Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-01-2017 01 Ran by [removed] (27-01-2017 01:04:10) Running from C:\Users\[removed]\Downloads Windows 10 Pro Version 1607 (X64) (2016-09-19 05:44:22) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1534721190-2323838006-1212925555-500 - Administrator - Disabled) Archit (S-1-5-21-1534721190-2323838006-1212925555-1002 - Administrator - Enabled) => C:\Users\Archit DefaultAccount (S-1-5-21-1534721190-2323838006-1212925555-503 - Limited - Disabled) Guest (S-1-5-21-1534721190-2323838006-1212925555-501 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\uTorrent) (Version: 3.4.9.43085 - BitTorrent Inc.) 4K Video Downloader 4.1 (HKLM-x32\...\4K Video Downloader_is1) (Version: 4.1.1.2070 - Open Media LLC) ABC Inventory Software (HKLM-x32\...\{6CEFBCFC-602C-492B-A9AE-DFCA56A59036}) (Version: 3.12.3036 - Almyta Systems) AC3Filter 2.6.0b (HKLM-x32\...\AC3Filter_is1) (Version: 2.6.0b - Alexander Vigovsky) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.023.20056 - Adobe Systems Incorporated) Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.18 - Adobe Systems) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated) Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Premiere Pro CS6 (HKLM-x32\...\{7176B973-6011-43C1-AEBC-2D73FE7C6982}) (Version: 6.0 - Adobe Systems Incorporated) AlienRespawn (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.9.2.8 - Alienware) Alienware Command Center (HKLM-x32\...\InstallShield_{D4CE21D4-27E5-46DB-9FFE-553A90AD4B9F}) (Version: 3.5.14.0 - Alienware Corp.) Alienware Command Center (Version: 3.5.14.0 - Alienware Corp.) Hidden Alienware Digital Delivery (HKLM-x32\...\{693A23FB-F28B-4F7A-A720-4C1263F97F43}) (Version: 3.1.1002.0 - Dell Products, LP) Alienware On-Screen Display (HKLM-x32\...\InstallShield_{0D69462F-99CC-4F8D-942E-666E21CE59F8}) (Version: 0.33.0.10C - ) Alienware On-Screen Display (x32 Version: 0.33.0.10C - ) Hidden Ansel (Version: 373.06 - NVIDIA Corporation) Hidden Apple Application Support (32-bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bazzaz Z-Mapper (HKLM\...\Bazzaz Z-Mapper_is1) (Version: 1.0.204.0 - Bazzaz) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.30.223.143 - Broadcom Corporation) CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform) Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) CPUID HWMonitor 1.24 (HKLM\...\CPUID HWMonitor_is1) (Version: - ) Crystal Reports Basic Runtime for Visual Studio 2008 (x64) (Version: 10.5.0.0 - Business Objects) Hidden CyberLink Media Suite Essentials (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dell System Detect (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\58d94f3ce2c27db0) (Version: 7.11.0.6 - Dell) Discord (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.) Dishonored 2 (HKLM\...\Steam App 403640) (Version: - Arkane Studios) Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.5.1.1 - Dolby Laboratories Inc) Drobo Dashboard (HKLM-x32\...\{863885B3-7C05-421C-8817-568712778745}) (Version: 2.6.7 - Drobo) Dropbox (HKLM-x32\...\Dropbox) (Version: 18.4.32 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.59.1 - Dropbox, Inc.) Hidden EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version: - EaseUS) EMSC (x32 Version: 0.0.0.25 - Compal Electronics, Inc.) Hidden EScribe (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\EScribe) (Version: - Evolv) Face Recognition (HKLM\...\{770ED7E8-31F7-4F8E-887A-220B66865D4B}) (Version: 4.0.71.1 - Sensible Vision) FaceRig (HKLM\...\Steam App 274920) (Version: - Holotech Studios) ffdshow x64 v1.3.4531 [2014-06-28] (HKLM\...\ffdshow64_is1) (Version: 1.3.4531.0 - ) FiiO Portable High-Res Music Player series v3.34.0 (HKLM-x32\...\Software_FiiO_fiio_usbaudio_Setup) (Version: 3.34.0 - FiiO) GDR 4033 for SQL Server 2008 R2 (KB2977320) (64-bit) (HKLM\...\KB2977320) (Version: 10.52.4033.0 - Microsoft Corporation) GDR 4042 for SQL Server 2008 R2 (KB3045313) (64-bit) (HKLM\...\KB3045313) (Version: 10.52.4042.0 - Microsoft Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.) Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden GoPro (Version: 0.1.2733 - GoPro, Inc.) Hidden GoPro for Desktop (HKLM-x32\...\{88734dc7-c200-4ad3-b29f-bb5e436cb30f}) (Version: 1.4.0.2733 - GoPro, Inc.) GoPro Studio (x32 Version: 5.9.2733 - GoPro, Inc.) Hidden GoPro Studio 2.0.1 (HKLM-x32\...\GoPro Studio) (Version: 2.0.1 - WoodmanLabs Inc. d.b.a. GoPro) Helper_Modules (Version: 1.00.0000 - J. MORITA MFG. CORP.) Hidden HipChat (HKLM-x32\...\{1E58E3D7-8943-4BF1-BADD-BF471506B684}_is1) (Version: 4.0.1649 - Atlassian Inc) HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.16.0.001 - HTC Corporation) i-Dixel (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\{8350C706-F952-4348-B873-790A70606219}) (Version: - ) Infinity (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\{050fc7db-de52-43af-9a0c-60705fdf9df3}) (Version: 1.4.5 - Daring Development Inc.) Infinity (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\infinity) (Version: 2.0.40 - Daring Development Inc.) inFlow Inventory (HKLM-x32\...\{cb95c337-d57e-435e-84ae-834c845ad3a7}) (Version: 2.5.1 - Archon Systems Inc.) inFlow Inventory 64-bit (Version: 2.5.1 - Archon Systems Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Rapid Start Technology (HKLM-x32\...\{3D073343-CEEB-4ce7-85AC-A69A7631B5D6}) (Version: 3.0.0.1056 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC) Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MediaMonkey 4.1 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.1 - Ventis Media Inc.) Metric Collection SDK 35 (x32 Version: 1.2.0006.00 - Lenovo Group Limited) Hidden Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Access Runtime (English) 2007 (HKLM-x32\...\{90120000-001C-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2008 R2 (64-bit) (HKLM\...\Microsoft SQL Server 2008 R2) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{49860BCD-24D6-44C1-922E-AC12FE32234E}) (Version: 10.52.4042.0 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Policies (HKLM-x32\...\{D21BC5B2-CBAC-48FA-A701-B5A63C1CA7B8}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Setup (English) (HKLM\...\{B2213E4E-F502-4D36-BE95-9293C866EF3F}) (Version: 10.52.4042.0 - Microsoft Corporation) Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation) Microsoft SQL Server Browser (HKLM-x32\...\{BF9BF038-FE03-429D-9B26-2FA0FD756052}) (Version: 10.52.4000.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 Query Tools ENU (HKLM-x32\...\{DDFD8348-058C-4F4B-85E5-6D740D4AB3FE}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{288D79EE-A2D1-42AF-9597-B0ADCC23A8ED}) (Version: 10.52.4000.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{4ECF4BDC-8387-329A-ABE9-CF5798F84BB2}) (Version: 9.0.35191 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Minimal ADB and Fastboot version 1.3.1 (HKLM-x32\...\{26AC9666-A2C6-4D33-8370-A50F50F277C4}_is1) (Version: 1.3.1 - Sam Rodberg) Minion (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\{Minion}}_is1) (Version: 3.0 - Good Game Mods LLC) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 27.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 en-US)) (Version: 27.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla) MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Driver 373.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 373.06 - NVIDIA Corporation) NVIDIA 3D Vision Video Player (HKLM-x32\...\{7BF8BD5F-EE1A-4DB1-B810-A4AE1D34530E}) (Version: 1.7.2 - NVIDIA Corporation) NVIDIA GeForce Experience 3.2.2.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.2.2.49 - NVIDIA Corporation) NVIDIA Graphics Driver 373.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 373.06 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NvNodejs (Version: 3.2.2.49 - NVIDIA Corporation) Hidden NvTelemetry (Version: 2.0.2.1 - NVIDIA Corporation) Hidden NvvHci (Version: 2.02.0.2 - NVIDIA Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.12.1.43352 - Electronic Arts, Inc.) PowerISO (HKLM-x32\...\PowerISO) (Version: 6.5 - Power Software Ltd) QNAP Qsync Client (HKLM-x32\...\Qsync) (Version: 4.0.2.1216 - QNAP Systems, Inc.) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.0.30.1052 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.0.30.1052 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{56BF70E8-EC59-4F68-BEE7-8B71432048C4}) (Version: 1.0.30.1052 - Qualcomm Atheros) Qualcomm Atheros Network Manager (Version: 1.0.30.1052 - Qualcomm Atheros) Hidden Rad Rodgers (HKLM\...\Steam App 353580) (Version: - Interceptor Entertainment) RaidCall (HKLM-x32\...\RaidCall) (Version: 7.3.6-1.2.13009.198 - raidcall.com.ru) Razer Lachesis (HKLM-x32\...\{CB4532F7-A1BD-46D2-9938-3E7D4656FB18}) (Version: 1.10.0000 - Razer USA Ltd.) Razer TRON (HKLM-x32\...\{6750AB2C-014F-441E-92CD-AB68BB4530BF}) (Version: 1.02.05 - Razer USA Ltd.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21236 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7544 - Realtek Semiconductor Corp.) ReClock (HKLM-x32\...\ReClock) (Version: - SlySoft, Inc.) RESIDENT EVIL 7 biohazard / BIOHAZARD 7 resident evil (HKLM\...\Steam App 418370) (Version: - CAPCOM Co., Ltd.) Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15022.8 - Samsung Electronics Co., Ltd.) Samsung Kies3 (x32 Version: 3.2.15022.8 - Samsung Electronics Co., Ltd.) Hidden Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.59.0 - Samsung Electronics Co., Ltd.) Service Pack 2 for SQL Server 2008 R2 (KB2630458) (64-bit) (HKLM\...\KB2630458) (Version: 10.52.4000.0 - Microsoft Corporation) SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.2.2.49 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.) Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16034.4 - Samsung Electronics Co., Ltd.) Smart Switch (x32 Version: 4.1.16034.4 - Samsung Electronics Co., Ltd.) Hidden SQL Server 2008 R2 SP2 Common Files (Version: 10.52.4000.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP2 Database Engine Services (Version: 10.52.4000.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP2 Database Engine Shared (Version: 10.52.4000.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP2 Management Studio (Version: 10.52.4000.0 - Microsoft Corporation) Hidden Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1 - Microsoft Corporation) Hidden ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.12.0046 - ST Microelectronics) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stereoscopic Player (HKLM-x32\...\{0B67DFA8-E3F5-4E1A-893E-526F9F4EFBAE}) (Version: 2.1.4 - 3dtv.at) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.8.2 - Synaptics Incorporated) Tableau 9.3 (9300.16.0315.0125) (32-bit) (HKLM-x32\...\{379A03FF-F613-4CFC-A0D0-468B25CBE46B}) (Version: 9.3.516 - Tableau Software) TBR Top Tune Version 1.0.0.1 (HKLM-x32\...\{5780449E-6A70-4E7E-B848-7763762F564D}_is1) (Version: - Two Brothers Racing) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.47484 - TeamViewer) Terraria (HKLM\...\Steam App 105600) (Version: - Re-Logic) The Elder Scrolls Online (HKLM-x32\...\The Elder Scrolls Online) (Version: 1.0.0.0 - Zenimax Online Studios) The Flame in the Flood (HKLM-x32\...\Steam App 318600) (Version: - The Molasses Flood) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 15.0 - Ubisoft) VFW_Codec32 (x32 Version: 0.1.160.0 - GoPro, Inc.) Hidden VFW_Codec64 (Version: 0.1.160.0 - GoPro, Inc.) Hidden ViStart (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\ViStart) (Version: 8.1.0.5208 - Lee-Soft.com) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) WebM Project Directshow Filters (HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\...\webmdshow) (Version: - ) WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.7850 - Broadcom Corporation) WinAVI All-in-One Converter (HKLM-x32\...\WinAVI All-in-One Converter) (Version: 1.7.0.4734 - ZJMedia Digital Technology Ltd.) Windows 10 Upgrade Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17354 - Microsoft Corporation) Windows Driver Package - Dimension Engineering USB Serial Converter (11/12/2015 1.0.3.13) (HKLM\...\32A12E2F88EE40BDBADBB41ECCB8559DEE67F7A3) (Version: 11/12/2015 1.0.3.13 - Dimension Engineering) Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012 - GoPro) Windows Driver Package - Silicon Laboratories (silabenm) Ports (12/10/2012 6.6.1.0) (HKLM\...\D680DEE0F68D64EC53D0C5769879D15D387054CC) (Version: 12/10/2012 6.6.1.0 - Silicon Laboratories) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1534721190-2323838006-1212925555-1002_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Archit\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-1534721190-2323838006-1212925555-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Archit\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {04B35AEA-5DDB-4DB1-A86F-E1DAB673CB23} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {05F40BFF-2016-4F0B-AF38-BC0996F3F65D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {07B824E3-AEAA-4296-85C5-FB869F87B5FC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {12C941FB-471D-4F40-B42D-4F6A21240514} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-06] (NVIDIA Corporation) Task: {13F0D8DC-C977-4C9E-8077-ABBA2BCE60CB} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe Task: {18D6B0C0-C074-41BF-BD21-F5BD8E6697AC} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-03-05] (CyberLink) Task: {1BAEF776-0941-48E5-89A5-86D4D32D17AF} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-01-06] (NVIDIA Corporation) Task: {1DAE9A94-E6DF-48B5-AD22-BE3B3919F18B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-13] (Adobe Systems Incorporated) Task: {1E5B4948-869C-4B52-B144-8F130BB1464A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-06] (Piriform Ltd) Task: {23F667CA-ECFD-4DC0-9E5B-38F85E021EC2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {26F99521-D814-41DC-9894-7FB56E8192B5} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-01-06] (NVIDIA Corporation) Task: {2CDA5161-92F7-41FF-A7C1-07812053AAAC} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {3FB9EC40-6A03-4961-9B7C-FC8F296F956A} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-08-14] (Synaptics Incorporated) Task: {5018F689-31B4-4050-A02C-5F63ED0B0BBC} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-06] (NVIDIA Corporation) Task: {506288A8-2A18-4BD0-B1A1-05EB090B7D5E} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-07] (Dropbox, Inc.) Task: {56525EB8-BC04-4885-A0D5-5D2D03677055} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {622F1FD1-7407-4D24-96AD-8AE54B193A60} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe [2017-01-13] (Adobe Systems Incorporated) Task: {63EC2B63-94EC-418F-9128-5ABBBE8A063C} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-01-11] (Microsoft Corporation) Task: {65D83BAD-D519-43D2-BE9E-570224D0051B} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-06] (NVIDIA Corporation) Task: {6B74211D-7794-41CC-A44A-5D06908B71BE} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {6DEF7DAB-0FBB-4964-8B67-0B267914196B} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION Task: {7960DC94-5BEF-479B-9278-FB4DBFE39629} - System32\Tasks\Trojan Remover => C:\Program Files\Loaris\Trojan Remover\ltr.exe [2015-09-29] (Loaris Inc.) Task: {79E473A6-FFB0-404B-AB35-AE99C64E81E8} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {832E7322-F64A-4A38-831B-8871169C5883} - \httphumanvevo12comsmartsm -> No File <==== ATTENTION Task: {96BEDDA4-48F1-4ECD-AE18-379FFE71576A} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-07] (Dropbox, Inc.) Task: {97502860-E855-414D-A0D2-6AAB70463EB6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-04] (Google Inc.) Task: {9A41846F-8362-4D5D-91B5-1582D8402956} - \WPD\SqmUpload_S-1-5-21-1534721190-2323838006-1212925555-1002 -> No File <==== ATTENTION Task: {A5C73A5A-470D-4A04-B21F-1DE4682C8E6F} - System32\Tasks\Intel(R) Rapid Start Technology Manager => C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe [2013-09-11] (Intel) Task: {B114D81E-84A7-4CDC-BA55-2647382C5CA7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534721190-2323838006-1212925555-1002UA => C:\Users\Archit\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.) Task: {C5D0722B-CE78-49CD-960B-E6681003FF56} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-04] (Google Inc.) Task: {C955E18A-199F-49D3-8353-6470F482A47B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {D4E4C344-3C7C-4B16-B456-DEC5B14E114E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-06] (NVIDIA Corporation) Task: {ED301886-DE68-40A5-879C-6192FFF95F46} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-22] (CyberLink Corp.) Task: {F2C134D1-3EC2-404A-B55A-3F700233C698} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534721190-2323838006-1212925555-1002UA1d258136bf1c653 => C:\Users\Archit\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.) Task: {F344A2F3-D5A5-4C8A-88EB-EE7E77816CA7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534721190-2323838006-1212925555-1002Core1d258136bed5f7e => C:\Users\Archit\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.) Task: {F3CCF0BA-926A-4D9B-A7F4-CEEFC88E8333} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1534721190-2323838006-1212925555-1002Core => C:\Users\Archit\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.) Task: {F82B65EA-5D15-48A3-9B78-06E73A7CD124} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {FA0E04E0-E673-4FBC-B8BC-D6572486654C} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2014-09-10] (Lenovo) Task: {FB601ACF-57A1-4730-B97F-688641B6BC7B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1534721190-2323838006-1212925555-1002Core.job => C:\Users\Archit\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1534721190-2323838006-1212925555-1002UA.job => C:\Users\Archit\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\Archit\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2" ==================== Loaded Modules (Whitelisted) ============== 2016-07-16 17:12 - 2016-07-16 17:12 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-12-14 20:45 - 2016-12-09 15:59 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-17 18:38 - 2015-12-17 18:38 - 00085800 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-12-17 18:38 - 2015-12-17 18:38 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2013-10-17 15:27 - 2013-10-17 15:27 - 00166912 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 2016-12-14 20:45 - 2016-12-09 15:59 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-11-21 09:00 - 2016-11-21 09:00 - 00365880 _____ () C:\Program Files (x86)\QNAP\Qsync\QsyncExt.dll 2017-01-23 12:59 - 2017-01-23 12:59 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.152.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-01-23 12:59 - 2017-01-23 12:59 - 00179712 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.152.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-01-23 12:59 - 2017-01-23 12:59 - 42130432 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.152.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-12-14 15:35 - 2016-12-14 15:36 - 02216448 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.152.0_x64__kzf8qxf38zg5c\roottools.dll 2016-05-12 00:39 - 2016-05-12 00:39 - 01088944 _____ () C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe 2016-05-12 00:39 - 2016-05-12 00:39 - 00037808 _____ () C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe 2016-12-17 10:28 - 2017-01-06 06:40 - 04490808 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll 2016-12-17 10:28 - 2017-01-06 06:40 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-09-20 00:31 - 2016-09-20 00:31 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-01-11 20:12 - 2016-12-21 12:39 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-01-11 20:12 - 2016-12-21 12:24 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-01-11 20:12 - 2016-12-21 12:18 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-01-11 20:12 - 2016-12-21 12:18 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-01-11 20:12 - 2016-12-21 12:18 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2017-01-11 20:12 - 2016-12-21 12:18 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-01-11 20:12 - 2016-12-21 12:23 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-12-17 08:31 - 2016-12-08 13:33 - 02412888 _____ () C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\libglesv2.dll 2016-12-17 08:31 - 2016-12-08 13:33 - 00099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\libegl.dll 2017-01-13 06:00 - 2017-01-13 06:00 - 31167576 _____ () C:\WINDOWS\system32\Macromed\Flash\pepflashplayer64_24_0_0_194.dll 2012-08-15 10:13 - 2012-08-15 10:13 - 00093680 _____ () C:\WINDOWS\SYSTEM32\FAIEExtension.DLL 2016-10-17 08:28 - 2016-10-17 08:28 - 02493440 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll 2015-03-16 11:28 - 2015-03-16 11:28 - 00155528 _____ () C:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll 2014-03-05 08:47 - 2013-09-18 22:03 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-12-17 10:28 - 2017-01-06 06:40 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-12-17 10:28 - 2017-01-06 06:40 - 03776056 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll 2016-12-17 10:28 - 2017-01-06 06:40 - 00901688 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-01-05 22:49 - 2015-12-19 05:22 - 01607920 _____ () C:\Program Files (x86)\AlienRespawn\Components\Restore\STRestoreAPI.dll 2014-03-05 08:56 - 2012-11-26 11:49 - 01153384 _____ () C:\Program Files (x86)\AlienRespawn\Components\Restore\libxml2.dll 2016-01-05 22:49 - 2014-02-19 01:42 - 00117568 _____ () C:\Program Files (x86)\AlienRespawn\Components\Restore\zlib1.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Archit\Cookies:5CXHD0nvluuDsEKXulm [2008] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 18:55 - 2013-08-22 18:55 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1534721190-2323838006-1212925555-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Archit\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\windows photo viewer wallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager" HKLM\...\StartupApproved\Run32: => "SwitchBoard" HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => LPort=139 FirewallRules: [UDP Query User{5444A92C-5B0C-480C-8C94-0532DFC4EE74}D:\gamehalycon\halcyon_6_starbase_commander_v1.0\h6.exe] => D:\gamehalycon\halcyon_6_starbase_commander_v1.0\h6.exe FirewallRules: [TCP Query User{6CA1A65F-E6DC-4D3F-AF20-E4945C3C22EB}D:\gamehalycon\halcyon_6_starbase_commander_v1.0\h6.exe] => D:\gamehalycon\halcyon_6_starbase_commander_v1.0\h6.exe FirewallRules: [{AD842B26-607A-4A95-98BE-260B4245F572}] => C:\Program Files\GoPro\GoPro Desktop App\GoProLauncher.exe FirewallRules: [{DE860325-9A88-4C3B-A034-C438F01B8421}] => C:\Program Files\GoPro\GoPro Desktop App\GoProIDService.exe FirewallRules: [{A9A4115F-FF97-4B5D-BD01-CEE10F19739A}] => C:\Program Files\GoPro\GoPro Desktop App\GoProMsgBus.exe FirewallRules: [{7BA86E1A-6F29-43E1-A2BD-5D44C0015237}] => C:\Program Files\GoPro\GoPro Desktop App\GoPro.exe FirewallRules: [UDP Query User{E36A9978-A825-4FF2-8C01-AFE2BF0B38AB}D:\steamlibrary\steamapps\common\flameintheflood\rivergame\binaries\win64\rivergame-win64-shipping.exe] => D:\steamlibrary\steamapps\common\flameintheflood\rivergame\binaries\win64\rivergame-win64-shipping.exe FirewallRules: [TCP Query User{81539EF3-9D11-412A-B8D8-809803E86C50}D:\steamlibrary\steamapps\common\flameintheflood\rivergame\binaries\win64\rivergame-win64-shipping.exe] => D:\steamlibrary\steamapps\common\flameintheflood\rivergame\binaries\win64\rivergame-win64-shipping.exe FirewallRules: [UDP Query User{776D4885-AC2C-4355-8526-1B9CD00B5ED5}C:\program files (x86)\mediamonkey\mediamonkey.exe] => C:\program files (x86)\mediamonkey\mediamonkey.exe FirewallRules: [TCP Query User{2CD5374E-2246-426A-8DF7-E7CEB5310481}C:\program files (x86)\mediamonkey\mediamonkey.exe] => C:\program files (x86)\mediamonkey\mediamonkey.exe FirewallRules: [UDP Query User{EFDEECC0-8647-4F3F-AD71-2C90D5A5704F}C:\program files (x86)\mediamonkey\mediamonkey.exe] => C:\program files (x86)\mediamonkey\mediamonkey.exe FirewallRules: [TCP Query User{29B33D95-9607-458B-B870-8452C7851CF1}C:\program files (x86)\mediamonkey\mediamonkey.exe] => C:\program files (x86)\mediamonkey\mediamonkey.exe FirewallRules: [{BF77C6F9-E63D-46D5-B26D-C93A09FC22FE}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{7B6D4CDB-AB42-4CFE-85D3-73D859541EDF}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{682E7D2F-49F3-4986-B98B-E2434BCD9A67}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2874BEB1-32BC-4DA9-BD18-305FD8196EF8}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{72FAE18F-8312-487B-888B-D7E22E1D59B3}] => D:\SteamLibrary\steamapps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{11147E2B-77D4-426E-8D43-2B3E976FA4CC}] => D:\SteamLibrary\steamapps\common\7 Days To Die\7DaysToDie.exe FirewallRules: [{AD0FF91D-D588-4CFE-9E93-53A92D8173AD}] => D:\SteamLibrary\steamapps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [{4856041E-5C7F-4714-9E58-5B5621B0D243}] => D:\SteamLibrary\steamapps\common\7 Days To Die\7DaysToDie_EAC.exe FirewallRules: [UDP Query User{45A59C5E-B384-4A52-9DD2-8FE45BC20398}D:\steamlibrary\steamapps\common\flameintheflood\rivergame\binaries\win64\rivergame-win64-shipping.exe] => D:\steamlibrary\steamapps\common\flameintheflood\rivergame\binaries\win64\rivergame-win64-shipping.exe FirewallRules: [TCP Query User{F5E01564-CA24-460E-B9B2-C218F83EC25B}D:\steamlibrary\steamapps\common\flameintheflood\rivergame\binaries\win64\rivergame-win64-shipping.exe] => D:\steamlibrary\steamapps\common\flameintheflood\rivergame\binaries\win64\rivergame-win64-shipping.exe FirewallRules: [UDP Query User{6CAFB06A-53D1-4884-935B-3FDD43366BDF}C:\users\archit\appdata\roaming\utorrent\updates\3.4.3_40760.exe] => C:\users\archit\appdata\roaming\utorrent\updates\3.4.3_40760.exe FirewallRules: [TCP Query User{0EA3525B-B9BD-415B-8FB3-405B8D8EB72E}C:\users\archit\appdata\roaming\utorrent\updates\3.4.3_40760.exe] => C:\users\archit\appdata\roaming\utorrent\updates\3.4.3_40760.exe FirewallRules: [{7E89125B-DA3D-4E58-AFF2-42136AE82190}] => C:\Program Files (x86)\Drobo\Drobo Dashboard\Drobo Dashboard.exe FirewallRules: [{BE857ACF-3FA2-4DE6-9450-B3C08644F4A1}] => C:\Program Files (x86)\Drobo\Drobo Dashboard\Drobo Dashboard.exe FirewallRules: [{9141175C-A952-415A-86F8-9904D0759FA2}] => C:\Program Files (x86)\Drobo\Drobo Dashboard\DDService.exe FirewallRules: [{0459E7BF-4704-4415-8AC8-065F437CF855}] => C:\Program Files (x86)\Drobo\Drobo Dashboard\DDService.exe FirewallRules: [{47E1A757-1798-4E7B-AA43-35441EE578F5}] => C:\Windows\system32\hasplms.exe FirewallRules: [UDP Query User{C33E92EF-0E2E-45C4-929E-1610E171FE4F}C:\program files (x86)\skype\phone\skype.exe] => C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{15AEB8D8-1717-4D83-9B8F-20AAA3D4B432}C:\program files (x86)\skype\phone\skype.exe] => C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{CDB27419-4251-4C1D-988F-353B15DD04C8}C:\program files (x86)\skype\phone\skype.exe] => C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{64C034B0-ED60-495D-A8BA-D7CD42511FD0}C:\program files (x86)\skype\phone\skype.exe] => C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{42D2FE71-1CA4-45BA-8E29-F2C8629CC14D}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{F3A3074E-3797-4F8C-98DB-32ACEE759AD6}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{5F968DC2-ACAE-4EFD-B7FE-07F18CF34C3D}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{4F9BDCF0-168A-4A70-B80A-5801EBDE7DFD}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{954615F8-6458-4650-86BD-FD0F1FAB36E5}] => C:\Users\Archit\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{3E8E19BB-4464-4674-A215-A36F887B7CD8}] => C:\Users\Archit\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{575A60FE-8C04-4FB1-9062-D8B2028A4042}] => LPort=1900 FirewallRules: [{44B4BD18-697D-42D5-B02D-DF7548D756C4}] => LPort=2869 FirewallRules: [{48AAD70F-9C72-4CD1-BAF6-7A14231FC8B1}] => C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{7E6C38B3-8CC2-4D89-A76B-EC533049F86B}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{EA093100-4811-4420-AE4F-C1957E5ECAE8}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{07EF26D4-F88F-416B-A1C5-CC2825DCC76A}] => C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe FirewallRules: [{6D04ABA3-7A44-4CE1-89F9-E7DAFC43527C}] => C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{25680E3C-CC2F-441D-9E8A-0D3EF5BA8B71}] => D:\SteamLibrary\steamapps\common\FlameInTheFlood\RiverGame.exe FirewallRules: [{4A6A19C3-FE4C-4EC4-861C-03C9D07C49D9}] => D:\SteamLibrary\steamapps\common\FlameInTheFlood\RiverGame.exe FirewallRules: [{FC169A0E-3DF8-4C84-AFBB-6C7B3A9B1280}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{03C022BB-658F-4F5B-B17E-CB02B4E95FE5}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{9FFC41E2-1706-4A15-B5FD-930B756811DA}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{50F4AFEE-D1AF-4A99-9E8A-6B38075A1DEF}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{42C78B08-ED01-4A85-BF96-9880332E30D7}F:\jk tyre.exe] => F:\jk tyre.exe FirewallRules: [UDP Query User{0ECE31E8-7AC7-4D8F-B117-256C60CC1456}F:\jk tyre.exe] => F:\jk tyre.exe FirewallRules: [{0C4C41EA-28F0-4DA7-81F1-3AA9C3211638}] => D:\SteamLibrary\steamapps\common\Terraria\Terraria.exe FirewallRules: [{ED100A4B-E813-4D32-BBB6-A25643F41BF5}] => D:\SteamLibrary\steamapps\common\Terraria\Terraria.exe FirewallRules: [{878A4D04-2D10-4FBD-8362-7F0F1858C7C5}] => D:\SteamLibrary\steamapps\common\RadRodgers\Rad.exe FirewallRules: [{2F78DB98-7B67-440A-A302-C24D1CF86D62}] => D:\SteamLibrary\steamapps\common\RadRodgers\Rad.exe FirewallRules: [TCP Query User{6735231C-C90B-4684-ABF5-4B22636BCD93}D:\steamlibrary\steamapps\common\radrodgers\rad\binaries\win64\rad-win64-shipping.exe] => D:\steamlibrary\steamapps\common\radrodgers\rad\binaries\win64\rad-win64-shipping.exe FirewallRules: [UDP Query User{36A3AB12-E4EF-4A1D-8E8B-487A42344900}D:\steamlibrary\steamapps\common\radrodgers\rad\binaries\win64\rad-win64-shipping.exe] => D:\steamlibrary\steamapps\common\radrodgers\rad\binaries\win64\rad-win64-shipping.exe FirewallRules: [{E773A750-E44C-4546-B552-4CB2FFD7E492}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{7D1CA6A3-9D39-4F9B-89B3-3A07E9D14282}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{53E44C5F-D3BD-4216-94A6-C07454A18B5A}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{2581B45F-3EA2-4102-9676-04756B5A8FB3}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{DC855BBD-A5D2-4919-A427-EF6CEFB0E5F7}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{63ADAB17-7137-418A-AE05-E324E3FF094A}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{9FE54401-3A27-490F-A264-68B52347804B}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{8504F395-CC5B-4ACB-A6AA-42701E13A644}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{425BC805-7917-4CF0-8567-7DCD3B95CB4A}] => D:\SteamLibrary\steamapps\common\Dishonored2\Dishonored2.exe FirewallRules: [{7C552D1D-E714-4250-B764-481104D1BDD0}] => D:\SteamLibrary\steamapps\common\Dishonored2\Dishonored2.exe FirewallRules: [{A853D5DF-DCAF-4D6E-8FBB-AC1A676B1ED8}] => D:\SteamLibrary\steamapps\common\FaceRig\Bin\Launcher.exe FirewallRules: [{2CDAB328-CA83-47A0-A998-DE96F70AFB38}] => D:\SteamLibrary\steamapps\common\FaceRig\Bin\Launcher.exe FirewallRules: [{EA541EDF-F037-4FCA-A959-EE6BDAE61A66}] => D:\SteamLibrary\steamapps\common\FaceRig\Bin\FaceRig.exe FirewallRules: [{08411555-6D7E-4138-B27F-3A7153B661BF}] => D:\SteamLibrary\steamapps\common\FaceRig\Bin\FaceRig.exe FirewallRules: [TCP Query User{800746E8-4302-4934-A8AE-68EB4E793B56}C:\program files (x86)\qnap\qsync\qsync.exe] => C:\program files (x86)\qnap\qsync\qsync.exe FirewallRules: [UDP Query User{80A10AD5-EAAF-4A5C-8549-7B84D5035956}C:\program files (x86)\qnap\qsync\qsync.exe] => C:\program files (x86)\qnap\qsync\qsync.exe FirewallRules: [{30846786-A7E4-4BBC-B7F1-4A4E3AE38730}] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [{68B64B23-9FAD-4C4F-8EAF-E9EB24A2A21D}] => D:\SteamLibrary\steamapps\common\RESIDENT EVIL 7 biohazard\re7.exe FirewallRules: [{6A28563E-015B-47AF-901A-673CEFC26491}] => D:\SteamLibrary\steamapps\common\RESIDENT EVIL 7 biohazard\re7.exe ==================== Restore Points ========================= 25-01-2017 11:44:07 Scheduled Checkpoint 26-01-2017 21:26:20 Checkpoint by HitmanPro 26-01-2017 21:34:39 Restore Operation 27-01-2017 00:01:04 JRT Pre-Junkware Removal 27-01-2017 00:18:49 Restore Operation 27-01-2017 00:24:42 JRT Pre-Junkware Removal ==================== Faulty Device Manager Devices ============= Name: facap, FastAccess Video Capture Description: facap, FastAccess Video Capture Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: Sensible Vision Service: FACAP Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (01/27/2017 01:00:38 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 01:00:38 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 12:55:37 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 12:55:37 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 12:50:37 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 12:50:37 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 12:45:36 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 12:45:36 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 12:40:36 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/27/2017 12:40:36 AM) (Source: irstrtsv) (EventID: 0) (User: ) Description: Event-ID 0 System errors: ============= Error: (01/27/2017 12:47:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: This driver has been blocked from loading Error: (01/27/2017 12:47:24 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\Archit\AppData\Local\Temp\ehdrv.sys Error: (01/27/2017 12:47:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: This driver has been blocked from loading Error: (01/27/2017 12:47:23 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\Archit\AppData\Local\Temp\ehdrv.sys Error: (01/27/2017 12:47:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: This driver has been blocked from loading Error: (01/27/2017 12:47:23 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\Archit\AppData\Local\Temp\ehdrv.sys Error: (01/27/2017 12:47:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: This driver has been blocked from loading Error: (01/27/2017 12:47:23 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\Archit\AppData\Local\Temp\ehdrv.sys Error: (01/27/2017 12:47:22 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: This driver has been blocked from loading Error: (01/27/2017 12:47:22 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\Archit\AppData\Local\Temp\ehdrv.sys CodeIntegrity: =================================== Date: 2017-01-27 01:04:22.886 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 01:04:22.885 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 01:01:57.945 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 01:01:57.943 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 00:58:28.551 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 00:58:28.549 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 00:58:28.146 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 00:58:28.144 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 00:58:11.649 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-27 00:58:11.648 Description: Code Integrity determined that a process (\Device\HarddiskVolume7\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume7\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4700MQ CPU @ 2.40GHz Percentage of memory in use: 35% Total physical RAM: 12211.02 MB Available physical RAM: 7889.99 MB Total Virtual: 12979.02 MB Available Virtual: 7949.52 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:195.93 GB) (Free:114.93 GB) NTFS Drive d: (DATA) (Fixed) (Total:931.39 GB) (Free:486.07 GB) NTFS Drive g: (RECOVERY) (Fixed) (Total:0.48 GB) (Free:0.44 GB) FAT32 ==>[system with boot components (obtained from drive)] Drive h: () (Removable) (Total:29.71 GB) (Free:26.26 GB) FAT32 Drive x: (PBR Image) (Fixed) (Total:8.59 GB) (Free:0.74 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: B1D95561) Partition: GPT. ======================================================== Disk: 1 (Size: 238.5 GB) (Disk ID: BC69B867) Partition: GPT. ======================================================== Disk: 2 (Size: 29.7 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================