Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-06-2015 Ran by SDej at 2015-06-20 23:02:24 Running from C:\Users\SDej\Desktop\New folder Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-885781446-3970655490-3772703532-500 - Administrator - Disabled) Guest (S-1-5-21-885781446-3970655490-3772703532-501 - Limited - Disabled) SDej (S-1-5-21-885781446-3970655490-3772703532-1001 - Administrator - Enabled) => C:\Users\SDej ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-885781446-3970655490-3772703532-1001\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) Adobe Reader XI (11.0.11) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2215 - AVAST Software) Bizagi Modeler (HKLM-x32\...\InstallShield_{DC3F08F0-2C53-4277-9276-47F24386D4B3}) (Version: 2.9.04 - Bizagi Limited) Bizagi Modeler (Version: 2.9.04 - Bizagi Limited) Hidden Bizagi Studio 64-Bit (HKLM-x32\...\InstallShield_{479df2df-087e-4cea-aa2b-24b5e85b8652}) (Version: 10.6.12075 - Bizagi Limited) Bizagi Studio 64-Bit (Version: 10.6.12075 - Bizagi Limited) Hidden Connectify 2015 (HKLM\...\Connectify) (Version: 2015.0.4.34734 - Connectify) Dropbox (HKU\S-1-5-21-885781446-3970655490-3772703532-1001\...\Dropbox) (Version: 3.6.7 - Dropbox, Inc.) Git version 1.9.5-preview20150319 (HKLM-x32\...\Git_is1) (Version: 1.9.5-preview20150319 - The Git Development Community) GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.69.5227 - Gretech Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.5 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden IIS 8.0 Express (HKLM\...\{7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7}) (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb) (Version: - ) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4156 - Intel Corporation) K-Lite Mega Codec Pack 10.8.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.8.0 - ) Lightshot-5.2.1.1 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.2.1.1 - Skillbrains) Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Project 2010 Service Pack 1 (SP1) (HKLM-x32\...\{91140000-003B-0000-0000-0000000FF1CE}_Office14.PRJPROR_{8A8F117F-8EDB-440D-B679-F08909D729F7}) (Version: - Microsoft) Microsoft Project Professional 2010 (HKLM-x32\...\Office14.PRJPROR) (Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft SQL Server 2005 Backward compatibility (HKLM\...\{62D2F823-0EAA-496D-B0F9-A869BFC51550}) (Version: 8.05.2312 - Microsoft Corporation) Microsoft SQL Server 2008 (HKLM-x32\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 Browser (HKLM-x32\...\{C688457E-03FD-4941-923B-A27F4D42A7DD}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2008 Native Client (HKLM\...\{2738C4AA-420E-4E13-ADEF-B5AB250E3EF1}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2008 Setup Support Files (HKLM-x32\...\{8F72E2D4-1E48-4534-8DB8-1E8E012899C6}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{0826F9E4-787E-481D-83E0-BC6A57B056D5}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.370.70 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Secure Download Manager (HKLM-x32\...\{E040B65B-8683-4228-8C33-D44A141E40EA}) (Version: 3.1.60 - Kivuto Solutions Inc.) Service Pack 3 for SQL Server 2008 (KB2546951) (HKLM-x32\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation) Skype™ 7.5 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.5.101 - Skype Technologies S.A.) Sql Server Customer Experience Improvement Program (x32 Version: 10.3.5500.0 - Microsoft Corporation) Hidden Stronghold Crusader 2 (HKLM-x32\...\Stronghold Crusader 2_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.43174 - TeamViewer) The Sims 4 (HKLM-x32\...\VGhlU2ltczQ=_is1) (Version: 1 - ) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.) WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{ca586c80-7c84-4b88-8537-726724df6929}\InprocServer32 -> C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll () CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-885781446-3970655490-3772703532-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SDej\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) ==================== Restore Points ========================= 10-06-2015 12:27:24 Windows Update 20-06-2015 02:04:35 Scheduled Checkpoint ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {044EA6F7-DFB7-4DA4-8B93-0217FCB8868F} - System32\Tasks\update-S-1-5-21-885781446-3970655490-3772703532-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2014-11-28] () Task: {171B800F-E390-4763-8C24-5B7CDFDC0749} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {21CCDB10-5234-48DE-9214-0AF6FE1799E6} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {2DD40FC0-5997-4D62-BA47-0D7ED7A9D3FA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-13] (Google Inc.) Task: {4D0C548C-9C6F-4F9D-9CD2-245166633BDE} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-18] (Avast Software s.r.o.) Task: {4F421A35-48E3-4F1E-91CA-49ECDFBB84D3} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-885781446-3970655490-3772703532-1001UA => C:\Users\SDej\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.) Task: {615300DA-3D90-4FCC-83E3-CEFFAE408F62} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {68F7CC14-098B-453C-B0A5-15B9047445AB} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2014-11-28] () Task: {6EB2EE80-520E-48F0-9795-45714AB92CF1} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-885781446-3970655490-3772703532-1001 Task: {8320FFB0-23D2-4C23-B0D9-36B2C537FDDF} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {932515B2-0CEC-4C5D-B98A-F790C5571D8C} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-885781446-3970655490-3772703532-1001Core => C:\Users\SDej\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.) Task: {974FCEDE-9AF0-4A9D-97A5-71B7693D701F} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-06] (Microsoft Corporation) Task: {A84111BB-B978-49C0-9C05-893E37403EBA} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {B5A5D329-24B9-4CD7-A953-7EF33CB02871} - System32\Tasks\{BAC19DE4-DAC7-49A5-934A-3C7035DB6CDB} => Chrome.exe http://ui.skype.com/ui/0/7.5.80.101/en/abandoninstall?page=tsBing Task: {BAEBE791-C138-4A3A-8798-2F17C9D8AEF5} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattel\DiagTrackRunner.exe [2015-03-16] (Microsoft Corporation) Task: {BF8B6B87-2627-4AB1-A36E-F97A343A1A44} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-10-06] () Task: {C0202630-9EFF-4221-BB5B-B2E39BDFD78F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {CB5042D1-20A2-4E8E-8E9A-B00B85144292} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-06-10] (Microsoft Corporation) Task: {D7C71001-99B3-4A1C-B3F1-7A1C35CB2DF3} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {DB10D652-5826-402E-9396-8101BF592105} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Time-10s => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {FA3C74EA-5D64-4F14-900A-0C23B5A99E34} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-13] (Google Inc.) Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-885781446-3970655490-3772703532-1001Core.job => C:\Users\SDej\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-885781446-3970655490-3772703532-1001UA.job => C:\Users\SDej\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\update-S-1-5-21-885781446-3970655490-3772703532-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Loaded Modules (Whitelisted) ============== 2015-04-21 17:58 - 2015-03-19 23:33 - 00736962 _____ () C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll 2010-10-20 15:23 - 2010-10-20 15:23 - 08801632 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll 2014-09-05 23:03 - 2015-03-31 19:02 - 00392592 _____ () C:\Windows\system32\igfxTray.exe 2015-05-27 02:49 - 2015-05-27 02:49 - 01688576 _____ () C:\Program Files\WindowsApps\2414FC7A.Viber-FreePhoneCallsText_4.1.1.0_x86__p61zvh252yqyr\Viber.Metro.exe 2015-04-21 12:18 - 2015-04-21 12:18 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-04-21 12:18 - 2015-04-21 12:18 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-06-12 20:12 - 2015-06-12 20:12 - 02954752 _____ () C:\Program Files\AVAST Software\Avast\defs\15061201\algo.dll 2015-06-20 20:08 - 2015-06-20 20:08 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15062001\algo.dll 2015-02-17 22:05 - 2015-03-19 21:08 - 00715000 _____ () C:\Program Files (x86)\Connectify\log4cplus.dll 2015-04-21 12:18 - 2015-04-21 12:18 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 05935104 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Metro\ac698485ea27840894a10fddc32fcae2\Viber.Metro.ni.exe 2015-03-19 17:43 - 2015-03-19 17:43 - 03530752 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.UI.Xaml\0b2afd93fc0545b7b94339e8a4a7af97\Windows.UI.Xaml.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 01131008 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.App640a3541#\72dff8d45b73e9b02b3838d29765607a\Windows.ApplicationModel.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00626176 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Metro4e3ef3a9#\6bd23140ab0258424fe14cef136627df\Viber.Metro.Infrastructure.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 00228864 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.Foundation\16c3eb7650767d95d002c998d0c73eb5\Windows.Foundation.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 01475584 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Metro.Toolkit\966eee0c8d46ee5fc22c4f671201fce1\Viber.Metro.Toolkit.ni.dll 2015-03-01 06:56 - 2015-03-01 06:56 - 00516608 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Bing.Maps\006d34662790a243604c42df40af13b5\Bing.Maps.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00230400 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta7f14ff71#\4ffb03e58ba3c096cdd3770010c48cf3\Viber.Portable.ThirdParty.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00220672 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta61bc03bc#\f06588c55a3d654ca799872eff03ca96\Viber.Portable.Domain.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 00960000 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.UI\8ddd8ad15fe3fb05a871ef0115fb84e2\Windows.UI.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 00239616 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.Gloaae92e31#\94af4549db265c6f339c287c8675d234\Windows.Globalization.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 02880512 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta394649da#\eb12fd6a544d50d936649dd273f8ad73\Viber.Portable.Utilities.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 01282048 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.Devices\4764145200fcd33a90ced1505892fce6\Windows.Devices.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 01021952 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Portabdf03d7c#\ebd5ff1f0bd728fe43a17a4e60a7559b\Viber.Portable.PhoneController.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 00808448 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.Storage\7abff64c7c1ea1fae5bd170c8238b73e\Windows.Storage.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00034816 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Postsharp.Ia289db92#\5e35c83c2b213d62febe5d97c582e769\Postsharp.Injection.Domain.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00904704 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Adapters\98f1be0e30847726e98c947707492943\Viber.Adapters.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00244224 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\PhoneControllerRT\e5f207608c2503d20ea04f873d703eb8\PhoneControllerRT.ni.dll 2015-05-18 10:07 - 2015-05-18 10:07 - 06645248 _____ () C:\Program Files\WindowsApps\2414FC7A.Viber-FreePhoneCallsText_4.1.1.0_x86__p61zvh252yqyr\PhoneControllerRT.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00486400 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta7d81fdab#\08f7e77b039db550a40c253fe0e54dca\Viber.Portable.SqliteProvider.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00038400 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Postsharp.C112f42d3#\1e69bbd993ddfde12f0acdc48ea1c9fe\Postsharp.CustomTools.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 00402432 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.Security\ae4a1bf110c1a12f619514bde2b27939\Windows.Security.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00422400 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Portable.Web\77bdf9361a7a2a6319d88e4ce3288206\Viber.Portable.Web.ni.dll 2015-06-06 10:04 - 2015-06-06 10:04 - 00397312 _____ () C:\Users\SDej\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta06857f05#\36bd12a2708708473c4af68724739cd2\Viber.Portable.MainFlow.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 00133120 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.System\c639835fe3da556a2cbe2e03540996c0\Windows.System.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 00799232 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.Networking\86865ced79f3180ebdfa736d895e5edb\Windows.Networking.ni.dll 2015-03-19 17:43 - 2015-03-19 17:43 - 00770560 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Windows.Media\5c5cfababe2d392b06fa79f0052c0168\Windows.Media.ni.dll 2011-03-17 00:11 - 2011-03-17 00:11 - 04297568 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2010-03-25 07:17 - 2010-03-25 07:17 - 08794464 _____ () C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll 2015-06-13 03:37 - 2015-06-05 20:22 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libglesv2.dll 2015-06-13 03:37 - 2015-06-05 20:22 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libegl.dll 2015-06-20 20:23 - 2015-06-20 20:23 - 00043008 _____ () c:\users\sdej\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp2tp6xa.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00750080 _____ () C:\Users\SDej\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00047616 _____ () C:\Users\SDej\AppData\Roaming\Dropbox\bin\libEGL.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00865280 _____ () C:\Users\SDej\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00200704 _____ () C:\Users\SDej\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\SDej\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00726016 _____ () C:\Users\SDej\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\SDej\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2014-01-31 05:28 - 2014-01-31 05:28 - 00421520 _____ () C:\Program Files (x86)\GRETECH\GomPlayer\GomTVStrm.dll 2015-02-06 09:46 - 2014-10-06 20:00 - 03502080 _____ () C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow\ffdshow.ax 2015-06-13 03:37 - 2015-06-05 20:22 - 15003464 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\SDej\OneDrive:ms-properties AlternateDataStreams: C:\Users\SDej\SkyDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-885781446-3970655490-3772703532-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\SDej\AppData\Roaming\Microsoft\Windows Photo Viewer\Windows Photo Viewer Wallpaper.jpg DNS Servers: 192.168.254.251 - 208.67.220.220 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run: => "Connectify Hotspot" HKU\S-1-5-21-885781446-3970655490-3772703532-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKU\S-1-5-21-885781446-3970655490-3772703532-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_44E6A9CE151B2F96791490BFB936C6D2" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{3B09B09F-EFA9-440A-B5C8-680180DC74B6}] => (Allow) E:\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{F7E406CF-2AD0-4986-A520-CAFC40EF69C7}] => (Allow) E:\The Sims 4\Game\Bin\TS4.exe FirewallRules: [TCP Query User{E5EBEE7B-43C0-436B-B21D-EBF082332DCB}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{A8244761-2C24-4F0E-9D07-5DAEF5546004}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{79263829-DF24-4E30-9FF1-020D3CE4C9FD}C:\program files (x86)\r.g. mechanics\stronghold crusader 2\bin\win32_release\crusader2.exe] => (Allow) C:\program files (x86)\r.g. mechanics\stronghold crusader 2\bin\win32_release\crusader2.exe FirewallRules: [UDP Query User{BE66E1BA-E5E5-4C19-BD7C-46CC2FE0A405}C:\program files (x86)\r.g. mechanics\stronghold crusader 2\bin\win32_release\crusader2.exe] => (Allow) C:\program files (x86)\r.g. mechanics\stronghold crusader 2\bin\win32_release\crusader2.exe FirewallRules: [{63B554CE-A962-4587-BE14-07C238880C36}] => (Allow) C:\Users\SDej\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{4AA122AC-8CEE-48EA-8C1F-49D1CA66ECF5}] => (Allow) C:\Users\SDej\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{5B589588-CF9B-45E0-AD75-3CC2075B3481}] => (Allow) C:\Users\SDej\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C859A76B-5EA3-4A4B-8409-CDCE2E161A7C}] => (Allow) C:\Users\SDej\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B7B045A4-86BB-4430-8797-8398E64598FC}] => (Allow) C:\Users\SDej\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{4183A879-1EE0-4454-B89B-A5CB1C1A55EA}] => (Allow) C:\Users\SDej\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{EBFD93C8-B558-4ED2-A606-4966AAEE0FED}C:\users\sdej\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\sdej\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{32284CE7-5DF2-43D8-8723-440961A79442}C:\users\sdej\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\sdej\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{671451A5-C4C6-485D-ACF0-8CBB9A5985AA}C:\program files (x86)\connectify\connectify.exe] => (Allow) C:\program files (x86)\connectify\connectify.exe FirewallRules: [UDP Query User{06E34DFA-DBA5-426A-989A-906CE0E1E0C3}C:\program files (x86)\connectify\connectify.exe] => (Allow) C:\program files (x86)\connectify\connectify.exe FirewallRules: [{DD6400D6-FFC2-4B0E-BD54-093157323310}] => (Allow) C:\Program Files (x86)\Connectify\Connectify.exe FirewallRules: [{B11C8A0D-7E21-4AE7-A78E-F4490218B407}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{B1BEDDC5-8272-4196-B65E-42CAE8BBC963}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{A7D92E76-CFD4-452E-BB66-E52914489795}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{3F7922E9-5DBB-4A86-B20D-CA9666CEDAF3}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [{1DF93393-72FD-4DFC-BB7E-F7A4644E06C3}] => (Allow) C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe FirewallRules: [TCP Query User{BBE794FF-122A-4182-8D39-3E3445E89039}C:\program files (x86)\r.g. mechanics\stronghold crusader 2\bin\win32_release\crusader2.exe] => (Allow) C:\program files (x86)\r.g. mechanics\stronghold crusader 2\bin\win32_release\crusader2.exe FirewallRules: [UDP Query User{169AD2FA-DA8F-4ECF-B108-BC88CC0400E0}C:\program files (x86)\r.g. mechanics\stronghold crusader 2\bin\win32_release\crusader2.exe] => (Allow) C:\program files (x86)\r.g. mechanics\stronghold crusader 2\bin\win32_release\crusader2.exe FirewallRules: [TCP Query User{335047DB-CDCD-4C2B-87E4-1B52D4C3A031}C:\program files\bizagi\bizagi studio\studio\bizagistudio.exe] => (Allow) C:\program files\bizagi\bizagi studio\studio\bizagistudio.exe FirewallRules: [UDP Query User{2F32B1E0-318B-4AB8-A214-208C49B54A3F}C:\program files\bizagi\bizagi studio\studio\bizagistudio.exe] => (Allow) C:\program files\bizagi\bizagi studio\studio\bizagistudio.exe FirewallRules: [TCP Query User{F7C59A3C-17A1-4EE1-8CB8-ED11F46F740A}C:\program files\bizagi\bizagi studio\bizagistudio.formsmodeler\bizagistudio.formsmodeler.exe] => (Allow) C:\program files\bizagi\bizagi studio\bizagistudio.formsmodeler\bizagistudio.formsmodeler.exe FirewallRules: [UDP Query User{DD2210DF-25DF-4A26-BA61-301EC5CBB9C8}C:\program files\bizagi\bizagi studio\bizagistudio.formsmodeler\bizagistudio.formsmodeler.exe] => (Allow) C:\program files\bizagi\bizagi studio\bizagistudio.formsmodeler\bizagistudio.formsmodeler.exe FirewallRules: [{4B7293EB-5598-4357-8887-A85BB61B86BD}] => (Allow) C:\Program Files\Bizagi\Bizagi Studio\MC\BizAgiMC.exe FirewallRules: [{2792D372-0A9B-40ED-B596-DB660D670CAA}] => (Allow) C:\Program Files\Bizagi\Bizagi Studio\MC\BizAgiMC.exe FirewallRules: [{590F0303-331C-4852-BF4B-6C315FD18439}] => (Allow) LPort=50051 FirewallRules: [{AD8A8E76-B094-4BFF-830B-29C06B6B8DE7}] => (Allow) LPort=50052 FirewallRules: [{937F43DE-9A8D-4954-BBBB-41AA96808801}] => (Allow) LPort=5679 FirewallRules: [{1F39E0B1-D653-4FA7-8A11-5BD79A2F3FE2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{729F0A7B-D3AB-4B74-ABBE-DA5525BF40CD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{2410A21A-97ED-4C2D-A38A-BC02A3610CAA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{C571CADC-AD66-4623-BA94-EB13CD48B532}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{9D334AA1-44E7-427B-A596-284491832E86}C:\program files\bizagi\bizagi studio\studio\bizagistudio.exe] => (Allow) C:\program files\bizagi\bizagi studio\studio\bizagistudio.exe FirewallRules: [UDP Query User{B70DC019-577D-4287-88F0-92FEB53C8D00}C:\program files\bizagi\bizagi studio\studio\bizagistudio.exe] => (Allow) C:\program files\bizagi\bizagi studio\studio\bizagistudio.exe FirewallRules: [{8819FB44-AEA8-4A33-9D08-D71A48E03CC8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{26291685-78B3-429E-AC55-C083B89D79C6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{81685577-5D72-4472-A4DE-AABDEB606930}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{878386DE-BDB1-491B-9F3B-28437BA2C534}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{9A7848C6-71D9-48FE-9710-699B45159DFA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: SM Bus Controller Description: SM Bus Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/20/2015 02:04:52 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (06/20/2015 00:24:31 AM) (Source: Perflib) (EventID: 1023) (User: ) Description: SQLAgent$SQLEXPRESS8 Error: (06/20/2015 00:24:30 AM) (Source: Perflib) (EventID: 1023) (User: ) Description: MSSQL$SQLEXPRESS8 Error: (06/19/2015 05:58:30 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program Viber.Metro.exe version 1.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: fbc Start Time: 01d0aaa8b772b289 Termination Time: 4294967295 Application Path: C:\Program Files\WindowsApps\2414FC7A.Viber-FreePhoneCallsText_4.1.1.0_x86__p61zvh252yqyr\Viber.Metro.exe Report Id: ffd2ea93-169b-11e5-82ac-28d244c0ff75 Faulting package full name: 2414FC7A.Viber-FreePhoneCallsText_4.1.1.0_x86__p61zvh252yqyr Faulting package-relative application ID: App Error: (06/19/2015 05:58:14 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: LENOVO1) Description: App 2414FC7A.Viber-FreePhoneCallsText_4.1.1.0_x86__p61zvh252yqyr+App did not launch within its allotted time. Error: (06/18/2015 06:31:44 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: SQLAgent$SQLEXPRESS8 Error: (06/18/2015 06:31:44 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: MSSQL$SQLEXPRESS8 Error: (06/17/2015 06:24:00 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: SQLAgent$SQLEXPRESS8 Error: (06/17/2015 06:24:00 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: MSSQL$SQLEXPRESS8 Error: (06/16/2015 05:37:06 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: SQLAgent$SQLEXPRESS8 System errors: ============= Error: (06/20/2015 11:02:15 PM) (Source: Service Control Manager) (EventID: 7046) (User: ) Description: The following service has repeatedly stopped responding to service control requests: Function Discovery Resource Publication Contact the service vendor or the system administrator about whether to disable this service until the problem is identified. You may have to restart the computer in safe mode before you can disable the service. Error: (06/20/2015 11:01:45 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the SSDPSRV service. Error: (06/20/2015 11:01:15 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the upnphost service. Error: (06/20/2015 11:00:45 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the FDResPub service. Error: (06/20/2015 11:00:15 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the SSDPSRV service. Error: (06/20/2015 10:59:45 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the upnphost service. Error: (06/20/2015 10:59:15 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the SSDPSRV service. Error: (06/20/2015 10:19:00 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the FDResPub service. Error: (06/20/2015 10:18:30 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the upnphost service. Error: (06/20/2015 10:18:00 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the SSDPSRV service. Microsoft Office: ========================= Error: (06/20/2015 02:04:52 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. Error: (06/20/2015 00:24:31 AM) (Source: Perflib) (EventID: 1023) (User: ) Description: SQLAgent$SQLEXPRESS8 Error: (06/20/2015 00:24:30 AM) (Source: Perflib) (EventID: 1023) (User: ) Description: MSSQL$SQLEXPRESS8 Error: (06/19/2015 05:58:30 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Viber.Metro.exe1.0.0.0fbc01d0aaa8b772b2894294967295C:\Program Files\WindowsApps\2414FC7A.Viber-FreePhoneCallsText_4.1.1.0_x86__p61zvh252yqyr\Viber.Metro.exeffd2ea93-169b-11e5-82ac-28d244c0ff752414FC7A.Viber-FreePhoneCallsText_4.1.1.0_x86__p61zvh252yqyrApp Error: (06/19/2015 05:58:14 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: LENOVO1) Description: 2414FC7A.Viber-FreePhoneCallsText_4.1.1.0_x86__p61zvh252yqyr+App Error: (06/18/2015 06:31:44 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: SQLAgent$SQLEXPRESS8 Error: (06/18/2015 06:31:44 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: MSSQL$SQLEXPRESS8 Error: (06/17/2015 06:24:00 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: SQLAgent$SQLEXPRESS8 Error: (06/17/2015 06:24:00 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: MSSQL$SQLEXPRESS8 Error: (06/16/2015 05:37:06 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: SQLAgent$SQLEXPRESS8 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-4005U CPU @ 1.70GHz Percentage of memory in use: 74% Total physical RAM: 3992.36 MB Available physical RAM: 1004.54 MB Total Pagefile: 8088.36 MB Available Pagefile: 4062.19 MB Total Virtual: 131072 MB Available Virtual: 131071.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:97.66 GB) (Free:45.98 GB) NTFS Drive d: () (Fixed) (Total:244.14 GB) (Free:157.5 GB) NTFS Drive e: () (Fixed) (Total:292.97 GB) (Free:170.15 GB) NTFS Drive g: (New Volume) (Fixed) (Total:295.77 GB) (Free:295.26 GB) NTFS Drive h: (New) (CDROM) (Total:0.46 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D9FA2484) Partition 1: (Not Active) - (Size=993 KB) - (Type=42) Partition 2: (Active) - (Size=1000 MB) - (Type=42) Partition 3: (Not Active) - (Size=97.7 GB) - (Type=42) Partition 4: (Not Active) - (Size=832.9 GB) - (Type=42) ==================== End of log ============================