Additional scan result of Farbar Recovery Scan Tool (x64) Version:09-07-2015 Ran by don at 2015-07-10 00:49:11 Running from C:\Users\don\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2764831399-1685386551-2369960238-500 - Administrator - Disabled) don (S-1-5-21-2764831399-1685386551-2369960238-1001 - Administrator - Enabled) => C:\Users\don Guest (S-1-5-21-2764831399-1685386551-2369960238-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2764831399-1685386551-2369960238-1003 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adblock Plus for IE (32-bit and 64-bit) (HKLM\...\{77588F59-3C58-4675-8EEE-998E5BC33CF4}) (Version: 1.4 - Eyeo GmbH) Amazon 1Button App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.4 - Amazon) Avast Internet Security (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) CCleaner (HKLM\...\CCleaner) (Version: 5.07 - Piriform) CyberLink Media Suite Essentials (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.) Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.7.5.60 - Dell Inc.) Dell Data Services (HKLM\...\{815D96BA-2FC6-4F61-9BE3-2CFE446E8ECF}) (Version: 1.2.7.0 - Dell Inc.) Dell Digital Delivery (HKLM-x32\...\{693A23FB-F28B-4F7A-A720-4C1263F97F43}) (Version: 3.1.1002.0 - Dell Products, LP) Dell Foundation Services (HKLM\...\{90B2EE35-59D0-4A1F-B125-9F678D46A955}) (Version: 2.1.125.0 - Dell Inc.) Dell Product Registration (HKLM-x32\...\{17FFE63C-6734-4950-B488-134B5A2505F7}) (Version: 2.04.0280 - Aviata Inc.) Dell Update (HKLM-x32\...\{D9D0E75C-F791-402A-98E2-A2F43E7B0CE3}) (Version: 1.1.1054.0 - Dell Inc.) Dell WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Dell Inc.) Dropbox 20 GB (HKLM-x32\...\{597A58EC-42D6-4940-8739-FB94491B013C}) (Version: 0.9.0 - Dropbox, Inc.) DSC/AA Factory Installer (Version: 3.5.6426.22 - PC-Doctor, Inc.) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.) Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.) My Dell Client Framework (HKLM-x32\...\InstallShield_{05F1B866-2372-4E82-9AA8-C64FB11CEF8B}) (Version: 1.0.0.3 - Dell) My Dell Client Framework (x32 Version: 1.0.0.3 - Dell) Hidden PocketCloud (HKLM-x32\...\{D9752C7D-A595-4687-A0D5-362E9C311C55}) (Version: 2.7.14 - Wyse Technology) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.304 - Qualcomm Atheros Communications) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.30164 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7016 - Realtek Semiconductor Corp.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2764831399-1685386551-2369960238-1001_Classes\CLSID\{2D349E57-23E4-4A67-9624-F1DC6B65AABF}\InprocServer32 -> C:\ProgramData\{F66CB4EE-546F-4D54-9332-216DE189AAB0}\xwizards.dll (ofstop oioniacrCMortr) ==================== Restore Points ========================= 09-07-2015 13:35:33 Windows Modules Installer 09-07-2015 13:35:49 Windows Modules Installer ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {14F5B3A8-EB04-4410-B6C5-9FEBEF99DDC9} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2014-01-10] (PC-Doctor, Inc.) Task: {1BDB053B-0912-4125-B0EA-69249E5C8190} - System32\Tasks\PocketCloud => C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudDesktopApp.exe [2013-08-22] () Task: {2A9279FF-27EF-4A84-9296-17D8A7FFEA1C} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2014-01-10] (PC-Doctor, Inc.) Task: {49E03549-F562-4AB8-8447-1B8951863E19} - System32\Tasks\Dell\Dell Product Registration => C:\Program Files (x86)\Dell Product Registration\prodreg.exe [2014-04-01] (Aviata Inc) Task: {5B0AED9B-A254-40BB-8789-F8E1F1D6B83F} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {708A0627-602E-46CB-93AE-1F4788D69625} - System32\Tasks\PocketCloudVirtualChannel => C:\Program Files (x86)\Wyse\PocketCloud\WPCRDPVirtualChannelServer.exe [2013-08-22] () Task: {7ED1B046-BE2C-430C-8249-B1699BBB6FFA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-10] (Google Inc.) Task: {80779E72-2263-450A-88F6-BB7EB96EF1C3} - System32\Tasks\Dell\Dell Product Registration Update => C:\Program Files (x86)\Dell Product Registration\prodreg.exe [2014-04-01] (Aviata Inc) Task: {84BBFCCC-1905-4428-8F2F-D8D2C2038A52} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-07-09] (Avast Software s.r.o.) Task: {8E29DE92-FD92-4ED2-85D2-EA6FE2B71AED} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-22] (CyberLink Corp.) Task: {901E8942-0F04-4123-A9E9-94EC43A04CF4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-06-01] (Piriform Ltd) Task: {AA82E82F-F12B-4567-88AA-27A22B9BC067} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-03-04] (CyberLink) Task: {DC7EA8A9-2493-4441-B090-B09E00C6349E} - System32\Tasks\PocketCloudUpdater => C:\Program Task: {F612021B-9E18-430D-BD18-1ED36442F004} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-10] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2013-08-22 15:40 - 2013-08-22 15:40 - 00016176 _____ () C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe 2013-08-22 15:40 - 2013-08-22 15:40 - 00040240 _____ () C:\Program Files (x86)\Wyse\PocketCloud\AetherServiceLib.dll 2013-08-22 15:40 - 2013-08-22 15:40 - 00046384 _____ () C:\Program Files (x86)\Wyse\PocketCloud\AetherHelperLib.dll 2014-01-10 18:53 - 2014-01-10 18:53 - 00016384 _____ () C:\Program Files (x86)\Dell\My Dell Client Framework\Dell.ClientFramework.Interfaces.dll 2014-01-10 18:53 - 2014-01-10 18:53 - 00081408 _____ () C:\Program Files (x86)\Dell\My Dell Client Framework\Dell.ClientFramework.Objects.dll 2014-01-10 18:53 - 2014-01-10 18:53 - 00815616 _____ () C:\Program Files (x86)\Dell\My Dell Client Framework\Dell.ClientFramework.Resources.dll 2014-01-10 19:24 - 2014-01-10 19:24 - 00052736 _____ () C:\Program Files (x86)\Dell\My Dell Client Framework\Dell.Client.Pulse.Agent.Plugins.SelfUpdate.dll 2014-01-10 19:24 - 2014-01-10 19:24 - 00019968 _____ () C:\Program Files (x86)\Dell\My Dell Client Framework\Dell.Client.Pulse.Agent.Common.dll 2015-01-06 16:49 - 2014-06-04 19:02 - 00020256 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIcon.dll 2015-01-06 16:49 - 2014-06-04 19:02 - 00019744 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayNotBackuped.dll 2013-09-05 03:20 - 2013-09-05 03:20 - 00011264 _____ () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-09-05 03:17 - 2013-09-05 03:17 - 00086016 _____ () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\Modules\Map\MAP.dll 2013-09-05 03:24 - 2013-09-05 03:24 - 00012928 _____ () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ActivateDesktop.exe 2014-09-02 15:40 - 2014-09-02 15:40 - 00462160 _____ () C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe 2015-01-06 16:49 - 2014-07-03 01:55 - 00487144 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe 2015-07-10 00:41 - 2015-07-10 00:41 - 02248704 _____ () C:\Users\don\Downloads\adwcleaner_4.208.exe 2015-07-09 16:18 - 2015-07-09 16:18 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-07-09 16:18 - 2015-07-09 16:18 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-07-09 16:18 - 2015-07-09 16:18 - 02955776 _____ () C:\Program Files\AVAST Software\Avast\defs\15070902\algo.dll 2014-09-02 15:40 - 2014-09-02 15:40 - 00214352 _____ () C:\Program Files (x86)\Dropbox\DropboxOEM\Ledger.dll 2014-09-02 15:40 - 2014-09-02 15:40 - 00114000 _____ () C:\Program Files (x86)\Dropbox\DropboxOEM\zlib1.dll 2015-07-09 16:18 - 2015-07-09 16:18 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-01-06 16:36 - 2013-03-04 23:40 - 00626240 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2013-03-05 15:41 - 2013-03-05 15:41 - 00015424 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2015-03-16 11:28 - 2015-03-16 11:28 - 00155528 _____ () C:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll 2015-01-06 16:39 - 2013-12-09 18:27 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-01-06 16:49 - 2014-07-30 21:37 - 01906464 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\STRestoreAPI.dll 2015-01-06 16:49 - 2012-11-26 03:19 - 01153384 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\libxml2.dll 2015-01-06 16:48 - 2012-11-26 03:19 - 00117608 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\zlib1.dll 2015-07-10 00:07 - 2015-07-06 23:49 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libglesv2.dll 2015-07-10 00:07 - 2015-07-06 23:49 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libegl.dll 2015-07-10 00:07 - 2015-07-06 23:49 - 16285512 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\don\OneDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\63287045.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\63287045.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2764831399-1685386551-2369960238-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Dell\Win LTBLUE 1920x1200.jpg DNS Servers: 72.28.160.35 - 72.28.160.36 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{B2B86368-BCFB-40B7-9521-8808EA12B512}] => (Allow) C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudDesktopApp.exe FirewallRules: [{95F34A90-D3E0-4147-B571-CBE800423B13}] => (Allow) C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe FirewallRules: [{C3378212-9257-4898-91AA-BB76AF9B168A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{F9099C84-5D71-4025-9BC0-AD0A9EFE93DA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe FirewallRules: [{18495213-F546-489E-8558-8533EFF670C1}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{93C308E0-F5D7-402A-9C45-785E6D5C7527}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{577D31C0-C10A-4585-BE5A-A9750BC67947}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: SAMSUNG CDMA Technologies Description: SAMSUNG CDMA Technologies Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (07/10/2015 00:06:04 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program IEXPLORE.EXE version 11.0.9600.17126 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1ee8 Start Time: 01d0bac5ab0a3c47 Termination Time: 16 Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Report Id: f9420d3a-26b8-11e5-8263-7429af3f88c6 Faulting package full name: Faulting package-relative application ID: Error: (07/10/2015 00:04:56 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program IEXPLORE.EXE version 11.0.9600.17126 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: c9c Start Time: 01d0bac586975754 Termination Time: 16 Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Report Id: d18b6e16-26b8-11e5-8263-7429af3f88c6 Faulting package full name: Faulting package-relative application ID: Error: (07/10/2015 00:04:32 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program IEXPLORE.EXE version 11.0.9600.17126 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1540 Start Time: 01d0bac56560e95a Termination Time: 36 Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Report Id: c25aa6b8-26b8-11e5-8263-7429af3f88c6 Faulting package full name: Faulting package-relative application ID: Error: (07/09/2015 11:36:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: ERUNT.exe, version: 0.0.0.0, time stamp: 0x2a425e19 Faulting module name: ntdll.dll, version: 6.3.9600.17114, time stamp: 0x53648f36 Exception code: 0xc0000005 Fault offset: 0x0004b678 Faulting process id: 0x2098 Faulting application start time: 0xERUNT.exe0 Faulting application path: ERUNT.exe1 Faulting module path: ERUNT.exe2 Report Id: ERUNT.exe3 Faulting package full name: ERUNT.exe4 Faulting package-relative application ID: ERUNT.exe5 Error: (07/09/2015 11:35:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: ERUNT.exe, version: 0.0.0.0, time stamp: 0x2a425e19 Faulting module name: ntdll.dll, version: 6.3.9600.17114, time stamp: 0x53648f36 Exception code: 0xc0000005 Fault offset: 0x0004b678 Faulting process id: 0x4ba0 Faulting application start time: 0xERUNT.exe0 Faulting application path: ERUNT.exe1 Faulting module path: ERUNT.exe2 Report Id: ERUNT.exe3 Faulting package full name: ERUNT.exe4 Faulting package-relative application ID: ERUNT.exe5 Error: (07/09/2015 10:35:53 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program IEXPLORE.EXE version 11.0.9600.17126 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 824 Start Time: 01d0bab8c397cc2f Termination Time: 16 Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Report Id: 5ff6e0be-26ac-11e5-8262-7429af3f88c6 Faulting package full name: Faulting package-relative application ID: Error: (07/09/2015 09:19:21 PM) (Source: VSS) (EventID: 12294) (User: ) Description: Volume Shadow Copy Service error: Error calling a routine on the Shadow Copy Provider {b5946137-7b9f-4925-af80-51abd60b20d5}. Routine returned E_INVALIDARG. Routine details GetSnapshot({00000000-0000-0000-0000-000000000000},0000007DE8B57680). Operation: Get Shadow Copy Properties Context: Execution Context: Coordinator Error: (07/09/2015 08:27:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Explorer.EXE, version: 6.3.9600.17844, time stamp: 0x5569d245 Faulting module name: Explorer.EXE, version: 6.3.9600.17844, time stamp: 0x5569d245 Exception code: 0xc0000005 Fault offset: 0x00000000000011a3 Faulting process id: 0xa84 Faulting application start time: 0xExplorer.EXE0 Faulting application path: Explorer.EXE1 Faulting module path: Explorer.EXE2 Report Id: Explorer.EXE3 Faulting package full name: Explorer.EXE4 Faulting package-relative application ID: Explorer.EXE5 Error: (07/09/2015 08:27:48 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: Explorer.EXE Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: exception code c0000005, exception address 00007FF6293411A3 Error: (07/09/2015 05:18:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: IEXPLORE.EXE, version: 11.0.9600.17126, time stamp: 0x53882e30 Faulting module name: MSHTML.dll, version: 11.0.9600.17207, time stamp: 0x53a22b71 Exception code: 0xc0000005 Fault offset: 0x004261ee Faulting process id: 0x9e8 Faulting application start time: 0xIEXPLORE.EXE0 Faulting application path: IEXPLORE.EXE1 Faulting module path: IEXPLORE.EXE2 Report Id: IEXPLORE.EXE3 Faulting package full name: IEXPLORE.EXE4 Faulting package-relative application ID: IEXPLORE.EXE5 System errors: ============= Error: (07/10/2015 00:18:14 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 20. Error: (07/09/2015 08:49:26 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 10. The Windows SChannel error state is 10. Error: (07/09/2015 08:35:01 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 40. The Windows SChannel error state is 252. Error: (07/09/2015 08:33:53 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 40. The Windows SChannel error state is 252. Error: (07/09/2015 08:33:53 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 40. The Windows SChannel error state is 252. Error: (07/09/2015 08:33:51 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 40. The Windows SChannel error state is 252. Error: (07/09/2015 08:01:44 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 10. The Windows SChannel error state is 10. Error: (07/09/2015 05:58:30 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded. Error: (07/09/2015 04:04:09 PM) (Source: DCOM) (EventID: 10010) (User: CATS) Description: {209500FC-6B45-4693-8871-6296C4843751} Error: (07/09/2015 04:03:39 PM) (Source: DCOM) (EventID: 10010) (User: CATS) Description: {209500FC-6B45-4693-8871-6296C4843751} Microsoft Office: ========================= Error: (07/10/2015 00:06:04 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IEXPLORE.EXE11.0.9600.171261ee801d0bac5ab0a3c4716C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEf9420d3a-26b8-11e5-8263-7429af3f88c6 Error: (07/10/2015 00:04:56 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IEXPLORE.EXE11.0.9600.17126c9c01d0bac58697575416C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEd18b6e16-26b8-11e5-8263-7429af3f88c6 Error: (07/10/2015 00:04:32 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IEXPLORE.EXE11.0.9600.17126154001d0bac56560e95a36C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEc25aa6b8-26b8-11e5-8263-7429af3f88c6 Error: (07/09/2015 11:36:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: ERUNT.exe0.0.0.02a425e19ntdll.dll6.3.9600.1711453648f36c00000050004b678209801d0bac19eeedc2fC:\Windows\ERUNT.exeC:\Windows\SYSTEM32\ntdll.dlldd8be118-26b4-11e5-8262-7429af3f88c6 Error: (07/09/2015 11:35:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: ERUNT.exe0.0.0.02a425e19ntdll.dll6.3.9600.1711453648f36c00000050004b6784ba001d0bac16f5f3484C:\Windows\ERUNT.exeC:\Windows\SYSTEM32\ntdll.dllad8b4fd3-26b4-11e5-8262-7429af3f88c6 Error: (07/09/2015 10:35:53 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IEXPLORE.EXE11.0.9600.1712682401d0bab8c397cc2f16C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE5ff6e0be-26ac-11e5-8262-7429af3f88c6 Error: (07/09/2015 09:19:21 PM) (Source: VSS) (EventID: 12294) (User: ) Description: {b5946137-7b9f-4925-af80-51abd60b20d5}GetSnapshot({00000000-0000-0000-0000-000000000000},0000007DE8B57680) Operation: Get Shadow Copy Properties Context: Execution Context: Coordinator Error: (07/09/2015 08:27:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Explorer.EXE6.3.9600.178445569d245Explorer.EXE6.3.9600.178445569d245c000000500000000000011a3a8401d0ba8554c898c3C:\Windows\Explorer.EXEC:\Windows\Explorer.EXE7e05d509-269a-11e5-8262-7429af3f88c6 Error: (07/09/2015 08:27:48 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: Explorer.EXE Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: exception code c0000005, exception address 00007FF6293411A3 Error: (07/09/2015 05:18:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: IEXPLORE.EXE11.0.9600.1712653882e30MSHTML.dll11.0.9600.1720753a22b71c0000005004261ee9e801d0ba8c4f621054C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\SYSTEM32\MSHTML.dll19d9a03e-2680-11e5-8262-7429af3f88c6 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-4160 CPU @ 3.60GHz Percentage of memory in use: 58% Total physical RAM: 8108.94 MB Available physical RAM: 3386.4 MB Total Virtual: 10119.23 MB Available Virtual: 4369.7 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:922.28 GB) (Free:891.05 GB) NTFS Drive d: (ESP) (Fixed) (Total:0.48 GB) (Free:0.43 GB) FAT32 Drive x: (WINRETOOLS) (Fixed) (Total:0.73 GB) (Free:0.46 GB) NTFS Drive y: (PBR Image) (Fixed) (Total:7.85 GB) (Free:0.72 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 3C703E31) Partition: GPT Partition Type. ==================== End of log ============================