32\...\Uplay) (Version: 3.0 - Ubisoft)
- WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
- ==================== Custom CLSID (Whitelisted): ==========================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- CustomCLSID: HKU\S-1-5-21-460443204-1062480050-2524767075-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Miloš\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileCoAuth.exe (Microsoft Corporation)
- ==================== Scheduled Tasks (Whitelisted) =============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- Task: {3B46E0B4-FBB5-4F85-8233-A419470384FC} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-miloscleve@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-05-26] (Adobe Systems Incorporated)
- Task: {3D839AFA-A135-4496-9F34-E7A239A31DB9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-03] (Google Inc.)
- Task: {3FB6C298-F8AA-4FE8-B477-6D0E60589B8A} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-02-26] (Advanced Micro Devices, Inc.)
- Task: {408F1F6B-51F1-4463-B859-AA6A6C050DF0} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
- Task: {4A98C7BE-6ED5-4CBA-B222-DB5F48AAD85E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-05-03] (AVAST Software)
- Task: {4E18F4D3-1A74-466B-A0D4-D654AC59F736} - System32\Tasks\InstallShield® Update Service Scheduler => C:\Program Files (x86)\Common Files\InstallShield\updateservice\ISUSPM.exe [2016-04-20] (InstallShield®)
- Task: {5E12C906-031E-4699-9A1D-10DBD41141CB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-03] (Google Inc.)
- Task: {616E5391-BAA7-4350-9BFE-76CE97FFCC63} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
- Task: {B32AA088-42B2-47C8-B8AD-6CFE85035FAC} - System32\Tasks\Microsoft Office 15 Sync Maintenance for TEHNODROM-2-0-Miloš Tehnodrom-2-0 => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation)
- Task: {CBF183CE-3999-4F28-ABD8-3A66CA563E75} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-10-19] (Piriform Ltd)
- Task: {E36FA4A4-0B11-4A82-A2DD-50E4ABA96D45} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
- Task: {E9DF6388-A043-4EBB-82BC-59E113039743} - System32\Tasks\Microsoft Office 15 Sync Maintenance for TEHNODROM-Miloš Tehnodrom => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation)
- (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
- Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
- Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
- Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
- ==================== Shortcuts =============================
- (The entries could be listed to be restored or removed.)
- ==================== Loaded Modules (Whitelisted) ==============
- 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
- 2016-05-05 10:51 - 2015-11-16 17:18 - 00020240 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\TeamViewer_PrintProcessor.dll
- 2016-05-02 11:52 - 2016-05-02 11:52 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
- 2016-05-02 11:52 - 2016-05-02 11:52 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
- 2016-05-03 00:55 - 2016-05-03 00:55 - 00959176 _____ () C:\Users\Miloš\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64\ClientTelemetry.dll
- 2012-10-01 20:36 - 2012-10-01 20:36 - 06522480 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
- 2016-02-13 15:06 - 2016-02-13 15:06 - 00044032 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.10.22012.0_x86__8wekyb3d8bbwe\SkypeHost.exe
- 2016-02-13 14:54 - 2016-02-13 14:54 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
- 2016-05-02 11:52 - 2016-05-02 11:52 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
- 2016-05-02 11:52 - 2016-05-02 11:52 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
- 2016-05-02 11:52 - 2016-05-02 11:52 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
- 2016-05-02 11:52 - 2016-05-02 11:52 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
- 2016-05-02 11:52 - 2016-05-02 11:52 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
- 2015-06-25 16:34 - 2015-06-25 16:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
- 2015-06-25 16:37 - 2015-06-25 16:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
- 2015-06-25 16:35 - 2015-06-25 16:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
- 2015-06-25 16:38 - 2015-06-25 16:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
- 2015-06-25 15:53 - 2015-06-25 15:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
- 2015-06-25 15:51 - 2015-06-25 15:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
- 2015-08-26 09:44 - 2015-09-24 13:19 - 00020288 _____ () C:\Program Files\CCleaner\branding.dll
- 2016-02-13 15:07 - 2016-02-13 15:07 - 00173056 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.3.9211.0_x64__8wekyb3d8bbwe\CellNativeClientUniversal.dll
- 2016-02-13 15:07 - 2016-02-13 15:07 - 04485808 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.3.9211.0_x64__8wekyb3d8bbwe\Microsoft.Advertising.dll
- 2016-02-13 15:07 - 2016-02-13 15:07 - 07502848 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.3.9211.0_x64__8wekyb3d8bbwe\Microsoft.Xbox.Services.dll
- 2016-02-13 15:07 - 2016-02-13 15:07 - 01384960 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.3.9211.0_x64__8wekyb3d8bbwe\cpprest140_uwp_2_6.dll
- 2016-05-03 09:45 - 2016-05-03 09:45 - 00123344 _____ () C:\Program Files\AVAST Software\Avast\log.dll
- 2016-05-03 09:45 - 2016-05-03 09:45 - 00135816 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
- 2016-05-12 19:56 - 2016-05-12 19:56 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\16051201\algo.dll
- 2016-05-03 09:45 - 2016-05-03 09:45 - 00479680 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
- 2012-10-01 20:37 - 2012-10-01 20:37 - 06522480 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
- 2016-02-13 15:06 - 2016-02-13 15:06 - 00151040 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.10.22012.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
- 2016-02-13 15:06 - 2016-02-13 15:06 - 18818048 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.10.22012.0_x86__8wekyb3d8bbwe\SkyWrap.dll
- 2016-05-13 01:03 - 2016-05-11 13:48 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libglesv2.dll
- 2016-05-13 01:03 - 2016-05-11 13:48 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libegl.dll
- 2016-05-03 02:29 - 2016-05-03 02:29 - 00475136 _____ () C:\Program Files (x86)\AIMP3\Sqlite3.dll
- 2016-05-03 02:29 - 2016-05-03 02:29 - 00220672 _____ () C:\Program Files (x86)\AIMP3\Modules\MACDll.dll
- 2016-05-03 02:29 - 2016-05-03 02:29 - 00155648 _____ () C:\Program Files (x86)\AIMP3\Modules\libFLAC.dll
- 2016-05-03 02:29 - 2016-05-03 02:29 - 01733120 _____ () C:\Program Files (x86)\AIMP3\Modules\aimp_libvorbis.dll
- 2016-05-03 02:29 - 2016-05-03 02:29 - 00058824 _____ () C:\Program Files (x86)\AIMP3\Plugins\aimp_lastfm.dll
- 2016-05-03 02:29 - 2016-05-03 02:29 - 00026624 _____ () C:\Program Files (x86)\AIMP3\Plugins\Aorta.svp
- 2016-05-03 02:29 - 2016-05-03 02:29 - 00237568 _____ () C:\Program Files (x86)\AIMP3\Plugins\OptimFROG.dll
- 2016-05-03 02:29 - 2016-05-03 02:29 - 00131016 _____ () C:\Program Files (x86)\AIMP3\Plugins\PandemicAnalogMeter.dll
- 2016-05-03 09:45 - 2016-05-03 09:45 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
- 2016-05-13 01:03 - 2016-05-11 13:48 - 17565848 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\PepperFlash\pepflashplayer.dll
- ==================== Alternate Data Streams (Whitelisted) =========
- (If an entry is included in the fixlist, only the ADS will be removed.)
- ==================== Safe Mode (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
- ==================== Association (Whitelisted) ===============
- (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
- ==================== Internet Explorer trusted/restricted ===============
- (If an entry is included in the fixlist, it will be removed from the registry.)
- IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
- IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
- IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
- IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
- IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
- IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
- IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
- IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
- IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
- IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
- IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
- IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
- IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
- IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
- IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
- IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
- IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
- IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
- IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
- IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com
- There are 7901 more sites.
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\007guard.com -> install.007guard.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\008i.com -> 008i.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\008k.com -> www.008k.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\00hq.com -> www.00hq.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\010402.com -> 010402.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\0scan.com -> www.0scan.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\1-2005-search.com -> www.1-2005-search.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\1000gratisproben.com -> www.1000gratisproben.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\1001namen.com -> www.1001namen.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\100888290cs.com -> mir.100888290cs.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\100sexlinks.com -> www.100sexlinks.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\10sek.com -> www.10sek.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\12-26.net -> user1.12-26.net
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\12-27.net -> user1.12-27.net
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\123fporn.info -> www.123fporn.info
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\123moviedownload.com -> www.123moviedownload.com
- IE restricted site: HKU\S-1-5-21-460443204-1062480050-2524767075-1001\...\123simsen.com -> www.123simsen.com
- There are 7901 more sites.
- ==================== Hosts content: ==========================
- (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
- 2016-05-03 03:03 - 2016-05-15 14:15 - 00452801 ____R C:\WINDOWS\system32\Drivers\etc\hosts
- 127.0.0.1 license.piriform.com
- 127.0.0.1 keystone.mwbsys.com
- 127.0.0.1 sirius.mwbsys.com
- 127.0.0.1 bactem.mwbsys.com127.0.0.1 www.007guard.com
- 127.0.0.1 007guard.com
- 127.0.0.1 008i.com
- 127.0.0.1 www.008k.com
- 127.0.0.1 008k.com
- 127.0.0.1 www.00hq.com
- 127.0.0.1 00hq.com
- 127.0.0.1 010402.com
- 127.0.0.1 www.032439.com
- 127.0.0.1 032439.com
- 127.0.0.1 www.0scan.com
- 127.0.0.1 0scan.com
- 127.0.0.1 1000gratisproben.com
- 127.0.0.1 www.1000gratisproben.com
- 127.0.0.1 1001namen.com
- 127.0.0.1 www.1001namen.com
- 127.0.0.1 100888290cs.com
- 127.0.0.1 www.100888290cs.com
- 127.0.0.1 www.100sexlinks.com
- 127.0.0.1 100sexlinks.com
- 127.0.0.1 10sek.com
- 127.0.0.1 www.10sek.com
- 127.0.0.1 www.1-2005-search.com
- 127.0.0.1 1-2005-search.com
- 127.0.0.1 123fporn.info
- 127.0.0.1 www.123fporn.info
- 127.0.0.1 www.123haustiereundmehr.com
- There are 15536 more lines.
- ==================== Other Areas ============================
- (Currently there is no automatic fix for this section.)
- HKU\S-1-5-21-460443204-1062480050-2524767075-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Miloš\Pictures\9512jWc.jpg
- DNS Servers: 8.8.8.8 - 8.8.4.4
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
- Windows Firewall is enabled.
- ==================== MSCONFIG/TASK MANAGER disabled items ==
- (Currently there is no automatic fix for this section.)
- HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
- HKLM\...\StartupApproved\Run: => "DigidesignMMERefresh"
- HKLM\...\StartupApproved\Run32: => "ProductUpdater"
- ==================== FirewallRules (Whitelisted) ===============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
- FirewallRules: [{1D525C71-1A29-4468-A4DD-70FF5B7AC641}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
- FirewallRules: [{E69F8759-4538-4265-A5FC-F661E54F524F}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
- FirewallRules: [{68255B10-571E-43FD-B346-09CE419E3F83}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
- FirewallRules: [{4BA8DA26-20DC-4B0A-8D7D-BF5F15FCAA56}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
- FirewallRules: [{EEB5E67D-B481-4532-917E-DD825ED02798}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
- FirewallRules: [{6B795587-C0D2-466C-A5D2-D50425B66D10}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
- FirewallRules: [{99C695C7-9390-4CAA-8547-63D7CB704D00}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
- FirewallRules: [{A3366FB2-C882-4526-8B03-7E4B119B12FB}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
- FirewallRules: [{73613B98-BEF5-459E-A2CA-B58EC2ED3184}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
- FirewallRules: [{1A13057C-462B-4ACE-92F4-B13943DA8FB9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
- FirewallRules: [{2106986F-DDD0-49EB-A4CC-C3DE51598070}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- FirewallRules: [{017F5383-6A57-43C4-A860-6E411C5FD9C9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- FirewallRules: [{2349E3E9-EF2E-4970-AEFB-7286A5FCD8AF}] => (Allow) %systemroot%\system32\alg.exe
- FirewallRules: [{4B44BAF7-0360-4281-BD31-9A3EF1643DD4}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
- FirewallRules: [{F8E7AAE4-BA06-4C0C-A5AF-4C9153DF4F23}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
- FirewallRules: [{47775BBF-00C2-42BD-ABBC-32A75BF18821}] => (Allow) C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell® Blacklist™\Blacklist_Launcher.exe
- FirewallRules: [{734D79DA-5259-4CEB-962C-FCE58FF103FB}] => (Allow) C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell® Blacklist™\Blacklist_Launcher.exe
- FirewallRules: [{2D230582-A2CD-4A85-B1A5-DF7211824F66}] => (Allow) C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\Blacklist_game.exe
- FirewallRules: [{2DE1C5B3-A24D-499D-8E2E-0CB8CDC39A66}] => (Allow) C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\Blacklist_game.exe
- FirewallRules: [{F0EB9B5A-3F8D-43A9-890A-584282046744}] => (Allow) C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\Blacklist_DX11_game.exe
- FirewallRules: [{ACCE256E-47C4-46DC-B5D0-38E955383F8C}] => (Allow) C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\Blacklist_DX11_game.exe
- FirewallRules: [{9285CA3E-8412-487D-9545-27CEED693C5C}] => (Allow) C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\gu.exe
- FirewallRules: [{B853D03A-32DA-4141-A7CA-59574FE23B62}] => (Allow) C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell® Blacklist™\src\SYSTEM\gu.exe
- FirewallRules: [{4C2F04EA-2CD0-4529-8601-545D7064A5FC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- ==================== Restore Points =========================
- ATTENTION: System Restore is disabled
- ==================== Faulty Device Manager Devices =============
- ==================== Event log errors: =========================
- Application errors:
- ==================
- Error: (05/15/2016 01:46:59 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: TEHNODROM)
- Description: Activation of app Microsoft.Getstarted_2.3.7.0_x64__8wekyb3d8bbwe:App.AppX7mv0s3r0wanj0n66dy6vax24ps6avzvz.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.
- Error: (05/15/2016 01:40:25 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: TEHNODROM)
- Description: Activation of app Microsoft.Getstarted_2.3.7.0_x64__8wekyb3d8bbwe:App.AppX7mv0s3r0wanj0n66dy6vax24ps6avzvz.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.
- Error: (05/15/2016 01:04:41 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: TEHNODROM)
- Description: Activation of app Microsoft.Getstarted_2.3.7.0_x64__8wekyb3d8bbwe:App.AppX7mv0s3r0wanj0n66dy6vax24ps6avzvz.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.
- Error: (05/13/2016 06:48:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
- Description: The program Guitar Rig 5.exe version 5.2.0.2770 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
- Process ID: 16cc
- Start Time: 01d1ad36e9ec1836
- Termination Time: 7
- Application Path: C:\Program Files\Native Instruments\Guitar Rig 5\Guitar Rig 5.exe
- Report Id: 768762df-192a-11e6-b40c-50b7c363a72d
- Faulting package full name:
- Faulting package-relative application ID:
- Error: (05/12/2016 09:21:10 PM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Faulting application name: Solitaire.exe, version: 1.0.0.0, time stamp: 0x5600487e
- Faulting module name: twinapi.appcore.dll, version: 10.0.10586.0, time stamp: 0x5632d2f5
- Exception code: 0xc000027b
- Fault offset: 0x000000000004b199
- Faulting process id: 0x160
- Faulting application start time: 0xSolitaire.exe0
- Faulting application path: Solitaire.exe1
- Faulting module path: Solitaire.exe2
- Report Id: Solitaire.exe3
- Faulting package full name: Solitaire.exe4
- Faulting package-relative application ID: Solitaire.exe5
- Error: (05/12/2016 08:56:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
- Description: The program mbam.exe version 2.3.173.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
- Process ID: 1c68
- Start Time: 01d1ac7a79338ff7
- Termination Time: 6
- Application Path: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
- Report Id: 4557f5cd-1873-11e6-b40a-50b7c363a72d
- Faulting package full name:
- Faulting package-relative application ID:
- Error: (05/11/2016 09:38:12 PM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Faulting application name: NetworkUXBroker.exe, version: 10.0.10586.0, time stamp: 0x5632d7f4
- Faulting module name: ntdll.dll, version: 10.0.10586.122, time stamp: 0x56cbf9dd
- Exception code: 0xc0000409
- Fault offset: 0x00000000000953f7
- Faulting process id: 0x202c
- Faulting application start time: 0xNetworkUXBroker.exe0
- Faulting application path: NetworkUXBroker.exe1
- Faulting module path: NetworkUXBroker.exe2
- Report Id: NetworkUXBroker.exe3
- Faulting package full name: NetworkUXBroker.exe4
- Faulting package-relative application ID: NetworkUXBroker.exe5
- Error: (05/11/2016 09:20:26 PM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Faulting application name: snetcfg.exe, version: 5.2.3790.0, time stamp: 0x4cdfc704
- Faulting module name: msvcrt.dll, version: 7.0.10586.0, time stamp: 0x5632d79e
- Exception code: 0xc0000005
- Fault offset: 0x00000000000558bb
- Faulting process id: 0x1d44
- Faulting application start time: 0xsnetcfg.exe0
- Faulting application path: snetcfg.exe1
- Faulting module path: snetcfg.exe2
- Report Id: snetcfg.exe3
- Faulting package full name: snetcfg.exe4
- Faulting package-relative application ID: snetcfg.exe5
- Error: (05/11/2016 05:41:14 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: TEHNODROM)
- Description: Activation of app Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App failed with error: -2147023170 See the Microsoft-Windows-TWinUI/Operational log for additional information.
- Error: (05/11/2016 05:41:03 PM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Faulting application name: ShellExperienceHost.exe, version: 10.0.10586.218, time stamp: 0x56ff3cf7
- Faulting module name: Windows.UI.Xaml.dll, version: 10.0.10586.212, time stamp: 0x56fa191c
- Exception code: 0xc000027b
- Fault offset: 0x00000000006fd4eb
- Faulting process id: 0x12b0
- Faulting application start time: 0xShellExperienceHost.exe0
- Faulting application path: ShellExperienceHost.exe1
- Faulting module path: ShellExperienceHost.exe2
- Report Id: ShellExperienceHost.exe3
- Faulting package full name: ShellExperienceHost.exe4
- Faulting package-relative application ID: ShellExperienceHost.exe5
- System errors:
- =============
- Error: (05/15/2016 07:11:34 PM) (Source: BTHUSB) (EventID: 5) (User: )
- Description: The Bluetooth driver expected an HCI event with a certain size but did not receive it.
- Error: (05/15/2016 07:10:54 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: The User Data Access_4ad65 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
- Error: (05/15/2016 07:10:54 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: The User Data Storage_4ad65 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
- Error: (05/15/2016 07:10:54 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: The Contact Data_4ad65 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
- Error: (05/15/2016 07:10:54 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: The Sync Host_4ad65 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
- Error: (05/15/2016 07:10:53 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
- Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
- Error: (05/15/2016 02:01:06 PM) (Source: DCOM) (EventID: 10016) (User: TEHNODROM)
- Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}TEHNODROMMilošS-1-5-21-460443204-1062480050-2524767075-1001LocalHost (Using LRPC)Microsoft.Windows.FeatureOnDemand.InsiderHub_10.0.10586.0_neutral_neutral_cw5n1h2txyewyS-1-15-2-4016783169-893401051-2237370320-274899566-412088533-2398988950-2155762795
- Error: (05/15/2016 01:58:45 PM) (Source: BTHUSB) (EventID: 5) (User: )
- Description: The Bluetooth driver expected an HCI event with a certain size but did not receive it.
- Error: (05/15/2016 01:58:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: The User Data Access_4d16b service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
- Error: (05/15/2016 01:58:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: The User Data Storage_4d16b service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
- CodeIntegrity:
- ===================================
- Date: 2016-05-11 21:00:40.417
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
- Date: 2016-05-10 08:40:14.777
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
- Date: 2016-05-06 01:31:54.225
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
- Date: 2016-05-05 22:32:36.525
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
- Date: 2016-05-03 01:59:33.983
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Store signing level requirements.
- Date: 2016-05-03 01:55:26.254
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
- Date: 2016-05-03 01:54:29.096
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
- Date: 2016-05-03 01:12:20.501
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Store signing level requirements.
- Date: 2016-05-03 01:02:31.974
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Store signing level requirements.
- Date: 2016-05-03 00:54:51.873
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
- ==================== Memory info ===========================
- Processor: Intel(R) Core(TM) i3-3110M CPU @ 2.40GHz
- Percentage of memory in use: 50%
- Total physical RAM: 6035.97 MB
- Available physical RAM: 2976.91 MB
- Total Virtual: 7123.97 MB
- Available Virtual: 3437.29 MB
- ==================== Drives ================================
- Drive c: () (Fixed) (Total:110.43 GB) (Free:31.62 GB) NTFS
- Drive s: (Stash) (Fixed) (Total:465.76 GB) (Free:62.68 GB) NTFS
- Drive z: (Floydie Undead) (Fixed) (Total:931.51 GB) (Free:479.59 GB) NTFS
- ==================== MBR & Partition Table ==================
- ========================================================
- Disk: 0 (Size: 111.8 GB) (Disk ID: 03342B37)
- Partition: GPT.
- ========================================================
- Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 2D5FD10B)
- Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
- ========================================================
- Disk: 2 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: A33B6C03)
- Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)
- ==================== End of Addition.txt ============================
Add Comment
Please, Sign In to add comment