Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-10-2016 Ran by [removed] (27-10-2016 17:43:18) Running from E:\My Downloads\Browser Downloads Windows 10 Pro Version 1511 (X64) (2016-08-04 09:00:36) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2796851931-2952016419-931386412-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2796851931-2952016419-931386412-503 - Limited - Disabled) Guest (S-1-5-21-2796851931-2952016419-931386412-501 - Limited - Disabled) Ra'ed AL-Huraid (S-1-5-21-2796851931-2952016419-931386412-1001 - Administrator - Enabled) => C:\Users\Ra'ed AL-Huraid ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ThreatTrack Security VIPRE (Enabled - Up to date) {A328C8F0-22BE-AEDA-2D52-6C8A3089160A} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ThreatTrack Security VIPRE (Enabled - Up to date) {18492914-0484-A154-17E2-57F84B0E5CB7} FW: ThreatTrack Security VIPRE (Enabled) {9B1349D5-68D1-AF82-060D-C5BFCE5A5171} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 3DMark Demo (HKLM\...\Steam App 231350) (Version: - Futuremark) ABZÛ (HKLM\...\Steam App 384190) (Version: - Giant Squid) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.205 - Adobe Systems Incorporated) Adobe Reader XI (11.0.18) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}) (Version: 11.0.18 - Adobe Systems Incorporated) AI Suite 3 (HKLM-x32\...\{CD36E28B-6023-469A-91E7-049A2874EC13}) (Version: 1.01.28 - ASUSTeK Computer Inc.) Ansel (Version: 375.63 - NVIDIA Corporation) Hidden Arma 3 (HKLM\...\Steam App 107410) (Version: - Bohemia Interactive) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{DF6C3726-7E53-4772-9763-E9F147769F51}) (Version: 3.1.6.0000 - Asmedia Technology) ASUS Boot Setting (HKLM-x32\...\{7AAE9187-C24F-4073-A951-36C370E7A3A5}) (Version: 1.00.22 - ASUSTeK Computer Inc.) Asus Sonic Suite Plugins (HKLM-x32\...\{13582a3e-ca26-4865-9da1-6c38ab355fc7}) (Version: 2.2.1601 - ASUSTeKcomputer.Inc) AURA (HKLM-x32\...\{5899CD4F-8764-4303-A0D9-C60A62CFC24F}) (Version: 1.01.07 - ASUSTeK Computer Inc.) Bastion (HKLM\...\Steam App 107100) (Version: - Supergiant Games) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.7.2.45672 - Electronic Arts) Battlefield™ Hardline (HKLM-x32\...\{CB4AC3DA-8CC1-4516-86DA-4078B57DB229}) (Version: 1.4.0.10 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Brothers - A Tale of Two Sons (HKLM\...\Steam App 225080) (Version: - Starbreeze Studios AB) CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform) CheckDevicesConfigurator (Version: 2.2.1601 - ASUSTeKcomputer.Inc) Hidden Corsair Utility Engine (HKLM-x32\...\{46A3EEB3-8F6F-4BC4-9A53-CDE33D089D08}) (Version: 1.16.42 - Corsair) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) CPUID HWMonitor 1.29 (HKLM\...\CPUID HWMonitor_is1) (Version: - ) CPUID ROG CPU-Z 1.73 (HKLM\...\CPUID ROG CPU-Z_is1) (Version: 1.73 - CPUID, Inc.) Curse Client (HKU\S-1-5-21-2796851931-2952016419-931386412-1001\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Discord (HKU\S-1-5-21-2796851931-2952016419-931386412-1001\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.) Dragon Age™: Inquisition (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: 1.0.0.12 - Electronic Arts) Dying Light (HKLM\...\Steam App 239140) (Version: - Techland) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) EVGA Precision XOC (HKLM-x32\...\{2310FF6A-F678-4CBC-9779-3F79FA5274DB}) (Version: 6.0.8 - EVGA Corporation) Faeria (HKLM\...\Steam App 397060) (Version: - Abrakam SA) Futuremark SystemInfo (HKLM-x32\...\{E540B871-3230-4C5B-AAD5-A30F64398275}) (Version: 4.48.599.0 - Futuremark) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.71 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Grand Theft Auto V (HKLM\...\Steam App 271590) (Version: - Rockstar North) Guild Wars 2 (HKLM\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) H1Z1: Just Survive (HKLM\...\Steam App 295110) (Version: - Daybreak Game Company) H1Z1: King of the Kill (HKLM\...\Steam App 433850) (Version: - Daybreak Game Company) Heaven Benchmark version 4.0 (HKLM-x32\...\Unigine Heaven Benchmark (Basic Edition)_is1) (Version: 4.0 - Unigine Corp.) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Hotline Miami (HKLM\...\Steam App 219150) (Version: - Dennaton Games) Hotline Miami 2: Wrong Number (HKLM\...\Steam App 274170) (Version: - Dennaton Games) Intel(R) Chipset Device Software (x32 Version: 10.1.1.7 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1163 - Intel Corporation) Intel(R) Network Connections 20.2.4001.0 (HKLM\...\PROSetDX) (Version: 20.2.4001.0 - Intel) Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.1.2.2 - PandoraTV) Kopanito All-Stars Soccer (HKLM\...\Steam App 399820) (Version: - Merixgames) LauncherSetup (Version: 2.2.1601 - ASUSTeKcomputer.Inc) Hidden League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games) League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden Lethal League (HKLM\...\Steam App 261180) (Version: - Team Reptile) Logitech Gaming Software 8.83 (HKLM\...\Logitech Gaming Software) (Version: 8.83.85 - Logitech Inc.) MemTweakIt (HKLM-x32\...\{E51AAC3A-D66D-4912-B883-DAFBA249D10F}) (Version: 2.02.22 - ASUSTeK Computer Inc.) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mighty No. 9 (HKLM\...\Steam App 314710) (Version: - Comcept) Mozilla Firefox 49.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 49.0.2 (x86 en-US)) (Version: 49.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.2.6136 - Mozilla) MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team) NahimicSettingsConfigurator (Version: 2.2.1601 - ASUSTeKcomputer.Inc) Hidden Need for Speed™ (HKLM-x32\...\{F8643E83-A868-4EE8-A0B9-389386830453}) (Version: 1.3.0.0 - Electronic Arts) Never Alone (Kisima Ingitchuna) (HKLM\...\Steam App 295790) (Version: - Upper One Games) NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Driver 375.63 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 375.63 - NVIDIA Corporation) NVIDIA GeForce Experience 3.0.7.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.0.7.34 - NVIDIA Corporation) NVIDIA Graphics Driver 375.63 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 375.63 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation) NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NvNodejs (Version: 3.0.7.34 - NVIDIA Corporation) Hidden NvTelemetry (Version: 1.0.0.0 - NVIDIA Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 10.2.1.38915 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) PAYDAY 2 (HKLM\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) ProductDaemonSetup (Version: 2.2.1601 - ASUSTeKcomputer.Inc) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.) Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.0.0097 - Qualcomm Atheros) Qualcomm Atheros QCA6174_9377 Bluetooth Suite (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.149 - Qualcomm Atheros) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7629 - Realtek Semiconductor Corp.) Rocket League (HKLM\...\Steam App 252950) (Version: - Psyonix, Inc.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.0.5 - Rockstar Games) ROG Game First III (HKLM-x32\...\{0C6E32E1-31D9-49F1-B67F-2941994002D5}) (Version: 1.00.32 - ASUSTeK Computer Inc.) ROG RAMDisk (HKLM-x32\...\{DE8C1883-4F14-40DF-8C8C-376157ADF5A3}) (Version: 2.02.06 - ASUSTeK Computer Inc.) Savant - Ascent (HKLM\...\Steam App 259530) (Version: - D-Pad Studio) SHIELD Streaming (Version: 7.1.0320 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.0.7.34 - NVIDIA Corporation) Hidden Skype™ 7.26 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.) SonicRadarSetup (Version: 1.0.0.0 - ASUSTeKcomputer.Inc) Hidden SonicStudioSetup (Version: 2.2.1601 - ASUSTeKcomputer.Inc) Hidden SpeedRunners (HKLM\...\Steam App 207140) (Version: - DoubleDutch Games) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Stardew Valley (HKLM\...\Steam App 413150) (Version: - ConcernedApe) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Streets of Fury EX (HKLM\...\Steam App 350910) (Version: - Guard Crush Games) SVLoadSense (HKLM-x32\...\{C4226734-F925-448C-8F15-0D5419F003DF}) (Version: 1.0.12 - SAVITECH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.65452 - TeamViewer) The Witcher 3: Wild Hunt (HKLM\...\Steam App 292030) (Version: - CD PROJEKT RED) Tixati (HKLM-x32\...\tixati) (Version: - ) Tom Clancy's Rainbow Six Siege (HKLM\...\Steam App 359550) (Version: - Ubisoft Montreal) Tom Clancy's The Division (HKLM\...\Steam App 365590) (Version: - Massive Entertainment) Total War: WARHAMMER (HKLM\...\Steam App 364360) (Version: - Creative Assembly) Tukui Client (HKLM-x32\...\{BAD6EBBD-A6A9-41C9-898A-8C868A552E4C}) (Version: 2.4.6 - Tukui) Uplay (HKLM-x32\...\Uplay) (Version: 21.1 - Ubisoft) VIPRE Internet Security Pro (HKLM-x32\...\{C1D1FC57-3EB9-4B21-BCA3-F1C927508200}) (Version: 9.3.6.3 - ThreatTrack Security Inc.) VIPRE Internet Security Pro (x32 Version: 9.3.6.3 - ThreatTrack Security, Inc.) Hidden VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) XTUPackage (HKLM-x32\...\{84D11A20-6E7F-4FBB-A2FB-117FCF871040}) (Version: 1.0.0 - ASUSTeK COMPUTER INC.) Zombie Army Trilogy (HKLM\...\Steam App 301640) (Version: - Rebellion) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2796851931-2952016419-931386412-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Ra'ed AL-Huraid\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileCoAuth.exe (Microsoft Corporation) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0F5D3E2E-024D-4663-94C2-723BAC6FA240} - System32\Tasks\ASUS\Push Notice Server Execute => C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe [2014-05-28] (ASUSTeK Computer Inc.) Task: {13CF36C3-A0FA-47DC-8FEE-3F0E440BCD36} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated) Task: {143F99CC-9334-493A-9DDA-9F68CAF16129} - System32\Tasks\ASUS\GpuFanHelper => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe [2015-08-20] (TODO: ) Task: {22B984CD-ECDA-4589-8039-CFC8A44B4746} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2016-09-30] (NVIDIA Corporation) Task: {433369E4-630A-41DD-A949-E8558322F487} - System32\Tasks\SS2UILauncherRun => C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\SS2UILauncher.exe [2015-11-13] () Task: {63B0415A-A23C-40C4-952D-C6150E9D03EA} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Ra'ed AL-Huraid\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-08-23] (Microsoft Corporation) Task: {70AA4335-B32C-4348-9C2D-378177526162} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd) Task: {8AE69BF0-DFAE-4F6C-B08C-87B7F3548628} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe [2013-07-24] (ASUSTeK Computer Inc.) Task: {90F3BB3F-10B7-4F47-84C3-607B6013671C} - System32\Tasks\ASUS\RamDisk => C:\Program Files (x86)\ASUS\ROG RAMDisk\loadImage.exe [2014-02-17] () Task: {B072FD0A-CEB4-4E4B-9B3F-F2BBEFB92713} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-05] (Google Inc.) Task: {B10B1D1A-42FF-43B4-A210-2DCA24EF03BE} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-09-30] (NVIDIA Corporation) Task: {BFD451A4-B422-4CCA-96C6-0F91478146E4} - System32\Tasks\EVGAPrecisionX => C:\Program Files (x86)\EVGA\Precision XOC\PrecisionX_x64.exe [2016-10-26] (EVGA Corp.) Task: {C025FBC6-E520-4117-A177-55C051DFBE01} - System32\Tasks\SS2Svc32Run => C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\SS2Svc32.exe [2015-11-13] () Task: {C70284A8-C1AD-47D8-A0ED-B838EA995062} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-27] (Adobe Systems Incorporated) Task: {C98CB6E6-A0E1-4BAE-8F61-B7CF5584217B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-05] (Google Inc.) Task: {CB1A6D5F-914A-4785-AB2F-50C39B73A58F} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2015-10-15] (ASUSTeK Computer Inc.) Task: {CBE7CB01-AE40-4CA7-BCE4-7D525B6AB72A} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-09-30] (NVIDIA Corporation) Task: {D67B7075-F9A1-4B2F-9B71-677D89EC046D} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [2015-09-20] () Task: {D77AED9E-C034-4C85-8C54-D7563FD535FB} - System32\Tasks\SS2Svc64Run => C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2Svc64.exe [2015-11-13] () Task: {E4500615-5DAD-459D-971A-AC61D8E2DF39} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-09-30] (NVIDIA Corporation) Task: {E47394DC-EF43-4FE4-B657-8A86F49537A8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-09-30] (NVIDIA Corporation) Task: {E8BFACC7-11F3-4AFA-9896-4AB51796B645} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-09-30] (NVIDIA Corporation) Task: {F7860EF3-F5B8-4522-9432-A275A0A9527D} - System32\Tasks\ASUS\ASUS Media Streamer DMR => C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2015-10-30 10:18 - 2015-10-30 10:18 - 00185856 _____ () C:\Windows\SYSTEM32\ism32k.dll 2016-08-04 12:25 - 2015-05-08 09:26 - 00936728 ____R () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe 2016-08-04 12:26 - 2014-04-24 09:29 - 01360016 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe 2015-05-19 09:11 - 2015-05-19 09:11 - 00007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 2016-10-05 16:26 - 2016-09-30 07:24 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll 2016-10-05 16:26 - 2016-09-30 07:24 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-10-05 16:26 - 2016-09-30 07:24 - 00418240 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\_nvspserviceplugin64.dll 2016-08-07 07:32 - 2016-09-17 23:42 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2016-10-25 20:05 - 2016-10-22 09:04 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-09-16 15:13 - 2016-09-07 08:39 - 02656952 _____ () C:\Windows\system32\CoreUIComponents.dll 2015-11-13 19:58 - 2015-11-13 19:58 - 00285152 _____ () C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2OSD.dll 2015-11-13 19:57 - 2015-11-13 19:57 - 00208352 _____ () C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2DevProps.dll 2016-08-05 14:48 - 2015-09-20 15:44 - 01310720 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe 2016-09-16 15:13 - 2016-09-07 08:39 - 02656952 _____ () C:\Windows\System32\CoreUIComponents.dll 2016-08-23 17:58 - 2016-08-23 17:58 - 01864384 _____ () C:\Users\Ra'ed AL-Huraid\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\ClientTelemetry.dll 2016-08-05 07:12 - 2015-12-07 07:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-08-05 07:12 - 2016-07-01 06:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-09-16 15:13 - 2016-09-07 07:15 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-09-16 15:13 - 2016-09-07 07:10 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-09-16 15:13 - 2016-09-07 07:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-09-16 15:13 - 2016-09-07 07:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-08-05 14:49 - 2015-05-14 09:18 - 01075712 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe 2016-08-05 14:49 - 2014-08-28 10:37 - 00033424 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe 2016-08-04 12:27 - 2015-10-08 00:41 - 00105312 _____ () C:\Windows\SYSTEM32\audioLibVc.dll 2015-11-13 19:51 - 2015-11-13 19:51 - 00347616 _____ () C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\SS2UILauncher.exe 2015-03-07 03:07 - 2015-03-07 03:07 - 00908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2016-04-29 01:49 - 2016-04-29 01:49 - 01095448 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2015-03-07 03:07 - 2015-03-07 03:07 - 00060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2016-04-29 01:49 - 2016-04-29 01:49 - 00240408 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2015-11-13 19:52 - 2015-11-13 19:52 - 02587648 _____ () C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\SS2svc32.exe 2015-11-13 19:58 - 2015-11-13 19:58 - 00276480 _____ () C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2svc64.exe 2015-05-27 14:51 - 2015-05-27 14:51 - 00156160 _____ () C:\Program Files (x86)\EVGA\Precision XOC\FW1FontWrapper_x64.dll 2016-08-04 12:25 - 2016-10-27 17:34 - 00041768 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll 2016-08-04 12:25 - 2015-05-08 09:26 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll 2016-10-25 16:11 - 2016-10-25 16:11 - 02493440 _____ () E:\Origin\libGLESv2.dll 2016-10-05 16:26 - 2016-09-30 07:24 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-08-05 14:48 - 2015-06-05 19:00 - 00091648 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Log4cxxWrapper.dll 2016-08-05 14:48 - 2015-06-05 19:00 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite III\AssistFunc.dll 2016-08-05 14:48 - 2015-09-21 16:26 - 04677048 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\dip4.dll 2016-08-05 14:48 - 2015-08-20 12:41 - 00091648 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\Log4cxxWrapper.dll 2016-08-05 14:49 - 2015-05-21 22:57 - 01141248 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EasyUpdt.dll 2016-08-05 14:48 - 2015-08-26 09:34 - 00507392 ____R () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\AsKeyboardFocusHooker.dll 2016-08-05 14:49 - 2015-11-05 11:13 - 01464320 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Mobo Connect\MoboConnect.dll 2016-08-05 14:48 - 2015-07-29 20:47 - 00838456 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Version\Version.dll 2016-08-05 08:31 - 2015-08-20 07:41 - 00053248 ____R () C:\Program Files (x86)\ASUS\VGA COM\1.00.20\Exeio.dll 2016-08-05 08:31 - 2015-08-20 07:41 - 00278528 ____R () C:\Program Files (x86)\ASUS\VGA COM\1.00.20\Vender.dll 2016-08-05 14:48 - 2015-06-05 19:00 - 00663552 _____ () C:\Program Files (x86)\ASUS\AI Suite III\aaHMLib.dll 2016-08-05 14:49 - 2012-01-19 09:39 - 00028672 _____ () C:\Program Files (x86)\ASUS\AI Suite III\USB BIOS Flashback\PEInfo.dll 2016-08-05 14:48 - 2015-06-05 19:00 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite III\ImageHelper.dll 2016-08-05 14:48 - 2015-06-05 19:00 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite III\pngio.dll 2016-08-05 14:48 - 2015-08-20 12:41 - 00236544 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4cTDPAction.dll 2016-08-05 14:48 - 2015-08-20 12:41 - 00712192 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4DIGIPowerControlAction.dll 2016-08-05 14:48 - 2015-08-20 12:41 - 00863744 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4EpuAction.dll 2016-08-05 14:48 - 2015-08-20 12:41 - 00803840 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4FanAction.dll 2016-08-05 14:48 - 2015-08-20 12:41 - 00815104 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4TurboVEVOAction.dll 2016-08-05 14:48 - 2015-08-20 12:41 - 00883200 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\AppTuneDll.dll 2016-08-05 14:48 - 2015-08-20 12:41 - 01893888 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\TurboAppDatabase.dll 2016-08-05 14:49 - 2013-11-20 10:10 - 00662016 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\aaHMLib.dll 2016-08-05 14:49 - 2013-07-02 10:40 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\pngio.dll 2016-10-05 16:26 - 2016-09-29 20:20 - 00500792 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node 2016-10-05 16:26 - 2016-09-29 20:20 - 00255936 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node 2016-10-05 16:26 - 2016-09-29 20:20 - 02801208 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node 2016-10-05 16:26 - 2016-09-29 20:20 - 00244672 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node 2016-10-05 16:26 - 2016-09-29 20:20 - 00430648 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node 2016-10-05 16:26 - 2016-09-29 20:20 - 00336832 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node 2016-10-05 16:26 - 2016-09-29 20:20 - 00373696 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node 2015-05-27 14:51 - 2015-05-27 14:51 - 00129536 _____ () C:\Program Files (x86)\EVGA\Precision XOC\FW1FontWrapper.dll 2015-11-13 19:51 - 2015-11-13 19:51 - 00259040 _____ () C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\SS2OSD.dll 2015-11-13 19:51 - 2015-11-13 19:51 - 00183776 _____ () C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\SS2DevProps.dll 2015-11-13 19:52 - 2015-11-13 19:52 - 00098816 _____ () C:\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\sradarlauncher.dll 2016-08-23 17:58 - 2016-08-23 17:58 - 01383616 _____ () C:\Users\Ra'ed AL-Huraid\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll 2016-08-23 17:58 - 2016-08-23 17:58 - 00118976 _____ () C:\Users\Ra'ed AL-Huraid\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncViews.dll 2016-03-23 11:04 - 2016-03-23 11:04 - 00091136 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\LuaQtWrapperLibrary.dll 2016-03-23 11:02 - 2016-03-23 11:02 - 00224256 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\quazip.dll 2016-03-23 11:02 - 2016-03-23 11:02 - 00200704 _____ () C:\Program Files (x86)\Corsair\Corsair Utility Engine\lua52.dll 2016-04-21 10:45 - 2016-04-21 10:45 - 00244752 _____ () C:\Program Files (x86)\VIPRE\unrar.dll 2016-08-21 01:17 - 2015-06-26 03:13 - 00184184 _____ () C:\Program Files (x86)\VIPRE\Definitions\libBase64.dll 2016-08-21 01:17 - 2015-06-26 03:13 - 00175992 _____ () C:\Program Files (x86)\VIPRE\Definitions\libMachoUniv.dll 2015-08-14 02:17 - 2015-08-14 02:17 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\62023940.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBPIMSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\62023940.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SBAMSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SBPIMSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VipreEdgeProtection => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WebExaminer => ""="Driver" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-10-30 10:24 - 2016-09-12 10:06 - 00499958 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost 0.0.0.0 m.fr.a2dfp.net 0.0.0.0 mfr.a2dfp.net 0.0.0.0 ad.a8.net 0.0.0.0 asy.a8ww.net 0.0.0.0 static.a-ads.com 0.0.0.0 abcstats.com 0.0.0.0 a.abv.bg 0.0.0.0 adserver.abv.bg 0.0.0.0 adv.abv.bg 0.0.0.0 bimg.abv.bg 0.0.0.0 ca.abv.bg 0.0.0.0 track.acclaimnetwork.com 0.0.0.0 accuserveadsystem.com 0.0.0.0 www.accuserveadsystem.com 0.0.0.0 achmedia.com 0.0.0.0 csh.actiondesk.com 0.0.0.0 ads.activepower.net 0.0.0.0 app.activetrail.com 0.0.0.0 stat.active24stats.nl #[Tracking.Cookie] 0.0.0.0 traffic.acwebconnecting.com 0.0.0.0 office.ad1.ru 0.0.0.0 cms.ad2click.nl 0.0.0.0 ad2games.com 0.0.0.0 ads.ad2games.com 0.0.0.0 content.ad20.net 0.0.0.0 core.ad20.net 0.0.0.0 banner.ad.nu 0.0.0.0 adadvisor.net 0.0.0.0 tag1.adaptiveads.com There are 11827 more lines. ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2796851931-2952016419-931386412-1001\Control Panel\Desktop\\Wallpaper -> c:\users\ra'ed al-huraid\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\{92b1915e-601f-49aa-aae6-232ded408f22}.jpg DNS Servers: [removed] - 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{776B9DCB-F1DE-466B-B1D8-2663B4016FA4}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{F34E2DA6-6A68-4267-B667-4B610E972701}] => (Allow) E:\Steam\Steam.exe FirewallRules: [TCP Query User{1182F61E-3956-4B7B-BFC0-CB6106C7C574}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{23676191-7D81-4CCF-89A2-2ECF76059825}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{84FC1B47-9597-4BCF-82F4-287D603F8E29}] => (Allow) C:\Windows\system32\ftp.exe FirewallRules: [{28CBE61B-9A81-4C67-B592-EEAD9B1E89A5}] => (Allow) C:\Windows\system32\ftp.exe FirewallRules: [{785C6CCC-B5A4-4D51-90D4-B769FD376A05}] => (Allow) C:\Windows\SysWOW64\ftp.exe FirewallRules: [{B28DFFF8-3640-42C7-A2F3-2A963C1C334F}] => (Allow) C:\Windows\SysWOW64\ftp.exe FirewallRules: [{BCC7091F-F032-416B-92B4-7CFA5C2B3F63}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{0A286DB9-554A-461C-A6F0-41C2AC942191}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{21CB3034-790F-4CF5-B91B-898C2FC748C5}C:\program files\tixati\tixati.exe] => (Allow) C:\program files\tixati\tixati.exe FirewallRules: [UDP Query User{4AF891C6-625E-4BD8-924F-3AF9DF96A252}C:\program files\tixati\tixati.exe] => (Allow) C:\program files\tixati\tixati.exe FirewallRules: [{4867C404-2D61-456C-93D0-9AEE45FDA204}] => (Allow) E:\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{8AC5ADD2-376F-4F9E-9B46-C03DCFBCFEF2}] => (Allow) E:\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{48A7E94A-EC25-4832-9648-780DE9C7249C}] => (Allow) E:\Steam\steamapps\common\Kopanito All-Stars Soccer\nw.exe FirewallRules: [{02F37CCD-8F07-4558-8999-A67EEB9FD90F}] => (Allow) E:\Steam\steamapps\common\Kopanito All-Stars Soccer\nw.exe FirewallRules: [{6BE6123C-62BB-4FD5-B6AC-26BE08AEA56E}] => (Allow) E:\Steam\steamapps\common\Faeria\Faeria.exe FirewallRules: [{94C28A42-9D65-4C31-9E25-58F09E3DCD43}] => (Allow) E:\Steam\steamapps\common\Faeria\Faeria.exe FirewallRules: [{D99176D4-F0FA-43F5-AF66-253E22E5CE47}] => (Allow) E:\Origin Games\Need for Speed\NFS16.exe FirewallRules: [{F591DAA3-1EFC-4314-B1EA-5124C175F515}] => (Allow) E:\Origin Games\Need for Speed\NFS16.exe FirewallRules: [{1715D277-CD04-472A-9599-57DCC753F845}] => (Allow) E:\Origin Games\Need for Speed\NFS16_trial.exe FirewallRules: [{0E6EDE82-0BF7-45BA-A121-65AAC6BC6DDD}] => (Allow) E:\Origin Games\Need for Speed\NFS16_trial.exe FirewallRules: [{35E67792-4804-4206-AD4D-FD53139AB448}] => (Allow) E:\Steam\steamapps\common\Mighty No. 9\Binaries\Win32\MN9Game.exe FirewallRules: [{90DCEE0B-7991-41FD-BB09-1EE07FBF2F1E}] => (Allow) E:\Steam\steamapps\common\Mighty No. 9\Binaries\Win32\MN9Game.exe FirewallRules: [{752029F1-39FC-4A93-9ADE-A00799CE48BE}] => (Allow) E:\Steam\steamapps\common\lethalleague\LethalLeague.exe FirewallRules: [{04F31E29-28C4-4075-92EC-7787A30B7B16}] => (Allow) E:\Steam\steamapps\common\lethalleague\LethalLeague.exe FirewallRules: [{B69861E6-941E-4E06-8CD5-6DA3F685B1EA}] => (Allow) E:\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [{4C8C3365-6BA3-4768-BAC6-C05CB3C589B7}] => (Allow) E:\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [{9E50CF1E-23E9-46FE-94A3-243184ABD922}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{1591BD9F-A7DD-4F7F-BD32-CD82BA150817}] => (Allow) E:\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{B879CA35-755D-4D25-AC08-3A7448455426}] => (Allow) E:\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{2B91D94A-6E26-4DA0-965A-590F33B8A378}] => (Allow) E:\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{66526800-F298-4507-85E0-98C166C7C84A}] => (Allow) E:\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{9F3598ED-1A6F-48B3-B2BA-3FCB8ED89C37}] => (Allow) E:\Steam\steamapps\common\Tom Clancy's The Division\thedivision.exe FirewallRules: [{D9BDF6DC-E49E-4D60-A49E-85485A1BE4D9}] => (Allow) E:\Steam\steamapps\common\Tom Clancy's The Division\thedivision.exe FirewallRules: [{B2363093-ABE4-46EB-A8EF-6C4EAB93C85B}] => (Allow) E:\Steam\steamapps\common\ABZU\AbzuGame.exe FirewallRules: [{66748B78-1740-4980-8363-FFAA4119B4DE}] => (Allow) E:\Steam\steamapps\common\ABZU\AbzuGame.exe FirewallRules: [{FDA71BE4-7AB2-4A45-98EC-CA68DFF6BD99}] => (Allow) E:\My Downloads\Browser Downloads\setup-vipre-internet-security-pro-trial.exe FirewallRules: [{B970677D-CFBB-4AED-B2BD-3EE865A2726F}] => (Allow) E:\My Downloads\Browser Downloads\setup-vipre-internet-security-pro-trial.exe FirewallRules: [{FE409A2D-3981-4A43-8F5B-FDDD1BBBF872}] => (Allow) E:\My Downloads\Browser Downloads\setup-vipre-internet-security-pro-trial.exe FirewallRules: [{EFD0AC21-9FB2-45CA-A5D4-0B33659505D3}] => (Allow) E:\My Downloads\Browser Downloads\setup-vipre-internet-security-pro-trial.exe FirewallRules: [{3EFFDCD8-39BE-4574-9C6C-3A1EB8DA7652}] => (Allow) E:\My Downloads\Browser Downloads\setup-vipre-internet-security-pro-trial.exe FirewallRules: [{F570A58D-65D0-4340-B397-0AD000485629}] => (Allow) E:\My Downloads\Browser Downloads\setup-vipre-internet-security-pro-trial.exe FirewallRules: [{A6315D2B-B634-4C61-96AA-5CF1D4FF616D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{34668B0E-C98D-47D4-8DB3-BCFE68ED087A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{271A1980-F377-437D-9767-D060DF41ACA9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{A3889644-9E9E-499F-B221-AD4FAADB574E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{AEADF107-4C22-4CC5-9E27-9B0B9B06DC93}] => (Allow) C:\Windows\system32\ftp.exe FirewallRules: [{A10BDC35-6BFB-4DC8-A1DE-58A828A23F08}] => (Allow) C:\Windows\system32\ftp.exe FirewallRules: [{44E21C31-674D-4886-A927-ED72FB20F155}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{8F1D26A7-E75C-4FE7-A414-E83EC819D240}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{9FD6CFA6-ABBB-40BF-BDA1-B51EC7C6D47B}] => (Allow) E:\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{DF390FFD-C783-47AC-8A3D-AC60B4C2854A}] => (Allow) E:\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{D9AE10B5-EB94-4663-8456-A1739F983C9F}] => (Allow) E:\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{62DFE1DB-623B-44A7-B2FF-5B9A7A60D4C8}] => (Allow) E:\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{18387587-E54E-40BA-9567-30E4F65DAC39}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{6DEFEBA6-05D3-49F5-B9CE-90DB4D36A4F2}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{98CD04AC-1D3C-49D5-AC1A-0EA54F46FB5B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{7F3B9A2A-0603-41B9-BFEA-32E80AA584B8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{22AA9062-7686-4799-8162-26BD77695123}] => (Allow) E:\Origin Games\BFH\BFHWebHelper.exe FirewallRules: [{0A7CB4F0-9086-4158-A887-CD0AC55C634E}] => (Allow) E:\Origin Games\BFH\BFHWebHelper.exe FirewallRules: [{D6B86D5D-FEB7-419C-B385-70D2D089B208}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{C5675E82-E47C-47B1-90FB-94E394A2AE67}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{BCD943C2-4B9B-4688-86CA-71681F962048}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{B59E02B3-0A73-4458-8C13-8544D0455149}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{DA1B2F7C-8065-4D76-AD8F-ABEA6791385C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{AD4A6B82-605D-464B-AC3C-DEE54E708C48}] => (Allow) E:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{432A88B8-D4A2-4DD0-B449-CCE2852D9DF7}] => (Allow) E:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{9289910D-7CA3-4DEA-B31C-31B1D6E8BB16}] => (Allow) E:\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{02EACD79-B25E-46AA-8BDC-F88B398F6424}] => (Allow) E:\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{69BAD8BC-E9C9-4D87-A49C-8F8DCA24F217}] => (Allow) E:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{466468A3-C0CF-47B5-9C37-9ADAC8388081}] => (Allow) E:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{D1144666-6769-4492-86AE-15AF859F99FD}] => (Allow) E:\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{3CDE8FE5-D76F-4560-BCBA-FC9A394D766C}] => (Allow) E:\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{18A979B5-47E2-477E-9A21-D4B450D1D889}] => (Allow) E:\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{5A424A11-1775-485E-A444-F217ECA2770C}] => (Allow) E:\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{242EC593-6C74-4F1D-96EE-3854D94E66DA}] => (Allow) E:\Steam\steamapps\common\hotline_miami\HotlineMiami.exe FirewallRules: [{067263B5-234E-4EC8-BA9B-3735315F212A}] => (Allow) E:\Steam\steamapps\common\hotline_miami\HotlineMiami.exe FirewallRules: [{2C4DDB13-2E4A-41EF-99DF-E48C06706E58}] => (Allow) E:\Steam\steamapps\common\3DMark\3DMarkLauncher.exe FirewallRules: [{993859AA-0A18-495B-A71D-D927AC333FD5}] => (Allow) E:\Steam\steamapps\common\3DMark\3DMarkLauncher.exe FirewallRules: [{904F1D91-5D57-4E58-8FEE-8311A12BF1E2}] => (Allow) E:\Steam\steamapps\common\Dying Light\DyingLightGame.exe FirewallRules: [{688559BE-D93E-41F9-BE52-D60AFB833C84}] => (Allow) E:\Steam\steamapps\common\Dying Light\DyingLightGame.exe FirewallRules: [{18BF0F48-1579-4EB9-AF6D-357F92039DAB}] => (Allow) E:\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{8D73DAA5-D665-4308-B990-E5A25968DDCB}] => (Allow) E:\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{06D6D62A-8D7B-40D2-A21A-7E9B09B18BE0}] => (Allow) E:\Steam\steamapps\common\SavantAscent\Savant_Ascent.exe FirewallRules: [{7F79AA28-45B4-4558-AB2D-451A33128920}] => (Allow) E:\Steam\steamapps\common\SavantAscent\Savant_Ascent.exe FirewallRules: [{1861186F-0DDC-4C88-8C18-194E748A7900}] => (Allow) E:\Steam\steamapps\common\Hotline Miami 2\HotlineMiami2.exe FirewallRules: [{BCD82AA0-5D31-4242-B6E6-11F209D8349B}] => (Allow) E:\Steam\steamapps\common\Hotline Miami 2\HotlineMiami2.exe FirewallRules: [{094C0D9B-03A7-4169-A91B-60BEB68B2343}] => (Allow) E:\Steam\steamapps\common\H1Z1\LaunchPad.exe FirewallRules: [{A1EB813A-2D6B-4F98-871F-5B3F74E5EA38}] => (Allow) E:\Steam\steamapps\common\H1Z1\LaunchPad.exe FirewallRules: [{D434F37A-FB6F-44D7-B977-237C3578E92C}] => (Allow) E:\Steam\steamapps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe FirewallRules: [{2C1BB35D-0F6A-4CB2-BBA4-19813451777D}] => (Allow) E:\Steam\steamapps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe FirewallRules: [{834290A7-5381-479F-97A2-2F519AA96D86}] => (Allow) E:\Steam\steamapps\common\Streets of Fury EX\bin.FNA\Streets of Fury EX.exe FirewallRules: [{9DB40139-048B-4D5B-A04B-09C978BF2F20}] => (Allow) E:\Steam\steamapps\common\Streets of Fury EX\bin.FNA\Streets of Fury EX.exe FirewallRules: [{AD47D946-0C09-453D-89BB-4790535E76AF}] => (Allow) E:\Steam\steamapps\common\Streets of Fury EX\Streets of Fury EX.exe FirewallRules: [{0530873A-7C7C-4B38-BF9D-6EC9B56F0942}] => (Allow) E:\Steam\steamapps\common\Streets of Fury EX\Streets of Fury EX.exe FirewallRules: [{8C62A71C-E51B-4075-A647-EEE5726769AD}] => (Allow) E:\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe FirewallRules: [{8FDB67CD-8073-4E1B-88F4-C0F1CF1941A9}] => (Allow) E:\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe FirewallRules: [{2B5ACA08-ED78-4875-BE59-67624B9B3029}] => (Allow) C:\Windows\system32\ftp.exe FirewallRules: [{C285925F-EEF5-45B7-A3C3-1DBBE93FADDD}] => (Allow) E:\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe FirewallRules: [{A68D303E-D58D-4327-82D5-B90934A1C94F}] => (Allow) E:\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe FirewallRules: [{24EE01F7-1356-4FBA-BDE5-2403B8A492C0}] => (Allow) E:\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe FirewallRules: [{1C6B67B8-BE49-4669-99BB-12E631EC2C7F}] => (Allow) E:\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe FirewallRules: [{759D3099-6B23-4EFF-8FEB-50388462AB5A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{0013B9B4-F091-4451-AA5A-E6DEA9908DCB}] => (Allow) E:\Steam\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{E07A322C-780F-4090-9808-2C26F971C9DD}] => (Allow) E:\Steam\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{8FD441A8-392B-412C-9417-F1314C295BAB}] => (Allow) E:\Steam\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{D22BF6FE-DD03-4694-89DD-83B2EAAB593A}] => (Allow) E:\Steam\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{5F311EE7-811B-4834-8636-BA2C5807D5A7}] => (Allow) E:\Steam\steamapps\common\Bastion\Bastion.exe FirewallRules: [{0BBC670E-D4A0-4EAF-B3F9-80E0A47447A8}] => (Allow) E:\Steam\steamapps\common\Bastion\Bastion.exe FirewallRules: [{38F8C518-38B8-4AE7-B051-B77AB0B99D23}] => (Allow) E:\Steam\steamapps\common\NeverAlone\Never_Alone.exe FirewallRules: [{32FCB868-39E5-4AB0-9BB5-FA9537265CF4}] => (Allow) E:\Steam\steamapps\common\NeverAlone\Never_Alone.exe FirewallRules: [{CF134E06-4D14-4B5E-8E0E-92F328BF3A6F}] => (Allow) E:\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe FirewallRules: [{BEECB772-4A49-422B-9F80-29F5EE09DD92}] => (Allow) E:\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe FirewallRules: [{443E81F5-BE25-432C-ADB4-21DD73C7AD35}] => (Allow) E:\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe FirewallRules: [{9929659C-872F-4157-8025-CD6A4F6169EB}] => (Allow) E:\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe FirewallRules: [{BC970894-AA4C-4C7E-BD2C-754AD98851B4}] => (Allow) E:\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe FirewallRules: [{0B728AE9-3772-4A4F-AFAE-A974F65EB2A7}] => (Allow) E:\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe FirewallRules: [{635E4EE2-EF69-4906-BA3C-0EA84CC17AB4}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe FirewallRules: [{3744FC4A-BA08-4E36-B98F-7556D76CBE40}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe ==================== Restore Points ========================= 15-10-2016 16:38:10 JRT Pre-Junkware Removal 19-10-2016 20:53:32 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 19-10-2016 20:53:37 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 21-10-2016 23:49:16 Installed EVGA Precision XOC. 25-10-2016 15:50:24 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 25-10-2016 15:50:28 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 27-10-2016 16:41:14 Installed EVGA Precision XOC. ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/27/2016 04:47:52 PM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for E:\Steam\bin\steamwebhelper.exe Error: (10/27/2016 04:46:59 PM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for E:\Steam\bin\steamwebhelper.exe Error: (10/27/2016 04:41:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (10/26/2016 09:38:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: dwm.exe, version: 10.0.10586.0, time stamp: 0x5632d756 Faulting module name: combase.dll, version: 10.0.10586.589, time stamp: 0x57cf954a Exception code: 0xc0000005 Fault offset: 0x000000000007cccc Faulting process ID: 0x1968 Faulting application start time: 0x01d22efcaf9f6800 Faulting application path: C:\Windows\System32\dwm.exe Faulting module path: C:\Windows\system32\combase.dll Report ID: 666ae0fb-092d-41ea-a8e9-ff852f7bf98c Faulting package full name: Faulting package-relative application ID: Error: (10/26/2016 04:56:50 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "WmiApRpl" in DLL "C:\Windows\system32\wbem\wmiaprpl.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (10/26/2016 04:56:50 PM) (Source: PerfNet) (EventID: 2004) (User: ) Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code. Error: (10/26/2016 04:56:50 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "MSDTC" in DLL "C:\Windows\system32\msdtcuiu.DLL" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (10/26/2016 04:56:50 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "Lsa" in DLL "C:\Windows\System32\Secur32.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (10/26/2016 04:56:50 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "ESENT" in DLL "C:\Windows\system32\esentprf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (10/26/2016 04:56:50 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "BITS" in DLL "C:\Windows\System32\bitsperf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. System errors: ============= Error: (10/27/2016 05:34:28 PM) (Source: DCOM) (EventID: 10016) (User: SELVERWOLF) Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} and APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} to the user SELVERWOLF\Ra'ed AL-Huraid SID (S-1-5-21-2796851931-2952016419-931386412-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). This security permission can be modified using the Component Services administrative tool. Error: (10/27/2016 05:34:28 PM) (Source: DCOM) (EventID: 10016) (User: SELVERWOLF) Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} and APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} to the user SELVERWOLF\Ra'ed AL-Huraid SID (S-1-5-21-2796851931-2952016419-931386412-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). This security permission can be modified using the Component Services administrative tool. Error: (10/27/2016 05:33:58 PM) (Source: Application Popup) (EventID: 56) (User: ) Description: ACPI5 Error: (10/27/2016 05:33:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The User Data Access_56f3c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (10/27/2016 05:33:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The User Data Storage_56f3c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (10/27/2016 05:33:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Contact Data_56f3c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (10/27/2016 05:33:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Sync Host_56f3c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (10/27/2016 05:22:31 PM) (Source: DCOM) (EventID: 10016) (User: SELVERWOLF) Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} and APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} to the user SELVERWOLF\Ra'ed AL-Huraid SID (S-1-5-21-2796851931-2952016419-931386412-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). This security permission can be modified using the Component Services administrative tool. Error: (10/27/2016 05:22:31 PM) (Source: DCOM) (EventID: 10016) (User: SELVERWOLF) Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} and APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} to the user SELVERWOLF\Ra'ed AL-Huraid SID (S-1-5-21-2796851931-2952016419-931386412-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). This security permission can be modified using the Component Services administrative tool. Error: (10/27/2016 04:43:40 PM) (Source: DCOM) (EventID: 10016) (User: SELVERWOLF) Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} and APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} to the user SELVERWOLF\Ra'ed AL-Huraid SID (S-1-5-21-2796851931-2952016419-931386412-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). This security permission can be modified using the Component Services administrative tool. CodeIntegrity: =================================== Date: 2016-10-26 18:18:57.536 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. Date: 2016-10-26 18:18:56.852 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2OSD.dll that did not meet the Store signing level requirements. Date: 2016-10-26 18:18:56.845 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2DevProps.dll that did not meet the Store signing level requirements. Date: 2016-10-26 18:11:05.579 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2OSD.dll that did not meet the Store signing level requirements. Date: 2016-10-26 18:11:05.570 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2DevProps.dll that did not meet the Store signing level requirements. Date: 2016-10-26 18:10:40.543 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\EVGA\Precision XOC\PXSHW10_x64.dll that did not meet the Store signing level requirements. Date: 2016-10-26 18:10:35.454 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2OSD.dll that did not meet the Store signing level requirements. Date: 2016-10-26 18:10:35.447 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\ASUSTeKcomputer.Inc\SS2\UserInterface\x64\SS2DevProps.dll that did not meet the Store signing level requirements. Date: 2016-10-26 18:10:35.441 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. Date: 2016-10-15 16:45:02.304 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz Percentage of memory in use: 17% Total physical RAM: 16307.98 MB Available physical RAM: 13511.36 MB Total Virtual: 17331.98 MB Available Virtual: 14230.68 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:232.4 GB) (Free:182.55 GB) NTFS Drive e: (Data) (Fixed) (Total:931.51 GB) (Free:163.01 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 68A4B057) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 254C4B1E) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.4 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================