Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23.08.2018 Ran by [removed] (24-08-2018 19:14:55) Running from C:\Users\[removed]\Downloads\Yeet Windows 10 Pro Version 1709 16299.431 (X64) (2018-01-14 22:19:12) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Admin (S-1-5-21-2423186807-2178947950-1186379069-1001 - Administrator - Enabled) => C:\Users\Admin Administrator (S-1-5-21-2423186807-2178947950-1186379069-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2423186807-2178947950-1186379069-503 - Limited - Disabled) Guest (S-1-5-21-2423186807-2178947950-1186379069-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-2423186807-2178947950-1186379069-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\uTorrent) (Version: 3.5.3.44494 - BitTorrent Inc.) AIDA64 Extreme v5.95 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.95 - FinalWire Ltd.) Alati za jezičnu provjeru u sustavu Microsoft Office 2016 - hrvatski (HKLM\...\{90160000-001F-041A-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.39 - Piriform) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 397.64 - NVIDIA Corporation) Hidden Dxtory version 2.0.127 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.127 - ExKode Co. Ltd.) Epic Games Launcher (HKLM-x32\...\{8B3FB706-B7D8-4E3B-9235-BFB7CE012FEE}) (Version: 1.1.136.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Google Chrome (HKLM\...\{F6560624-E6FE-35B0-A93A-1DE5EDAD9B44}) (Version: 66.0.3359.181 - Google, Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden HFSExplorer 0.23.1 (HKLM-x32\...\HFSExplorer) (Version: 0.23.1 - Catacombae Software) Java 8 Update 151 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) K-Lite Codec Pack 13.6.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.6.0 - KLCP) Lagarith Lossless Codec (1.3.27) (HKLM-x32\...\{F59AC46C-10C3-4023-882C-4212A92283B3}_is1) (Version: - ) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc) LogMeIn Hamachi (HKLM-x32\...\{BE82D2D7-6CA2-43B3-8C22-CCF6405806E7}) (Version: 2.2.0.579 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.579 - LogMeIn, Inc.) Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\OneDriveSetup.exe) (Version: 18.131.0701.0007 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version: - NCSOFT) NVIDIA 3D Vision Controller Driver 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation) NVIDIA 3D Vision Driver 397.64 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 397.64 - NVIDIA Corporation) NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation) NVIDIA Graphics Driver 397.64 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 397.64 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.37.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.1 - NVIDIA Corporation) NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 21.0.1 - OBS Project) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.) Python 3.6.5 (32-bit) (HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\{3346977b-49da-4095-8f4d-f56f103e52e9}) (Version: 3.6.5150.0 - Python Software Foundation) Python 3.6.5 Core Interpreter (32-bit) (HKLM-x32\...\{58E1C809-82C5-4EDF-B69B-188A6C81F21F}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python 3.6.5 Development Libraries (32-bit) (HKLM-x32\...\{21FD2EE0-8D55-49DC-A1B0-771696DDEE98}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python 3.6.5 Documentation (32-bit) (HKLM-x32\...\{5C613D87-0AED-48A9-A216-3A3783463D6C}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python 3.6.5 Executables (32-bit) (HKLM-x32\...\{9107CF1A-A09C-4035-B29E-E79B4098AB8C}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python 3.6.5 pip Bootstrap (32-bit) (HKLM-x32\...\{C024F06C-0E37-4529-945F-7920A9CFFD78}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python 3.6.5 Standard Library (32-bit) (HKLM-x32\...\{8C2E8A7D-95CC-491C-AB9C-DE785A137D00}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python 3.6.5 Tcl/Tk Support (32-bit) (HKLM-x32\...\{052FD2FB-034D-4CDD-864E-798DE45C742A}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python 3.6.5 Test Suite (32-bit) (HKLM-x32\...\{86533809-919A-4858-AFC4-4226B86C5291}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python 3.6.5 Utility Scripts (32-bit) (HKLM-x32\...\{5C0C82E9-B580-4EE4-894A-4451A23B0E2C}) (Version: 3.6.5150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{8A66FEC2-E443-4219-B9AC-F9B10607B57C}) (Version: 3.6.6295.0 - Python Software Foundation) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6070 - Realtek Semiconductor Corp.) Roblox Player for Admin (HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - Roblox Corporation) Rules of Survival version 1.147074.149250 (HKLM-x32\...\{F560482D-4378-4FB8-8EB7-4F017FDBCC90}_is1) (Version: 1.147074.149250 - Hong Kong Netease Interactive Entertainment Limited) Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Strumenti di correzione di Microsoft Office 2016 - Italiano (HKLM\...\{90160000-001F-0410-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{1F3E59DD-7DCE-4103-9528-57DA43134312}) (Version: 2.9.0.0 - Microsoft Corporation) Ut Video Codec Suite (HKLM\...\utvideo_is1) (Version: 19.1.0 - UMEZAWA Takeshi) VEGAS Pro 15.0 (HKLM\...\{E0F91FB0-7FC4-11E7-B8E9-95BE57594EAC}) (Version: 15.0.177 - VEGAS) Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc.) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-06-24] (NVIDIA Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {00EDC0A9-5A95-42F1-8913-FC74DC9E24B7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MpCmdRun.exe [2018-08-07] (Microsoft Corporation) Task: {03032EF6-E2AA-4C83-8E81-45989E6E2993} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {049AB6EC-04CD-46B1-96DA-F7A2DECF16E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MpCmdRun.exe [2018-08-07] (Microsoft Corporation) Task: {0B50D955-C8AF-44AC-A062-47E27265AFF7} - \{23E53FE1-BBD2-E83C-5272-B8C78E83F710} -> No File <==== ATTENTION Task: {1069A444-7DEE-479E-91A6-DA464EABC724} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation) Task: {1F7618CC-8B1A-44BB-9BB5-8D0AA43460EF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-21] (Google Inc.) Task: {2614833D-6369-428E-A811-FF49551FBCB7} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-05-20] (NVIDIA Corporation) Task: {43592106-A48C-4C48-BD18-C746427015F5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MpCmdRun.exe [2018-08-07] (Microsoft Corporation) Task: {55554612-6E2F-4FD9-B307-FFEC05C124A3} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-01-09] (Piriform Ltd) Task: {612FCE00-4C9F-4B05-B19A-0EF7AE5A9FDA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {6FA8E85E-8553-467E-8D5D-24AEDE3C9C16} - \{B0DED861-F242-077A-2169-624F9D1709A9} -> No File <==== ATTENTION Task: {8434E587-A61E-47EC-9FA1-632F44E03640} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-05-20] (NVIDIA Corporation) Task: {87029132-721A-490F-871F-BBF47C581297} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcTrigger Task: {92FE9CA0-1ED2-4F25-80D8-FEDF08D3A327} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-21] (Google Inc.) Task: {A330E13B-05BA-43DA-BB83-8CB5BB3F4A79} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-05-20] (NVIDIA Corporation) Task: {A3B102DB-A374-4B81-B771-11103316AE58} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation) Task: {B9F2382A-6595-4E22-AB28-140500C9BA70} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2017-10-18] () Task: {C170DE56-21D5-49B6-87D3-E5100FD6389B} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-05-20] (NVIDIA Corporation) Task: {D4B8F19D-3426-4A02-8F86-DA1B20AADC9C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-05-20] (NVIDIA Corporation) Task: {D9FAE5BA-DC5F-4595-A6F3-1DD8AF0B0C39} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-01-09] (Piriform Ltd) Task: {DC968BB2-47F6-4BCA-B450-07C48F829E51} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-05-20] (NVIDIA Corporation) Task: {EDD6AB14-0453-4D3E-9D90-085BD10B17D4} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-05-20] (NVIDIA Corporation) Task: {FAF11447-5594-44BF-B652-553E1AE24E27} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MpCmdRun.exe [2018-08-07] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-10-22 10:12 - 2017-10-22 10:12 - 000076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2018-06-06 22:38 - 2018-05-20 19:36 - 001315296 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2018-03-14 11:14 - 2018-02-22 02:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-14 11:14 - 2018-02-22 02:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-10-21 15:37 - 2017-10-18 12:00 - 001179648 _____ () C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe 2018-08-10 11:12 - 2018-08-08 02:41 - 004855640 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libglesv2.dll 2018-08-10 11:12 - 2018-08-08 02:41 - 000115544 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libegl.dll 2018-01-15 23:16 - 2018-01-08 18:52 - 001891832 _____ () C:\Users\Admin\AppData\Local\Discord\app-0.0.300\ffmpeg.dll 2018-06-06 22:38 - 2018-05-20 19:36 - 001033184 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2018-01-15 23:16 - 2018-04-28 11:02 - 002662904 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_rpc\discord_rpc.node 2018-01-15 23:16 - 2018-04-28 11:02 - 009623896 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_voice\discord_voice.node 2018-01-15 23:16 - 2018-04-28 11:02 - 001508344 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_utils\discord_utils.node 2018-02-16 11:17 - 2018-02-16 11:17 - 001910264 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_spellcheck\node_modules\cld\build\Release\cld.node 2018-02-16 11:17 - 2018-02-16 11:17 - 000422392 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_spellcheck\node_modules\spellchecker\build\Release\spellchecker.node 2018-02-16 11:17 - 2018-02-16 11:17 - 000145400 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_spellcheck\node_modules\keyboard-layout\build\Release\keyboard-layout-manager.node 2018-01-15 23:16 - 2018-01-15 23:16 - 000513016 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_erlpack\discord_erlpack.node 2018-01-15 23:16 - 2018-03-13 21:46 - 001517560 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_game_utils\discord_game_utils.node 2018-04-29 11:27 - 2018-04-29 11:27 - 001249112 _____ () \\?\C:\Users\Admin\AppData\Roaming\discord\0.0.300\modules\discord_vigilante\discord_vigilante.node ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Public\AppData:CSM [482] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [478] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2017-03-18 23:03 - 2017-03-18 23:01 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin\Downloads\917568.png DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == MSCONFIG\Services: BDESVC => 3 MSCONFIG\Services: Razer Game Manager Service => 2 MSCONFIG\Services: RzActionSvc => 2 MSCONFIG\Services: RzKLService => 2 MSCONFIG\Services: XboxGipSvc => 3 HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "RtHDVCpl" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\StartupApproved\Run: => "Overwolf" HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-2423186807-2178947950-1186379069-1001\...\StartupApproved\Run: => "Gaijin.Net Agent" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{7D7DCD54-A15C-4999-8A82-A6349D942C23}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{F2C1EE7E-8ED3-403E-B1EA-B9FFB582BCD7}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{A097097F-FB99-4F23-BC37-D2A629AD5748}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{638D121D-D166-4E5D-9853-12653A5D6E30}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{74F144B2-0BA2-4A34-BC5A-ACA7B145583E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{D3555409-F830-4EAD-BA11-C96614F148C9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{853A636F-91D4-4C55-9D23-5C8FF04BB3F4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{DAE8D7E9-A7D5-4A91-A950-DD23A0986B9D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{AED463C3-0DFC-49B8-91E6-D23C475E7B84}E:\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) E:\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{B029AD60-38F2-4E34-9843-DF4F5C9BE657}E:\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) E:\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{63FBA433-D3EE-4F0E-B3CD-5CE00E0D608F}E:\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) E:\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{FB5BD710-7BF6-4237-B3A3-FEC4C1CB7DA6}E:\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) E:\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{6074193B-0A38-4002-826F-0458F577CE53}] => (Allow) E:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{3BCF6789-A01B-4846-8C67-297D356D1328}] => (Allow) E:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{79066C3F-BB76-4577-BDE4-56FD57822C79}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{E6AEE17B-000D-4200-878C-58751BE93926}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [TCP Query User{56B60972-7070-431A-A509-D6E27AB76761}E:\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [UDP Query User{743AFE81-3C9A-4FDD-9669-AA91E264EA86}E:\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [{DD5E8C0C-54F4-4E70-8013-BBE4181B3336}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{7F839459-FC19-40B6-9123-08229161F6DE}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{40891FE7-6DEE-4FED-8F59-765DC46C7166}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{66630287-FDAD-4781-8603-0A13748ED1FE}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{32687C41-355C-414F-BCC9-68175AB4E06C}] => (Allow) C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{D86A7EA4-67AC-4792-A4E5-4762C84BC7E5}] => (Allow) C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{EA049ADA-1B5C-4265-B2A3-6720D7E1B453}C:\users\admin\downloads\golf.with.your.friends.v1.104.2\golf with your friends\golf with your friends.exe] => (Allow) C:\users\admin\downloads\golf.with.your.friends.v1.104.2\golf with your friends\golf with your friends.exe FirewallRules: [UDP Query User{2E230208-5D71-4F35-8CC6-1FEDA1056D62}C:\users\admin\downloads\golf.with.your.friends.v1.104.2\golf with your friends\golf with your friends.exe] => (Allow) C:\users\admin\downloads\golf.with.your.friends.v1.104.2\golf with your friends\golf with your friends.exe FirewallRules: [TCP Query User{BA564FE4-51AE-4229-BD67-BE90C4E90A6E}C:\users\admin\downloads\slender - the cursed forest\slender the cursed forest.exe] => (Allow) C:\users\admin\downloads\slender - the cursed forest\slender the cursed forest.exe FirewallRules: [UDP Query User{C3612C6F-F593-47C8-8BE7-3551C5A99030}C:\users\admin\downloads\slender - the cursed forest\slender the cursed forest.exe] => (Allow) C:\users\admin\downloads\slender - the cursed forest\slender the cursed forest.exe FirewallRules: [TCP Query User{466CF1E4-09FE-4F61-B7CB-77E7D5F90547}E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{4801D713-9C45-4810-BE51-A88D90028A98}E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{49789E2E-11C0-40DC-93F6-BF0730749DC6}] => (Block) E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{1823DFC7-39F8-41B9-A183-9C0FEB2E8BBA}] => (Block) E:\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{5C877C36-9354-4B3A-B183-81DAF7A70AF8}E:\games\call of duty\call of duty modern warfare\iw3mp.exe] => (Allow) E:\games\call of duty\call of duty modern warfare\iw3mp.exe FirewallRules: [UDP Query User{A77B1CDD-D97C-4F07-A243-13BBC5C16790}E:\games\call of duty\call of duty modern warfare\iw3mp.exe] => (Allow) E:\games\call of duty\call of duty modern warfare\iw3mp.exe FirewallRules: [{93FAC5E5-81DD-4DF9-88C0-0E0CFAD35A84}] => (Block) E:\games\call of duty\call of duty modern warfare\iw3mp.exe FirewallRules: [{585EAA0A-EF7E-4577-8F95-FE10E0532B42}] => (Block) E:\games\call of duty\call of duty modern warfare\iw3mp.exe FirewallRules: [{C7F2A436-6626-461A-8382-605E4C5DC77E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{B613950A-E62A-4D9D-96AA-1F7FDFF3CEC4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{953D2E10-91AB-4FCE-A799-422C966D2BAB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{2F189F0A-78CF-49C2-AC53-DD13BB818098}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{AE8638D9-0515-40B1-B357-52840F8FCDE5}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty Black Ops II\t6mp.exe FirewallRules: [{83AE4ACD-1F86-4B40-BA5E-9DD87CAEE4A9}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty Black Ops II\t6mp.exe FirewallRules: [TCP Query User{B1A796EC-7878-41D4-96FE-5F2D05F820A5}E:\ros\ros.exe] => (Allow) E:\ros\ros.exe FirewallRules: [UDP Query User{78F16F5A-FC21-4DD2-A186-2F7514D01622}E:\ros\ros.exe] => (Allow) E:\ros\ros.exe FirewallRules: [TCP Query User{44A64CBF-02E9-429D-BC71-734308DA7C63}E:\ros\ccmini\ccmini.exe] => (Allow) E:\ros\ccmini\ccmini.exe FirewallRules: [UDP Query User{373B5B91-83DB-4FAF-AF34-CC7B4E693C0A}E:\ros\ccmini\ccmini.exe] => (Allow) E:\ros\ccmini\ccmini.exe FirewallRules: [{1C6386BB-E877-49D0-8116-5E7AC0FF7A68}] => (Allow) E:\SteamLibrary\steamapps\common\Deceit\bin\win_x64\Deceit.exe FirewallRules: [{017547CD-27F4-4C51-B765-008123E510FE}] => (Allow) E:\SteamLibrary\steamapps\common\Deceit\bin\win_x64\Deceit.exe FirewallRules: [{67207D38-C9EA-4A98-840F-B9DB47DD7D55}] => (Allow) E:\SteamLibrary\steamapps\common\Black Squad\binaries\win32\SteamLauncher.exe FirewallRules: [{FBC2AC4C-5F32-403B-B5F0-F6AD5B83CC5E}] => (Allow) E:\SteamLibrary\steamapps\common\Black Squad\binaries\win32\SteamLauncher.exe FirewallRules: [{CACA3CD9-F38D-433D-9E86-F8119420EACC}] => (Allow) E:\SteamLibrary\steamapps\common\Brawlhalla\Brawlhalla.exe FirewallRules: [{F9F96C68-B9E3-43FA-B229-3D02385A3019}] => (Allow) E:\SteamLibrary\steamapps\common\Brawlhalla\Brawlhalla.exe FirewallRules: [{3BDB52AB-F3A6-4895-A869-7A7FA429F0E3}] => (Allow) C:\WINDOWS\SysWOW64\msiexec.exe FirewallRules: [{F4EB4204-CE4C-44BE-A878-B4105E3123CA}] => (Allow) C:\Program Files (x86)\CXaMEHAFP.exe FirewallRules: [{F2CC5466-5490-4DC0-8E8D-D3A32D282ADC}] => (Allow) C:\Users\Admin\AppData\Roaming\XsdnOXyUO.exe FirewallRules: [{D69D746E-2766-4B1D-A78B-25EF0E377F62}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [TCP Query User{53C1EF80-C801-483B-BF0D-2998C357DC20}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.143\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.143\deploy\leagueclient.exe FirewallRules: [UDP Query User{B38B3349-7E9E-4E44-85E8-8ED9C654CF6B}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.143\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.143\deploy\leagueclient.exe FirewallRules: [{A69CF2EF-2BC5-41BF-98A6-FE7F84F0CA1A}] => (Allow) E:\SteamLibrary\steamapps\common\Black Squad\binaries\win32\BlackSquadGame.exe FirewallRules: [{AE944C39-CC7C-4638-94ED-87BA67A24D03}] => (Allow) E:\SteamLibrary\steamapps\common\Black Squad\binaries\win32\BlackSquadGame.exe FirewallRules: [{0F60B3D5-7381-4815-9DD4-A61210E9841B}] => (Allow) E:\SteamLibrary\steamapps\common\Creativerse\Creativerse.exe FirewallRules: [{B91502E8-7CB0-4C49-A4CC-CDCFFF1AB3C6}] => (Allow) E:\SteamLibrary\steamapps\common\Creativerse\Creativerse.exe FirewallRules: [{83C29DD0-C8DF-4E6D-86E5-38A105028F1C}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{C8430F4B-72B4-43A2-AA52-DCD75AD8529B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{DDBA2B26-4654-4F71-8EF6-D218DBA877EA}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.144\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.144\deploy\leagueclient.exe FirewallRules: [UDP Query User{8643D888-89E7-4ED7-A699-D336D74DB71C}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.144\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.144\deploy\leagueclient.exe FirewallRules: [{F886F417-2A4A-45DA-BD68-B2AAC63FBBB8}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{E15D9C64-683F-468C-95D9-1446F24749AD}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{FEF2CE9A-8F79-4B59-BAA8-685B745BE164}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{78CD51BD-617B-4055-A3AA-5F21E250C335}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{38FFC1F2-43A9-4073-95C9-D70BCBFA805A}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{8EE893F7-D4DC-4473-BD21-8E00092E9FD6}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{26C2F175-1606-44EE-A0AE-84C232655D80}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{72063748-EE16-4640-A027-04A729C5ADFE}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{4E25120C-B4D1-433F-941C-CFB1E2A21006}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{D50C77B8-5CDD-496E-BEBD-D3FCE6237B32}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{B8D0CCF3-EF4C-44DF-B495-80C2FC84B45D}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{1B17E98C-28F3-44F7-81DA-358616AAAD3F}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{11661060-950A-4460-97C7-E0E165269638}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{B982A463-741C-4A31-85B0-45A9AC2BA6BD}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{3E64BBD0-2BA7-4E64-9BC8-00DE9A6F8BDA}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe ==================== Restore Points ========================= ATTENTION: System Restore is disabled ==================== Faulty Device Manager Devices ============= Name: LogMeIn Hamachi Virtual Ethernet Adapter Description: LogMeIn Hamachi Virtual Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: LogMeIn Inc. Service: Hamachi Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (08/24/2018 07:07:25 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: License Activation (slui.exe) failed with the following error code: hr=0x80004005 Command-line arguments: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=TimerEvent Error: (08/24/2018 07:06:33 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (08/24/2018 03:27:23 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Failed to schedule Software Protection service for re-start at 2018-08-25T11:53:23Z. Error Code: 0x80070005. Error: (08/24/2018 03:26:53 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Failed to schedule Software Protection service for re-start at 2018-08-25T11:52:52Z. Error Code: 0x80070005. Error: (08/24/2018 03:26:10 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Windows ne može pristupiti datoteci zbog jednog od sljedećih razloga: postoji problem s mrežnim povezivanjem, s diskom na kojem je pohranjena datoteka ili upravljačkim s programima za spremište instaliranima na ovom računalu, ili disk uopće ne postoji. Windows je zbog te pogreške zatvorio program Antimalware Service Executable. Program: Antimalware Service Executable Datoteka: Vrijednost pogreške navedena je na popisu u odjeljku "Dodatni podaci". Akcija korisnika 1. Ponovno otvorite datoteku. Ovu je situaciju možda uzrokovao privremeni problem koji će se automatski riješiti prilikom ponovnog pokretanja programa. 2. Ako datoteci još uvijek nije moguće pristupiti i - datoteka se nalazi u mreži, mrežni administrator mora provjeriti je li riječ o mrežnom problemu i je li moguće povezati se s poslužiteljem. - riječ je o problemu s uklonjivim diskom, na primjer, disketom ili CD-ROM-om, provjerite je li disk ispravno umetnut u računalo. 3. Provjerite i popravite datotečni sustav tako da pokrenete CHKDSK. Da biste pokrenuli CHKDSK, kliknite "Start" pa "Pokreni", upišite CMD, a nakon toga kliknite "U redu". U naredbeni redak unesite CHKDSK /F, pa pritisnite tipku ENTER. 4. Ako se problem nastavi pojavljivati, vratite datoteku pomoću sigurnosne kopije. 5. Utvrdite mogu li se otvoriti ostale datoteke s istog diska. Ako ih nije moguće otvoriti, moguće je da je disk oštećen. Ako je riječ o tvrdom disku, obratite se administratoru sustava ili dobavljaču računalnog hardvera . Dodatni podaci Vrijednost pogreške: C000009C Vrsta diska: 0 Error: (08/24/2018 03:26:10 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacija koja je prouzročila pogrešku: MsMpEng.exe, verzija: 4.18.1807.18075, vremenska oznaka: 0xe3ecec09 Modul koji je prouzročio pogrešku: unknown, verzija: 0.0.0.0, vremenska oznaka: 0x00000000 Kôd iznimke: 0xc0000006 Pomak pogreške 0x00000248b2906a0c Id postupka: 0xc50 Vrijeme pokretanja aplikacije koja je prouzročila pogrešku: 0x01d43bad12b4761d Put aplikacije koja je prouzročila pogrešku: C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MsMpEng.exe Put modula koji je prouzročio pogrešku: unknown Id izvješća: 77b95825-9f46-4469-8452-bdcf614d7328 Puni naziv paketa koji je prouzročio pogrešku: Relativni ID aplikacije paketa koji je prouzročio pogrešku: Error: (08/24/2018 03:25:56 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "BITS" in DLL "C:\Windows\System32\bitsperf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (08/24/2018 02:42:38 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Failed to schedule Software Protection service for re-start at 2018-08-25T11:52:38Z. Error Code: 0x80070005. System errors: ============= Error: (08/24/2018 07:04:41 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-6K07MG5) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} and APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} to the user DESKTOP-6K07MG5\Admin SID (S-1-5-21-2423186807-2178947950-1186379069-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool. Error: (08/24/2018 07:03:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Pokretanje servisa Servis Windows Defender Antivirus nije uspjelo zbog sljedeće pogreške: The system cannot find the file specified. Error: (08/24/2018 07:02:38 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-6K07MG5) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {8BC3F05E-D86B-11D0-A075-00C04FB68820} and APPID {8BC3F05E-D86B-11D0-A075-00C04FB68820} to the user DESKTOP-6K07MG5\Admin SID (S-1-5-21-2423186807-2178947950-1186379069-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.ContentDeliveryManager_10.0.16299.15_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). This security permission can be modified using the Component Services administrative tool. Error: (08/24/2018 07:00:30 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Servis NVIDIA Telemetry Container prekinut je zbog sljedeće pogreške: A generic command executable returned a result that indicates failure. Error: (08/24/2018 07:00:30 PM) (Source: Disk) (EventID: 7) (User: ) Description: The device, \Device\Harddisk0\DR0, has a bad block. Error: (08/24/2018 07:00:26 PM) (Source: Disk) (EventID: 7) (User: ) Description: The device, \Device\Harddisk0\DR0, has a bad block. Error: (08/24/2018 07:00:24 PM) (Source: Disk) (EventID: 7) (User: ) Description: The device, \Device\Harddisk0\DR0, has a bad block. Error: (08/24/2018 07:00:21 PM) (Source: Disk) (EventID: 7) (User: ) Description: The device, \Device\Harddisk0\DR0, has a bad block. Windows Defender: =================================== Date: 2018-06-29 15:18:23.187 Description: Windows Defender Antivirus scan has been stopped before completion. Scan ID: {A47E7BEB-133A-42C9-9F7B-844C67B586C9} Scan Type: Antimalware Scan Parameters: Quick Scan Date: 2018-08-24 15:23:42.253 Description: Windows Defender Antivirus engine has been terminated due to an unexpected error. Failure Type: Crash Exception code: 0xc0000006 Resource: file:C:\Program Files (x86)\Audacity\audacity.exe Date: 2018-08-24 14:02:12.159 Description: Windows Defender Antivirus has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.273.1826.0 Update Source: Microsoft Update Server Signature Type: AntiVirus Update Type: Full Current Engine Version: Previous Engine Version: 1.1.15100.1 Error code: 0x80070422 Error description: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Date: 2018-08-23 12:57:52.633 Description: Windows Defender Antivirus has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.273.1826.0 Update Source: Microsoft Update Server Signature Type: AntiVirus Update Type: Full Current Engine Version: Previous Engine Version: 1.1.15100.1 Error code: 0x80070422 Error description: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Date: 2018-08-22 10:21:11.229 Description: Windows Defender Antivirus has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.273.1707.0 Update Source: Microsoft Update Server Signature Type: AntiVirus Update Type: Full Current Engine Version: Previous Engine Version: 1.1.15100.1 Error code: 0x80070422 Error description: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Date: 2018-08-21 22:10:39.619 Description: Windows Defender Antivirus has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.273.1707.0 Update Source: Microsoft Update Server Signature Type: AntiVirus Update Type: Full Current Engine Version: Previous Engine Version: 1.1.15100.1 Error code: 0x80070422 Error description: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. CodeIntegrity: =================================== Date: 2018-08-24 15:26:12.170 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system. Date: 2018-08-24 15:26:10.299 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2018-08-24 15:26:10.070 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2018-06-21 08:22:09.342 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Overwolf\0.116.1.11\x64\OWExplorer.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-21 08:22:09.337 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Overwolf\0.116.1.11\x64\OWExplorer.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-21 08:17:35.912 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Overwolf\0.116.1.11\x64\OWExplorer.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-21 08:17:35.906 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Overwolf\0.116.1.11\x64\OWExplorer.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-21 08:17:35.886 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Overwolf\0.116.1.11\x64\OWExplorer.dll that did not meet the Microsoft signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3350P CPU @ 3.10GHz Percentage of memory in use: 18% Total physical RAM: 14290.55 MB Available physical RAM: 11674.3 MB Total Virtual: 16466.55 MB Available Virtual: 12516.07 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:116.24 GB) (Free:26.73 GB) NTFS Drive e: () (Fixed) (Total:180.9 GB) (Free:46.66 GB) NTFS \\?\Volume{296377a2-0000-0000-0000-100000000000}\ (Rezervirano za sustav) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS \\?\Volume{296377a2-0000-0000-0000-d02e1d000000}\ () (Fixed) (Total:0.46 GB) (Free:0.08 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: 296377A2) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=116.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=467 MB) - (Type=27) Partition 4: (Not Active) - (Size=180.9 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================