Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-05-2017 Ran by [removed] (11-05-2017 14:37:37) Running from C:\Users\[removed]\Downloads Windows 10 Pro Version 1607 (X64) (2017-02-06 11:41:01) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1877440888-3991931079-3738133520-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1877440888-3991931079-3738133520-503 - Limited - Disabled) Guest (S-1-5-21-1877440888-3991931079-3738133520-501 - Limited - Disabled) Joni (S-1-5-21-1877440888-3991931079-3738133520-1000 - Administrator - Enabled) => C:\Users\Joni ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\...\uTorrent) (Version: 3.4.9.43085 - BitTorrent Inc.) Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.3.183.90 - Adobe Systems Incorporated) Adobe Photoshop CS5 13 (HKLM-x32\...\{5D0428D2-B5EA-46C8-B678-5F0485BC1DA1}_is1) (Version: 13.0.0.0 - Adobe) Age of Empires® III: Complete Collection (HKLM-x32\...\Steam App 105450) (Version: - Ensemble Studios) Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Applen ohjelmatuki (32-bittinen) (HKLM-x32\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.) Applen ohjelmatuki (64-bittinen) (HKLM\...\{C2651553-6CA3-4822-B2E6-BC4ACA6E0EA2}) (Version: 4.3.1 - Apple Inc.) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.4.2294 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Blur Busters Strobe Util (HKLM-x32\...\{57BDAE81-2BE7-4ABA-8B03-1520FBF41AF9}) (Version: 1.0.0 - Blur Busters) BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.70.1080 - AB Team, d.o.o.) CCleaner (HKLM\...\CCleaner) (Version: 5.27 - Piriform) Core Temp 1.0 RC9 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) CPUID CPU-Z 1.75 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CSStrat (HKLM-x32\...\CSStrat) (Version: - ) Debut Video Capture Software (HKLM-x32\...\Debut) (Version: 3.01 - NCH Software) Discord (HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.) Display Pilot (HKLM-x32\...\{6DD25D67-4339-47A1-950E-EEFC321CBB24}) (Version: 2.15.008 - Portrait Displays, Inc.) Dropbox (HKLM-x32\...\Dropbox) (Version: 25.4.28 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.65.1 - Dropbox, Inc.) Hidden ESEA Client (HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\...\ESEA) (Version: 5.0.0.0 - E-Sports Entertainment LLC) ESL Wire 1.19.0 (HKLM\...\ESL Wire_is1) (Version: - Turtle Entertainment GmbH) Evolve Stage 2 (HKLM\...\Steam App 273350) (Version: - Turtle Rock Studios) FACEIT Client version 1.0 (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 1.0 - FACEIT LTD) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.96 - Google Inc.) Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden Gyazo 3.3.1 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.) H1Z1: King of the Kill (HKLM\...\Steam App 433850) (Version: - Daybreak Game Company) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) iTunes (HKLM\...\{9F4BF859-C3A4-4AB6-BDD1-9C5D58188598}) (Version: 12.4.1.6 - Apple Inc.) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Katana (HKLM-x32\...\Katana) (Version: - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Leawo Blu-ray Player version 1.9.3.5 (HKLM-x32\...\{CF7F52BF-DEE0-44CD-A7E1-AADD5CCECCDD}_is1) (Version: 1.9.3.5 - Leawo Software) Loadout (HKLM-x32\...\Steam App 208090) (Version: - Edge of Reality) Logitech Gaming Software 8.91 (HKLM\...\Logitech Gaming Software) (Version: 8.91.48 - Logitech Inc.) Mac Blu-ray Player (HKLM-x32\...\Mac Blu-ray Player) (Version: 2.16.16.2394 - Macgo Inc.) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProplusRetail - en-us) (Version: 16.0.8067.2032 - Microsoft Corporation) Microsoft Office Professional Plus 2016 - fi-fi (HKLM\...\ProplusRetail - fi-fi) (Version: 16.0.8067.2032 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation) Microsoft Project Professional 2016 - en-us (HKLM\...\ProjectProRetail - en-us) (Version: 16.0.8067.2032 - Microsoft Corporation) Microsoft Project Professional 2016 - fi-fi (HKLM\...\ProjectProRetail - fi-fi) (Version: 16.0.8067.2032 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50906.0 - Microsoft Corporation) Microsoft Visio Professional 2016 - en-us (HKLM\...\VisioProRetail - en-us) (Version: 16.0.8067.2032 - Microsoft Corporation) Microsoft Visio Professional 2016 - fi-fi (HKLM\...\VisioProRetail - fi-fi) (Version: 16.0.8067.2032 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mortal Kombat Kollection (HKLM\...\Steam App 205350) (Version: - NetherRealm Studios, High Voltage) NetLimiter 4 (HKLM-x32\...\NetLimiter 4 4.0.25.0) (Version: 4.0.25.0 - Locktime Software) NetLimiter 4 (Version: 4.0.25.0 - Locktime Software) Hidden Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.1 - Notepad++ Team) NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Driver 376.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 376.53 - NVIDIA Corporation) NVIDIA GeForce Experience 3.6.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.6.0.74 - NVIDIA Corporation) NVIDIA Graphics Driver 376.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.53 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation) NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NvNodejs (Version: 3.6.0.74 - NVIDIA Corporation) Hidden NvTelemetry (Version: 2.4.10.0 - NVIDIA Corporation) Hidden NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.8067.2032 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.8067.2032 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.8067.2032 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7967.2073 - Microsoft Corporation) Hidden Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Pivot Pro Plugin (x32 Version: 9.61.004 - Portrait Displays, Inc.) Hidden Popcorn Time (HKLM-x32\...\Popcorn Time_is1) (Version: 5.5.1.2 - Popcorn Time) <==== ATTENTION Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.85.423.2014 - Realtek) Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.7 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) SafeZone Stable 3.55.2393.596 (x32 Version: 3.55.2393.596 - Avast Software) Hidden SDK (x32 Version: 2.40.012 - Portrait Displays, Inc.) Hidden SHIELD Streaming (Version: 7.1.0370 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.6.0.74 - NVIDIA Corporation) Hidden Skype™ 7.36 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.36.101 - Skype Technologies S.A.) SMITE (HKLM-x32\...\Steam App 386360) (Version: - Hi-Rez Studios) Spotify (HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\...\Spotify) (Version: 1.0.53.758.gde3fc4b2 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.59518 - TeamViewer) The Culling (HKLM\...\Steam App 437220) (Version: - Xaviant) TorrentsTime Media Player (HKLM\...\TorrentsTime Media Player_is1) (Version: 1.1.9.7 - Torrents Time) UE4 Prerequisites (x64) (HKLM-x32\...\{b46d36bc-2438-471e-abe8-1fbbd51754ee}) (Version: 1.0.10.0 - Epic Games, Inc.) UE4 Prerequisites (x64) (Version: 1.0.10.0 - Epic Games, Inc.) Hidden WinRAR 5.31 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Yahoo Search Set (HKLM-x32\...\Yahoo! SearchSet) (Version: - Yahoo Inc.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\...\ChromeHTML: -> <==== ATTENTION CustomCLSID: HKU\S-1-5-21-1877440888-3991931079-3738133520-1000_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\Joni\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64\FileCoAuthLib64.dll => No File ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0273B706-BC07-4271-B087-6BCA024C23E7} - System32\Tasks\FACEIT Client => C:\Program Files\FACEIT Client\faceitclient.exe [2017-05-11] () Task: {0276835B-CEB3-4B91-9C0D-3C863BD90FCE} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-03-28] () Task: {06196AAE-5DBC-42E4-8558-F2CCEBE7E65B} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe Task: {08E8F7EF-5A76-4F64-AE96-D13F0BB03D8E} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe Task: {1336D9D0-58DF-47C3-A7FE-2B952FE23F8F} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe Task: {1C303CFC-396B-488A-B79D-C5C10F5DAC3F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {1D5C28B0-03ED-4CC5-8787-68754426C00F} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe Task: {2410A79C-D199-4ED6-8560-B3E7367D3370} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-05-09] (AVAST Software) Task: {2498FE45-9747-4325-BB64-9292B0160C50} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe Task: {26CD415E-BF92-4305-B9B7-6C5C735B4F45} - System32\Tasks\SafeZone scheduled Autoupdate 1458733262 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-03-22] (Avast Software) Task: {29DBF2AD-93F9-4C17-AA99-6F317795EFB7} - System32\Tasks\{22123B68-2C5F-49D2-A4CB-4914144E1E1F} => pcalua.exe -a D:\JEP\Realtek_LAN_Utility_Win7-8-8-1_VER2027\setup.exe -d D:\JEP\Realtek_LAN_Utility_Win7-8-8-1_VER2027 Task: {2B85BCCF-C873-47AC-B6FC-920318C707F7} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION Task: {2CF8BFB5-B5B3-4706-A0B2-E2A1BEB38FF6} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-05-03] (NVIDIA Corporation) Task: {339006CF-EB2B-4CB3-8B0E-2ABA1527D25E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {33DA857E-B22D-4A8D-8AF3-34B384960AF8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-26] (Google Inc.) Task: {3A813B55-4BED-4B28-937C-A3F078888E91} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {3B8AA0FF-BBEB-4C74-BEB6-DE16708AEA40} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe Task: {43DE9776-202C-44C6-970C-2BD7AEEF281A} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe Task: {44BF6D40-566E-40BD-803D-74099062FD90} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION Task: {481A2782-0706-4710-844B-B07C6C8AAB3F} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-04-21] (Microsoft Corporation) Task: {50FA3ED2-82A4-491B-AD26-4B86395B0C7E} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe Task: {5A32ABF0-6A8B-4E13-933B-090D7913A150} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {60719758-A8EC-4C39-A508-0DA89ADE3F40} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation) Task: {60BAC41C-BE8C-4EDB-BBE8-B709191DFB09} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {6655FB11-052F-4B6D-AB5E-1129AF8FDE3B} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec.exe Task: {6CB79735-866C-440C-B87C-96CB011D80D7} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {6E429667-092B-473A-8ED4-13D49A8C89AF} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe Task: {6EFDC239-4CF2-4F08-9FFC-04797C9DAC3F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-02-08] (Piriform Ltd) Task: {71AFF806-0B0C-42E1-A72A-400A68855EAD} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-04-21] (Microsoft Corporation) Task: {76BA7D06-6250-4CE0-8F06-6B1FE1169275} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-04-25] () Task: {790FF69B-495C-401F-940E-64E8EBD1F396} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation) Task: {79A76FAB-C5FD-44E2-A178-B73A0525DF24} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => %SystemRoot%\ehome\mcupdate.exe Task: {7A60F163-1E09-48B9-AA43-4EE43D8874CF} - System32\Tasks\KMSAutoNet => C:\ProgramData\KMSAutoS\KMSAuto Net.exe Task: {7BF0C5D3-9C6A-4CC2-B092-41EF00AD0719} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-03-28] () Task: {8DA89588-DCDD-4A19-A5AA-009D207F2B3B} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation) Task: {9943F1E6-CD74-4C25-A5D4-F3C62A778080} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {9A53599B-B6DA-4E85-B1DD-5A94667C3A79} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03] (NVIDIA Corporation) Task: {A5B656AC-9914-42BA-9F95-17C13610C547} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-04-25] () Task: {A7AD7128-E598-451F-BB95-277CDFA14888} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-02-27] (Dropbox, Inc.) Task: {AC9D0D26-2B6E-49CD-8464-2BB2902553F0} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION Task: {ADEC99F5-6671-41B9-9BC3-16F6A195A9CA} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe Task: {B544B9D0-9066-47B4-A057-E2D06351173E} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {BB885BAC-D6B2-4A17-8C8A-31427B52D288} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-05-03] (NVIDIA Corporation) Task: {BE6AF3E8-EA34-46E8-A53D-2E0C7292B5EB} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate.exe Task: {BE6E93A2-8F75-4A8C-BB76-9A5461DEB9CA} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {C1308EC1-5876-4A2A-89F5-FCE426B64F11} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-05-03] (NVIDIA Corporation) Task: {C184A73B-22EF-498D-B846-859026E6B5B2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-04-29] (Microsoft Corporation) Task: {C279BFB9-A43F-4B07-A6C0-013194490F23} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION Task: {C470D0B2-78CE-437A-AA1A-52656E38CE96} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe Task: {C4E51F5E-C086-43AC-8C99-BEFD97335160} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-02-27] (Dropbox, Inc.) Task: {C7CF0D7F-2D23-4C64-93C3-18A515FD59F2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {DB9DB998-2E36-40F1-8BDD-EB3B9D1BD1E3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {E20C5BFE-5351-482B-B181-ED5C3FC80819} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe Task: {E2B7F8DF-C9F6-4D38-87D1-FDCF98A960DB} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe Task: {E4ACC959-29B8-4422-9D1F-306DA946A58E} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION Task: {E9932B2C-DF51-4F02-9DFE-699377A67CDB} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {EABD301E-D5CA-4436-A6CE-FE6D15AC7E32} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {EB72A7D6-547B-4D80-A033-636D9F7D69F5} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software) Task: {F1F71D68-08BB-4760-8893-5AD707C50B5D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-04-29] (Microsoft Corporation) Task: {F2E149A5-7281-48CB-A988-42B7B165BEC5} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {F68516D8-D6D6-418E-BEB8-C84C29BD94DA} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe Task: {F786FB84-C95E-45D2-853D-430181160C1D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-26] (Google Inc.) Task: {F87DBFC4-0302-411F-BEA1-23379EF18451} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation) Task: {FF1754E2-3155-455D-97CF-DFFD0786B225} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Joni\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.htm ==================== Loaded Modules (Whitelisted) ============== 2016-07-16 14:42 - 2016-07-16 14:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-04-15 15:42 - 2017-03-28 09:22 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2017-02-14 05:14 - 2014-04-04 16:10 - 00098320 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\DP\msgHook64.dll 2017-02-06 14:12 - 2016-12-29 15:44 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-05-11 19:24 - 2016-04-12 15:39 - 00663056 _____ () C:\Program Files\EslWire\service\WireHelperSvc.exe 2016-05-11 19:24 - 2016-04-14 11:38 - 00214016 _____ () C:\Program Files\EslWire\service\NocIPC64.dll 2017-02-06 14:11 - 2013-07-04 03:32 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe 2016-04-22 01:07 - 2016-04-22 01:07 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-04-22 01:07 - 2016-04-22 01:07 - 01337144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2017-02-06 16:06 - 2017-05-03 23:21 - 01267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-04-15 15:42 - 2017-03-28 09:22 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2017-02-14 05:13 - 2014-04-04 16:10 - 00275472 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dthook.dll 2016-11-20 21:11 - 2016-11-20 21:11 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-15 09:28 - 2017-03-04 09:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-15 09:29 - 2017-03-04 09:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-15 09:29 - 2017-03-04 09:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-15 09:29 - 2017-03-04 09:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-04-15 15:42 - 2017-03-28 08:08 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-04-15 15:42 - 2017-03-28 08:11 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-03-07 03:07 - 2015-03-07 03:07 - 00908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2017-01-24 01:19 - 2017-01-24 01:19 - 01096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2015-03-07 03:07 - 2015-03-07 03:07 - 00060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2017-01-24 01:19 - 2017-01-24 01:19 - 00241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2017-02-14 05:13 - 2013-06-18 13:26 - 00677160 _____ () C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe 2017-02-14 05:13 - 2013-06-18 13:26 - 00714024 _____ () C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe 2017-02-14 05:14 - 2014-04-04 16:10 - 00163344 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\DP\DPHelper.exe 2017-02-14 05:14 - 2014-04-04 16:10 - 00197136 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\DP\DPHelper64.exe 2017-05-09 15:44 - 2017-05-09 15:44 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-05-09 15:44 - 2017-05-09 15:44 - 00201728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.15.597.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-05-03 12:13 - 2017-05-02 04:03 - 03767640 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.96\libglesv2.dll 2017-05-03 12:13 - 2017-05-02 04:03 - 00100696 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.96\libegl.dll 2017-02-06 14:11 - 2017-05-11 14:09 - 00027648 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.02\PEbiosinterface32.dll 2017-02-06 14:11 - 2013-07-04 03:32 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.02\ATKEX.dll 2017-02-03 01:00 - 2017-01-17 17:20 - 03843584 _____ () C:\Program Files (x86)\TorrentsTime Media Player\bin\torrent.dll 2017-02-06 16:06 - 2017-05-03 23:21 - 01040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-02-14 05:14 - 2014-04-04 16:10 - 00093712 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\DP\msgHook.dll 2017-05-09 15:41 - 2017-05-09 15:41 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-05-09 15:41 - 2017-05-09 15:41 - 00997896 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-05-09 15:41 - 2017-05-09 15:41 - 67717632 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-05-09 15:41 - 2017-05-09 15:41 - 00176992 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-05-09 15:41 - 2017-05-09 15:41 - 00223224 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-05-09 15:40 - 2017-05-09 15:40 - 00291824 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-05-09 15:41 - 2017-05-09 15:41 - 00684656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2016-07-26 07:55 - 2017-03-10 03:13 - 00674592 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2016-07-26 07:55 - 2016-09-01 04:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2016-07-26 07:55 - 2017-04-26 02:55 - 02465056 _____ () C:\Program Files (x86)\Steam\video.dll 2016-07-26 07:55 - 2016-09-01 04:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2016-07-26 07:55 - 2016-09-01 04:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2016-07-26 07:55 - 2016-01-27 10:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2016-07-26 07:55 - 2016-01-27 10:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2016-07-26 07:55 - 2016-01-27 10:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2016-07-26 07:55 - 2016-01-27 10:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2016-07-26 07:55 - 2016-01-27 10:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2016-07-26 07:55 - 2017-04-26 02:55 - 00848672 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-07-26 07:55 - 2016-07-05 01:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2017-02-14 05:13 - 2014-04-04 16:10 - 00187920 _____ () C:\Program Files (x86)\Common Files\Portrait Displays\Shared\PresetsCOM.dll 2017-02-06 16:06 - 2017-05-03 23:20 - 65709176 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2016-12-13 16:53 - 2017-01-31 00:41 - 68875552 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2016-07-26 07:55 - 2017-04-26 02:55 - 00383776 _____ () C:\Program Files (x86)\Steam\steam.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\...\hola.org -> hxxp://hola.org ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 05:34 - 2016-11-22 05:19 - 00001505 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com 127.0.0.1 activate-sjc0.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 ereg.adobe.com 127.0.0.1 activate.wip3.adobe.com 127.0.0.1 wip3.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 adobe-dns-2.adobe.com 127.0.0.1 adobe-dns-3.adobe.com 127.0.0.1 ereg.wip3.adobe.com 127.0.0.1 wwis-dubc1-vip60.adobe.com 127.0.0.1 ood.opsource.net 127.0.0.1 CRL.VERISIGN.NET 127.0.0.1 adobeereg.com 127.0.0.1 OCSP.SPO1.VERISIGN.COM 127.0.0.1 activate-sea.adobe.com 127.0.0.1 nlsk.neulion.com 127.0.0.1 nlsk.neulion.com 107.6.175.181 mf.svc.nhl.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1877440888-3991931079-3738133520-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Joni\Desktop\Time to stop.png DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{7EDD1F3C-DA00-49FD-8A28-B237E46D5144}] => (Allow) C:\Program Files (x86)\TorrentsTime Media Player\bin\chromecast\node.exe FirewallRules: [{272D8B24-1EEF-4ADE-91CE-963EA0D19ECC}] => (Allow) C:\Program Files (x86)\TorrentsTime Media Player\bin\chromecast\node.exe FirewallRules: [UDP Query User{7ACCDD08-7449-4645-9434-7CC727E100D0}C:\users\joni\appdata\roaming\utorrent\updates\3.4.9_43085.exe] => (Allow) C:\users\joni\appdata\roaming\utorrent\updates\3.4.9_43085.exe FirewallRules: [TCP Query User{1EC3B8E9-43A9-4B11-9E6A-0128C2CC2C69}C:\users\joni\appdata\roaming\utorrent\updates\3.4.9_43085.exe] => (Allow) C:\users\joni\appdata\roaming\utorrent\updates\3.4.9_43085.exe FirewallRules: [{507CF99A-31CC-4648-AD65-3F370ABDAB6C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{B9987E02-586F-4008-9BEB-AAC944BCD829}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [UDP Query User{2466C01E-2D16-4B32-A014-92FDE2867C1F}C:\program files (x86)\java\jre1.8.0_111\bin\jp2launcher.exe] => (Block) C:\program files (x86)\java\jre1.8.0_111\bin\jp2launcher.exe FirewallRules: [TCP Query User{8AA82C9B-C794-4EA0-85E1-706BB281EF16}C:\program files (x86)\java\jre1.8.0_111\bin\jp2launcher.exe] => (Block) C:\program files (x86)\java\jre1.8.0_111\bin\jp2launcher.exe FirewallRules: [UDP Query User{5CAFF12E-DAAB-4EC9-9AAF-BC0BEBE7C992}C:\program files (x86)\overwatch test\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\overwatch.exe FirewallRules: [TCP Query User{2BBC352D-3900-40AE-A61F-0359ACD36302}C:\program files (x86)\overwatch test\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\overwatch.exe FirewallRules: [{3988EDB5-F702-4349-80AB-4969A1252F5B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mortal Kombat Arcade Kollection\BINARIES\WIN32\MKHDGame.exe FirewallRules: [{BA21BFD4-66EA-417E-AF07-74D4DF311F8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mortal Kombat Arcade Kollection\BINARIES\WIN32\MKHDGame.exe FirewallRules: [{441C86BE-262A-4BE9-9CB1-A760846DCC2A}] => (Allow) C:\Program Files (x86)\Popcorn Time\chromecast\node.exe FirewallRules: [{D2164313-048D-49F4-B925-FD9F6962C048}] => (Allow) C:\Program Files (x86)\Popcorn Time\chromecast\node.exe FirewallRules: [{D091C7E6-0B76-462A-9002-6075728E5E91}] => (Allow) C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe FirewallRules: [{CE047FAE-9028-43B8-9BC4-DF8923FEAD43}] => (Allow) C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe FirewallRules: [{B6401CF7-3F99-412A-A05A-C36948A10A4F}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe FirewallRules: [{A84F86F8-3845-4FC9-A160-3E8C3804B25B}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe FirewallRules: [UDP Query User{9D8C3A11-7EA2-4256-A5CF-EB61B408944B}C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe FirewallRules: [TCP Query User{8DAAD43C-BF18-47C5-9E10-97ABEA2DCB8C}C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe FirewallRules: [{C1B74EE7-1562-4072-918E-7167007141B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe FirewallRules: [{501B900A-660F-4EA0-A60E-1773448DDE7D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe FirewallRules: [{43683761-DCC7-43FD-A223-96567CE60B8A}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{898955D1-68F3-47FA-A516-314817A5AF8C}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{8B0C616C-0BE2-43F7-A3F8-C0B2E9B9B93F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{B12D71D2-57BE-440E-AECA-FA718C248BF8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{76EACAD1-665B-4442-90BE-F95DC4EF6FD0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{7AE04C46-C3FC-4211-A744-B137F87E72BE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{E82D6669-3429-49DC-AC18-5D83BD29F62E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe FirewallRules: [{B5023E2B-7B7E-406B-9CA5-DBF296D68633}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe FirewallRules: [{BD221675-A73B-4889-9024-ACA7B0C293D6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1BF8A4EB-5E68-4980-B9DB-7AABBEF1E3DC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{4F683F45-7AD5-483B-A4B8-637E2CEDC486}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{BF5B7C6C-28D6-46C7-8046-061561F566E3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{A5EB422D-1BD0-4C1C-B648-B07D84AFB8AA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{7A860E41-04C4-4B34-8A5E-87138AAF5157}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{CCF4E563-7404-46E3-A13C-8BB648942677}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C5652A60-E083-4B70-8A96-E23E7E2DCC8C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{E03E65E9-54EF-4C70-8470-FD5E04D1D60E}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{304CD7BD-6947-442F-BA89-02AC2E3770BE}C:\users\joni\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\joni\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{013D5A8E-68F4-48AF-B11B-8FBEA3F90F25}C:\users\joni\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\joni\appdata\roaming\spotify\spotify.exe FirewallRules: [{CBBFC088-8315-4235-B3ED-872E1EF24ECC}] => (Allow) C:\Users\Joni\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [TCP Query User{93E9E0B6-027C-4645-87F0-C291438A83A7}C:\program files (x86)\steam\steamapps\downloading\730\csgo.exe] => (Allow) C:\program files (x86)\steam\steamapps\downloading\730\csgo.exe FirewallRules: [UDP Query User{B8873F39-0483-4164-9647-06B48AEBCB4D}C:\program files (x86)\steam\steamapps\downloading\730\csgo.exe] => (Allow) C:\program files (x86)\steam\steamapps\downloading\730\csgo.exe FirewallRules: [TCP Query User{6C0A3198-2FDC-439D-9EE6-F0B4519FD8C1}C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe FirewallRules: [UDP Query User{3D0F7562-442F-49AD-B857-B8C7E1E1A0BF}C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe FirewallRules: [{1EDDBDAF-ED8A-4D7B-B31F-F9610FD415F7}] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe FirewallRules: [{68B93EE8-4923-4980-8065-1DB9EADC0911}] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\jp2launcher.exe FirewallRules: [{DDCEF1FC-04A1-4651-91D5-2B98FDB67E4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe FirewallRules: [{47929F5A-B4FE-4256-BDDE-64905A231429}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe FirewallRules: [TCP Query User{EC440EAB-70A5-413D-8A3A-AAD35A424253}C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe FirewallRules: [UDP Query User{C0E9D8DD-FA70-4E4E-9CCA-EC96AA21B0B0}C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe FirewallRules: [{1862EDA2-FD12-4ED4-84FF-4BE3D1A6C910}] => (Block) C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe FirewallRules: [{60080072-3AA7-4A6C-8EAF-94EF09D138A6}] => (Block) C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe FirewallRules: [{E95E22BF-1D87-4118-BFD0-442DE7C1166D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{FC3E2019-922A-456F-AB4B-1A8F4BEB9900}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{20DC570D-1741-4064-9A2B-8C1F7285E849}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age Of Empires 3\bin\age3.exe FirewallRules: [{58BA0146-C58B-4301-BB8E-4B26ED3A1A63}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age Of Empires 3\bin\age3.exe FirewallRules: [{86A5821C-A881-43D7-A49F-28F07AB9B0DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age Of Empires 3\bin\age3x.exe FirewallRules: [{3A4515F4-B401-42C8-8B90-2B2CF37B7F7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age Of Empires 3\bin\age3x.exe FirewallRules: [{05DAB971-B10A-4995-A0C0-69CF98781891}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age Of Empires 3\bin\age3y.exe FirewallRules: [{85922BB6-F1F7-40A7-81C9-BC00B711AE9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age Of Empires 3\bin\age3y.exe FirewallRules: [{F5CA5C78-DE3A-4B53-93D3-A349763E5373}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Loadout\Loadout.exe FirewallRules: [{45E20A60-8837-412B-9769-DA9EEFC0D80E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Loadout\Loadout.exe FirewallRules: [{0C729227-F9FC-4A7F-A843-45801F6F1608}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{E5A2B720-845F-4E79-B5E1-64D63918CF3D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{AD299B8F-D96C-4D42-ACDC-26A983E3252E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe FirewallRules: [{9AFE23B5-3566-465C-A478-9D85F60A12B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe FirewallRules: [{6DD24EB6-68ED-4FDC-8D4D-BFA32325EDB1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{0B961E33-B480-49B0-A705-CDFBE7477001}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [TCP Query User{8023BDAD-E7F6-4105-BDE1-9E7A48567716}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [UDP Query User{5FEFBAFC-B123-4270-9B04-9818ACEEF157}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [{5E47F8B7-4EF0-46BF-A674-25399D0ADDC0}] => (Allow) C:\Users\Joni\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{66B90830-B22A-45F8-9A0F-131938F2A1A2}] => (Allow) C:\Users\Joni\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{34C487C9-9EA7-48A8-B133-CC6B35B51E2A}] => (Allow) C:\Users\Joni\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C9242D43-5FDF-47F9-8905-EA861BBDBFE1}] => (Allow) C:\Users\Joni\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{1D5350C2-A90D-495E-AC8F-8D0352CFAE03}] => (Allow) C:\Users\Joni\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E0E2175C-98D0-4F03-9E81-7FEBDA68BE1C}] => (Allow) C:\Users\Joni\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{8935D532-8685-4FAB-A402-F2CDBAEFE444}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{A6516444-B359-476D-9B30-C31163832DC1}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{CCBC7D41-B287-4651-A09A-65013D9A812C}] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{B9799F18-2B70-4272-8514-2449193FC3FD}] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{1AD485FF-A415-4DE8-B747-974FADECAFBA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TheCulling\TheCulling_Launcher.exe FirewallRules: [{78F97E0A-FFBA-4967-AF40-F86B480C38EA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TheCulling\TheCulling_Launcher.exe FirewallRules: [TCP Query User{A72F15AE-5B6E-4961-8928-A63645380DC5}C:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe FirewallRules: [UDP Query User{A7D442FA-6F65-431F-A146-B87860580D33}C:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe FirewallRules: [TCP Query User{CB02CB25-E674-4631-BE8A-A6B47ACDEF7D}C:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe FirewallRules: [UDP Query User{580736DE-CEC3-48CD-AD7E-48CDA6652543}C:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\theculling\victory\binaries\win64\victory.exe FirewallRules: [TCP Query User{D050515D-9EC3-452C-8C11-D6BBF6339E89}C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe FirewallRules: [UDP Query User{2228C4DC-E732-4497-8933-978D8B32CED6}C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe FirewallRules: [{B685175A-364B-43D2-A464-F983B553821C}] => (Block) C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe FirewallRules: [{A395991E-07BE-49EC-B09E-325B41111E3C}] => (Block) C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe FirewallRules: [TCP Query User{B18C0D04-A4C1-4864-A232-966B586C68C5}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{D149325F-CA63-4D01-9471-38E718322D0B}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{1D5A2A8C-3E5D-4C76-ABCD-3349736CC9C5}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [UDP Query User{D1E390D4-E804-4750-9F58-831148908C99}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{D6F103F2-8BF6-4972-8820-24ECCB685F35}] => (Allow) C:\Program Files\EslWire\wire.exe FirewallRules: [{1DDE90AC-7C10-457C-ADB0-E217F7A23476}] => (Allow) C:\Program Files\EslWire\wire.exe FirewallRules: [{D019B7A2-CBB1-4774-8FAD-2F11CE079806}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [TCP Query User{D1CD90AC-C23E-45E1-9A8C-2EAFA39085DE}C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe] => (Block) C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe FirewallRules: [UDP Query User{26927150-07A4-440A-B08F-F0726BD64DD7}C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe] => (Block) C:\program files (x86)\battle.net\battle.net.8554\battle.net.exe FirewallRules: [{D59B491B-98AE-4FD6-9DF0-73DE1BA9282E}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596\SZBrowser.exe FirewallRules: [{823082D0-6D82-4ECE-B826-953A16380E09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{99FD7242-1CC8-4869-A410-780B453C354F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{440CC779-5D5E-4AD7-B7AE-5E78DD9A564D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{C1BDD4DB-73F8-42E3-9626-AAC8FA575805}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [{B62AA31B-C6E2-41DC-925F-D35EA0B0FB36}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{9BB26E29-E59E-43EF-9C2E-DE97EA306D87}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596_0\SZBrowser.exe ==================== Restore Points ========================= 05-05-2017 14:00:34 Windows Update 09-05-2017 22:08:50 Windows Update ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/10/2017 08:51:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: bsplayer.exe, version: 2.7.0.1080, time stamp: 0x2a425e19 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x043c48b4 Faulting process id: 0x3be8 Faulting application start time: 0x01d2c9b2edc72b35 Faulting application path: C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe Faulting module path: unknown Report Id: 152c9edb-be9f-4302-88fb-35ec5d153c7e Faulting package full name: Faulting package-relative application ID: Error: (05/09/2017 10:27:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: msdt.exe, version: 10.0.14393.0, time stamp: 0x57899986 Faulting module name: msdt.exe, version: 10.0.14393.0, time stamp: 0x57899986 Exception code: 0xc0000005 Fault offset: 0x000000000002b635 Faulting process id: 0x295c Faulting application start time: 0x01d2c8fa33bb4d8a Faulting application path: C:\WINDOWS\system32\msdt.exe Faulting module path: C:\WINDOWS\system32\msdt.exe Report Id: 6c5f7416-c783-47a2-8896-1f76601e6c5a Faulting package full name: Faulting package-relative application ID: Error: (05/09/2017 10:14:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: msdt.exe, version: 10.0.14393.0, time stamp: 0x57899986 Faulting module name: msdt.exe, version: 10.0.14393.0, time stamp: 0x57899986 Exception code: 0xc0000005 Fault offset: 0x000000000002b635 Faulting process id: 0x1d04 Faulting application start time: 0x01d2c8f824d939d4 Faulting application path: C:\WINDOWS\system32\msdt.exe Faulting module path: C:\WINDOWS\system32\msdt.exe Report Id: db1bd0eb-8b8f-43cc-acdb-1c070137c150 Faulting package full name: Faulting package-relative application ID: Error: (05/09/2017 10:13:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DTHtml.exe, version: 1.2.15.8, time stamp: 0x533f2c9a Faulting module name: MSVCR80.dll, version: 8.0.50727.9268, time stamp: 0x573d297f Exception code: 0xc000000d Fault offset: 0x00008aa0 Faulting process id: 0x1e54 Faulting application start time: 0x01d2c8f826a1ca46 Faulting application path: C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe Faulting module path: C:\WINDOWS\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.9268_none_d08e1538442a243e\MSVCR80.dll Report Id: 3d675120-7d86-4f12-9f13-ae5d86cd7ae1 Faulting package full name: Faulting package-relative application ID: Error: (05/09/2017 10:09:05 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (05/06/2017 01:49:49 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Joni-PC) Description: Activation of app Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (05/05/2017 02:00:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (05/02/2017 11:55:06 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (05/01/2017 06:45:06 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program bsplayer.exe version 2.7.0.1080 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 2690 Start Time: 01d2c22d446b284d Termination Time: 13 Application Path: C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe Report Id: 8c450b13-2e20-11e7-be78-7824af3947a2 Faulting package full name: Faulting package-relative application ID: Error: (04/28/2017 07:43:14 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . System errors: ============= Error: (05/11/2017 02:09:39 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} and APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool. Error: (05/11/2017 02:09:30 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Error: (05/11/2017 02:07:02 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: The server {4991D34B-80A1-4291-83B6-3328366B9097} did not register with DCOM within the required timeout. Error: (05/11/2017 02:01:33 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} and APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool. Error: (05/11/2017 02:01:27 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Error: (05/11/2017 02:01:25 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 4:05:33 AM on ‎5/‎11/‎2017 was unexpected. Error: (05/11/2017 02:00:54 PM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: NT AUTHORITY) Description: 32212256844766589065948856 Error: (05/10/2017 11:25:40 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} and APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool. Error: (05/10/2017 11:25:35 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Error: (05/10/2017 11:25:33 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 4:11:10 AM on ‎5/‎10/‎2017 was unexpected. CodeIntegrity: =================================== Date: 2017-03-22 15:54:43.600 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. Date: 2017-03-22 15:53:26.429 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. Date: 2017-03-18 11:52:45.246 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. Date: 2017-03-18 11:52:44.879 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. Date: 2017-02-27 17:54:53.406 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4690K CPU @ 3.50GHz Percentage of memory in use: 30% Total physical RAM: 12226.02 MB Available physical RAM: 8481.63 MB Total Virtual: 24514.02 MB Available Virtual: 20469.89 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.22 GB) (Free:177.11 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D9812729) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) ==================== End of Addition.txt ============================