Additional scan result of Farbar Recovery Scan Tool (x86) Version: 21-06-2015 01 Ran by XXXX at 2015-06-20 23:34:33 Running from F:\DOWNLOADS Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1177238915-1035525444-682003330-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator Guest (S-1-5-21-1177238915-1035525444-682003330-501 - Limited - Disabled) HelpAssistant (S-1-5-21-1177238915-1035525444-682003330-1000 - Limited - Disabled) SUPPORT_388945a0 (S-1-5-21-1177238915-1035525444-682003330-1002 - Limited - Disabled) XXXX (S-1-5-21-1177238915-1035525444-682003330-1003 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\XXXX ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) ACID Pro 7.0 (HKLM\...\{10B39DCD-0325-49FE-BFBC-8EC011CB7CA8}) (Version: 7.0.653 - Sony) Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated) Adobe Community Help (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.5.23 - Adobe Systems Incorporated.) Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated) Adobe Photoshop CS5.1 (HKLM\...\{9158FF30-78D7-40EF-B83E-451AC5334640}) (Version: 12.1 - Adobe Systems Incorporated) Adobe Reader XI (11.0.08) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated) Advanced SystemCare 7 (HKLM\...\Advanced SystemCare 7_is1) (Version: 7.0.5 - IObit) Alcohol 120% (HKLM\...\Alcohol 120%) (Version: - Alcohol Soft Development Team) Alien Skin Eye Candy 7 (HKLM\...\Alien Skin Eye Candy 7) (Version: - Alien Skin) Ample Bass P version 1.0.0 (HKLM\...\{9E12DB30-0896-11E4-9191-0800200C9A66}_is1) (Version: 1.0.0 - Ample Sound Technology Co., Ltd.) Ample Guitar F version 1.2.6 (HKLM\...\{F0855D86-F7D9-4E24-987C-CD7CEBB61AF1}_is1) (Version: 1.2.6 - Ample Sound Technology Co., Ltd.) Ample Guitar G version 1.7.0 (HKLM\...\{F0855D86-F7D9-4E24-987C-CD7CEBB61AF2}_is1) (Version: 1.7.0 - Ample Sound Technology Co., Ltd.) Ample Guitar M version 1.7.0 (HKLM\...\{F0855D86-F7D9-4E24-987C-CD7CEBB61AF4}_is1) (Version: 1.7.0 - Ample Sound Technology Co., Ltd.) Ample Guitar P version 1.2.6 (HKLM\...\{F0855D86-F7D9-4E24-987C-CD7CEBB61AF3}_is1) (Version: 1.2.6 - Ample Sound Technology Co., Ltd.) Analog Factory 2.5 (HKLM\...\Analog Factory_is1) (Version: - Arturia) Any Wallpaper 1.1.1 (HKLM\...\Any Wallpaper_is1) (Version: 1.1.1 - AnyUtils) Apple Application Support (HKLM\...\{21ECABC3-40B2-42DF-8E21-ACF3A4D0D95A}) (Version: 3.0.5 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{941B4CE7-3F5D-443E-A8B7-56A420D2EAFD}) (Version: 7.1.2.6 - Apple Inc.) Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ARP2600 V2 2.0 (HKLM\...\ARP2600 V2_is1) (Version: - Arturia) AutoEye (HKLM\...\{D4CBB77C-8143-44E9-9506-6DA1925DAA5C}) (Version: 2.00.0000 - Auto FX Software) Avira (HKLM\...\{8467e01f-0496-42ce-b247-88ef205b4880}) (Version: 1.1.40.29239 - Avira Operations GmbH & Co. KG) Avira (HKLM\...\{b5675cc4-ab8b-4945-8c1d-4c5479556d6a}) (Version: 1.1.34.19732 - Avira Operations GmbH & Co. KG) Avira (Version: 1.1.34.19732 - Avira Operations GmbH & Co. KG) Hidden Aya Audio to MP3/WMA/AAC/MP2/WAV/OGG/M4A/AMR Audio Converter V1 (HKLM\...\Aya Audio to MP3/WMA/AAC/MP2/WAV/OGG/M4A/AMR Aud~232DB3A3_is1) (Version: 1.2.7 - Aya Software) Bass Station 2.1 (HKLM\...\{ABAF1232-6213-4062-9D52-04E04A730CEA}_is1) (Version: 2.1 - Novation) Beyond the Invisible - Evening 1.0 (HKLM\...\Beyond the Invisible - Evening 1.0) (Version: 1.0 - Игры на Cat-A-Cat.NET) Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.) Brass 2.0.1 (HKLM\...\Brass 2.0.1_is1) (Version: - Arturia) Bulgarian (Phonetic) by Iliya Dankov (HKLM\...\{57BA3105-8E44-45BD-BB3A-F0BD5EA0575B}) (Version: 1.0.3.13 - ILIYA DANKOV - www.dankov.hit.bg) calibre (HKLM\...\{90037203-AAD8-412F-8265-DD54FD4EFD10}) (Version: 0.9.35 - Kovid Goyal) Camel Audio Cameleon 5000 v1.7 VSTi (HKLM\...\Camel Audio Cameleon 5000 v1.7 VSTi) (Version: - ) Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Cool Edit Pro 2.1 (HKLM\...\Cool Edit Pro 2.1) (Version: - ) CoolEdit Pro (HKLM\...\{0D2A50C4-8DE4-4A47-B6DD-F9F0CE24E269}) (Version: 2.1 - EKE58) CS-80V2 2.0 (HKLM\...\CS-80V2_is1) (Version: - Arturia) Dell System Detect (HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\73f463568823ebbe) (Version: 5.14.0.9 - Dell) DreamSuite Ultimate (HKLM\...\{F29962BA-432D-483F-A008-F5552BE9647B}) (Version: 2.00.0000 - Auto FX Software) eLicenser Control (HKLM\...\eLicenser Control) (Version: - Steinberg Media Technologies GmbH) Facebook Video Calling 3.1.0.521 (HKLM\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Filter Forge 3.006 (HKLM\...\Filter Forge 3_is1) (Version: - Filter Forge, Inc.) Filter Forge Freepack 1 - Metals 2.009 (HKLM\...\Filter Forge Freepack 1 - Metals_is1) (Version: - Filter Forge, Inc.) Filter Forge Freepack 2 - Photo Effects 2.009 (HKLM\...\Filter Forge Freepack 2 - Photo Effects_is1) (Version: - Filter Forge, Inc.) Filter Forge Freepack 4 - Distortions 2.009 (HKLM\...\Filter Forge Freepack 4 - Distortions_is1) (Version: - Filter Forge, Inc.) Filter Forge Freepack 6 - Patterns 2.009 (HKLM\...\Filter Forge Freepack 6 - Patterns_is1) (Version: - Filter Forge, Inc.) FL Studio 11 (HKLM\...\FL Studio 11) (Version: - Image-Line) FlexType 2K (HKLM\...\FlexType 2K) (Version: - ) FlowStone FL 3.0 (HKLM\...\FlowStone) (Version: - ) Foxit Advanced PDF Editor 3 (HKLM\...\B521582C-6BE3-491D-BCC8-FFB8301298E9_is1) (Version: 3.1.0.0 - Foxit Corporation) Frischluft Lenscare v1.41 и Flair v1.2 (HKLM\...\Frischluft Lenscare v1.41 и Flair v1.2) (Version: - ) Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.) Google Toolbar for Internet Explorer (HKLM\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6227.252 - Google Inc.) Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (Version: 1.3.27.5 - Google Inc.) Hidden IL Shared Libraries (HKLM\...\IL Shared Libraries) (Version: - Image-Line) Imagenomic Noiseware 5.0.2 Plug-in (build 5020) (HKLM\...\ImagenomicNoisewarePlugin) (Version: - ) Imagenomic Portraiture 2.3.3 Plug-in (build 2330) (HKLM\...\ImagenomicPortraiturePlugin) (Version: - ) Imagenomic Realgrain 2.0 Plug-in (build 2001) (HKLM\...\ImagenomicRealgrainPlugin) (Version: - ) Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 18.3 - Intel) IObit Uninstaller (HKLM\...\IObitUninstall) (Version: 3.0.3.1064 - IObit) iTunes (HKLM\...\{0A37EE62-9A58-420D-90CC-4E52153112EE}) (Version: 11.3.0.54 - Apple Inc.) iZotope Nectar 2 Production Suite (HKLM\...\iZotope Nectar 2 Production Suite_is1) (Version: 2.02 - iZotope, Inc.) Java 8 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Jupiter-8V2 2.0 (HKLM\...\Jupiter-8V2_is1) (Version: - Arturia) K-Lite Mega Codec Pack 7.8.0 (HKLM\...\KLiteCodecPack_is1) (Version: 7.8.0 - ) Magic ISO Maker v5.5 (build 0281) (HKLM\...\Magic ISO Maker v5.5 (build 0281)) (Version: - ) MagicDisc 2.7.106 (HKLM\...\MagicDisc 2.7.106) (Version: - ) Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) M-Audio Series II MIDI (HKLM\...\{379BD39E-F13E-458F-96D8-56BD7F2CC516}) (Version: 4.2.03v4 - ) Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30320 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM\...\{90110409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft User-Mode Driver Framework Feature Pack 1.0 (HKLM\...\Wudf01000) (Version: - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft WinUsb 1.0 (HKLM\...\winusb0100) (Version: - Microsoft Corporation) minimoog V2 2.0 (HKLM\...\minimoog V2_is1) (Version: - Arturia) MiniTool Partition Wizard Free 9.0 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.) MorphoX (HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\MorphoX) (Version: - ) Mozilla Firefox 38.0.5 (x86 en-US) (HKLM\...\Mozilla Firefox 38.0.5 (x86 en-US)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 32.0.3 - Mozilla) MusicLab RealLPC (HKLM\...\{38209080-8888-4418-8117-D190FC71BF58}) (Version: 3.0 - MusicLab, Inc.) MusicLab RealStrat (HKLM\...\{58206080-8888-4418-8117-D190FC71BF58}) (Version: 3.0 - MusicLab, Inc.) MusicLab Virtual MIDI Driver (HKLM\...\{A30B7FD7-04A1-46e1-ABDF-FD592C113253}) (Version: 2.0.1.0 - MusicLab, Inc.) Mystery of the Ancients 4. Deadly Cold CE 1.0 (HKLM\...\Mystery of the Ancients 4. Deadly Cold CE 1.0) (Version: 1.0 - Игры на Cat-A-Cat.NET) Mystical (HKLM\...\{B64A9435-8F83-41DF-891D-D82550A7C431}) (Version: 2.00.0000 - Auto FX Software) N.I Pro-53 v3.0-OxYGeN (HKLM\...\N.I Pro-53 v3.0-OxYGeN) (Version: - ) Native Instruments Controller Editor (HKLM\...\Native Instruments Controller Editor) (Version: - Native Instruments) Native Instruments FM8 (HKLM\...\Native Instruments FM8) (Version: - Native Instruments) Native Instruments Kontakt 5 (HKLM\...\Native Instruments Kontakt 5) (Version: - Native Instruments) Native Instruments Maschine (HKLM\...\Native Instruments Maschine) (Version: - Native Instruments) Native Instruments Maschine Controller Driver (HKLM\...\Native Instruments Maschine Controller Driver) (Version: - Native Instruments) Native Instruments Maschine Controller MK2 Driver (HKLM\...\Native Instruments Maschine Controller MK2 Driver) (Version: - Native Instruments) Native Instruments Maschine Mikro Driver (HKLM\...\Native Instruments Maschine Mikro Driver) (Version: - Native Instruments) Native Instruments Maschine Mikro MK2 Driver (HKLM\...\Native Instruments Maschine Mikro MK2 Driver) (Version: - Native Instruments) Native Instruments Service Center (HKLM\...\Native Instruments Service Center) (Version: - Native Instruments) Native Instruments Traktor 2 (HKLM\...\Native Instruments Traktor 2) (Version: - Native Instruments) PDF Creator Plus 4.0 (HKLM\...\{49D56762-52DA-4350-9420-97BACA9D7D62}) (Version: 4.0.008 - PEERNET Inc.) PDF Settings CS5 (Version: 10.0 - Adobe Systems Incorporated) Hidden Perfect Effects 3 (HKLM\...\{7C27218C-912B-4B0E-9B6E-E87A6DFD84F7}) (Version: 3.0.2 - onOne Software) Perfectly Clear Plugin 1.7.0 (HKLM\...\Perfectly Clear Plugin) (Version: 1.7.0 - Athentech) Phonetic Cyrillic for Windows 2000 v1.0 (HKLM\...\BGPHO-WIN2K_is1) (Version: v1.0 - 5Group & Co.) Prophet-V2 2.0 (HKLM\...\Prophet-V2_is1) (Version: - Arturia) PSP VintageWarmer2 2.5.2 32bit (HKLM\...\PSP VintageWarmer2 2.5.2 32bit) (Version: 2.5.2 32bit - PSPaudioware.com) Realtek AC'97 Audio (HKLM\...\{FB08F381-6533-4108-B7DD-039E11FBC27E}) (Version: 5.36 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 5.10.0.7111 - Realtek Semiconductor Corp.) reFX Nexus VSTi RTAS v2.2.0 (HKLM\...\reFX Nexus_is1) (Version: - ) REmatrix (HKLM\...\{FA90E0EB-2AF1-44E8-BBA0-7D151516995D}_is1) (Version: 1.0.0 - Overloud) Rob Papen Albino 3 (HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\Rob Papen Albino 3) (Version: - ) Samsung Kies (HKLM\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.0.2.11071_128 - Samsung Electronics Co., Ltd.) Samsung Kies (Version: 2.0.2.11071_128 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.4.2.2 - SAMSUNG Electronics Co., Ltd.) Service Installer II (HKLM\...\Service Installer II) (Version: 1.2 - Nalpeiron) Service Installer II (Version: 1.2 - Nalpeiron) Hidden Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Softube Spring Reverb VST RTAS v1.0.4 (HKLM\...\Softube Spring Reverb VST RTAS_is1) (Version: - ) Softube Tube Delay VST RTAS v1.0.5 (HKLM\...\Softube Tube Delay VST RTAS_is1) (Version: - ) Sony Vocal Eraser (HKLM\...\Sony Vocal Eraser_is1) (Version: 1.00 - iZotope, Inc.) SoulSeek 157 NS 13e (HKLM\...\Soulseek2) (Version: - ) Spectrasonics Omnisphere Library version 1.0 (HKLM\...\Spectrasonics Omnisphere Library_is1) (Version: - Copyright (C) 2008-2011 Spectrasonics) Spectrasonics Omnisphere VSTi Plug-In version 1.5 (HKLM\...\Spectrasonics Omnisphere VSTi Plug-In_is1) (Version: - Copyright (C) 2008-2011 Spectrasonics) Spirit of Revenge - Cursed Castle Collectors Edition (HKLM\...\Spirit of Revenge - Cursed Castle Collectors Edition) (Version: 1.0.0.2 - LeeGT-Games) Steinberg Cubase 5 (HKLM\...\{4A19D6AC-ADE0-4A07-80FF-9C9812C45557}) (Version: 5.1.0 - Steinberg Media Technologies GmbH) Steinberg HALionOne Expression Set (HKLM\...\{E22AD5D3-EB60-4A8F-835C-6C10E369DCE2}) (Version: 1.0.1.0 - Steinberg Media Technologies GmbH) Steinberg HALionOne GM Drum Set (HKLM\...\{AC997F93-0757-4ED4-A701-F40C2D654D09}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne GM Set (HKLM\...\{F057965A-D974-4C64-ADB1-4381CD4B8956}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne Pro Set (HKLM\...\{D82CDA0D-C182-42C8-8FF2-5649C98D6003}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne Studio Drum Set (HKLM\...\{865D9ED1-EAC2-436D-AFA7-0B750EB5AAAB}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne Studio Set (HKLM\...\{D23CBFDA-C46B-4920-BA70-FC7878A3F05A}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg Hypersonic VSTi DXi v2.0 (HKLM\...\Steinberg Hypersonic VSTi DXi_is1) (Version: - ) Surfing Protection (HKLM\...\IObit Surfing Protection_is1) (Version: 1.0 - IObit) Sylenth1 v2.21 (HKLM\...\Sylenth1_is1) (Version: - ) Syncrosoft License Control (HKLM\...\Syncrosoft License Control) (Version: - SIA Syncrosoft) The KMPlayer 3.6.0.87 (LAV) (HKLM\...\{ACBA5A14-2D62-4820-8206-D768C74C1E10}_is1) (Version: - ©7sh3. (Сборка от 01.07.2013)) UmmyVideoDownloader (HKLM\...\{E028DBDA-EEE7-48A0-ADF7-D250589A02C5}_is1) (Version: 1.3.0.3 - ) Unlocker 1.8.9 (HKLM\...\Unlocker) (Version: 1.8.9 - Cedrick Collomb) USB PC Camera (ZC0301PLH) (HKLM\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D303B}) (Version: - ) Valve Exciter version 1.1.0 (HKLM\...\{7AF49065-7792-4BF8-BD39-BC50F2E3AA11}_is1) (Version: 1.1.0 - AudioThing) Vampire Legends 2 - The Untold Story of Elizabeth Bathory CE (HKLM\...\Vampire Legends 2 - The Untold Story of Elizabeth Bathory CE1.1) (Version: 1.1 - Foxy Games) Vimicro USB PC Camera (VC0305) (HKLM\...\{8AD824A5-1CCC-4BB7-82C9-E6FB25CC0479}) (Version: 1.00.000 - ) Vitamin D Video r5150 (HKLM\...\Vitamin D Video_is1) (Version: - Vitamin D, Inc.) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) webcamXP 5 (HKLM\...\wLite) (Version: 5.7.4.0 - Moonware Studios) WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden WinDjView 1.0.3 (HKLM\...\WinDjView) (Version: 1.0.3 - Andrew Zhezherun) Windows Driver Package - AnalogDevices (ADIHdAudAddService) MEDIA (06/15/2010 5.10.01.7280) (HKLM\...\4CDCB90B2EFB804FE32D2C9FA5B9B962D6F6DBDF) (Version: 06/15/2010 5.10.01.7280 - AnalogDevices) Windows Driver Package - ATI Technologies Inc. (ati2mtag) Display (10/26/2010 8.791.0.0000) (HKLM\...\7C00C778C242677415C0193DAD28660598D1A612) (Version: 10/26/2010 8.791.0.0000 - ATI Technologies Inc.) Windows Driver Package - Intel hdc (07/25/2013 9.1.9.1005) (HKLM\...\45E15243FF229D0F06670A5B262CA9C7887085F6) (Version: 07/25/2013 9.1.9.1005 - Intel) Windows Driver Package - Intel System (04/01/2004 6.0.0.1013) (HKLM\...\CFCAB4709E52E3AF3F14E0AB9D735787D8588D2E) (Version: 04/01/2004 6.0.0.1013 - Intel) Windows Driver Package - Intel System (07/25/2013 9.1.9.1005) (HKLM\...\55FC653506E73D0EF241309C7F5E3A6366568BC1) (Version: 07/25/2013 9.1.9.1005 - Intel) Windows Driver Package - Intel System (07/25/2013 9.1.9.1005) (HKLM\...\B081E57B1455374FB610EEC26F6154A8870B8859) (Version: 07/25/2013 9.1.9.1005 - Intel) Windows Driver Package - Intel USB (07/09/2013 9.1.9.1004) (HKLM\...\0D3177F1E077022671B9E6C22E0EE7CA9A92EDDE) (Version: 07/09/2013 9.1.9.1004 - Intel) Windows Driver Package - Samsung Monitor (03/19/2007 3.0) (HKLM\...\AE87B468E63D63CADCCE2A8EE2E615ED8B2F9809) (Version: 03/19/2007 3.0 - Samsung) Windows Driver Package - Synaptics (SmbDrv) System (07/25/2014 16.2.19.14) (HKLM\...\82FC900FCA04F9EBC3BE3E9660B43D4C0D81BC1B) (Version: 07/25/2014 16.2.19.14 - Synaptics) Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\WGA) (Version: 1.7.0069.2 - Microsoft Corporation) Windows Management Framework Core (HKLM\...\KB968930) (Version: - Microsoft Corporation) Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - ) WinRAR 4.00 (32-битова версия) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH) Witch Hunters 2 Full Moon Ceremony CE 1.0 (HKLM\...\Witch Hunters 2 Full Moon Ceremony CE 1.0) (Version: 1.0 - Cat-A-Cat) XML Paper Specification Shared Components Pack 1.0 (Version: - Microsoft Corporation) Hidden ZHPDiag 2015 (HKLM\...\ZHPDiag_is1) (Version: 2015 - Nicolas Coolman) Яндекс.Бар 5.1 для Internet Explorer (HKLM\...\{9B202815-09F6-4D0F-96F8-24A42277B9B8}) (Version: 5.1.3.1239 - Яндекс) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1177238915-1035525444-682003330-1003_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Documents and Settings\XXXX\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) CustomCLSID: HKU\S-1-5-21-1177238915-1035525444-682003330-1003_Classes\CLSID\{2614C37E-2C78-4bfb-B7A6-E49B62B9CD9B}\localserver32 -> C:\Documents and Settings\XXXX\Local Settings\Application Data\Yandex\Updater\yupdate-executor.exe (ООО "Яндекс") CustomCLSID: HKU\S-1-5-21-1177238915-1035525444-682003330-1003_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Documents and Settings\XXXX\Local Settings\Application Data\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.) CustomCLSID: HKU\S-1-5-21-1177238915-1035525444-682003330-1003_Classes\CLSID\{8B9F5BF4-0407-4BB2-9FED-4C0372DABD00}\localserver32 -> C:\Documents and Settings\XXXX\Local Settings\Application Data\Facebook\Video\Skype\FacebookVideoCallingProxy.exe (Skype Limited) CustomCLSID: HKU\S-1-5-21-1177238915-1035525444-682003330-1003_Classes\CLSID\{949CDFC6-2A52-4C27-A0A2-F87EF62D5536}\localserver32 -> C:\Documents and Settings\XXXX\Local Settings\Application Data\Yandex\Updater\praetorian.exe (ООО «ЯНДЕКС») CustomCLSID: HKU\S-1-5-21-1177238915-1035525444-682003330-1003_Classes\CLSID\{CBE9C57E-FFA9-4123-8354-AD360D6DD3CC}\InprocServer32 -> C:\Documents and Settings\XXXX\Local Settings\Application Data\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) CustomCLSID: HKU\S-1-5-21-1177238915-1035525444-682003330-1003_Classes\CLSID\{D236C998-BECE-472D-B939-541727B72AEF}\localserver32 -> C:\Documents and Settings\XXXX\Local Settings\Application Data\Yandex\Updater\yupdate-executor.exe (ООО "Яндекс") ==================== Restore Points ========================= 06-06-2015 18:27:01 System Checkpoint 07-06-2015 20:54:24 System Checkpoint 09-06-2015 00:17:19 Software Distribution Service 3.0 11-06-2015 09:06:07 System Checkpoint 12-06-2015 17:58:54 System Checkpoint 13-06-2015 19:30:41 System Checkpoint 14-06-2015 22:17:55 System Checkpoint 16-06-2015 22:16:02 System Checkpoint 17-06-2015 22:37:52 System Checkpoint 19-06-2015 20:52:06 Installed ESET NOD32 Antivirus 19-06-2015 23:18:41 avast! antivirus system restore point 19-06-2015 23:55:22 avast! antivirus system restore point 20-06-2015 10:35:34 Installed Microsoft Fix it 50195 20-06-2015 21:01:30 Restore Operation 20-06-2015 23:00:24 Software Distribution Service 3.0 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2008-04-14 14:00 - 2014-10-07 22:11 - 00000764 ____N C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 activate.adobe.com ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\AdobeAAMUpdater-1.0-XXXX-0EA46F90D0-XXXX.job => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe Task: C:\WINDOWS\Tasks\AppleSoftwareUpdate.job => C:\Program Files\Apple Software Update\SoftwareUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1177238915-1035525444-682003330-1003Core.job => C:\Documents and Settings\XXXX\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1177238915-1035525444-682003330-1003UA.job => C:\Documents and Settings\XXXX\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job => C:\WINDOWS\system32\xp_eos.exe Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job => C:\WINDOWS\system32\xp_eos.exe Task: C:\WINDOWS\Tasks\shutdown.job => C:\WINDOWS\system32\shutdown.exe ==================== Loaded Modules (Whitelisted) ============== 2014-10-05 19:30 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files\IObit\Advanced SystemCare 7\sqlite3.dll 2014-07-03 14:20 - 2014-07-03 14:20 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2014-07-03 14:19 - 2014-07-03 14:19 - 01044808 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2014-10-07 14:16 - 2007-01-08 16:08 - 00094208 _____ () C:\Program Files\M-Audio\M-Audio Series II MIDI\MA_CMIDI_Inst.exe 2008-04-14 14:00 - 2008-04-14 14:00 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll 2008-04-14 14:00 - 2008-04-14 14:00 - 00059904 _____ () C:\WINDOWS\system32\devenum.dll 2014-10-05 19:30 - 2013-10-25 12:07 - 01120032 _____ () C:\Program Files\IObit\Advanced SystemCare 7\RealTimeProtector.exe 2014-10-05 19:30 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files\IObit\Advanced SystemCare 7\madExcept_.bpl 2014-10-05 19:30 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files\IObit\Advanced SystemCare 7\madBasic_.bpl 2014-10-05 19:30 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files\IObit\Advanced SystemCare 7\madDisAsm_.bpl 2015-06-11 10:50 - 2015-06-05 21:22 - 15003464 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.124\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\WINDOWS:nlsPreferences AlternateDataStreams: C:\Documents and Settings\All Users\Application Data\TEMP:474022C7 AlternateDataStreams: C:\Documents and Settings\All Users\Application Data\TEMP:56E2E879 ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot => "AlternateShell"="" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\dell.com -> dell.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-1177238915-1035525444-682003330-1003\...\100sexlinks.com -> 100sexlinks.com There are 4788 more restricted sites. ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1177238915-1035525444-682003330-1003\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\XXXX\Local Settings\Application Data\Microsoft\Wallpaper1.bmp DNS Servers: 8.8.8.8 - 8.8.4.4 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => c:\program files\common files\adobe\oobe\pdapp\uwa\updaterstartuputility.exe MSCONFIG\startupreg: AdobeCS5.5ServiceManager => "c:\program files\common files\adobe\cs5.5servicemanager\cs5.5servicemanager.exe" -launchedbylogin MSCONFIG\startupreg: AlcoholAutomount => "c:\program files\alcohol soft\alcohol 120\axautomntsrv.exe" -automount MSCONFIG\startupreg: Avira Systray => MSCONFIG\startupreg: DellSystemDetect => c:\documents and settings\xxxx\local settings\apps\2.0\j49wc1ye.k2c\a4946org.5km\dell..tion_e30b47f5d4a30e9e_0005.000e_4ab3a7332dd76702\dellsystemdetect.exe MSCONFIG\startupreg: EaseUs Tray => MSCONFIG\startupreg: EaseUs Watch => MSCONFIG\startupreg: Facebook Update => "c:\documents and settings\xxxx\local settings\application data\facebook\update\facebookupdate.exe" /c /nocrashserver MSCONFIG\startupreg: iTunesHelper => c:\program files\itunes\ituneshelper.exe MSCONFIG\startupreg: KiesHelper => c:\program files\samsung\kies\kieshelper.exe /s MSCONFIG\startupreg: KiesPDLR => c:\program files\samsung\kies\external\firmwareupdate\kiespdlr.exe MSCONFIG\startupreg: Praetorian => c:\documents and settings\xxxx\local settings\application data\yandex\updater\praetorian.exe MSCONFIG\startupreg: SoundMAXPnP => c:\program files\analog devices\core\smax4pnp.exe MSCONFIG\startupreg: SwitchBoard => c:\program files\common files\adobe\switchboard\switchboard.exe MSCONFIG\startupreg: uTorrent => "c:\documents and settings\xxxx\application data\utorrent\utorrent.exe" /minimized MSCONFIG\startupreg: VMSnap3 => c:\windows\vmsnap3.exe MSCONFIG\startupreg: webcam 7 => MSCONFIG\startupreg: wLite => "c:\program files\webcamxp5\wlite.exe" -auto ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) StandardProfile\AuthorizedApplications: [C:\Program Files\Google\Chrome\Application\chrome.exe] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\muzapp.exe] => Enabled:MUZ AOD APP player StandardProfile\AuthorizedApplications: [C:\Program Files\SoulseekNS\slsk.exe] => Enabled:SoulSeek StandardProfile\AuthorizedApplications: [C:\Documents and Settings\XXXX\Local Settings\Application Data\Facebook\Video\Skype\FacebookVideoCalling.exe] => Enabled:Facebook Video Calling Plugin StandardProfile\AuthorizedApplications: [C:\Program Files\Bonjour\mDNSResponder.exe] => Enabled:Bonjour Service StandardProfile\AuthorizedApplications: [C:\Program Files\iTunes\iTunes.exe] => Enabled:iTunes StandardProfile\AuthorizedApplications: [C:\Documents and Settings\XXXX\Application Data\uTorrent\uTorrent.exe] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\Program Files\Skype\Phone\Skype.exe] => Enabled:Skype StandardProfile\AuthorizedApplications: [C:\Program Files\webcamXP5\wLite.exe] => Enabled:webcamXP StandardProfile\AuthorizedApplications: [C:\Program Files\webcamXP5\wService.exe] => Enabled:webcamXP Service StandardProfile\AuthorizedApplications: [C:\Documents and Settings\XXXX\Desktop\M\Skype.exe] => Enabled:Skype StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox) StandardProfile\AuthorizedApplications: [C:\WINDOWS\Explorer.EXE] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\PROGRA~1\MagicISO\MagicISO.exe] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\CTFMON.EXE] => C:\WINDOWS\system32\ctfmon.exe:*:Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\Program Files\IObit\Advanced SystemCare 7\RealTimeProtector.exe] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\WINDOWS\VMSNAP3.EXE] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\rundll32.exe] => Enabled:ipsec StandardProfile\AuthorizedApplications: [C:\Documents and Settings\XXXX\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe] => Enabled:ipsec StandardProfile\GloballyOpenPorts: [5985:TCP] => Disabled:Windows Remote Management StandardProfile\GloballyOpenPorts: [80:TCP] => Disabled:Windows Remote Management - Compatibility Mode (HTTP-In) ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/20/2015 01:59:11 PM) (Source: MsiInstaller) (EventID: 10005) (User: XXXX-0EA46F90D0) Description: Product: Avira -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: Avira.OE.Systray, , Error: (06/20/2015 09:03:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application explorer.exe, version 6.0.2900.5634, faulting module , version 0.0.0.0, fault address 0x00000000. Processing media-specific event for [explorer.exe!ws!] Error: (06/20/2015 09:00:55 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application drwtsn32.exe, version 5.1.2600.0, faulting module dbghelp.dll, version 5.1.2600.5512, fault address 0x0001295d. Processing media-specific event for [drwtsn32.exe!ws!] Error: (06/20/2015 08:57:38 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application explorer.exe, version 6.0.2900.5634, faulting module , version 0.0.0.0, fault address 0x00000000. Processing media-specific event for [explorer.exe!ws!] Error: (06/19/2015 11:10:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application explorer.exe, version 6.0.2900.5634, faulting module , version 0.0.0.0, fault address 0x00000000. Processing media-specific event for [explorer.exe!ws!] Error: (06/19/2015 09:45:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application drwtsn32.exe, version 5.1.2600.0, faulting module dbghelp.dll, version 5.1.2600.5512, fault address 0x0001295d. Processing media-specific event for [drwtsn32.exe!ws!] Error: (06/19/2015 09:44:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application explorer.exe, version 6.0.2900.5634, faulting module , version 0.0.0.0, fault address 0x00000000. Processing media-specific event for [explorer.exe!ws!] Error: (06/19/2015 09:10:36 PM) (Source: MsiInstaller) (EventID: 10005) (User: XXXX-0EA46F90D0) Description: Product: Avira -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: Avira.OE.Systray, , Error: (06/19/2015 09:02:57 PM) (Source: MsiInstaller) (EventID: 10005) (User: XXXX-0EA46F90D0) Description: Product: Avira -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: Avira.OE.Systray, , Error: (06/19/2015 09:02:35 PM) (Source: MsiInstaller) (EventID: 10005) (User: XXXX-0EA46F90D0) Description: Product: Avira -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: Avira.OE.Systray, , System errors: ============= Error: (06/20/2015 11:01:32 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 11:01:32 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 11:01:32 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 11:01:32 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 11:01:32 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 11:01:32 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 11:01:32 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 11:01:32 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 09:01:30 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Error: (06/20/2015 09:01:30 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "%%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E} Microsoft Office: ========================= Error: (06/20/2015 01:59:11 PM) (Source: MsiInstaller) (EventID: 10005) (User: XXXX-0EA46F90D0) Description: Product: Avira -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: Avira.OE.Systray, , (NULL)(NULL)(NULL)(NULL) Error: (06/20/2015 09:03:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: explorer.exe6.0.2900.56340.0.0.000000000 Error: (06/20/2015 09:00:55 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: drwtsn32.exe5.1.2600.0dbghelp.dll5.1.2600.55120001295d Error: (06/20/2015 08:57:38 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: explorer.exe6.0.2900.56340.0.0.000000000 Error: (06/19/2015 11:10:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: explorer.exe6.0.2900.56340.0.0.000000000 Error: (06/19/2015 09:45:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: drwtsn32.exe5.1.2600.0dbghelp.dll5.1.2600.55120001295d Error: (06/19/2015 09:44:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: explorer.exe6.0.2900.56340.0.0.000000000 Error: (06/19/2015 09:10:36 PM) (Source: MsiInstaller) (EventID: 10005) (User: XXXX-0EA46F90D0) Description: Product: Avira -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: Avira.OE.Systray, , (NULL)(NULL)(NULL)(NULL) Error: (06/19/2015 09:02:57 PM) (Source: MsiInstaller) (EventID: 10005) (User: XXXX-0EA46F90D0) Description: Product: Avira -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: Avira.OE.Systray, , (NULL)(NULL)(NULL)(NULL) Error: (06/19/2015 09:02:35 PM) (Source: MsiInstaller) (EventID: 10005) (User: XXXX-0EA46F90D0) Description: Product: Avira -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2753. The arguments are: Avira.OE.Systray, , (NULL)(NULL)(NULL)(NULL) ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Duo CPU E6850 @ 3.00GHz Percentage of memory in use: 46% Total physical RAM: 3325.54 MB Available physical RAM: 1789.57 MB Total Pagefile: 5209.26 MB Available Pagefile: 3411.89 MB Total Virtual: 2047.88 MB Available Virtual: 1935.08 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:922.32 GB) (Free:697.56 GB) NTFS ==>[Drive with boot components (Windows XP)] Drive f: () (Fixed) (Total:940.7 GB) (Free:364.61 GB) NTFS Drive g: (HBCD 14.0) (CDROM) (Total:0.49 GB) (Free:0 GB) CDFS Drive i: (TOSHIBA EXT) (Fixed) (Total:698.64 GB) (Free:556.89 GB) NTFS Drive j: (Slax CD) (CDROM) (Total:0.21 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: E1A703CD) Partition 1: (Active) - (Size=922.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=940.7 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 698.6 GB) (Disk ID: FAB2E3FE) Partition 1: (Not Active) - (Size=698.6 GB) - (Type=07 NTFS) ==================== End of log ============================