Additional scan result of Farbar Recovery Scan Tool (x86) Version: 05-07-2015 Ran by Andy at 2015-07-07 17:04:31 Running from C:\Users\Andy\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-363809082-620757088-3605342814-500 - Administrator - Disabled) Andy (S-1-5-21-363809082-620757088-3605342814-1000 - Administrator - Enabled) => C:\Users\Andy eManagerUser (S-1-5-21-363809082-620757088-3605342814-1011 - Administrator - Enabled) => C:\Users\TEMP.H50.006 ftpuser (S-1-5-21-363809082-620757088-3605342814-1012 - Limited - Enabled) Guest (S-1-5-21-363809082-620757088-3605342814-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-363809082-620757088-3605342814-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Ad-Aware Antivirus (Disabled - Out of date) {D87B6541-12A1-DAEA-0033-9B8057AAB996} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Ad-Aware Antivirus (Disabled - Out of date) {631A84A5-349B-D564-3A83-A0F22C2DF32B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: Ad-Aware Firewall (Disabled) {E040E464-58CE-DBB2-2B6C-32B5A979FEED} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (HKLM\...\7-Zip) (Version: - ) Active Desktop Calendar 7.96 (HKLM\...\Active Desktop Calendar_is1) (Version: - XemiComputers) Ad-Aware Antivirus (HKLM\...\{19CD1C52-60D1-461A-BE7F-561CB6677B80}_AdAwareUpdater) (Version: 11.7.485.8398 - Lavasoft) Ad-Aware Web Companion (Version: 2.0.1025.2130 - Lavasoft) Hidden AdAwareInstaller (Version: 11.7.485.8398 - Lavasoft) Hidden AdAwareUpdater (Version: 11.7.485.8398 - Lavasoft) Hidden Adobe Acrobat Reader DC (HKLM\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated) AntimalwareEngine (Version: 3.0.98.0 - Lavasoft) Hidden Aspire PCPro US (HKLM\...\Aspire PCPro US7.13) (Version: - ) Audacity 2.1.0 (HKLM\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) Avast Business Security (HKLM\...\Avast) (Version: 10.2.2505 - AVAST Software) BitTorrent (HKU\S-1-5-21-363809082-620757088-3605342814-1000\...\BitTorrent) (Version: 7.9.3.40299 - BitTorrent Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.07 - Piriform) Chrome Remote Desktop Host (HKLM\...\{FD6E648E-1378-467F-AD37-2B98B379B0DD}) (Version: 44.0.2403.25 - Google Inc.) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) Citrix Online Launcher (HKLM\...\{8A16C63D-027A-4645-B394-C033665D0195}) (Version: 1.0.325 - Citrix) ClipX (HKLM\...\ClipX) (Version: - ) Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation) DESI Labeling System (HKLM\...\DESI Labeling System) (Version: 2.5 - DESI Telephone Labels, Inc.) DSX System Administrator (HKLM\...\{A3D1AF62-A77F-43C6-B476-663194599655}) (Version: 2.21 - NEC Infrontia, Inc.) DSX System Administrator 3 (HKLM\...\{C5B18B18-DA78-4D25-9D85-43ACC8223DA8}) (Version: 3.37 - NEC Corporation of America) EditPad Lite 7.3.7 (HKLM\...\EditPad Lite) (Version: 7.3.7 - Just Great Software) Electra Elite IPK SAT (with IPK II export) Release 4.70 (HKLM\...\Electra_Elite_IPK_Uninstall) (Version: - ) EPSON Scan (HKLM\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON WF-2530 Series Printer Uninstall (HKLM\...\EPSON WF-2530 Series) (Version: - SEIKO EPSON Corporation) Foxit Cloud (HKLM\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 3.5.116.602 - Foxit Software Inc.) Foxit Reader (HKLM\...\Foxit Reader_is1) (Version: 7.1.5.425 - Foxit Software Inc.) Free RAR Extract Frog (HKLM\...\Free RAR Extract Frog) (Version: 6.50 - Philipp Winterberg) Global VPN Client (HKLM\...\{C0EB418B-05EB-425C-BB9C-791A9EE36B3A}) (Version: 4.9.0 - Dell SonicWALL) globalupdate Helper (Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.) Google Update Helper (Version: 1.3.27.5 - Google Inc.) Hidden Icon Restore 1.0 (HKLM\...\Icon Restore_is1) (Version: - Tim Taylor) Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.22.1760 - Intel Corporation) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4170 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.3.34 - Intel Corporation) Itibiti RTC (Version: 0.0.1 - Itibiti Inc) Hidden Juniper Networks Setup Client (HKU\S-1-5-21-363809082-620757088-3605342814-1000\...\Juniper_Setup_Client) (Version: 8.0.5.47721 - Juniper Networks) Juniper Networks Setup Client Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks) Junos Pulse (Version: 5.0.47721 - Juniper Networks) Hidden Junos Pulse 2.0 Netshim/Tunnel Manager/IPSec Manager Add-On (Version: 2.0.8491 - Juniper Networks) Hidden Junos Pulse 5.0 (HKLM\...\Junos Pulse 5.0) (Version: 5.0.47721 - Juniper Networks, Inc.) LavasoftTcpService (Version: 2.3.4.7 - Lavasoft) Hidden Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft ASP.NET 2.0 AJAX Extensions 1.0 (HKLM\...\{082BDF7B-4810-4599-BF0D-E3AC44EC8524}) (Version: 1.0.61025 - Microsoft Corporation) Microsoft Office XP Professional with FrontPage (HKLM\...\{90280409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft SQL Server 2005 (HKLM\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation) Microsoft SQL Server Native Client (HKLM\...\{F9B3DD02-B0B3-42E9-8650-030DFF0D133D}) (Version: 9.00.3042.00 - Microsoft Corporation) Microsoft SQL Server Setup Support Files (English) (HKLM\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.3042.00 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{E9F44C98-B8B6-480F-AF7B-E42A0A46F4E3}) (Version: 9.00.3042.00 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NEC Middleware (HKLM\...\{3DE06155-48C3-4890-B577-B42BDDC1FBA1}) (Version: 4.3.6 - NEC-i) NEC SL DesktopSuite (HKLM\...\{3169DD9B-87B3-460F-A39F-AC93129AFF6E}) (Version: 2.0.0 - NEC) Network eManager V5.20B26 (HKLM\...\InstallShield_{7E05956B-BF88-4183-9031-7B44B042BF40}) (Version: 77.89.0000 - Toshiba America Information System Inc.) Network eManager V5.20B26 (Version: 77.89.0000 - Toshiba America Information System Inc.) Hidden nLite 1.4.9.3 (HKLM\...\nLite_is1) (Version: 1.4.9.3 - Dino Nuhagic (nuhi)) OpenOffice 4.1.1 (HKLM\...\{9395F41D-0F80-432E-9A59-B8E477E7E163}) (Version: 4.11.9775 - Apache Software Foundation) Panda Cloud Cleaner (HKLM\...\{92B2B132-C7F0-43DC-921A-4493C04F78A4}_is1) (Version: 1.0.107 - Panda Security) PocoMail 4.8 (Build 4400) (HKLM\...\pocomail4_is1) (Version: - Pocomail.com) Quote (HKLM\...\{F2ACA921-A618-11D4-B94C-000039C29A0E}) (Version: - ) Radmin Server 3.5 (HKLM\...\{1B25B709-0909-4C30-8E85-BF3823DF7555}) (Version: 3.50.0000 - Famatech) Radmin Viewer 3.5 (HKLM\...\{199127DC-7BDB-41AB-825B-4229A86F8F0D}) (Version: 3.50.0000 - Famatech) REALTEK Bluetooth Driver (HKLM\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 3.805.802.010714 - ) Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.72.410.2013 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7283 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7601.39025 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM\...\{9DAABC60-A5EF-41FF-B2B9-17329590CD5}) (Version: 1.20.0239 - ) Samsung SCX-4x21 Series (HKLM\...\Samsung SCX-4x21 Series) (Version: - Samsung Electronics CO.,LTD) Sentinel System Driver (HKLM\...\Rainbow Sentinel Driver) (Version: - ) SL InMail CF Utility (HKLM\...\{8385A31E-9B9F-48D8-B358-E9F1430425D7}) (Version: 2.03 - NEC Corporation of America) SL1100 PCPro (HKLM\...\{27075898-6541-47D7-9CBF-A74AF865FE3B}) (Version: 5.00 - NEC) SoftIPT (HKLM\...\{11E7A78C-2D3F-466F-9B19-DBCADA00CCE0}) (Version: 03.04.0001 - TOSHIBA) Software Updater (HKLM\...\{8DBC5A0A-31C4-46C7-B252-6B593EA11A87}) (Version: 4.3.7 - SEIKO EPSON CORPORATION) Strata DKi Administration System (HKLM\...\{62374EF7-94B4-11D2-8109-00A024D5D0F0}) (Version: - ) SupraMax 56K USB (HKLM\...\Diamond) (Version: - ) SV8100 PCPro (HKLM\...\SV8100 PCPro) (Version: 9.51 - NEC Unified Solutions, Inc.) SV8100 PCPro (Version: 9.51 - NEC Unified Solutions, Inc.) Hidden TaxACT 2012 - 1040 Edition (HKLM\...\TaxACT 2012 - 1040 Edition) (Version: - 2nd Story Software, Inc.) TeamViewer 10 (HKLM\...\TeamViewer) (Version: 10.0.43879 - TeamViewer) USB Data Fax Voice Modem (HKLM\...\CNXT_MODEM_USB_ACF) (Version: 2.0.21.50 - Conexant) VirtualCloneDrive (HKLM\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) Voip Tester 3.0 (HKLM\...\Voip Tester) (Version: 3.0 - ) Web Companion (HKLM\...\{88B10E3E-8911-4FAC-8663-CCF6E33C58B3}_WebCompanion) (Version: 2.0.1025.2130 - Lavasoft) Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Driver Package - U.S. Robotics SoftModem (04/07/2010 2.2.100) (HKLM\...\611733EB2FEC0B7FCBAFA0D9DA8D84F1CC3FC668) (Version: 04/07/2010 2.2.100 - U.S. Robotics) WinPcap 4.1.3 (HKLM\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) Wireshark 1.12.6 (32-bit) (HKLM\...\Wireshark) (Version: 1.12.6 - The Wireshark developer community, http://www.wireshark.org) X-Lite (HKLM\...\{817CDC28-AE0F-4241-A529-AA6EB12BBCB5}) (Version: 48.7.6122 - CounterPath Corporation) ZOC Terminal (HKLM\...\ZOC4) (Version: 4.15 - EmTec Innovative Software) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-363809082-620757088-3605342814-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-363809082-620757088-3605342814-1000_Classes\CLSID\{98760C2C-AFC3-4725-9A02-5B27506819F4}\InprocServer32 -> C:\Users\Andy\AppData\Local\Microsoft\Internet Explorer\Downloaded Program Files\SWTSC.ocx (Dell Inc.) CustomCLSID: HKU\S-1-5-21-363809082-620757088-3605342814-1000_Classes\CLSID\{A2DF06F9-A21A-44A8-8A99-8B9C84F29160}\localserver32 -> C:\Users\Andy\AppData\Local\Chromium\Application\45.0.2422.0\delegate_execute.exe (The Chromium Authors) <==== ATTENTION CustomCLSID: HKU\S-1-5-21-363809082-620757088-3605342814-1000_Classes\CLSID\{B79C81C0-7650-4CAB-8466-E14C6A31EBAD}\InprocServer32 -> C:\Users\Andy\AppData\Local\Microsoft\Internet Explorer\Downloaded Program Files\SWTSC.ocx (Dell Inc.) ==================== Restore Points ========================= 07-07-2015 16:52:43 zoek.exe restore point ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 22:04 - 2015-06-25 16:23 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {A3CD153C-9C88-47F9-B0AB-21525473AC01} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-03-07] (Adobe Systems Incorporated) Task: {BA6E96E5-F899-473A-9B4C-2AF511CF6D20} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-17] (Avast Software s.r.o.) Task: {E3CBE52D-1F50-4923-9B87-43628798D3D6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-06-01] (Piriform Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\43UjIlbSW.job => C:\Windows\system32\config\systemprofile\AppData\Roaming\43UjIlbSW.exe <==== ATTENTION ==================== Loaded Modules (Whitelisted) ============== 2015-06-17 10:06 - 2015-06-17 10:06 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-06-17 10:06 - 2015-06-17 10:06 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-07-07 14:51 - 2015-07-07 14:51 - 02956288 _____ () C:\Program Files\AVAST Software\Avast\defs\15070701\algo.dll 2015-04-17 16:57 - 2009-10-13 04:43 - 00022723 _____ () C:\Windows\System32\sugw2l3.dll 2015-06-17 10:06 - 2015-06-17 10:06 - 00633688 _____ () C:\Program Files\AVAST Software\Avast\sqlite3.dll 2015-04-17 16:16 - 2011-11-23 14:59 - 00035840 _____ () C:\Program Files\XemiComputers\Active Desktop Calendar\MouseHook.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 02591240 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareShellExtension.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 02323424 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\RCF.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00109592 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_filesystem-vc120-mt-1_58.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00023056 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_system-vc120-mt-1_58.dll 2015-06-24 19:14 - 2015-06-24 19:14 - 00663592 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareService.exe 2015-06-24 19:17 - 2015-06-24 19:17 - 00089104 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_thread-vc120-mt-1_58.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00031760 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_chrono-vc120-mt-1_58.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00047128 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_date_time-vc120-mt-1_58.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 10178048 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareServiceKernel.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00634384 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_regex-vc120-mt-1_58.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00566784 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareActivation.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00374288 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareApplicationUpdater.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00679424 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareGamingMode.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00084464 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareReset.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00102384 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareTime.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00806416 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareDefinitionsUpdater.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00729632 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareDefinitionsUpdaterScheduler.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00897024 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareIgnoreList.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00205312 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareQuarantine.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00842760 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAntiMalwareEngine.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00169480 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAntiRootkitEngine.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00902152 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareScannerHistory.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 01053688 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareScanner.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00032272 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_timer-vc120-mt-1_58.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00811016 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareScannerScheduler.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00928272 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareRealTimeProtection.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00199168 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareIncompatibles.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00750584 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAntiSpam.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00713216 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAntiPhishing.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 02518536 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareParentalControl.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 02700800 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareWebProtection.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 01044488 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareEmailProtection.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00048152 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_iostreams-vc120-mt-1_58.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 01032712 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareNetworkProtection.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00810480 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwarePromo.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00297464 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareFeedback.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 02280464 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareThreatWorkAlliance.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 01017336 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwarePinCode.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00810488 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareNotice.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00805880 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAvcEngine.dll 2015-06-24 19:16 - 2015-06-24 19:16 - 00955416 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareRealTimeProtectionHistory.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00376832 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareStatistics.dll 2005-11-30 17:34 - 2005-11-30 17:34 - 00068608 _____ () C:\Program Files\ClipX\clipx.exe 2015-04-17 16:57 - 2011-08-01 09:13 - 00688128 _____ () C:\Windows\Samsung\PanelMgr\SSMMgr.exe 2015-06-17 10:06 - 2015-06-17 10:06 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 07966192 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareTray.exe 2015-06-24 19:17 - 2015-06-24 19:17 - 00386576 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_locale-vc120-mt-1_58.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 01730552 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\HtmlFramework.dll 2015-06-24 19:17 - 2015-06-24 19:17 - 00867336 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareTrayDefaultSkin.dll 2015-06-08 14:12 - 2015-06-08 14:12 - 00078656 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.Utils.dll 2015-06-08 14:12 - 2015-06-08 14:12 - 00184680 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.Business.dll 2015-06-08 14:12 - 2015-06-08 14:12 - 00046920 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.adblocker.dll 2015-06-08 14:12 - 2015-06-08 14:12 - 00033136 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.Repositories.dll 2015-06-08 14:12 - 2015-06-08 14:12 - 00015696 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.Utils.SqlLite.dll 2015-06-08 14:12 - 2015-06-08 14:12 - 00123736 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.PUP.Management.dll 2015-06-08 14:13 - 2015-06-08 14:13 - 00073544 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SysInfo.dll 2015-06-08 14:11 - 2015-06-08 14:11 - 00039256 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.CSharp.Utilities.dll 2015-06-08 14:12 - 2015-06-08 14:12 - 00019816 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe 2015-06-08 14:12 - 2015-06-08 14:12 - 00012144 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.Service.Logger.dll 2015-06-08 14:12 - 2015-06-08 14:12 - 00034664 _____ () C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WcfService.dll 2015-07-07 14:56 - 2014-12-05 16:33 - 00339968 _____ () C:\Windows\system32\SaMinDrv.dll 2015-04-14 15:00 - 2013-12-03 01:37 - 01242584 _____ () C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-07-07 13:19 - 2015-07-06 23:49 - 01281864 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.132\libglesv2.dll 2015-07-07 13:19 - 2015-07-06 23:49 - 00080712 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.132\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Andy\Documents\Fwd_ Address.eml:OECustomProperty ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\atashost => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-363809082-620757088-3605342814-1000\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-363809082-620757088-3605342814-1000\...\webcompanion.com -> hxxp://webcompanion.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-363809082-620757088-3605342814-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Andy\AppData\Roaming\XEMICO~1\ACTIVE~1\Desktop\ACTIVE~1.BMP DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: 89393f8b-ca7a-4112-88b9-824931a5e737 => 2 MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: BTDevManager => 2 MSCONFIG\Services: bugupeke => 2 MSCONFIG\Services: consumerinput_update => 2 MSCONFIG\Services: consumerinput_updatem => 3 MSCONFIG\Services: globalUpdate => 2 MSCONFIG\Services: globalUpdatem => 3 MSCONFIG\Services: insvc_1.10.0.14 => 2 MSCONFIG\Services: NinjaLoaderService => 2 MSCONFIG\Services: ooWYCQPHu => 2 MSCONFIG\Services: SwiftMediaConverter Update Service => 2 MSCONFIG\startupreg: BtServer => "C:\Program Files\REALTEK\Realtek Bluetooth\BTServer.exe" MSCONFIG\startupreg: JunosPulse => C:\Program Files\Common Files\Juniper Networks\JamUI\Pulse.exe -tray ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{2E65BD57-4A61-4EEF-B69B-90B7FEE75219}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [SNMP-In-UDP] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-Out-UDP] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-In-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-Out-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [{F5FDCC7E-1A9C-4BFB-B03A-DC729C7D6EB5}] => (Allow) C:\Windows\system32\rserver30\rserver3.exe FirewallRules: [TCP Query User{D2A4CBC1-A7B8-4F44-A616-AD2BEA73216B}C:\program files\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files\counterpath\x-lite\x-lite.exe FirewallRules: [UDP Query User{2D085F18-BC32-4D79-A2AE-D5D891702963}C:\program files\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files\counterpath\x-lite\x-lite.exe FirewallRules: [TCP Query User{2B14402A-8A8B-401F-9879-A8F0368843C5}C:\program files\dell sonicwall\global vpn client\swgvc.exe] => (Allow) C:\program files\dell sonicwall\global vpn client\swgvc.exe FirewallRules: [UDP Query User{F6316D45-408A-4CB7-8150-718A33CDC14B}C:\program files\dell sonicwall\global vpn client\swgvc.exe] => (Allow) C:\program files\dell sonicwall\global vpn client\swgvc.exe FirewallRules: [TCP Query User{8E2AFA7C-C6A5-4218-9EF9-CC1C99ABF05A}C:\program files\voiptester\voiptester.exe] => (Allow) C:\program files\voiptester\voiptester.exe FirewallRules: [UDP Query User{5A104D91-1FEE-47B0-86B2-32ED39322CE1}C:\program files\voiptester\voiptester.exe] => (Allow) C:\program files\voiptester\voiptester.exe FirewallRules: [TCP Query User{42C5CBFA-EF31-4C98-8B9B-7D25873EE7A7}C:\program files\toshiba\softipt\softipt.exe] => (Allow) C:\program files\toshiba\softipt\softipt.exe FirewallRules: [UDP Query User{7CBA357A-8540-4222-A63F-58DB3F6E65DF}C:\program files\toshiba\softipt\softipt.exe] => (Allow) C:\program files\toshiba\softipt\softipt.exe FirewallRules: [TCP Query User{6DF9D936-9567-4156-8823-7B015389D44B}C:\program files\nec\nec sl desktopsuite\slphone.exe] => (Allow) C:\program files\nec\nec sl desktopsuite\slphone.exe FirewallRules: [UDP Query User{66858B67-9264-47DD-B166-1688493CF911}C:\program files\nec\nec sl desktopsuite\slphone.exe] => (Allow) C:\program files\nec\nec sl desktopsuite\slphone.exe FirewallRules: [TCP Query User{E54205A2-10C6-4B54-A144-200179282282}C:\program files\common files\nec-i\cygnusclientapilib\bin\remoteobjectserver.exe] => (Allow) C:\program files\common files\nec-i\cygnusclientapilib\bin\remoteobjectserver.exe FirewallRules: [UDP Query User{85D50558-7212-4B56-982B-40AB68A81554}C:\program files\common files\nec-i\cygnusclientapilib\bin\remoteobjectserver.exe] => (Allow) C:\program files\common files\nec-i\cygnusclientapilib\bin\remoteobjectserver.exe FirewallRules: [{44FF9DA2-924D-4A92-BF55-D8A0FD09211C}] => (Allow) C:\Users\Andy\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{205AC5DA-5AA2-41F9-B06B-BE7828CA111C}] => (Allow) C:\Users\Andy\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{65CF3656-B9A7-4F51-A8E8-D3F198A7E39B}] => (Allow) C:\Users\Andy\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{C568009E-AF91-4E9A-B737-E80389FC275F}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{03A508ED-EE1E-46F5-BE86-03C90D5FAFFE}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{CA63C279-F75B-4EAF-9312-10824F7CB664}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe FirewallRules: [{896C1F42-CE91-4616-BA85-5552C42D302A}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe FirewallRules: [{246C4BA1-6405-476A-A908-DF297D224BF4}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe FirewallRules: [{4B8146C8-C3DA-4F3B-9309-A4CFE116D812}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe FirewallRules: [{28F0FE7F-BC59-403B-932F-2BC3943DF1D6}] => (Allow) C:\Program Files\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe FirewallRules: [{FFD405FC-0116-48FD-A1A1-A1942B140A54}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: SonicWALL Virtual NIC Description: SonicWALL Virtual NIC Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: SonicWALL Service: SWVNIC Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Realtek Bluetooth 4.0 + High Speed Chip Description: Realtek Bluetooth 4.0 + High Speed Chip Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Realtek Semiconductor Corp. Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: mmi1m2f2nnnjbgj Description: mmi1m2f2nnnjbgj Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: mmi1m2f2nnnjbgj Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft Teredo Tunneling Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: 56SX92_SCM Description: 56SX92_SCM Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Realtek RTL8723BE Wireless LAN 802.11n PCI-E NIC Description: Realtek RTL8723BE Wireless LAN 802.11n PCI-E NIC Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Realtek Semiconductor Corp. Service: RTWlanE Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (07/07/2015 04:55:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/07/2015 04:52:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary esgiguard. System Error: The system cannot find the file specified. . Error: (07/07/2015 04:29:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/07/2015 04:23:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: The index cannot be initialized. Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: The application cannot be initialized. Context: Windows Application Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: The gatherer object cannot be initialized. Context: Windows Application, SystemIndex Catalog Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: The plug-in in cannot be initialized. Context: Windows Application, SystemIndex Catalog Details: Element not found. (HRESULT : 0x80070490) (0x80070490) Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: The plug-in in cannot be initialized. Context: Windows Application, SystemIndex Catalog Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 9002) (User: ) Description: The Windows Search Service cannot load the property store information. Context: Windows Application, SystemIndex Catalog Details: The content index database is corrupt. (HRESULT : 0xc0041800) (0xc0041800) System errors: ============= Error: (07/07/2015 04:55:35 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: mmi1m2f2nnnjbgj Error: (07/07/2015 04:55:30 PM) (Source: SNMP) (EventID: 1500) (User: ) Description: The SNMP Service encountered an error while accessing the registry key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration. Error: (07/07/2015 04:55:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Sentinel service depends on the Parallel port driver service which failed to start because of the following error: %%1058 Error: (07/07/2015 04:55:27 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalLaunch{DCBCA92E-7DBE-4EDA-8B7B-3AAEA4DD412B}{B292921D-AF50-400C-9B75-0C57A7F29BA1}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC) Error: (07/07/2015 04:55:25 PM) (Source: PCIESER) (EventID: 18) (User: ) Description: No Parameters subkey was found for user defined data. This is odd, and it also means no user configuration can be found. Error: (07/07/2015 04:55:24 PM) (Source: PCIESER) (EventID: 18) (User: ) Description: No Parameters subkey was found for user defined data. This is odd, and it also means no user configuration can be found. Error: (07/07/2015 04:29:23 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: mmi1m2f2nnnjbgj Error: (07/07/2015 04:29:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalLaunch{DCBCA92E-7DBE-4EDA-8B7B-3AAEA4DD412B}{B292921D-AF50-400C-9B75-0C57A7F29BA1}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC) Error: (07/07/2015 04:29:15 PM) (Source: SNMP) (EventID: 1500) (User: ) Description: The SNMP Service encountered an error while accessing the registry key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration. Error: (07/07/2015 04:29:14 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Sentinel service depends on the Parallel port driver service which failed to start because of the following error: %%1058 Microsoft Office: ========================= Error: (07/07/2015 04:55:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/07/2015 04:52:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary esgiguard. System Error: The system cannot find the file specified. Error: (07/07/2015 04:29:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/07/2015 04:23:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Context: Windows Application Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Context: Windows Application, SystemIndex Catalog Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Context: Windows Application, SystemIndex Catalog Details: Element not found. (HRESULT : 0x80070490) (0x80070490) Search.TripoliIndexer Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Context: Windows Application, SystemIndex Catalog Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801) Search.JetPropStore Error: (07/07/2015 04:12:38 PM) (Source: Windows Search Service) (EventID: 9002) (User: ) Description: Context: Windows Application, SystemIndex Catalog Details: The content index database is corrupt. (HRESULT : 0xc0041800) (0xc0041800) ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-4160 CPU @ 3.60GHz Percentage of memory in use: 58% Total physical RAM: 3500.2 MB Available physical RAM: 1442.66 MB Total Virtual: 10498.91 MB Available Virtual: 8245.25 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:119.04 GB) (Free:70.42 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: () (Fixed) (Total:0.2 GB) (Free:0.16 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (Data) (Fixed) (Total:906.24 GB) (Free:866.73 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 047B4384) Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=906.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=25.1 GB) - (Type=12) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 119.2 GB) (Disk ID: 0004CB4A) Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=119 GB) - (Type=07 NTFS) ==================== End of log ============================