darndorn

ADDITION

Jun 4th, 2017
71
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 49.29 KB | None | 0 0
  1. Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-06-2017
  2. Ran by Jacob (04-06-2017 18:12:24)
  3. Running from C:\Users\Jacob\Desktop
  4. Windows 10 Home Version 1607 (X64) (2017-04-25 21:16:29)
  5. Boot Mode: Normal
  6. ==========================================================
  7.  
  8.  
  9. ==================== Accounts: =============================
  10.  
  11. Administrator (S-1-5-21-4273250774-4085323268-67671200-500 - Administrator - Disabled)
  12. DefaultAccount (S-1-5-21-4273250774-4085323268-67671200-503 - Limited - Disabled)
  13. defaultuser0 (S-1-5-21-4273250774-4085323268-67671200-1000 - Limited - Disabled) => C:\Users\defaultuser0
  14. Guest (S-1-5-21-4273250774-4085323268-67671200-501 - Limited - Disabled)
  15. Jacob (S-1-5-21-4273250774-4085323268-67671200-1001 - Administrator - Enabled) => C:\Users\Jacob
  16.  
  17. ==================== Security Center ========================
  18.  
  19. (If an entry is included in the fixlist, it will be removed.)
  20.  
  21. AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  22. AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  23.  
  24. ==================== Installed Programs ======================
  25.  
  26. (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
  27.  
  28. .NET Core SDK 1.0.3 (x64) (HKLM-x32\...\{e7cceb0a-317e-4e02-a41f-207fbf9bf632}) (Version: 1.0.3 - Microsoft Corporation)
  29. .NET Core SDK 1.0.3 (x64) (Version: 4.0.54117 - Microsoft Corporation) Hidden
  30. .NET Core SDK 1.0.4 (x64) (HKLM-x32\...\{c56e80af-58a4-490b-a1cd-5718290133b9}) (Version: 1.0.4 - Microsoft Corporation)
  31. .NET Core SDK 1.0.4 (x64) (Version: 4.1.5012 - Microsoft Corporation) Hidden
  32. .NET Reflector Desktop (HKLM-x32\...\{34795E6B-338D-4A6D-8BCE-906AD056AF4F}) (Version: 9.0.1.374 - Red Gate Software Ltd)
  33. µTorrent (HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\uTorrent) (Version: 3.5.0.43580 - BitTorrent Inc.)
  34. 3DMark (HKLM-x32\...\{39f8dcb1-5f2e-4057-980e-f463756a0465}) (Version: 2.3.3693.0 - Futuremark)
  35. 3DMark (Version: 2.3.3693.0 - Futuremark) Hidden
  36. Active Directory Authentication Library for SQL Server (Version: 13.0.1601.5 - Microsoft Corporation) Hidden
  37. Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.0.1.188 - Adobe Systems Incorporated)
  38. Adobe Flash Player 25 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated)
  39. Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_1_1) (Version: 18.1.1 - Adobe Systems Incorporated)
  40. Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
  41. Ansel (Version: 382.33 - NVIDIA Corporation) Hidden
  42. Application Verifier x64 External Package (Version: 10.1.15063.137 - Microsoft) Hidden
  43. Application Verifier x64 External Package (Version: 8.100.26936 - Microsoft) Hidden
  44. Audacity 2.1.3 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.3 - Audacity Team)
  45. BitPay version 3.1.3 (HKLM-x32\...\2d1002d7-ee34-4f60-bd29-0c871ba0c195_is1) (Version: 3.1.3 - BitPay)
  46. Blizzard App (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
  47. Call of Duty: Black Ops III (HKLM\...\Steam App 311210) (Version: - Treyarch)
  48. CCleaner (HKLM\...\CCleaner) (Version: 5.30 - Piriform)
  49. Cheat Engine 6.6 (HKLM-x32\...\Cheat Engine 6.6_is1) (Version: - Cheat Engine)
  50. ClickOnce Bootstrapper Package for Microsoft .NET Framework (x32 Version: 4.6.01590 - Microsoft Corporation) Hidden
  51. Cocos Creator (HKLM-x32\...\Cocos Creator 1.2.2.0) (Version: 1.2.2.0 - Chukong Technologies)
  52. Cocos Creator (x32 Version: 1.2.2.0 - Chukong Technologies) Hidden
  53. CodeBlocks (HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\CodeBlocks) (Version: 16.01 - The Code::Blocks Team)
  54. Corsair Utility Engine (HKLM-x32\...\{AD19976A-08A1-4E11-862D-256178BF9864}) (Version: 2.13.80 - Corsair)
  55. Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
  56. CPUID CPU-Z 1.79 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
  57. Dev-C++ 5 beta 9 release (4.9.9.2) (HKLM-x32\...\Dev-C++) (Version: - )
  58. DiagnosticsHub_CollectionService (Version: 15.0.26208 - Microsoft Corporation) Hidden
  59. Discord (HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
  60. Dotfuscator Professional Edition Evaluation 4.28.2 (HKLM-x32\...\{AC229FFB-2706-4145-8667-F0199E7F1F6B}) (Version: 4.28.2.5018 - PreEmptive Solutions)
  61. Eazfuscator.NET (HKLM-x32\...\{D3729F4D-1C36-4D2E-9202-BE7E7E99F3C0}) (Version: 5.6.156 - Gapotchenko)
  62. Entity Framework 6.1.3 Tools for Visual Studio 15 (x32 Version: 6.1.60104.0 - Microsoft Corporation) Hidden
  63. Epic Games Launcher (HKLM-x32\...\{F190B233-EFDB-4E5B-93B4-71048DF906DC}) (Version: 1.1.91.0 - Epic Games, Inc.)
  64. Everything 1.3.4.686 (x64) (HKLM\...\Everything) (Version: - )
  65. Futuremark SystemInfo (HKLM-x32\...\{6583B359-134F-480D-9B31-9B94EFFAFE40}) (Version: 5.0.609.0 - Futuremark)
  66. Git version 2.10.2 (HKLM\...\Git_is1) (Version: 2.10.2 - The Git Development Community)
  67. Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.)
  68. Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
  69. Grand Theft Auto V (HKLM\...\Steam App 271590) (Version: - Rockstar North)
  70. Gtk# for .Net 2.12.26 (HKLM-x32\...\{BC25B808-A11C-4C9F-9C0A-6682E47AAB83}) (Version: 2.12.26 - Xamarin, Inc.)
  71. Gyazo 3.3.1 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.)
  72. HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.18.284 - SurfRight B.V.)
  73. icecap_collection_neutral (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  74. icecap_collection_x64 (Version: 15.0.26208 - Microsoft Corporation) Hidden
  75. icecap_collectionresources (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  76. icecap_collectionresourcesx64 (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  77. IDA Pro v6.8 and Hex-Rays Decompiler (ARM,x64,x86) (HKLM-x32\...\IDA Pro_6.8_is1) (Version: - Hex-Rays SA)
  78. IIS 10.0 Express (HKLM\...\{0148E8AA-4A50-4673-B532-DB9F30F804BE}) (Version: 10.0.1737 - Microsoft Corporation)
  79. IIS Express Application Compatibility Database for x64 (Version: - ) Hidden
  80. IIS Express Application Compatibility Database for x86 (Version: - ) Hidden
  81. Intellisense Lang Pack Mobile Extension SDK 10.0.15063.0 (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  82. IntelliTraceProfilerProxy (x32 Version: 15.0.24.0 - Microsoft Corporation) Hidden
  83. Java SE Development Kit 8 Update 131 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180131}) (Version: 8.0.1310.11 - Oracle Corporation)
  84. Java SE Development Kit 8 Update 131 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0180131}) (Version: 8.0.1310.11 - Oracle Corporation)
  85. JetBrains dotPeek 2017.1.2 (HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\{1c9cfaa8-8d5f-58dc-81f3-41370a70ee73}) (Version: 2017.1.2 - JetBrains s.r.o.)
  86. Kits Configuration Installer (x32 Version: 10.1.15063.137 - Microsoft) Hidden
  87. Kits Configuration Installer (x32 Version: 8.100.25984 - Microsoft) Hidden
  88. Malwarebytes version 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes)
  89. Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
  90. Microsoft Azure Authoring Tools - v2.9.5.3 (HKLM\...\{086C537B-DE1A-4A11-8441-6AAF076174B8}) (Version: 2.9.8699.20 - Microsoft Corporation)
  91. Microsoft Azure Compute Emulator - v2.9.5.3 (HKLM\...\Microsoft Azure Compute Emulator - v2.9.5.3) (Version: 2.9.8699.20 - Microsoft Corporation)
  92. Microsoft Azure Libraries for .NET – v2.9 (HKLM\...\{C5C91AA6-3E83-430E-8B7A-6B790083F28D}) (Version: 3.0.0127.060 - Microsoft Corporation)
  93. Microsoft Azure Mobile App SDK V2.0 (HKLM-x32\...\{829D812B-3F25-4E8B-B1DF-1AD09164684C}) (Version: 2.0.50130.0 - Microsoft Corporation)
  94. Microsoft Azure PowerShell - September 2016 (HKLM-x32\...\{CB3F8A12-1570-4964-8206-17274AB9EF4D}) (Version: 2.1.0 - Microsoft Corporation)
  95. Microsoft Azure Storage Emulator - v5.1 (HKLM-x32\...\Microsoft Azure Storage Emulator - v5.1) (Version: 5.1.1760.1722 - Microsoft Corporation)
  96. Microsoft Azure Storage Tools - v5.2.0 (HKLM-x32\...\{89B7B8B5-CC31-4C78-8E83-1E5B9506C322}) (Version: 5.2.0.0 - Microsoft Corporation)
  97. Microsoft Help Viewer 2.3 (HKLM-x32\...\Microsoft Help Viewer 2.3) (Version: 2.3.26412 - Microsoft Corporation)
  98. Microsoft Identity Extensions (HKLM\...\{F99F24BF-0B90-463E-9658-3FD2EFC3C992}) (Version: 2.0.1459.0 - Microsoft Corporation)
  99. Microsoft SQL Server 2012 Native Client (HKLM\...\{1385D3DB-8E80-427B-91D2-B7535862B8E4}) (Version: 11.3.6518.0 - Microsoft Corporation)
  100. Microsoft SQL Server 2016 LocalDB (HKLM\...\{E359515A-92E6-4FA3-A2C9-E1BA02D8DE6E}) (Version: 13.0.1601.5 - Microsoft Corporation)
  101. Microsoft System CLR Types for SQL Server 2016 (HKLM\...\{96EB5054-C775-4BEF-B7B9-AA96A295EDCD}) (Version: 13.0.1601.5 - Microsoft Corporation)
  102. Microsoft System CLR Types for SQL Server 2016 (HKLM-x32\...\{84C23ECA-FE4D-494F-9247-3EBAD57E7F0C}) (Version: 13.0.1601.5 - Microsoft Corporation)
  103. Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
  104. Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
  105. Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
  106. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
  107. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
  108. Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
  109. Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
  110. Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
  111. Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
  112. Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
  113. Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
  114. Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
  115. Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
  116. Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
  117. Microsoft Visual Studio 2017 (HKLM-x32\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.10.30640.0 - Microsoft Corporation)
  118. Microsoft Web Deploy 3.6 (HKLM\...\{5CB4DD27-6252-4C08-BFCF-22F6A110CBFA}) (Version: 10.0.1972 - Microsoft Corporation)
  119. MSI Afterburner 4.3.0 (HKLM-x32\...\Afterburner) (Version: 4.3.0 - MSI Co., LTD)
  120. MSI Development Tools (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  121. Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.4.1 - Notepad++ Team)
  122. NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
  123. NVIDIA 3D Vision Driver 382.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.33 - NVIDIA Corporation)
  124. NVIDIA GeForce Experience 3.6.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.6.0.74 - NVIDIA Corporation)
  125. NVIDIA Graphics Driver 382.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.33 - NVIDIA Corporation)
  126. NVIDIA HD Audio Driver 1.3.34.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.26 - NVIDIA Corporation)
  127. NVIDIA PhysX System Software 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation)
  128. NvNodejs (Version: 3.6.0.74 - NVIDIA Corporation) Hidden
  129. NvTelemetry (Version: 2.4.10.0 - NVIDIA Corporation) Hidden
  130. NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
  131. OBS Studio (HKLM-x32\...\OBS Studio) (Version: 18.0.1 - OBS Project)
  132. Open XML SDK 2.5 for Microsoft Office (x32 Version: 2.5.5631 - Microsoft Corporation) Hidden
  133. Oracle VM VirtualBox 5.1.22 (HKLM\...\{8D5E4D4D-5E0C-4448-B018-5DDEF1E208D9}) (Version: 5.1.22 - Oracle Corporation)
  134. Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
  135. paint.net (HKLM\...\{1F895C18-6A2F-4A9E-BBE9-246783070F37}) (Version: 4.0.16 - dotPDN LLC)
  136. Process Hacker 2.39 (r124) (HKLM\...\Process_Hacker2_is1) (Version: 2.39.0.124 - wj32)
  137. Progress® Telerik® JustDecompile R2 2017 (HKLM-x32\...\{DF3E910E-0F12-438A-933B-0C1B4DF3E3A0}) (Version: 17.2.502.0 - Telerik AD)
  138. Python 2.7.6 (HKLM-x32\...\{C3CC4DF5-39A5-4027-B136-2B3E1F5AB6E2}) (Version: 2.7.6150 - Python Software Foundation)
  139. Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 2.1.5 - Razer Inc.)
  140. Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.17.413 - Razer Inc.)
  141. Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7625 - Realtek Semiconductor Corp.)
  142. RivaTuner Statistics Server 6.5.0 (HKLM-x32\...\RTSS) (Version: 6.5.0 - Unwinder)
  143. ROBLOX Player for Jacob (HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - ROBLOX Corporation)
  144. Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.4 - Rockstar Games)
  145. RogueKiller version 12.10.9.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12.10.9.0 - Adlice Software)
  146. Sandboxie 5.18 (64-bit) (HKLM\...\Sandboxie) (Version: 5.18 - Sandboxie Holdings, LLC)
  147. SDK Debuggers (x32 Version: 8.100.26936 - Microsoft Corporation) Hidden
  148. SHIELD Streaming (Version: 7.1.0370 - NVIDIA Corporation) Hidden
  149. SHIELD Wireless Controller Driver (Version: 3.6.0.74 - NVIDIA Corporation) Hidden
  150. Skype™ 7.36 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.36.101 - Skype Technologies S.A.)
  151. SmartAssembly 6 (HKLM\...\{6F7D9687-0CB7-4CDD-9768-C4CB2DD21F1D}) (Version: 6.11.1.365 - Red Gate Software Ltd)
  152. SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
  153. Spotify (HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\Spotify) (Version: 1.0.55.487.g256699aa - Spotify AB)
  154. sptools_Microsoft.VisualStudio.OfficeDeveloperTools.Msi (x32 Version: 15.0.26309 - Microsoft Corporation) Hidden
  155. sptools_Microsoft.VisualStudio.Vsto.Msi (x32 Version: 15.0.26309 - Microsoft Corporation) Hidden
  156. sptools_Microsoft.VisualStudio.Vsto.Msi.Resources (x32 Version: 15.0.26309 - Microsoft Corporation) Hidden
  157. sptools_Microsoft.VisualStudio.Vsto.Msi.x64 (x32 Version: 15.0.26309 - Microsoft Corporation) Hidden
  158. Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
  159. Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.14.1 - Synaptics Incorporated)
  160. TypeScript Power Tool (x32 Version: 2.1.7.0 - Microsoft Corporation) Hidden
  161. TypeScript Power Tool (x32 Version: 2.2.3.0 - Microsoft Corporation) Hidden
  162. Unity (HKLM-x32\...\Unity) (Version: 5.4.0f3 - Unity Technologies ApS)
  163. Universal CRT Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
  164. Universal CRT Extension SDK (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  165. Universal CRT Headers Libraries and Sources (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
  166. Universal CRT Headers Libraries and Sources (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  167. Universal CRT Redistributable (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  168. Universal CRT Tools x64 (Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  169. Universal CRT Tools x86 (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  170. Universal General MIDI DLS Extension SDK (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  171. Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
  172. vcpp_crt.redist.clickonce (x32 Version: 14.10.25008 - Microsoft Corporation) Hidden
  173. Vegas Pro 13.0 (64-bit) (HKLM-x32\...\Vegas Pro 13.0 (64-bit)) (Version: 13.0 (64-bit) - Exµs ™)
  174. VeraCrypt (HKLM-x32\...\VeraCrypt) (Version: 1.19 - IDRIX)
  175. VMProtect Demo v 3.1 (HKLM\...\VMProtect Demo_is1) (Version: 3.1 - VMProtect Software)
  176. VS Immersive Activate Helper (x32 Version: 16.0.59.0 - Microsoft Corporation) Hidden
  177. VS JIT Debugger (Version: 16.0.59.0 - Microsoft Corporation) Hidden
  178. VS Script Debugging Common (Version: 16.0.59.0 - Microsoft Corporation) Hidden
  179. VS WCF Debugging (Version: 16.0.59.0 - Microsoft Corporation) Hidden
  180. vs_BlendMsi (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  181. vs_clickoncebootstrappermsi (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  182. vs_clickoncebootstrappermsires (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  183. vs_clickoncesigntoolmsi (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  184. vs_communitymsi (x32 Version: 15.0.26323 - Microsoft Corporation) Hidden
  185. vs_communitymsires (x32 Version: 15.0.26228 - Microsoft Corporation) Hidden
  186. vs_devenvmsi (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  187. vs_filehandler_amd64 (x32 Version: 15.0.26228 - Microsoft Corporation) Hidden
  188. vs_filehandler_x86 (x32 Version: 15.0.26228 - Microsoft Corporation) Hidden
  189. vs_FileTracker_Singleton (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  190. vs_Graphics_Singletonx64 (Version: 15.0.26208 - Microsoft Corporation) Hidden
  191. vs_Graphics_Singletonx86 (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  192. vs_helpconfigmsi (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  193. vs_minshellinteropmsi (x32 Version: 15.0.26301 - Microsoft Corporation) Hidden
  194. vs_minshellmsi (x32 Version: 15.0.26424 - Microsoft Corporation) Hidden
  195. vs_minshellmsires (x32 Version: 15.0.26228 - Microsoft Corporation) Hidden
  196. vs_SQLClickOnceBootstrappermsi (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  197. vs_tipsmsi (x32 Version: 15.0.26208 - Microsoft Corporation) Hidden
  198. Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
  199. Wallpaper Engine (HKLM\...\Steam App 431960) (Version: - Kristjan Skutta)
  200. WinAppDeploy (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  201. Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
  202. Windows SDK AddOn (HKLM-x32\...\{30DCCFB4-068F-4C5C-BC10-5ECDCAEE55D4}) (Version: 10.1.0.0 - Microsoft Corporation)
  203. Windows Software Development Kit - Windows 10.0.15063.137 (HKLM-x32\...\{a07b4a01-ca27-4e28-9353-f325a308f128}) (Version: 10.1.15063.137 - Microsoft Corporation)
  204. Windows Software Development Kit for Windows 8.1 (HKLM-x32\...\{ed3a6e6d-9661-4357-abe4-fcc03dc57a07}) (Version: 8.100.26936 - Microsoft Corporation)
  205. WinRAR 5.50 beta 1 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.1 - win.rar GmbH)
  206. WinRT Intellisense Desktop - en-us (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  207. WinRT Intellisense Desktop - Other Languages (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  208. WinRT Intellisense IoT - en-us (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  209. WinRT Intellisense IoT - Other Languages (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  210. WinRT Intellisense PPI - en-us (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  211. WinRT Intellisense PPI - Other Languages (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  212. WinRT Intellisense UAP - en-us (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  213. WinRT Intellisense UAP - Other Languages (x32 Version: 10.1.15063.137 - Microsoft Corporation) Hidden
  214. Workflow Manager Client 1.0 (Version: 2.1.10217.1 - Microsoft Corporation) Hidden
  215. Workflow Manager Tools 1.0 for Visual Studio (Version: 2.1.10202.0 - Microsoft Corporation) Hidden
  216. WPT Redistributables (x32 Version: 8.100.26936 - Microsoft) Hidden
  217. WPTx64 (x32 Version: 8.100.26936 - Microsoft) Hidden
  218. Xamarin PCL Profiles v1.0.9 (x32 Version: 1.0.9.0 - Xamarin) Hidden
  219. Xamarin Workbooks and Inspector (x32 Version: 1.2.2.9000 - Xamarin) Hidden
  220. Xamarin.Bonjour v1.0.13 (x32 Version: 1.0.13.0 - Xamarin) Hidden
  221. Xoreax IncrediBuild 8.1 (build 1874) (HKLM-x32\...\XoreaxIncrediBuild) (Version: - )
  222.  
  223. ==================== Custom CLSID (Whitelisted): ==========================
  224.  
  225. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  226.  
  227. CustomCLSID: HKU\S-1-5-21-4273250774-4085323268-67671200-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-FC211E1A9F7A}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
  228. CustomCLSID: HKU\S-1-5-21-4273250774-4085323268-67671200-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
  229.  
  230. ==================== Scheduled Tasks (Whitelisted) =============
  231.  
  232. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  233.  
  234. Task: {02185B1A-2724-4F19-AECA-58A068A7945A} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-05-03] (NVIDIA Corporation)
  235. Task: {12E7B02E-9137-4C07-BC15-B15F0EED5017} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation)
  236. Task: {1D1C0B23-BCCE-4457-93B0-5F2CB630C219} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-03-28] ()
  237. Task: {29FB4176-0B0E-43E2-8E0C-A9C6A3A93B93} - \ASC10_SkipUac_Jacob -> No File <==== ATTENTION
  238. Task: {2C3C3839-7C25-4D5B-BA76-9E9670DD7137} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-03-28] ()
  239. Task: {2ECB5B84-5F41-4EA1-B49E-0EFF891380D3} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation)
  240. Task: {356386DC-69C3-4533-9360-C73402DFC70B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-25] (Google Inc.)
  241. Task: {3F313924-2C52-4E4C-BC68-8D7CF74309A4} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2016-10-24] ()
  242. Task: {4FC995A5-1066-47D7-8BB0-DAD9D685103D} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 15.0.26403.7 => C:\Program Files (x86)\Microsoft Visual Studio\2017\Community\Common7\IDE\VSIXAutoUpdate.exe [2017-05-31] (Microsoft Corporation)
  243. Task: {532FF40E-0F56-4ED3-962D-93BA9A2D41CD} - \ASC10_PerformanceMonitor -> No File <==== ATTENTION
  244. Task: {732F23C4-7164-4D9B-8DA6-C0D87D158B93} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-05-05] (Piriform Ltd)
  245. Task: {8A2356FB-4BCF-4AAF-A81D-8BD9A49AFE74} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation)
  246. Task: {927F3E1D-8568-4D35-B48D-72E00B6FF7E0} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03] (NVIDIA Corporation)
  247. Task: {94E6CE16-878A-409F-8E87-388F0B786CB8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation)
  248. Task: {9C5CB708-806E-4110-82A4-7C5E1E4764EF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-25] (Google Inc.)
  249. Task: {A95232F0-D50B-4807-A8C7-A1754037FA64} - System32\Tasks\{2C9BB709-2EBB-4D14-B4EF-30692AD0ACA0} => pcalua.exe -a C:\Users\Jacob\AppData\Local\Roblox\Versions\version-3ba7f62bc80141e0\RobloxPlayerLauncher.exe -c -uninstall
  250. Task: {CD0BCB91-7354-4B6A-AB56-EEB87A38D3FC} - System32\Tasks\{2D75AD0E-7E0C-4359-A40C-5884AE59C90B} => pcalua.exe -a C:\Users\Jacob\AppData\Local\Roblox\Versions\version-b6923b4ee6414bd0\RobloxPlayerLauncher.exe -c -uninstall
  251. Task: {EBF1C37D-66DB-4593-B1B9-2226E3DA205A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-05-03] (NVIDIA Corporation)
  252. Task: {F0ACD14F-53AC-4AA4-88D7-98BC5631628F} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_25_0_0_171_pepper.exe [2017-06-04] (Adobe Systems Incorporated)
  253. Task: {FA8D00A6-7889-4109-8993-5D5B897B4F1F} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-05-03] (NVIDIA Corporation)
  254.  
  255. (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
  256.  
  257. Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
  258.  
  259. ==================== Shortcuts =============================
  260.  
  261. (The entries could be listed to be restored or removed.)
  262.  
  263. ==================== Loaded Modules (Whitelisted) ==============
  264.  
  265. 2016-07-16 07:42 - 2016-07-16 07:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
  266. 2017-05-09 19:12 - 2017-04-27 20:49 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
  267. 2017-05-01 02:01 - 2014-08-05 21:04 - 01441792 _____ () C:\Program Files\Everything\Everything.exe
  268. 2016-10-25 09:57 - 2016-10-25 09:57 - 00491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
  269. 2017-04-05 16:15 - 2017-03-04 02:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
  270. 2017-04-05 16:15 - 2017-03-04 02:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
  271. 2017-04-05 16:15 - 2017-03-04 02:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
  272. 2017-05-09 19:12 - 2017-04-27 19:36 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
  273. 2017-05-09 19:12 - 2017-04-27 19:36 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
  274. 2017-05-09 19:12 - 2017-04-27 19:37 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
  275. 2016-11-20 14:11 - 2016-11-20 14:11 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
  276. 2017-04-05 16:15 - 2017-03-04 02:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
  277. 2017-04-25 17:24 - 2017-05-03 16:21 - 01267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
  278. 2017-05-17 15:39 - 2017-05-15 12:31 - 26320968 _____ () C:\Program Files\RogueKiller\RogueKiller64.exe
  279. 2017-05-15 19:48 - 2017-05-09 05:13 - 03767640 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libglesv2.dll
  280. 2017-05-15 19:48 - 2017-05-09 05:13 - 00100696 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libegl.dll
  281. 2016-06-29 14:01 - 2016-06-29 14:01 - 08166536 _____ () C:\Program Files (x86)\SpeedFan\speedfan.exe
  282. 2016-10-24 06:03 - 2016-10-24 06:03 - 00589512 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
  283. 2017-04-25 17:24 - 2017-05-03 16:21 - 01040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
  284. 2017-06-04 18:05 - 2017-06-04 18:05 - 00158720 _____ () C:\Users\Jacob\AppData\Local\Temp\sfareca00001.dll
  285. 2017-06-04 18:05 - 2017-06-04 18:05 - 00192512 _____ () C:\Users\Jacob\AppData\Local\Temp\sfamcc00001.dll
  286. 2016-10-10 12:46 - 2016-10-10 12:46 - 00056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll
  287. 2016-10-10 12:46 - 2016-10-10 12:46 - 00071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
  288. 2016-10-10 12:46 - 2016-10-10 12:46 - 00228864 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll
  289. 2016-10-10 12:46 - 2016-10-10 12:46 - 00357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll
  290. 2016-10-10 12:46 - 2016-10-10 12:46 - 00526848 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
  291.  
  292. ==================== Alternate Data Streams (Whitelisted) =========
  293.  
  294. (If an entry is included in the fixlist, only the ADS will be removed.)
  295.  
  296.  
  297. ==================== Safe Mode (Whitelisted) ===================
  298.  
  299. (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
  300.  
  301. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
  302. HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
  303.  
  304. ==================== Association (Whitelisted) ===============
  305.  
  306. (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
  307.  
  308.  
  309. ==================== Internet Explorer trusted/restricted ===============
  310.  
  311. (If an entry is included in the fixlist, it will be removed from the registry.)
  312.  
  313.  
  314. ==================== Hosts content: ===============================
  315.  
  316. (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
  317.  
  318. 2017-04-25 20:42 - 2017-04-29 14:11 - 00000822 _____ C:\WINDOWS\system32\Drivers\etc\hosts
  319.  
  320.  
  321. ==================== Other Areas ============================
  322.  
  323. (Currently there is no automatic fix for this section.)
  324.  
  325. HKU\S-1-5-21-4273250774-4085323268-67671200-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img3.jpg
  326. DNS Servers: 192.168.1.1
  327. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
  328. Windows Firewall is enabled.
  329.  
  330. ==================== MSCONFIG/TASK MANAGER disabled items ==
  331.  
  332. HKLM\...\StartupApproved\Run: => "SynTPEnh"
  333. HKLM\...\StartupApproved\Run: => "Everything"
  334. HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
  335. HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
  336. HKLM\...\StartupApproved\Run32: => "IncrediBuild Agent Monitor"
  337. HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\StartupApproved\Run: => "CyberGhost"
  338. HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\StartupApproved\Run: => "Skype"
  339. HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\StartupApproved\Run: => "Spotify Web Helper"
  340. HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\StartupApproved\Run: => "GlassWire"
  341. HKU\S-1-5-21-4273250774-4085323268-67671200-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
  342.  
  343. ==================== FirewallRules (Whitelisted) ===============
  344.  
  345. (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
  346.  
  347. FirewallRules: [{39DAB556-63D6-4510-956B-014AC42CD1D5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  348. FirewallRules: [{DCCA1AE4-2D75-4B57-8DDD-135CADED51EF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  349. FirewallRules: [{943EAF6E-ECB9-43CE-8191-821E5DD8666C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
  350. FirewallRules: [{C152A1B8-A475-424B-BA31-CCAEF6CC4A98}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
  351. FirewallRules: [{0A5AC343-49A0-4023-89A1-AD1826A367C3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
  352. FirewallRules: [{4A8E002D-3E95-4790-BDB7-FAB1CCD45CD2}] => (Allow) C:\Program Files (x86)\IDA 6.8\idaq.exe
  353. FirewallRules: [{6BB3CB92-D305-497A-96A5-E9C06E30C53E}] => (Allow) C:\Program Files (x86)\IDA 6.8\idaq.exe
  354. FirewallRules: [{4DFA416E-C6D5-4948-A904-454266BAF3AE}] => (Allow) C:\Program Files (x86)\IDA 6.8\idaq64.exe
  355. FirewallRules: [{D1DFD580-B5F6-4A87-B81B-669E5DBD0ABC}] => (Allow) C:\Program Files (x86)\IDA 6.8\idaq64.exe
  356. FirewallRules: [TCP Query User{44091843-C076-4F42-B097-C39E9554A028}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
  357. FirewallRules: [UDP Query User{14E3DF02-4D32-44F7-A117-86C604080557}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
  358. FirewallRules: [{2A622C66-4685-48FE-9788-8ED80E27EB3B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
  359. FirewallRules: [{225E563B-6228-4CBC-9F5E-8CA50F931745}] => (Allow) C:\Program Files (x86)\GlassWire\GWCtlSrv.exe
  360. FirewallRules: [{8EAA2299-D28E-42A8-BE8B-449100523D1A}] => (Allow) C:\Program Files (x86)\GlassWire\GWCtlSrv.exe
  361. FirewallRules: [TCP Query User{59181AC2-077A-4DBD-AF66-0E8A3549A0A8}C:\users\jacob\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jacob\appdata\roaming\spotify\spotify.exe
  362. FirewallRules: [UDP Query User{54D7319E-A53D-4792-8539-7836F4FDFD55}C:\users\jacob\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jacob\appdata\roaming\spotify\spotify.exe
  363. FirewallRules: [{AC7E5785-C0E8-422A-B6F2-86605E834023}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
  364. FirewallRules: [{40C1BF62-3CC1-4866-97B8-73042F95BA80}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
  365. FirewallRules: [{D6CCD23F-98F8-4D8D-B529-B0D6F16F8BC0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
  366. FirewallRules: [{00C8C391-C8A4-4AF9-B4AB-9C9D8E523A11}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
  367. FirewallRules: [{D4CB814D-B782-4312-AA70-303F660D56AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
  368. FirewallRules: [{C100F9FF-43D6-410E-89EB-7C63AE20D395}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
  369. FirewallRules: [TCP Query User{D092A2CE-6703-408B-B4AE-5876624E4928}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
  370. FirewallRules: [UDP Query User{D3457848-0DDA-44AE-8511-4F10F99C9280}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
  371. FirewallRules: [{170A3655-0007-4789-94A7-527C9B6815DB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe
  372. FirewallRules: [{11181F2C-AD0F-48EB-A2A7-F66E5A25E20D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe
  373. FirewallRules: [TCP Query User{1F041382-99D2-4D56-83DB-5F840EAC146F}C:\users\jacob\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jacob\appdata\roaming\utorrent\utorrent.exe
  374. FirewallRules: [UDP Query User{F8B0CC8F-ADA2-4C12-B24B-BACF5D8EEFDF}C:\users\jacob\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jacob\appdata\roaming\utorrent\utorrent.exe
  375. FirewallRules: [{927CA3E2-9AD3-4C6C-B7A7-14BC8158BB55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
  376. FirewallRules: [{5821777D-50AD-460A-927D-BD5B6A1CF62D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
  377. FirewallRules: [{93751234-83F4-46BE-9E5A-8D4438E4E3D5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  378. FirewallRules: [{F434CFF9-A0A7-4696-A6D5-0FCEA1E803A4}] => (Block) LPort=445
  379. FirewallRules: [{23A71165-19D5-4DE4-BD00-B56775C4D97B}] => (Block) LPort=445
  380. FirewallRules: [{3C476769-0C4F-4B90-ACAE-3FE3389F2E92}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe
  381. FirewallRules: [{E9528D03-CF50-4582-A7BD-7CF0E9B14A51}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe
  382. FirewallRules: [{CB0C1B1A-0149-4B22-9DA6-B7CF098FB931}] => (Allow) C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe
  383. FirewallRules: [{6ABE0CC1-C399-4171-BCD3-DCAA30F56D98}] => (Allow) LPort=31104
  384. FirewallRules: [{52944E11-48C4-4171-9CA1-10F1378AC372}] => (Allow) LPort=31105
  385. FirewallRules: [{5D2C6F03-B377-4EA7-BB27-100AABE91B26}] => (Allow) LPort=31106
  386. FirewallRules: [{98ADEC6D-A903-4E3F-B4CF-FB5048DDA7D9}] => (Allow) LPort=31107
  387. FirewallRules: [{A5C33CE8-22D8-49B2-9B12-45A77BF7E7BD}] => (Allow) LPort=31108
  388. FirewallRules: [{15719540-A218-4BC3-AD19-C06819A3FF7D}] => (Allow) LPort=31109
  389. FirewallRules: [{F05426CF-1379-46F8-9B8C-206260456AC4}] => (Allow) LPort=31110
  390. FirewallRules: [{EF08BB3E-875C-4C8E-8DAC-E6CE982234AB}] => (Allow) LPort=31111
  391. FirewallRules: [{B3115FFB-9394-4CC3-B3CF-5E6242BF4F40}] => (Allow) LPort=12292
  392. FirewallRules: [{FC6FB3A7-B6B0-4288-8C24-FAB64B5FB55F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\launcher.exe
  393. FirewallRules: [{96A638D2-1C41-4C8D-8F92-BED7321A4F8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\launcher.exe
  394. FirewallRules: [TCP Query User{4BCCB911-49B1-4798-AF9A-002D97DE1647}C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe] => (Allow) C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe
  395. FirewallRules: [UDP Query User{79D7EDF5-0560-457E-9184-56CA6710B60B}C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe] => (Allow) C:\program files (x86)\microsoft visual studio\2017\community\common7\ide\devenv.exe
  396.  
  397. ==================== Restore Points =========================
  398.  
  399. 02-06-2017 17:27:56 Before WallPaper Engine\
  400. 02-06-2017 21:14:58 Restore Operation
  401. 03-06-2017 13:51:46 Removed .NET Reflector Desktop
  402. 04-06-2017 17:22:29 Restore Operation
  403. 04-06-2017 17:57:23 JRT Pre-Junkware Removal
  404.  
  405. ==================== Faulty Device Manager Devices =============
  406.  
  407. Name:
  408. Description:
  409. Class Guid:
  410. Manufacturer:
  411. Service:
  412. Problem: : The drivers for this device are not installed. (Code 28)
  413. Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
  414.  
  415.  
  416. ==================== Event log errors: =========================
  417.  
  418. Application errors:
  419. ==================
  420. Error: (06/04/2017 06:07:58 PM) (Source: SideBySide) (EventID: 33) (User: )
  421. Description: Activation context generation failed for "c:\program files (x86)\xoreax\incredibuild\TestCRT80.exe".
  422. Dependent Assembly Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053" could not be found.
  423. Please use sxstrace.exe for detailed diagnosis.
  424.  
  425. Error: (06/04/2017 06:07:20 PM) (Source: SideBySide) (EventID: 33) (User: )
  426. Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Visual Studio\Shared\14.0\VC\redist\1033\vcredist_arm.exe".
  427. Dependent Assembly Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="arm",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
  428. Please use sxstrace.exe for detailed diagnosis.
  429.  
  430. Error: (06/04/2017 06:07:19 PM) (Source: SideBySide) (EventID: 33) (User: )
  431. Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\bin\10.0.15063.0\arm\signtool.exe.Manifest".
  432. Dependent Assembly Microsoft.Windows.Build.Signing.wintrust.dll,version="0.0.0.0" could not be found.
  433. Please use sxstrace.exe for detailed diagnosis.
  434.  
  435. Error: (06/04/2017 06:07:19 PM) (Source: SideBySide) (EventID: 33) (User: )
  436. Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\bin\10.0.15063.0\arm64\signtool.exe.Manifest".
  437. Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version="0.0.0.0" could not be found.
  438. Please use sxstrace.exe for detailed diagnosis.
  439.  
  440. Error: (06/04/2017 06:05:36 PM) (Source: SideBySide) (EventID: 78) (User: )
  441. Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
  442. A component version required by the application conflicts with another component version already active.
  443. Conflicting components are:.
  444. Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_42151e83c686086b.manifest.
  445. Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_89c2555adb023171.manifest.
  446.  
  447. Error: (06/04/2017 05:57:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
  448. Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
  449.  
  450. Details:
  451. AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
  452.  
  453. System Error:
  454. Access is denied.
  455. .
  456.  
  457. Error: (06/04/2017 05:39:08 PM) (Source: SideBySide) (EventID: 33) (User: )
  458. Description: Activation context generation failed for "c:\program files (x86)\xoreax\incredibuild\TestCRT80.exe".
  459. Dependent Assembly Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053" could not be found.
  460. Please use sxstrace.exe for detailed diagnosis.
  461.  
  462. Error: (06/04/2017 05:38:00 PM) (Source: SideBySide) (EventID: 33) (User: )
  463. Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Visual Studio\Shared\14.0\VC\redist\1033\vcredist_arm.exe".
  464. Dependent Assembly Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="arm",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
  465. Please use sxstrace.exe for detailed diagnosis.
  466.  
  467. Error: (06/04/2017 05:37:58 PM) (Source: SideBySide) (EventID: 33) (User: )
  468. Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\bin\10.0.15063.0\arm\signtool.exe.Manifest".
  469. Dependent Assembly Microsoft.Windows.Build.Signing.wintrust.dll,version="0.0.0.0" could not be found.
  470. Please use sxstrace.exe for detailed diagnosis.
  471.  
  472. Error: (06/04/2017 05:37:58 PM) (Source: SideBySide) (EventID: 33) (User: )
  473. Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\bin\10.0.15063.0\arm64\signtool.exe.Manifest".
  474. Dependent Assembly Microsoft.Windows.Build.Appx.AppxSip.dll,version="0.0.0.0" could not be found.
  475. Please use sxstrace.exe for detailed diagnosis.
  476.  
  477.  
  478. System errors:
  479. =============
  480. Error: (06/04/2017 05:58:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
  481. Description: The Sandboxie Service service terminated unexpectedly. It has done this 1 time(s).
  482.  
  483. Error: (06/04/2017 05:58:01 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
  484. Description: The NVIDIA LocalSystem Container service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 6000 milliseconds: Restart the service.
  485.  
  486. Error: (06/04/2017 05:58:01 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
  487. Description: The NVIDIA Display Container LS service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service.
  488.  
  489. Error: (06/04/2017 05:39:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
  490. Description: The IncrediBuild Agent service terminated unexpectedly. It has done this 1 time(s).
  491.  
  492. Error: (06/04/2017 05:33:30 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-QS2KSGT)
  493. Description: Unable to start a DCOM Server: App.AppX85gcbw533amccd2rr8qswxymhfj649t2.mca as Unavailable/Unavailable. The error:
  494. "2"
  495. Happened while starting this command:
  496. "C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
  497.  
  498. Error: (06/04/2017 05:23:36 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-QS2KSGT)
  499. Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.
  500.  
  501. Error: (06/04/2017 05:23:36 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-QS2KSGT)
  502. Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.
  503.  
  504. Error: (06/04/2017 05:23:36 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-QS2KSGT)
  505. Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.
  506.  
  507. Error: (06/04/2017 05:23:36 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-QS2KSGT)
  508. Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.
  509.  
  510. Error: (06/04/2017 05:23:36 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-QS2KSGT)
  511. Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.
  512.  
  513.  
  514. CodeIntegrity:
  515. ===================================
  516. Date: 2017-06-02 23:41:33.155
  517. Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
  518.  
  519. Date: 2017-05-30 15:26:31.441
  520. Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
  521.  
  522. Date: 2017-05-29 10:47:54.386
  523. Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
  524.  
  525. Date: 2017-05-29 00:22:56.767
  526. Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
  527.  
  528. Date: 2017-05-28 21:32:33.275
  529. Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
  530.  
  531. Date: 2017-05-28 21:32:33.274
  532. Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
  533.  
  534. Date: 2017-05-28 21:32:33.270
  535. Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
  536.  
  537. Date: 2017-05-28 21:32:33.267
  538. Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
  539.  
  540. Date: 2017-05-28 21:32:33.265
  541. Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
  542.  
  543. Date: 2017-05-28 21:32:33.264
  544. Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
  545.  
  546.  
  547. ==================== Memory info ===========================
  548.  
  549. Processor: AMD FX(tm)-8350 Eight-Core Processor
  550. Percentage of memory in use: 27%
  551. Total physical RAM: 16332.29 MB
  552. Available physical RAM: 11772 MB
  553. Total Virtual: 18764.29 MB
  554. Available Virtual: 14927.19 MB
  555.  
  556. ==================== Drives ================================
  557.  
  558. Drive c: () (Fixed) (Total:930.96 GB) (Free:598.08 GB) NTFS
  559.  
  560. ==================== MBR & Partition Table ==================
  561.  
  562. ========================================================
  563. Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)
  564.  
  565. Partition: GPT.
  566.  
  567. ==================== End of Addition.txt ============================
Add Comment
Please, Sign In to add comment