Additional scan result of Farbar Recovery Scan Tool (x64) Version:28-08-2015 Ran by Shane (2015-08-29 12:45:17) Running from C:\Users\Shane\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1123048913-3374069775-792900894-500 - Administrator - Disabled) Guest (S-1-5-21-1123048913-3374069775-792900894-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1123048913-3374069775-792900894-1003 - Limited - Enabled) Shane (S-1-5-21-1123048913-3374069775-792900894-1001 - Administrator - Enabled) => C:\Users\Shane shane_000 (S-1-5-21-1123048913-3374069775-792900894-1004 - Administrator - Enabled) => C:\Users\shane_000 ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) «Portal 2» 2.0.0.1 (HKLM-x32\...\Portal 2_is1) (Version: 2.0.0.1 - VALVE) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.0.1.88 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Illustrator CC (HKLM-x32\...\{F2321021-08A2-44D6-B1DF-BDB415F23EC3}) (Version: 17.0 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-1123048913-3374069775-792900894-1001\...\Akamai) (Version: - Akamai Technologies, Inc) Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 4.8.1245.73583 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 4.8.1245.73583 - Alcor Micro Corp.) Hidden Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden Apple Application Support (32-bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Atheros) Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) DTS Sound (HKLM-x32\...\{2DFA9084-CEB3-4A48-B9F7-9038FEF1B8F4}) (Version: 1.01.2700 - DTS, Inc.) Empress of the Deep - The Darkest Secret (x32 Version: 2.2.0.98 - WildTangent) Hidden Fallout Mod Manager 0.13.21 (HKLM-x32\...\Generic Mod Manager_is1) (Version: - Q, Timeslip) Fallout New Vegas - Ultimate Edition (HKLM-x32\...\Fallout New Vegas - Ultimate Edition_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky) FreeStyle2: Street Basketball (HKLM-x32\...\Steam App 339610) (Version: - Joycity) Game Dev Tycoon (HKLM-x32\...\Steam App 239820) (Version: - Greenheart Games) Garrys Mod version 14.07.10 (HKLM\...\{C8F834F5-46EA-4933-8AA9-F6CD7D29EED0}_is1) (Version: 14.07.10 - Strogino CS Portal) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.) Google Talk Plugin (HKLM-x32\...\{CA3DD97D-1FD7-37A7-BD5C-FC4430C8B8E6}) (Version: 5.41.2.0 - Google) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden HandBrake 0.10.0 (HKLM-x32\...\HandBrake) (Version: 0.10.0 - ) iCloud (HKLM\...\{6096C0CC-7E19-4355-87F0-627EC5AA146D}) (Version: 4.0.3.56 - Apple Inc.) IDT Audio Driver (HKLM\...\{588A747E-CFF6-46B3-9207-CD754F9473AF}) (Version: 6.10.6491.0 - IDT) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3282 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) Island Tribe (x32 Version: 2.2.0.98 - WildTangent) Hidden iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Kingo ROOT version 1.3.3.2235 (HKLM-x32\...\{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1) (Version: 1.3.3.2235 - Kingosoft Technology Ltd.) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Office 2003 Web Components (HKLM-x32\...\{90120000-00A4-0409-0000-0000000FF1CE}) (Version: 12.0.6213.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU (HKLM\...\Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU) (Version: - Microsoft Corporation) Microsoft Visual Studio 2005 Tools for Applications - ENU (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Applications - ENU) (Version: - Microsoft Corporation) Microsoft Xbox One Controller for Windows (HKLM\...\{DC2CB48C-FD96-48EB-A36A-7D995BB587EB}) (Version: 1.0.2 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.55.2 - Black Tree Gaming) PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden Pixel Piracy (HKLM-x32\...\Steam App 264140) (Version: - Vitali Kirpu) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden Plex Home Theater (HKLM-x32\...\Plex Home Theater) (Version: 1.4.1 - Plex inc) Plex Media Server (HKLM-x32\...\{60ad9444-b93c-473d-a800-e99ca5aa5558}) (Version: 0.9.1203 - Plex, Inc.) Plex Media Server (x32 Version: 0.9.1203 - Plex, Inc.) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.300 - Qualcomm Atheros) Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Inc.) Razer Game Booster (HKLM-x32\...\Razer Game Booster_is1) (Version: 4.2.42.0 - Razer Inc.) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.24.0 - SAMSUNG Electronics Co., Ltd.) Shovel Knight (HKLM-x32\...\1207664823_is1) (Version: 2.6.0.13 - GOG.com) Sid Meier's Civilization 4 - Warlords (HKLM-x32\...\{3E4B349F-10B5-4586-9D99-489A90A8B228}) (Version: 2.13 - Firaxis Games) Sid Meier's Civilization 4 (HKLM-x32\...\{CFBCE791-2D53-4FCE-B3FB-D6E01F4112E8}) (Version: 1.74 - Firaxis Games) Sid Meier's Civilization 4 (x32 Version: 1.00.0000 - Firaxis Games) Hidden Sid Meiers Civilization Beyond Earth version 1.0.1.607 (HKLM-x32\...\Sid Meiers Civilization Beyond Earth_is1) (Version: 1.0.1.607 - GMT-MAX.ORG) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Sony PC Companion 2.10.275 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.275 - Sony) Spelunky (HKLM-x32\...\GOGPACKSPELUNKY_is1) (Version: 2.0.0.6 - GOG.com) Spotify (HKLM-x32\...\Spotify) (Version: 0.8.5.1333.g822e0de8 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Surgeon Simulator 2013 Steam Edition 1.0 (HKLM-x32\...\Surgeon Simulator 2013 Steam Edition 1.0) (Version: 1.0 - Cat-A-Cat) System Requirements Lab (HKLM-x32\...\{8DCAB1D8-F20C-4733-9B5F-646DDFEB59C9}) (Version: 6.1.1.0 - Husdawg, LLC) System Requirements Lab Detection (HKLM-x32\...\{427D8C62-6E08-4352-817C-1D47DD71EFFB}) (Version: 6.1.6.0 - Husdawg, LLC) The Wolf Among Us (HKLM-x32\...\The Wolf Among Us_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter) TOSHIBA Addendum (HKLM-x32\...\{CE0374A6-B204-4336-8293-63FBB1DADBF4}) (Version: 1.00 - TOSHIBA) TOSHIBA Desktop Assist (HKLM\...\{95CCACF0-010D-45F0-82BF-858643D8BC02}) (Version: 1.02.01.6407 - Toshiba Corporation) TOSHIBA Display Utility (HKLM\...\{84FA4D2D-4273-4C66-BD3D-ADD3FE48DFA2}) (Version: 1.1.5.0 - Toshiba Corporation) TOSHIBA eco Utility (HKLM\...\{5944B9D4-3C2A-48DE-931E-26B31714A2F7}) (Version: 2.2.0.6404 - Toshiba Corporation) TOSHIBA Function Key (HKLM\...\{16562A90-71BC-41A0-B890-D91B0C267120}) (Version: 1.1.0001.6403 - Toshiba Corporation) TOSHIBA Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.10 - TOSHIBA) TOSHIBA Password Utility (HKLM-x32\...\InstallShield_{78931270-BC9E-441A-A52B-73ECD4ACFAB5}) (Version: 3.00.344 - Toshiba Corporation) TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.9.09.6400 - Toshiba Corporation) TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 3.1.02.55065006 - Toshiba Corporation) TOSHIBA Service Station (HKLM\...\{FBFCEEA5-96EA-4C8E-9262-43CBBEBAE413}) (Version: 2.6.8 - Toshiba Corporation) TOSHIBA System Driver (HKLM-x32\...\{1E6A96A1-2BAB-43EF-8087-30437593C66C}) (Version: 1.00.0030 - Toshiba Corporation) TOSHIBA System Settings (HKLM-x32\...\{05A55927-DB9B-4E26-BA44-828EBFF829F0}) (Version: 1.1.2.32001 - Toshiba Corporation) Toshiba TEMPRO (HKLM-x32\...\{F76F5214-83A8-4030-80C9-1EF57391D72A}) (Version: 4.5.0 - Toshiba Europe GmbH) Unity Web Player (HKU\S-1-5-21-1123048913-3374069775-792900894-1001\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) Vuze (HKLM-x32\...\8461-7759-5462-8226) (Version: 5.6.1.2 - Azureus Software, Inc.) WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.3.0 - WildTangent) WildTangent Games App (Toshiba Games) (x32 Version: 4.0.11.2 - WildTangent) Hidden WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Shane\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay No File CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Shane\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Shane\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Shane\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Shane\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Shane\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Shane\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Shane\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-1123048913-3374069775-792900894-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Shane\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File ==================== Restore Points ========================= 09-08-2015 19:21:23 Installed System Requirements Lab Detection 19-08-2015 17:00:19 Scheduled Checkpoint 24-08-2015 23:36:41 Configured Alcor Micro USB Card Reader ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {32642DE8-AEB7-4CAE-90E1-85C125B586DC} - System32\Tasks\Toshiba\CommonNotifier => C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [2013-07-18] (Toshiba Europe GmbH) Task: {4403E8A7-039B-4D7D-9E76-7A4CBF5076EC} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2014-08-25] (Apple Inc.) Task: {5D027165-9590-4F9B-A057-2A672986CAB4} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1123048913-3374069775-792900894-1001 Task: {6FA1E42B-E4F2-42E7-B4FE-2A2D0F947F03} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-11] (Adobe Systems Incorporated) Task: {8FA6A8E6-D394-4501-B0B7-8B270E87188E} - System32\Tasks\Resolution+ Setting Task => C:\Program Files\Toshiba\TOSHIBA Smart View Utility\Plugins\ResolutionPlus\TosRegPermissionChg.exe [2013-08-28] (TODO: ) Task: {ABEF25A5-940B-460A-AD34-AD951E674C2B} - System32\Tasks\TOSHIBA\Service Station => C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [2013-07-31] (TOSHIBA Corporation) Task: {BEEC91A9-A420-40F3-ACB3-41D154DEADFE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {C208C663-ECFE-4CA9-B864-ECBDBD8D112C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-20] (Google Inc.) Task: {D9184C2C-7310-408B-B750-EF04D24264CF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-20] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1123048913-3374069775-792900894-1001Core1cf8a7e3a7211b6.job => C:\Users\Shane\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1123048913-3374069775-792900894-1001Core1cfeaaecca4dc18.job => C:\Users\Shane\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1123048913-3374069775-792900894-1001Core1cfff888e2ca59c.job => C:\Users\Shane\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1123048913-3374069775-792900894-1001Core1d0c891fb30beb2.job => C:\Users\Shane\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1123048913-3374069775-792900894-1001Core1d0e1d29d43e507.job => C:\Users\Shane\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2013-03-27 12:53 - 2013-03-27 12:53 - 00163168 _____ () C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe 2015-03-20 18:12 - 2015-03-20 18:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-03-20 18:12 - 2015-03-20 18:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2013-09-10 12:54 - 2013-09-10 12:54 - 00019792 _____ () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe 2015-04-16 17:42 - 2015-04-16 17:42 - 00997536 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2013-09-09 17:59 - 2013-08-12 18:52 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-07-18 18:38 - 2012-07-18 18:38 - 00020904 _____ () C:\Program Files\TOSHIBA\Hotkey\SmoothView.dll 2015-06-07 14:56 - 2015-06-07 14:56 - 00521216 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_64\Windows.Data\982de40209a9308e44f20dd6c2943ba6\Windows.Data.ni.dll 2015-06-10 15:11 - 2015-06-10 15:11 - 01459712 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_64\Windows.UI\574eaad2765ae1da8b21c3e9faba629b\Windows.UI.ni.dll 2015-06-08 04:14 - 2015-06-08 04:14 - 00363520 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_64\Windows.Foundation\9f91850f1de0938d2391835a74bb9247\Windows.Foundation.ni.dll 2014-03-01 23:45 - 2012-11-20 17:13 - 00264192 _____ () C:\Program Files (x86)\Razer\Razer Game Booster\D3DX8Wrapper.dll 2014-03-01 23:45 - 2013-11-12 10:57 - 00098304 _____ () C:\Program Files (x86)\Razer\Razer Game Booster\EasyHook32.dll 2015-03-20 18:12 - 2015-03-20 18:12 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2015-08-22 09:53 - 2015-08-18 06:23 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.157\libglesv2.dll 2015-08-22 09:53 - 2015-08-18 06:23 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.157\libegl.dll 2013-10-15 19:10 - 2013-09-03 16:52 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-08-22 09:53 - 2015-08-18 06:23 - 16393032 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.157\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Shane\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Shane\SkyDrive.old:ms-properties AlternateDataStreams: C:\Users\shane_000\SkyDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1123048913-3374069775-792900894-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Shane\Desktop\cPGE4cu.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKU\S-1-5-21-1123048913-3374069775-792900894-1001\...\StartupApproved\StartupFolder: => "Dragon Professional 13 Keygen.lnk" HKU\S-1-5-21-1123048913-3374069775-792900894-1001\...\StartupApproved\Run: => "Akamai NetSession Interface" HKU\S-1-5-21-1123048913-3374069775-792900894-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1123048913-3374069775-792900894-1001\...\StartupApproved\Run: => "Speech Recognition" HKU\S-1-5-21-1123048913-3374069775-792900894-1001\...\StartupApproved\Run: => "Plex Media Server" HKU\S-1-5-21-1123048913-3374069775-792900894-1001\...\StartupApproved\Run: => "Sony PC Companion" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{19A79F99-5F68-4105-8977-96EA953ECA40}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{66B968CC-0581-4414-BA64-88254F701AE9}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{085C32F8-4CE4-488A-BAA3-8F6E06163AC4}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{BB2FA7F9-443F-4C38-8C40-6CCB5ED988B6}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{E72A324B-91F3-4900-BCAF-55549BEC2D0F}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{23C588C7-680C-407A-A6B3-B2FF96948910}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{D7886442-E195-43A6-BB2B-F48BFC34C8B2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{68D3E6EB-D59A-427D-A002-71452CF7B34F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{3EDE3C1F-FC4A-4113-BF55-CB88464EC4CB}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{037B296F-9DE3-4DC0-B01F-005FBEA4B362}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [{54310AFA-ED60-41B1-9423-1D905DC128E4}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe FirewallRules: [{2CC2EAE8-CA22-46ED-AC72-28ACAF61EFE8}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe FirewallRules: [{3A14EBCD-3F0E-4BF5-AD65-2AE8732D93E0}] => (Allow) C:\Users\Shane\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{29FA41AD-A1F5-42D5-8A99-BAEE85D6A14E}] => (Allow) C:\Users\Shane\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{1FA7834C-7E4E-4A65-B466-399B582452EA}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{DCC48810-F921-46F8-92F9-733D7CBB577C}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{3B6F1736-0755-42ED-BC05-DAAEACDCC8E7}] => (Allow) C:\Program Files (x86)\WinZip Driver Updater\winzipdu.exe FirewallRules: [{36456DCB-9792-4D34-A1B8-4B5C5AE6EB29}] => (Allow) C:\Program Files (x86)\mystarttb\dtuser.exe FirewallRules: [{7953518C-ECCE-473B-88E6-643230D18DFE}] => (Allow) C:\Program Files (x86)\mystarttb\dtuser.exe FirewallRules: [{B309DCFD-E6B4-4224-9512-79EAAA9EE863}] => (Allow) C:\Program Files (x86)\mystarttb\ToolbarCleaner.exe FirewallRules: [{A4AC7A51-23AD-44A3-8B92-99FFFCE60A8F}] => (Allow) C:\Program Files (x86)\mystarttb\ToolbarCleaner.exe FirewallRules: [{5F399933-E31D-4C9B-96B5-63B4248901E9}] => (Allow) C:\ProgramData\EmailNotifier\EmailNotifier.exe FirewallRules: [{FD9AC61E-7508-4503-B733-3AD44E8EB070}] => (Allow) C:\ProgramData\EmailNotifier\EmailNotifier.exe FirewallRules: [{8B924CC1-8AF8-41CF-98F3-304618FAC107}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Pixel Piracy\PixelPiracy.exe FirewallRules: [{34F694B9-B3CA-46BB-93EB-87FF23C845A9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Pixel Piracy\PixelPiracy.exe FirewallRules: [{713FB839-91D5-4EB2-9720-9A4720A64B63}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{59E30E77-0BAC-4789-A27E-B369DD64C0B6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{AEEED8DE-1176-4D56-A3FF-D16F09C4F169}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{F1A50418-BC6F-44D4-AA36-2CAFF3D321A7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{F25281ED-CC7D-479A-B681-F8C810948EDA}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{6549DB53-61DA-4C29-BD38-DC3D057B5A93}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{D981873E-B720-4D20-800F-22FC1BA74253}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{BBCC2FE9-0132-4B5D-AA5A-15971807E648}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{BF2CC887-24B8-4E1B-9090-344E41C8BA32}C:\users\shane\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\shane\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{BA18B06D-E4C0-4F2E-9589-443167D37FE1}C:\users\shane\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\shane\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{21B482C2-F50E-4B18-95C9-EC8C45BF6FCD}C:\users\shane\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\shane\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{774DD1D5-DDFA-4448-B8FB-01ECF180A7A4}C:\users\shane\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\shane\appdata\roaming\spotify\spotify.exe FirewallRules: [{733184AE-2CFE-4139-A89A-EC9E5845E6D0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Game Dev Tycoon\nw.exe FirewallRules: [{457A8EB4-DD47-4141-93C4-CF7304930BBA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Game Dev Tycoon\nw.exe FirewallRules: [TCP Query User{57833DDF-60EF-44C5-B5B9-3A55D9ED8712}C:\games\r.g. catalyst\portal 2\portal2.exe] => (Allow) C:\games\r.g. catalyst\portal 2\portal2.exe FirewallRules: [UDP Query User{64BC9F25-3D38-4E4F-97AF-54A6A0A272C8}C:\games\r.g. catalyst\portal 2\portal2.exe] => (Allow) C:\games\r.g. catalyst\portal 2\portal2.exe FirewallRules: [TCP Query User{73F44863-D142-42D4-B02F-2CD71E99EF45}C:\games\garrys mod\hl2.exe] => (Allow) C:\games\garrys mod\hl2.exe FirewallRules: [UDP Query User{E5F3D92A-66F8-49C0-8814-5F5759A9EBDF}C:\games\garrys mod\hl2.exe] => (Allow) C:\games\garrys mod\hl2.exe FirewallRules: [{D0C8A23D-5537-4296-A0AE-D0F30B9934A8}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization 4\Civilization4.exe FirewallRules: [{D0AE54E9-469F-4A2D-BF1E-D4AB73123153}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization 4\Civilization4.exe FirewallRules: [{4CAFAD4A-B38D-4ECF-99A2-06FF193FE583}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization 4\Warlords\Civ4Warlords.exe FirewallRules: [{E163842E-FDA2-433B-B790-601F74BF7507}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization 4\Warlords\Civ4Warlords.exe FirewallRules: [{DF95D36A-C106-444C-B3ED-14624523F8F4}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization 4\Warlords\Civ4Warlords_PitBoss.exe FirewallRules: [{6641C825-344E-4FDA-B404-B2760C80BB09}] => (Allow) C:\Program Files (x86)\Firaxis Games\Sid Meier's Civilization 4\Warlords\Civ4Warlords_PitBoss.exe FirewallRules: [TCP Query User{8657F927-07E1-4763-95BF-66F92158285E}C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{ADF076F2-EE3C-4FBE-83A2-F429F5E8B0C2}C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe FirewallRules: [{4B54B0AD-2F48-40D8-9E04-8A1E4764B027}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FreeStyle2\LauncherSteam.exe FirewallRules: [{680893F6-4709-4681-9B56-D0A75AD0BEF6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FreeStyle2\LauncherSteam.exe FirewallRules: [TCP Query User{4B9B1C64-090B-4820-8D75-458AF63C1668}C:\program files (x86)\steam\steamapps\common\freestyle2\freestyle2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\freestyle2\freestyle2.exe FirewallRules: [UDP Query User{CFB68AB4-7309-4D29-8467-0C7965F583F8}C:\program files (x86)\steam\steamapps\common\freestyle2\freestyle2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\freestyle2\freestyle2.exe FirewallRules: [TCP Query User{6EA5239E-73A0-43A8-9361-FA0A2ABAF9DE}C:\users\shane\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\shane\appdata\local\popcorn time\node-webkit\popcorn time.exe FirewallRules: [UDP Query User{9CE16F70-94CD-4E28-84B8-62ECA8868F83}C:\users\shane\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\shane\appdata\local\popcorn time\node-webkit\popcorn time.exe FirewallRules: [{D0A5DD21-0A41-48B1-80DF-4BE073F5AA04}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{53775FB3-955A-4647-8347-D23DF3BA31C5}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe FirewallRules: [{04B32446-4344-4BF0-A72D-3A9135DD3966}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe FirewallRules: [{7C297AEB-76A2-4B71-8035-06BFD606502A}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe FirewallRules: [TCP Query User{45333EC7-2FA2-4ABA-BF2E-5BBACA9996FE}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [UDP Query User{7B1D0665-862C-4A48-AD30-11E721622ADC}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [{E1EF8F56-6838-4F27-978B-AAE226E83EFE}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe FirewallRules: [{6C344C22-D197-4C9B-93F6-042ADF4FE465}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe FirewallRules: [{3513169D-AA6C-4F37-8AB6-18856E52179A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{1D10A773-C1EA-48C5-BB2C-2D5EEF72CD43}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [TCP Query User{39685890-D6C7-4275-BA49-B583C5D0A303}C:\program files (x86)\vuze\azureus.exe] => (Allow) C:\program files (x86)\vuze\azureus.exe FirewallRules: [UDP Query User{D7FC57FB-BA89-47E6-B656-12C07B17345D}C:\program files (x86)\vuze\azureus.exe] => (Allow) C:\program files (x86)\vuze\azureus.exe FirewallRules: [{1F6BEED6-9AFD-41B4-9072-77E5EAF74542}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/28/2015 02:20:28 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1224718 Error: (08/28/2015 02:20:28 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1224718 Error: (08/28/2015 02:20:28 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/27/2015 08:47:58 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: The volume TI31205500A (C:) was not optimised because an error was encountered: The parameter is incorrect. (0x80070057) Error: (08/27/2015 12:31:42 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: The volume TI31205500A (C:) was not optimised because an error was encountered: The parameter is incorrect. (0x80070057) Error: (08/26/2015 05:10:56 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: The volume TI31205500A (C:) was not optimised because an error was encountered: The parameter is incorrect. (0x80070057) Error: (08/25/2015 12:19:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 4781 Error: (08/25/2015 12:19:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 4781 Error: (08/25/2015 12:19:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/24/2015 11:19:13 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT AUTHORITY) Description: There was an error with the Windows Location Provider database System errors: ============= Error: (08/29/2015 02:25:14 AM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: 2TrustedInstallerUnavailable{752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/29/2015 02:25:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The TrustedInstaller service failed to start due to the following error: %%2 Error: (08/28/2015 02:05:53 AM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: 2TrustedInstallerUnavailable{752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/28/2015 02:05:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The TrustedInstaller service failed to start due to the following error: %%2 Error: (08/28/2015 02:05:24 AM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: 2TrustedInstallerUnavailable{752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/28/2015 02:05:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The TrustedInstaller service failed to start due to the following error: %%2 Error: (08/28/2015 02:04:51 AM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: 2TrustedInstallerUnavailable{752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/28/2015 02:04:51 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The TrustedInstaller service failed to start due to the following error: %%2 Error: (08/27/2015 08:09:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The McAfee Inc. mfeapfk service failed to start due to the following error: %%1243 Error: (08/27/2015 08:08:39 PM) (Source: Microsoft-Windows-HAL) (EventID: 13) (User: NT AUTHORITY) Description: The system watchdog timer was triggered. Microsoft Office: ========================= CodeIntegrity: =================================== Date: 2015-08-07 00:53:25.212 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:25.183 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:25.154 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:25.121 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:25.092 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:25.063 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:25.031 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:25.003 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:24.973 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-07 00:53:24.941 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3110M CPU @ 2.40GHz Percentage of memory in use: 63% Total physical RAM: 6019.27 MB Available physical RAM: 2185.82 MB Total Virtual: 6979.27 MB Available Virtual: 2527.59 MB ==================== Drives ================================ Drive c: (TI31205500A) (Fixed) (Total:920.8 GB) (Free:657.16 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================