Advertisement
Guest User

Untitled

a guest
Feb 26th, 2017
22
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 36.97 KB | None | 0 0
  1. Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-02-2017
  2. Ran by User (26-02-2017 04:42:40)
  3. Running from C:\Users\User\Downloads
  4. Windows 10 Pro Version 1607 (X64) (2017-01-24 03:29:58)
  5. Boot Mode: Normal
  6. ==========================================================
  7.  
  8.  
  9. ==================== Accounts: =============================
  10.  
  11. Administrator (S-1-5-21-3622761961-3877210546-77143536-500 - Administrator - Disabled)
  12. DefaultAccount (S-1-5-21-3622761961-3877210546-77143536-503 - Limited - Disabled)
  13. defaultuser0 (S-1-5-21-3622761961-3877210546-77143536-1000 - Limited - Disabled) => C:\Users\defaultuser0
  14. Guest (S-1-5-21-3622761961-3877210546-77143536-501 - Limited - Disabled)
  15. User (S-1-5-21-3622761961-3877210546-77143536-1001 - Administrator - Enabled) => C:\Users\User
  16.  
  17. ==================== Security Center ========================
  18.  
  19. (If an entry is included in the fixlist, it will be removed.)
  20.  
  21. AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  22. AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  23.  
  24. ==================== Installed Programs ======================
  25.  
  26. (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
  27.  
  28. Alcor Micro USB Card Reader Driver (HKLM-x32\...\InstallShield_{5013D154-A876-4AE4-B4A6-43C3B39BF174}) (Version: 20.8.20117.44411 - Alcor Micro Corp.)
  29. Alcor Micro USB Card Reader Driver (x32 Version: 20.8.20117.44411 - Alcor Micro Corp.) Hidden
  30. ASUS FlipLock (HKLM\...\{7C7F8DAC-8ADA-4B86-BCB6-48B6FFB673DD}) (Version: 1.0.14 - ASUS)
  31. ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.4.3 - ASUS)
  32. ASUS PTP Driver (HKLM-x32\...\{7618E419-9124-4E6C-9AF4-487A6DDEC1C5}) (Version: 11.0.9 - ASUS)
  33. ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 3.15.0003 - ASUS)
  34. ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 4.1.6 - ASUS)
  35. ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0043 - ASUS)
  36. AudioWizard (HKLM-x32\...\{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}) (Version: 1.0.0.158 - ICEpower a/s)
  37. AutoHotkey 1.1.24.05 (HKLM\...\AutoHotkey) (Version: 1.1.24.05 - Lexikos)
  38. Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
  39. Cheat Engine 6.6 (HKLM-x32\...\Cheat Engine 6.6_is1) (Version: - Cheat Engine)
  40. Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse)
  41. Device Setup (HKLM-x32\...\{8D6B05E0-F457-408C-9D13-549334D8FAE1}) (Version: 2.0.3 - ASUSTek Computer Inc.)
  42. Foxit PhantomPDF (HKLM-x32\...\{39263796-F296-43AF-909C-FCF99592BAC4}) (Version: 7.2.52.1209 - Foxit Software Inc.)
  43. Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.)
  44. Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
  45. Intel(R) Chipset Device Software (x32 Version: 10.1.1.13 - Intel(R) Corporation) Hidden
  46. Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10605.221 - Intel Corporation)
  47. Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1177 - Intel Corporation)
  48. Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4550 - Intel Corporation)
  49. Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation)
  50. Intel(R) WiDi (HKLM\...\{6B15F1EF-F3A8-4C29-BF9E-18EB3683A83D}) (Version: 6.0.60.0 - Intel Corporation)
  51. Intel(R) WiDi Software Asset Manager (x32 Version: 3.2.1184 - Intel Corporation) Hidden
  52. Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{4DA9DC19-4E1D-4B10-A726-A5F2A1BC7265}) (Version: 18.1.1546.2762 - Intel Corporation)
  53. Intel® Integrated Sensor Solution (HKLM-x32\...\{8885abd0-dd54-44d4-ba64-512ea1d48374}) (Version: 3.0.16.3058 - Intel Corporation)
  54. Intel® PROSet/Wireless Software (HKLM-x32\...\{105782a0-36c3-4808-8d8e-d12cb0b7e4e7}) (Version: 18.40.1 - Intel Corporation)
  55. Intel® Security Assist (HKLM-x32\...\{3D45BD48-F215-4C69-B23F-256C83D1D7F0}) (Version: 1.0.0.534 - Intel Corporation)
  56. IrfanView 4.44 (64-bit) (HKLM\...\IrfanView64) (Version: 4.44 - Irfan Skiljan)
  57. ISS_Drivers_x64 (Version: 3.0.16.3058 - Intel Corporation) Hidden
  58. League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
  59. League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden
  60. Malwarebytes version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
  61. Microsoft Build Tools 2015 (HKLM-x32\...\{d21da0dd-4ba4-4838-ba58-64cf7a77131a}) (Version: 14.0.23107.10 - Microsoft Corporation)
  62. Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProPlusRetail - en-us) (Version: 16.0.4266.1003 - Microsoft Corporation)
  63. Microsoft OneDrive (HKU\S-1-5-21-3622761961-3877210546-77143536-1001\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
  64. Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
  65. Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
  66. Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
  67. Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
  68. Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
  69. Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
  70. Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
  71. Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40649 (HKLM-x32\...\{5d0723d3-cff7-4e07-8d0b-ada737deb5e6}) (Version: 12.0.40649.5 - Microsoft Corporation)
  72. Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
  73. Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
  74. Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
  75. Mozilla Firefox 51.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 51.0.1 (x86 en-US)) (Version: 51.0.1 - Mozilla)
  76. NVIDIA GeForce Experience 2.11.4.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.1 - NVIDIA Corporation)
  77. NVIDIA Graphics Driver 359.46 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.46 - NVIDIA Corporation)
  78. NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
  79. Office 16 Click-to-Run Licensing Component (Version: 16.0.4266.1003 - Microsoft Corporation) Hidden
  80. OldSchool RuneScape Launcher 1.2.7 (HKLM-x32\...\{FEDDCE73-34B8-4980-90B8-8619A78C902C}) (Version: 1.2.7 - Jagex Ltd)
  81. OpenAL (HKLM-x32\...\OpenAL) (Version: - )
  82. qBittorrent 3.3.10 (HKLM-x32\...\qBittorrent) (Version: 3.3.10 - The qBittorrent project)
  83. Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7786 - Realtek Semiconductor Corp.)
  84. Realtek PC Camera Driver (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 10.0.10240.11168 - Realtek Semiconductor Corp.)
  85. RuneMate (HKLM-x32\...\5153-2584-1271-2038) (Version: 2.4.18.0 - Team RuneMate)
  86. SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
  87. SHIELD Wireless Controller Driver (Version: 2.11.4.1 - NVIDIA Corporation) Hidden
  88. The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.20.60.1020 - Electronic Arts Inc.)
  89. Thunderbolt(TM) Software (HKLM-x32\...\{B0E8A8CA-5A40-49C3-BE5E-9076664DB9AA}) (Version: 15.3.39.250 - Intel Corporation)
  90. VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
  91. Windows Driver Package - ASUS (AsusPTPDrv) HIDClass (03/18/2016 11.0.0.9) (HKLM\...\689E9F7827C3AF1059D6C80D6C7F4EF89E2D7E72) (Version: 03/18/2016 11.0.0.9 - ASUS)
  92. WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 3.1.0 - ASUS)
  93. WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
  94. WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
  95. World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
  96. WPS Office for ASUS (HKLM-x32\...\Kingsoft Office) (Version: 10.2.0.5811 - Kingsoft Corp.)
  97. XCOM 2 (HKLM-x32\...\XCOM 2_is1) (Version: - )
  98.  
  99. ==================== Custom CLSID (Whitelisted): ==========================
  100.  
  101. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  102.  
  103.  
  104. ==================== Scheduled Tasks (Whitelisted) =============
  105.  
  106. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  107.  
  108. Task: {01D4F082-6880-417D-B830-6B8D9269E0D2} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
  109. Task: {06AF7740-AFA5-4567-A49E-11197356CC13} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
  110. Task: {0AA3A1AF-E590-44AD-98CA-6C6F7644A190} - \IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon -> No File <==== ATTENTION
  111. Task: {1CEF9DB3-9187-4407-BA68-819211C8B5F1} - System32\Tasks\WpsExternal_User_20170223082319 => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe [2017-02-23] (Zhuhai Kingsoft Office Software Co.,Ltd)
  112. Task: {2E53EFC8-DC17-4BCB-9157-47ADC9F902BA} - \Intel\Intel Telemetry 2 -> No File <==== ATTENTION
  113. Task: {3E84BA9A-A24E-4CEF-9E9E-7D256ED37285} - \Intel\Thunderbolt\Start Thunderbolt service when hardware is detected -> No File <==== ATTENTION
  114. Task: {4A137899-AE5B-4ADC-B12E-BAC5BF023282} - \ATK Package 36D18D69AFC3 -> No File <==== ATTENTION
  115. Task: {5213B378-161D-4EB8-90CF-3141608A70BD} - \ASUS\ASUS Product Register Service -> No File <==== ATTENTION
  116. Task: {5747AA99-33E2-448C-BE9D-71FA9C046013} - \Intel\Thunderbolt\Start Thunderbolt application on login if service is up -> No File <==== ATTENTION
  117. Task: {58141A1B-2617-4207-85C8-D15FD610451E} - \ASUS Splendid ACMON -> No File <==== ATTENTION
  118. Task: {678AF07D-0E53-4183-A841-CE229B6CEA6C} - \ASUS USB Charger Plus -> No File <==== ATTENTION
  119. Task: {69340C2E-F9E8-481F-A7F2-4C1CC6CE4B03} - \Intel\Thunderbolt\Start Thunderbolt application when hardware is detected -> No File <==== ATTENTION
  120. Task: {772CDF6F-066C-4D30-8F73-DA7E11D209F9} - System32\Tasks\CCleanerClean => C:\Program Files\CCleaner\CCleaner.exe
  121. Task: {798093BB-506F-4299-ABA5-BA5A97195635} - \IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec -> No File <==== ATTENTION
  122. Task: {79EE51A9-622C-433E-838E-E54D12CBE5F3} - \ATK Package A22126881260 -> No File <==== ATTENTION
  123. Task: {84B9B004-494C-4D0F-A6E7-9429673394CE} - \CheckFlipService -> No File <==== ATTENTION
  124. Task: {851F7210-5DA8-470F-8352-3F84D6D6F168} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
  125. Task: {92485410-C212-4FF3-8160-7F99EA4E3CF1} - \Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up -> No File <==== ATTENTION
  126. Task: {C7C8433E-61C0-4014-AFCE-C338DB4E1EDE} - System32\Tasks\WpsKtpcntrQingTask_User => C:\Program Files (x86)\Kingsoft\WPS Office\10.2.0.5811\office6\ktpcntr.exe [2017-02-23] (Zhuhai Kingsoft Office Software Co.,Ltd)
  127. Task: {C93599AB-987D-47A0-90F4-3287FFFF8A96} - System32\Tasks\WpsUpdateTask_User => C:\Program Files (x86)\Kingsoft\WPS Office\10.2.0.5811\wtoolex\wpsupdate.exe [2017-02-23] (Zhuhai Kingsoft Office Software Co.,Ltd)
  128. Task: {D6AA541C-6109-4D81-B847-43D272B00706} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-03-31] (Realtek Semiconductor)
  129. Task: {DFF473E1-EEA7-4150-8B7F-670399E09A63} - \WRU -> No File <==== ATTENTION
  130. Task: {E5407058-D165-4C4C-B2AD-E99E582109BF} - \ASUS Patch for Touch Panel -> No File <==== ATTENTION
  131. Task: {E6918F9A-896A-4DD5-9643-D9219748041D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe
  132. Task: {EBAC62D5-5305-42C4-84B1-F603BC7ACF85} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
  133. Task: {EF3E7B77-4E68-473E-967B-FE54F9E35135} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-24] (Google Inc.)
  134. Task: {EFF03C6E-C9CA-48F7-BFCE-1A366FF47326} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-24] (Google Inc.)
  135. Task: {F0C225BF-5D5B-4E4E-913D-219354D581A5} - \WRUStartup -> No File <==== ATTENTION
  136. Task: {FB56F31F-978C-4054-AEBF-EFCC13E6B45E} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2016-03-31] (Realtek Semiconductor)
  137.  
  138. (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
  139.  
  140. Task: C:\WINDOWS\Tasks\CCleanerClean.job => C:\Program Files\CCleaner\CCleaner.exe
  141. Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
  142. Task: C:\WINDOWS\Tasks\Online Application Updater.job => C:\Program Files (x86)\Microleaves\Online.io Application\Online Application Updater.exe <==== ATTENTION
  143. Task: C:\WINDOWS\Tasks\Online Application v2 Guard.job => C:\Program Files (x86)\Microleaves\Online.io Application\OnlineGuardian-v2.exe <==== ATTENTION
  144. Task: C:\WINDOWS\Tasks\Online Application v2 Guardian.job => C:\Program Files (x86)\Microleaves\Online.io Application\OnlineGuardian-v2.exe <==== ATTENTION
  145. Task: C:\WINDOWS\Tasks\Online Application v2.job => C:\Program Files (x86)\Microleaves\Online.io Application\OnlineGuardian-v2.exe <==== ATTENTION
  146. Task: C:\WINDOWS\Tasks\Online Application v209 Guard.job => C:\Program Files (x86)\Microleaves\Online.io Application\Online-Guardian-v2.0.9.exe <==== ATTENTION
  147. Task: C:\WINDOWS\Tasks\Online Application v209 Guardian.job => C:\Program Files (x86)\Microleaves\Online.io Application\Online-Guardian-v2.0.9.exe <==== ATTENTION
  148. Task: C:\WINDOWS\Tasks\Online Application v209.job => C:\Program Files (x86)\Microleaves\Online.io Application\Online-Guardian-v2.0.9.exe <==== ATTENTION
  149. Task: C:\WINDOWS\Tasks\WpsExternal_User_20170223082319.job => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe ~/wpscloudlaunch /run_plugin /plugin_name=ktaskschdtool /plugin_entry=ktaskschdtool.dll
  150. Task: C:\WINDOWS\Tasks\WpsKtpcntrQingTask_User.job => C:\Program Files (x86)\Kingsoft\WPS Office\10.2.0.5811\office6\ktpcntr.exe Ãqing 10.2.0.5811 xxx server_url=hxxp:/kdl1.cache.wps.com/ksodl/wpscfg/client/____client____html____service____bubble.html ic_server_url=hxxp:/info.kingsoftstore.com/wpsv6internet/infos.ads
  151. Task: C:\WINDOWS\Tasks\WpsUpdateTask_User.job => C:\Program Files (x86)\Kingsoft\WPS Office\10.2.0.5811\wtoolex\wpsupdate.exe
  152.  
  153. ==================== Shortcuts =============================
  154.  
  155. (The entries could be listed to be restored or removed.)
  156.  
  157. ==================== Loaded Modules (Whitelisted) ==============
  158.  
  159. 2016-07-16 06:42 - 2016-07-16 06:42 - 00231424 ____N () C:\WINDOWS\SYSTEM32\ism32k.dll
  160. 2016-12-15 16:06 - 2016-12-09 05:29 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
  161. 2017-01-24 01:05 - 2016-08-01 07:54 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
  162. 2017-02-22 15:30 - 2015-08-16 00:21 - 00162880 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
  163. 2016-05-03 14:20 - 2016-06-14 20:14 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
  164. 2016-05-03 14:20 - 2016-06-14 20:14 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
  165. 2017-02-04 13:34 - 2016-06-14 20:14 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
  166. 2016-05-03 14:20 - 2016-06-14 20:14 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
  167. 2017-02-04 13:34 - 2016-06-14 20:14 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
  168. 2017-02-04 13:34 - 2016-06-14 20:14 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
  169. 2017-02-04 13:34 - 2016-06-14 20:14 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
  170. 2016-05-03 14:20 - 2016-06-14 20:14 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
  171. 2015-11-18 14:46 - 2015-11-18 14:46 - 00016312 _____ () C:\Program Files\ASUS\ASUS FlipLock\FlipControlPTP.exe
  172. 2015-11-18 14:46 - 2015-11-18 14:46 - 00028088 _____ () C:\Program Files\ASUS\ASUS FlipLock\FlipController.exe
  173. 2015-11-18 14:46 - 2015-11-18 14:46 - 00018872 _____ () C:\Program Files\ASUS\ASUS FlipLock\WifiPowerManager.exe
  174. 2016-12-15 16:06 - 2016-12-09 05:29 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
  175. 2016-09-26 06:50 - 2016-09-26 06:50 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
  176. 2017-01-11 10:46 - 2016-12-21 02:09 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
  177. 2017-02-04 13:34 - 2016-06-14 20:14 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
  178. 2017-02-04 13:34 - 2016-06-14 20:14 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
  179. 2017-01-11 10:46 - 2016-12-21 01:54 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
  180. 2017-01-11 10:46 - 2016-12-21 01:48 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
  181. 2017-01-11 10:46 - 2016-12-21 01:48 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
  182. 2017-01-11 10:46 - 2016-12-21 01:48 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
  183. 2017-01-11 10:46 - 2016-12-21 01:53 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
  184. 2015-11-18 14:46 - 2015-11-18 14:46 - 00009216 _____ () C:\Program Files\ASUS\ASUS FlipLock\WMIProc.dll
  185. 2016-02-23 20:56 - 2016-02-23 20:56 - 00027648 _____ () C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll
  186. 2016-02-23 20:56 - 2016-02-23 20:56 - 00124928 _____ () C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll
  187. 2016-02-23 20:56 - 2016-02-23 20:56 - 00029184 _____ () C:\Program Files (x86)\ASUS\Splendid\VideoEnhance.dll
  188. 2016-05-03 14:20 - 2016-06-14 20:14 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
  189. 2016-01-07 03:48 - 2016-01-07 03:48 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
  190.  
  191. ==================== Alternate Data Streams (Whitelisted) =========
  192.  
  193. (If an entry is included in the fixlist, only the ADS will be removed.)
  194.  
  195.  
  196. ==================== Safe Mode (Whitelisted) ===================
  197.  
  198. (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
  199.  
  200. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
  201. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
  202.  
  203. ==================== Association (Whitelisted) ===============
  204.  
  205. (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
  206.  
  207.  
  208. ==================== Internet Explorer trusted/restricted ===============
  209.  
  210. (If an entry is included in the fixlist, it will be removed from the registry.)
  211.  
  212.  
  213. ==================== Hosts content: ===============================
  214.  
  215. (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
  216.  
  217. 2015-10-30 02:24 - 2015-10-30 02:21 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
  218.  
  219.  
  220. ==================== Other Areas ============================
  221.  
  222. (Currently there is no automatic fix for this section.)
  223.  
  224. HKU\S-1-5-21-3622761961-3877210546-77143536-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
  225. DNS Servers: 192.168.1.1
  226. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
  227. Windows Firewall is enabled.
  228.  
  229. ==================== MSCONFIG/TASK MANAGER disabled items ==
  230.  
  231. HKLM\...\StartupApproved\Run32: => "NvBackend"
  232.  
  233. ==================== FirewallRules (Whitelisted) ===============
  234.  
  235. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  236.  
  237. FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
  238. FirewallRules: [{7DC41F00-7690-4715-AD66-1F918CCD1250}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe
  239. FirewallRules: [{80A2E6AC-C8AB-44EB-B7CA-8A25C485E20D}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
  240. FirewallRules: [{21D5B3FE-66D7-4F73-A557-DF35FDCB71CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
  241. FirewallRules: [{69B15738-D700-4457-A824-31368F41DAEC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
  242. FirewallRules: [{51363FE6-9138-4EE2-9564-45AD0285A405}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
  243. FirewallRules: [{2D33512A-EC46-4CAE-B353-AB1E97555A05}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
  244. FirewallRules: [{E97775E2-CCE2-4504-8DF6-5CFB27142A34}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
  245. FirewallRules: [{156B6581-0C90-442A-A36F-2E7ED4D66497}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
  246. FirewallRules: [{BC447721-D0E5-4C7A-9755-E9D7ED47B293}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
  247. FirewallRules: [{4EE46D79-7343-4081-A4CD-173C055DB0A1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  248. FirewallRules: [{86912C0F-F995-4A48-983D-222C56814BD4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  249. FirewallRules: [{2A112EFD-1A49-4D36-AB37-1930966E7EDE}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  250. FirewallRules: [{5BE35B95-9E95-4AE1-A1F3-527C1F361746}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe
  251. FirewallRules: [{5BB9BBA7-A7AC-4399-BE52-96DBDD57654F}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe
  252. FirewallRules: [TCP Query User{8E647595-9CC7-42D0-A264-F535CF73689D}C:\users\user\jagexcache\jagexlauncher\bin\jagexlauncher.exe] => (Allow) C:\users\user\jagexcache\jagexlauncher\bin\jagexlauncher.exe
  253. FirewallRules: [UDP Query User{0E3DB4CE-B1F9-456C-AE3E-35644D9D4A67}C:\users\user\jagexcache\jagexlauncher\bin\jagexlauncher.exe] => (Allow) C:\users\user\jagexcache\jagexlauncher\bin\jagexlauncher.exe
  254. FirewallRules: [TCP Query User{7D2BBBC3-A00B-4961-A3F2-318D62E2C820}C:\program files (x86)\xcom 2\binaries\win64\xcom2.exe] => (Allow) C:\program files (x86)\xcom 2\binaries\win64\xcom2.exe
  255. FirewallRules: [UDP Query User{C4B37BBB-1F2D-483A-9023-2FC1C88672D9}C:\program files (x86)\xcom 2\binaries\win64\xcom2.exe] => (Allow) C:\program files (x86)\xcom 2\binaries\win64\xcom2.exe
  256.  
  257. ==================== Restore Points =========================
  258.  
  259. 12-02-2017 15:16:56 Removed Microsoft Office
  260. 18-02-2017 23:58:22 Windows Update
  261. 20-02-2017 20:50:36 Installed Microsoft XNA Framework Redistributable 4.0
  262.  
  263. ==================== Faulty Device Manager Devices =============
  264.  
  265.  
  266. ==================== Event log errors: =========================
  267.  
  268. Application errors:
  269. ==================
  270. Error: (02/26/2017 04:02:47 AM) (Source: Application Error) (EventID: 1000) (User: )
  271. Description: Faulting application name: svchost.exe_FrameServer, version: 10.0.14393.0, time stamp: 0x57899b1c
  272. Faulting module name: RsProvider.dll, version: 1.21.0.0, time stamp: 0x564ef37f
  273. Exception code: 0xc0000005
  274. Fault offset: 0x0000000000099022
  275. Faulting process id: 0x4e0
  276. Faulting application start time: 0x01d2900f1965aca1
  277. Faulting application path: C:\WINDOWS\System32\svchost.exe
  278. Faulting module path: C:\Program Files\Realtek\RsProviders\RsProvider.dll
  279. Report Id: 42a914bb-c11c-4071-8eb9-17e4325ff1c8
  280. Faulting package full name:
  281. Faulting package-relative application ID:
  282.  
  283. Error: (02/26/2017 03:59:18 AM) (Source: Application Error) (EventID: 1000) (User: )
  284. Description: Faulting application name: svchost.exe_FrameServer, version: 10.0.14393.0, time stamp: 0x57899b1c
  285. Faulting module name: RsProvider.dll, version: 1.21.0.0, time stamp: 0x564ef37f
  286. Exception code: 0xc0000005
  287. Fault offset: 0x0000000000099022
  288. Faulting process id: 0x4f4
  289. Faulting application start time: 0x01d2900e9ca99c8e
  290. Faulting application path: C:\WINDOWS\System32\svchost.exe
  291. Faulting module path: C:\Program Files\Realtek\RsProviders\RsProvider.dll
  292. Report Id: 97fd0303-538b-456a-91b5-7a68b40bbe49
  293. Faulting package full name:
  294. Faulting package-relative application ID:
  295.  
  296. Error: (02/26/2017 03:58:31 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-5K0EP6D)
  297. Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  298.  
  299. Error: (02/26/2017 03:53:56 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: )
  300. Description: Activation of app Microsoft.Windows.Photos_8wekyb3d8bbwe!App failed with error: -2147023564 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  301.  
  302. Error: (02/26/2017 03:52:25 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: )
  303. Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2147023564 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  304.  
  305. Error: (02/26/2017 03:52:23 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: )
  306. Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2147023564 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  307.  
  308. Error: (02/26/2017 03:52:22 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: )
  309. Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2147023564 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  310.  
  311. Error: (02/26/2017 03:52:22 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: )
  312. Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2147023564 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  313.  
  314. Error: (02/26/2017 03:52:19 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: )
  315. Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2147023564 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  316.  
  317. Error: (02/26/2017 03:52:15 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: )
  318. Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2147023564 See the Microsoft-Windows-TWinUI/Operational log for additional information.
  319.  
  320.  
  321. System errors:
  322. =============
  323. Error: (02/26/2017 04:04:50 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
  324. Description: The Connected Devices Platform Service service terminated with the following error:
  325. Unspecified error
  326.  
  327. Error: (02/26/2017 04:03:16 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
  328. Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  329. {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
  330. and APPID
  331. {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
  332. to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  333.  
  334. Error: (02/26/2017 04:03:16 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
  335. Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  336. {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
  337. and APPID
  338. {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
  339. to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  340.  
  341. Error: (02/26/2017 04:03:16 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
  342. Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  343. {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
  344. and APPID
  345. {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
  346. to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  347.  
  348. Error: (02/26/2017 04:03:16 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
  349. Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  350. {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
  351. and APPID
  352. {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
  353. to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  354.  
  355. Error: (02/26/2017 04:03:16 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
  356. Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  357. {8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
  358. and APPID
  359. {F72671A9-012C-4725-9D2F-2A4D32D65169}
  360. to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  361.  
  362. Error: (02/26/2017 04:02:49 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
  363. Description: The Windows Camera Frame Server service terminated unexpectedly. It has done this 1 time(s).
  364.  
  365. Error: (02/26/2017 04:02:04 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
  366. Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  367. {D63B10C5-BB46-4990-A94F-E40B9D520160}
  368. and APPID
  369. {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
  370. to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  371.  
  372. Error: (02/26/2017 04:00:39 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
  373. Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  374. {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
  375. and APPID
  376. {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
  377. to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  378.  
  379. Error: (02/26/2017 04:00:39 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
  380. Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
  381. {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
  382. and APPID
  383. {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
  384. to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
  385.  
  386.  
  387. CodeIntegrity:
  388. ===================================
  389. Date: 2017-02-25 16:57:21.307
  390. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  391.  
  392. Date: 2017-02-23 11:44:41.915
  393. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  394.  
  395. Date: 2017-02-21 16:09:26.615
  396. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  397.  
  398. Date: 2017-02-17 13:45:52.267
  399. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  400.  
  401. Date: 2017-02-15 13:15:56.964
  402. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  403.  
  404. Date: 2017-02-14 17:08:38.569
  405. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  406.  
  407. Date: 2017-02-13 13:51:22.444
  408. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  409.  
  410. Date: 2017-02-10 17:54:15.244
  411. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  412.  
  413. Date: 2017-02-08 17:34:17.416
  414. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  415.  
  416. Date: 2017-02-05 16:52:21.279
  417. Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
  418.  
  419.  
  420. ==================== Memory info ===========================
  421.  
  422. Processor: Intel(R) Core(TM) i7-6500U CPU @ 2.50GHz
  423. Percentage of memory in use: 21%
  424. Total physical RAM: 12151.94 MB
  425. Available physical RAM: 9583.22 MB
  426. Total Virtual: 14007.94 MB
  427. Available Virtual: 11517.76 MB
  428.  
  429. ==================== Drives ================================
  430.  
  431. Drive c: (OS) (Fixed) (Total:1764.6 GB) (Free:1614.81 GB) NTFS ==>[system with boot components (obtained from drive)]
  432.  
  433. ==================== MBR & Partition Table ==================
  434.  
  435. ========================================================
  436. Disk: 0 (Size: 1863 GB) (Disk ID: 2A1B0D37)
  437.  
  438. Partition: GPT.
  439.  
  440. ==================== End of Addition.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement