Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-06-2015 Ran by [removed] at 2015-06-19 18:50:59 Running from C:\Users\[removed]\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-726188561-2001873955-860764568-500 - Administrator - Disabled) Guest (S-1-5-21-726188561-2001873955-860764568-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-726188561-2001873955-860764568-1008 - Limited - Enabled) Ken (S-1-5-21-726188561-2001873955-860764568-1001 - Administrator - Enabled) => C:\Users\Ken ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.160 - Adobe Systems Incorporated) Adobe Reader X MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.0.0 - Adobe Systems Incorporated) Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 3.4.117.01527 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 3.4.117.01527 - Alcor Micro Corp.) Hidden ASUS Instant Connect (HKLM-x32\...\{89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}) (Version: 1.2.8 - ASUS) ASUS InstantOn (HKLM-x32\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 3.0.2 - ASUS) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.1.7 - ASUS) ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.1.8 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 2.1.1 - ASUS) ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 1.0.32 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.03.0004 - ASUS) ASUS Tutor (HKLM-x32\...\{58172D66-2F69-4215-9AEC-ED8196023736}) (Version: 1.0.7 - ASUS) ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 2.1.4 - ASUS) ASUS VivoBook (HKLM\...\{04FDBE69-F9FD-42A2-9008-E5CE7F60C6BE}) (Version: 1.0.8 - ASUS) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Atheros Communications Inc.) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0023 - ASUS) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) Cisco Packet Tracer 6.1 Student (HKLM-x32\...\Cisco Packet Tracer 6.1 Student_is1) (Version: - Cisco Systems, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.) Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 38.0.5 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 en-US)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.0.5 - Mozilla) Platform (x32 Version: 1.39 - VIA Technologies, Inc.) Hidden Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) Safer Update Helper (x32 Version: 1.3.23.33 - Safer Technologies, Inc.) Hidden Safer Updater (x32 Version: 1.1.0.6 - Safer Technologies, Inc.) Hidden UltraISO Premium V9.53 (HKLM-x32\...\UltraISO_is1) (Version: - ) VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.) Watchtower Library 2014 - English (HKLM-x32\...\{DB6F2EEA-CEEA-4096-8BD7-ABF100A90820}) (Version: 16.0 - Watchtower Bible and Tract Society of Pennsylvania, Inc.) Windows Deployment Tools (HKLM-x32\...\{BFC9778E-9765-C94C-C082-C2514F8DEB9B}) (Version: 8.59.25584 - Microsoft) Windows Driver Package - ASUS (ATP) Mouse (08/27/2012 1.0.0.125) (HKLM\...\2BD897DEE9289F769D9176245811D5330A360B0B) (Version: 08/27/2012 1.0.0.125 - ASUS) Windows PE x86 x64 (HKLM-x32\...\{F89D69CA-6EE1-E037-DD3B-08CDDE1BED1C}) (Version: 8.59.25584 - Microsoft) Windows PE x86 x64 wims (HKLM-x32\...\{85F4ACB1-E7DC-C3C6-F4FD-BB936DF2695E}) (Version: 8.59.25584 - Microsoft) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.41.1 - ASUS) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 16-06-2015 15:54:37 Windows Update 18-06-2015 09:03:32 avast! antivirus system restore point ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 08:25 - 2013-08-22 08:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {008E198C-02C4-4BFB-929F-D5F417935DB8} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-06] (Microsoft Corporation) Task: {0B4627EB-5487-4B3E-B76F-1262E6820C25} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {1883C162-C17C-4F2F-8B7F-D312DF40F9E4} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2012-07-25] (ASUSTeK Computer Inc.) Task: {297E9E50-31C0-46DE-BFCB-C050DCF1457E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-18] (Avast Software s.r.o.) Task: {2AE4D34F-826C-42D4-8172-136907C709BF} - System32\Tasks\avastBCLRestart_chrome.exe => Chrome.exe Task: {2DE69A1A-C585-42A4-90EB-C4451952D475} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {59089841-7349-4B4D-B295-F21B5FA766F0} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {62EDA879-FBEE-4CB8-8EF2-2FF797D337FC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-17] (Google Inc.) Task: {9024183A-C9CB-4923-B265-4DC99DF012F9} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\WINDOWS\SYSTEM32\OOBE\SETUPSQM.EXE [2014-11-21] (Microsoft Corporation) Task: {990BEDB6-6656-40A2-AF0E-CD7A675D80EB} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-05-27] (Microsoft Corporation) Task: {9C3993ED-8255-4179-9574-BB6E7CFFEDE6} - System32\Tasks\SaferUpdateTaskMachineCore => C:\Program Files (x86)\Safer Technologies\Update\SaferUpdate.exe Task: {BEDC60DC-1F42-4125-80D4-C9E1FE23F1E8} - System32\Tasks\SaferUpdateTaskSCUD => C:\Program Files (x86)\Safer Technologies\Updater\SaferUpdater.exe Task: {C2424778-7F39-4B00-A9F6-039B70834447} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2012-07-24] (ASUSTek Computer Inc.) Task: {C99AA1C7-5AEA-428B-8656-1FB4B40FA6F5} - System32\Tasks\SaferUpdateTaskMachineUA => C:\Program Files (x86)\Safer Technologies\Update\SaferUpdate.exe Task: {CD83B4E4-076C-4F23-B576-978CF9A1267E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattel\DiagTrackRunner.exe [2015-03-15] (Microsoft Corporation) Task: {E4D0F3A3-4D5C-4E3B-A122-2EC8F0F098E0} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2012-09-17] (ASUS) Task: {F7BEE54C-5540-40D5-8E90-6F31ECEE0CD6} - System32\Tasks\SaferBrowserProtectTask => C:\Program Files (x86)\Safer Technologies\Safer Browser\Application\43.0.2337.118\SaferBrowserProtector.exe <==== ATTENTION Task: {FEFB75B3-DB9C-4BEA-9664-FAA8667611FA} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {FF3D39E7-4020-45F0-81CA-1544630AFCC4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-17] (Google Inc.) Task: {FFF87964-9502-4363-8571-E2886A63769F} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-17] (Adobe Systems Incorporated) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\SaferUpdateTaskMachineCore.job => C:\Program Files (x86)\Safer Technologies\Update\SaferUpdate.exe Task: C:\WINDOWS\Tasks\SaferUpdateTaskMachineUA.job => C:\Program Files (x86)\Safer Technologies\Update\SaferUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2012-09-17 17:05 - 2012-09-17 17:05 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll 2012-09-17 17:05 - 2012-09-17 17:05 - 00028544 _____ () C:\Program Files\ASUS\P4G\plctrl.dll 2014-01-29 23:02 - 2014-01-29 23:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-09-30 03:36 - 2012-09-17 21:47 - 00078480 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2012-09-30 03:36 - 2012-09-17 21:47 - 00386192 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2015-06-18 03:31 - 2015-06-18 03:31 - 00091648 _____ () C:\Users\Ken\AppData\Local\Packages\9fd20106.mediaplayerqueen_nwhm06f2kfry2\AC\Microsoft\CLR_v4.0\NativeImages\PlayerRT.Ba3dd7567d#\c931c065e4ae2ad270ade618043ddbcb\PlayerRT.BackgroundTask.ni.dll 2015-06-17 09:28 - 2015-06-17 09:28 - 01782784 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Windows.App640a3541#\3f4dc590466037f015f65bc07d1ea923\Windows.ApplicationModel.ni.dll 2015-06-17 13:42 - 2015-06-17 13:42 - 00658944 _____ () C:\Users\Ken\AppData\Local\Packages\9fd20106.mediaplayerqueen_nwhm06f2kfry2\AC\Microsoft\CLR_v4.0\NativeImages\CommonToolk4a639370#\a2a6b8bffba33a879e596fe1d14cd6a8\CommonToolkit.Core.Universal.ni.dll 2015-06-17 13:42 - 2015-06-17 13:42 - 01053184 _____ () C:\Users\Ken\AppData\Local\Packages\9fd20106.mediaplayerqueen_nwhm06f2kfry2\AC\Microsoft\CLR_v4.0\NativeImages\CommonToolkc2d7f594#\b23fe58a70aa686f43595a095d51d086\CommonToolkit.Core.Shared.ni.dll 2015-06-17 00:29 - 2015-06-17 00:29 - 00054784 _____ () C:\Program Files\WindowsApps\9FD20106.MediaPlayerQueen_1.1.1.277_x64__nwhm06f2kfry2\NotificationsExtensions.winmd 2015-06-17 09:30 - 2015-06-17 09:30 - 00264192 _____ () C:\Users\Ken\AppData\Local\Packages\9fd20106.mediaplayerqueen_nwhm06f2kfry2\AC\Microsoft\CLR_v4.0\NativeImages\PlayerRT.Resources\dcca8f2646208694f591cd0e38e2595d\PlayerRT.Resources.ni.dll 2015-06-17 09:28 - 2015-06-17 09:28 - 01459712 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Windows.UI\4bd80968bf666252841ca7792faaff11\Windows.UI.ni.dll 2015-06-18 09:05 - 2015-06-18 09:05 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-06-18 09:05 - 2015-06-18 09:05 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-06-19 14:20 - 2015-06-19 14:20 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15061903\algo.dll 2012-08-24 19:17 - 2012-08-24 19:17 - 00009216 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2015-06-18 09:05 - 2015-06-18 09:05 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-06-17 17:18 - 2015-06-05 13:22 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libglesv2.dll 2015-06-17 17:18 - 2015-06-05 13:22 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libegl.dll 2012-09-30 03:36 - 2012-06-25 12:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2015-06-17 17:18 - 2015-06-05 13:22 - 15003464 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Ken\OneDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-726188561-2001873955-860764568-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ken\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper HKU\S-1-5-21-726188561-2001873955-860764568-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Ken\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 208.67.222.222 - 208.67.220.220 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKU\S-1-5-21-726188561-2001873955-860764568-1001\...\StartupApproved\Run: => "SaferAutoLaunch_A9B84B1CF90C9F610984778EC38BCD80" HKU\S-1-5-21-726188561-2001873955-860764568-1001\...\StartupApproved\Run: => "SaferBrowserIsDefault" HKU\S-1-5-21-726188561-2001873955-860764568-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "SaferAutoLaunch_A9B84B1CF90C9F610984778EC38BCD80" HKU\S-1-5-21-726188561-2001873955-860764568-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "SaferBrowserIsDefault" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [TCP Query User{E0F25491-A77E-4A35-A217-30B4E2A0B792}C:\program files (x86)\cisco packet tracer 6.1sv\bin\packettracer6.exe] => (Allow) C:\program files (x86)\cisco packet tracer 6.1sv\bin\packettracer6.exe FirewallRules: [UDP Query User{7C76DE45-B4F1-40DF-AC25-9D44BD3A2846}C:\program files (x86)\cisco packet tracer 6.1sv\bin\packettracer6.exe] => (Allow) C:\program files (x86)\cisco packet tracer 6.1sv\bin\packettracer6.exe FirewallRules: [{5CE57806-F239-48C3-8EDF-6D85899B44F2}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{91DF866A-6433-4B6E-B42F-93D443075CDA}] => (Allow) C:\Program Files (x86)\Safer Technologies\Safer Browser\Application\safer.exe FirewallRules: [{3C883E33-CDA5-461C-954E-8FF8FE2BCFFC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{FE1725D3-B3B3-4BCB-86EE-D4483EB0E5C4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/19/2015 06:36:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: delegate_execute.exe, version: 43.0.2357.124, time stamp: 0x5571b8e8 Faulting module name: delegate_execute.exe, version: 43.0.2357.124, time stamp: 0x5571b8e8 Exception code: 0xc0000005 Fault offset: 0x00029e76 Faulting process id: 0x1954 Faulting application start time: 0xdelegate_execute.exe0 Faulting application path: delegate_execute.exe1 Faulting module path: delegate_execute.exe2 Report Id: delegate_execute.exe3 Faulting package full name: delegate_execute.exe4 Faulting package-relative application ID: delegate_execute.exe5 Error: (06/18/2015 01:31:30 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program chrome.exe version 43.0.2357.124 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1420 Start Time: 01d0a9f1afeb8163 Termination Time: 218 Application Path: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Report Id: 1700a546-15e8-11e5-be7d-50465d324892 Faulting package full name: Faulting package-relative application ID: Error: (06/17/2015 00:20:02 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program 7zOpener.exe version 1.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 143c Start Time: 01d0a8b359d7f449 Termination Time: 4294967295 Application Path: C:\Program Files\WindowsApps\DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm\7zOpener.exe Report Id: 803109d8-14b0-11e5-be79-50465d324892 Faulting package full name: DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm Faulting package-relative application ID: App Error: (06/17/2015 00:19:59 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: BLUELULU) Description: Package DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm+App was terminated because it took too long to suspend. Error: (06/16/2015 11:20:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: JWLibrary.Windows.exe, version: 1.3.4.0, time stamp: 0x555f45ec Faulting module name: Windows.UI.Xaml.dll, version: 6.3.9600.17477, time stamp: 0x5452dca5 Exception code: 0xc000027b Fault offset: 0x000000000098260a Faulting process id: 0x688 Faulting application start time: 0xJWLibrary.Windows.exe0 Faulting application path: JWLibrary.Windows.exe1 Faulting module path: JWLibrary.Windows.exe2 Report Id: JWLibrary.Windows.exe3 Faulting package full name: JWLibrary.Windows.exe4 Faulting package-relative application ID: JWLibrary.Windows.exe5 Error: (06/16/2015 11:05:57 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program 7zOpener.exe version 1.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 5f4 Start Time: 01d0a8b29df90d51 Termination Time: 4294967295 Application Path: C:\Program Files\WindowsApps\DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm\7zOpener.exe Report Id: 25cf227a-14a6-11e5-be79-50465d324892 Faulting package full name: DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm Faulting package-relative application ID: App Error: (06/16/2015 11:05:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: BLUELULU) Description: Package DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm+App was terminated because it took too long to suspend. Error: (09/30/2012 03:51:57 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY) Description: Event filter with query "select * from MSFT_SCMEventLogEvent" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041033. Events cannot be delivered through this filter until the problem is corrected. Error: (09/30/2012 03:51:56 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY) Description: Event provider $Core attempted to register query "select * from __TimerEvent" whose target class "__TimerEvent" in //./root/CIMV2 namespace does not exist. The query will be ignored. Error: (09/30/2012 03:51:56 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY) Description: Event provider $Core attempted to register query "select * from __SystemEvent" whose target class "__SystemEvent" in //./root/CIMV2 namespace does not exist. The query will be ignored. System errors: ============= Error: (06/19/2015 04:36:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Safer Update Service (safer) service failed to start due to the following error: %%2 Error: (06/19/2015 04:35:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The MBAMService service terminated unexpectedly. It has done this 1 time(s). Error: (06/19/2015 04:35:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Media Player Network Sharing Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. Error: (06/19/2015 04:35:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Intel(R) Management and Security Application User Notification Service service terminated unexpectedly. It has done this 1 time(s). Error: (06/19/2015 04:35:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Intel(R) ME Service service terminated unexpectedly. It has done this 1 time(s). Error: (06/19/2015 04:35:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. Error: (06/19/2015 04:35:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The VIA Karaoke digital mixer Service service terminated unexpectedly. It has done this 1 time(s). Error: (06/19/2015 04:35:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The MBAMScheduler service terminated unexpectedly. It has done this 1 time(s). Error: (06/19/2015 04:35:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Intel(R) Dynamic Application Loader Host Interface Service service terminated unexpectedly. It has done this 1 time(s). Error: (06/19/2015 04:34:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Intel(R) Capability Licensing Service Interface service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 0 milliseconds: Restart the service. Microsoft Office: ========================= Error: (06/19/2015 06:36:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: delegate_execute.exe43.0.2357.1245571b8e8delegate_execute.exe43.0.2357.1245571b8e8c000000500029e76195401d0aae8b814cf65C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\delegate_execute.exeC:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\delegate_execute.exefcb2d89d-16db-11e5-be8f-50465d324892 Error: (06/18/2015 01:31:30 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: chrome.exe43.0.2357.124142001d0a9f1afeb8163218C:\Program Files (x86)\Google\Chrome\Application\chrome.exe1700a546-15e8-11e5-be7d-50465d324892 Error: (06/17/2015 00:20:02 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: 7zOpener.exe1.0.0.0143c01d0a8b359d7f4494294967295C:\Program Files\WindowsApps\DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm\7zOpener.exe803109d8-14b0-11e5-be79-50465d324892DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbmApp Error: (06/17/2015 00:19:59 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: BLUELULU) Description: DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm+App Error: (06/16/2015 11:20:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: JWLibrary.Windows.exe1.3.4.0555f45ecWindows.UI.Xaml.dll6.3.9600.174775452dca5c000027b000000000098260a68801d0a8b4da1b24e1C:\Program Files\WindowsApps\WatchtowerBibleandTractSo.45909CDBADF3C_1.5.0.743_x64__5rz59y55nfz3e\JWLibrary.Windows.exeC:\Windows\System32\Windows.UI.Xaml.dll397f4d9a-14a8-11e5-be79-50465d324892WatchtowerBibleandTractSo.45909CDBADF3C_1.5.0.743_x64__5rz59y55nfz3eApp Error: (06/16/2015 11:05:57 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: 7zOpener.exe1.0.0.05f401d0a8b29df90d514294967295C:\Program Files\WindowsApps\DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm\7zOpener.exe25cf227a-14a6-11e5-be79-50465d324892DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbmApp Error: (06/16/2015 11:05:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: BLUELULU) Description: DeviceDoctor.7ZipOpener_1.1.0.3_neutral__mkdtfchztkfbm+App Error: (09/30/2012 03:51:57 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY) Description: //./root/CIMV2select * from MSFT_SCMEventLogEvent0x80041033 Error: (09/30/2012 03:51:56 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY) Description: $Coreselect * from __TimerEvent__TimerEvent//./root/CIMV2 Error: (09/30/2012 03:51:56 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY) Description: $Coreselect * from __SystemEvent__SystemEvent//./root/CIMV2 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-2365M CPU @ 1.40GHz Percentage of memory in use: 75% Total physical RAM: 3979.61 MB Available physical RAM: 971.16 MB Total Pagefile: 4683.61 MB Available Pagefile: 1169.47 MB Total Virtual: 131072 MB Available Virtual: 131071.8 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:444.32 GB) (Free:402.08 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (Rescue Disc) (Removable) (Total:14.97 GB) (Free:14.61 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: F97C441A) Partition: GPT Partition Type. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 15 GB) (Disk ID: 0022341A) Partition 1: (Active) - (Size=15 GB) - (Type=07 NTFS) ==================== End of log ============================