Additional scan result of Farbar Recovery Scan Tool (x64) Version:31-08-2015 Ran by user (2015-09-04 06:41:22) Running from C:\Users\user\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-934653896-176862922-3437185597-500 - Administrator - Disabled) Guest (S-1-5-21-934653896-176862922-3437185597-501 - Limited - Disabled) user (S-1-5-21-934653896-176862922-3437185597-1002 - Administrator - Enabled) => C:\Users\user ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Panda Free Antivirus (Enabled - Up to date) {AAF74A68-8713-CDF1-004F-30003398BE9E} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Panda Free Antivirus (Enabled - Up to date) {1196AB8C-A129-C27F-3AFF-0B72481FF423} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Panda Firewall (Disabled) {92CCCB4D-CD7C-CCA9-2B10-9935CD4BF9E5} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-934653896-176862922-3437185597-1002\...\uTorrent) (Version: 3.4.4.40911 - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.4.144 - Adobe Systems, Inc.) ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.1202.1711.102 - Alps Electric) AMD Catalyst Install Manager (HKLM\...\{7536C341-2F7D-EFE6-F521-DEBE68B025C5}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) calibre 64bit (HKLM\...\{D4DF4C08-5DCA-4664-8612-1A8511D6F8B4}) (Version: 2.33.0 - Kovid Goyal) CCleaner (HKLM\...\CCleaner) (Version: 5.09 - Piriform) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.5.6902 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.5.3416 - CyberLink Corp.) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3.3709 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.3.3907 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DisableMSDefender (Version: 1.0.0 - Hewlett-Packard Company) Hidden Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.85 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.13 - Google Inc.) Hidden HP Documentation (HKLM-x32\...\{3BAA7681-EF42-4FEC-84FC-87BA815492A4}) (Version: 1.2.0.0 - Hewlett-Packard) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7372.4698 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.11 - Hewlett-Packard) HP System Event Utility (HKLM-x32\...\{C78E8F51-3EAD-4F0C-83F0-EF371075E0B4}) (Version: 1.0.10 - Hewlett-Packard Company) HP Utility Center (HKLM\...\{891A1782-8B20-4403-8383-458962525926}) (Version: 2.3.4 - Hewlett-Packard Company) HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company) Inst5675 (Version: 8.01.11 - Softex Inc.) Hidden Inst5676 (Version: 8.01.11 - Softex Inc.) Hidden Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden OEM Application Profile (HKLM-x32\...\{315F1A48-D883-B234-7C79-15873574ACC1}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.04 - Panda Security) Panda Devices Agent (x32 Version: 1.05.00 - Panda Security) Hidden Panda Free Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 15.01.00.0006 - Panda Security) Panda Free Antivirus (Version: 7.84.00.0000 - Panda Security) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.232 - Qualcomm Atheros) Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.29075 - Realtek Semiconductor Corp.) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 8.24.1218.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7164 - Realtek Semiconductor Corp.) Roads of Rome 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 23:25 - 2013-08-22 23:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {1234C257-7477-4E3A-BCF4-F58E62AAE406} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-08-20] (Piriform Ltd) Task: {1D1EFFDD-FFEF-41BA-8406-9E014220D816} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03] (Google Inc.) Task: {439E8759-4791-4EEA-A839-18CE850C33B7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03] (Google Inc.) Task: {5BAB93B1-05E8-4C35-ADE2-2CE61829406C} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05] (CyberLink) Task: {780563C7-45A1-45E2-85FF-2EAFA6B0AC61} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-13] (CyberLink Corp.) Task: {B1EA828C-2A31-4235-AD2A-081FDBFFB3B7} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [2014-03-07] (CyberLink Corp.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2014-03-29 06:31 - 2014-03-29 06:31 - 02110464 _____ () C:\Program Files\Hewlett-Packard\SimplePass\autheng.dll 2014-03-29 06:27 - 2014-03-29 06:27 - 00021504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cryptodll.dll 2014-03-29 06:27 - 2014-03-29 06:27 - 00035328 _____ () C:\Program Files\Hewlett-Packard\SimplePass\ssplogon.dll 2014-03-29 06:27 - 2014-03-29 06:27 - 00055296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\RandomPass.dll 2014-03-29 06:48 - 2014-03-29 06:48 - 00367504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\mstrpwd.dll 2014-03-29 06:48 - 2014-03-29 06:48 - 00712080 _____ () C:\Program Files\Hewlett-Packard\SimplePass\GraphicalPwd.dll 2014-04-18 08:38 - 2014-04-18 08:38 - 00140288 _____ () C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe 2014-04-18 08:37 - 2014-04-18 08:37 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2014-03-29 06:36 - 2014-03-29 06:36 - 00065024 _____ () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe 2015-09-03 00:32 - 2015-09-03 00:32 - 62042624 _____ () C:\Users\user\AppData\Roaming\GoogleUpdate\GoogleUpdate.exe 2015-04-02 05:51 - 2015-04-02 05:51 - 00055576 _____ () C:\Program Files\CCleaner\branding.dll 2013-04-13 03:23 - 2013-04-13 03:23 - 00612664 _____ () C:\Program Files (x86)\Panda Security\Panda Security Protection\SQLite3.dll 2015-09-02 05:12 - 2015-09-02 05:12 - 00116224 _____ () C:\Users\user\AppData\Local\YbPack\comNetengine.dll 2015-03-19 07:02 - 2013-08-05 17:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2013-08-06 08:48 - 2013-08-06 08:48 - 00016856 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2015-09-03 01:49 - 2015-08-28 10:17 - 01501512 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\libglesv2.dll 2015-09-03 01:49 - 2015-08-28 10:17 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\user\OneDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-934653896-176862922-3437185597-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\user\Downloads\mcgregor.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) mpsdrv Firewall Service is not running. MpsSvc Firewall Service is not running. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{8AFB18E9-4724-4191-874C-AC1A694311D6}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{DD25CBE7-1219-4332-9E17-352CA7421165}] => (Allow) LPort=2869 FirewallRules: [{D33D7668-823A-4724-A23E-9462981FB3EC}] => (Allow) LPort=1900 FirewallRules: [{CB52E8B5-73B8-4D8F-9A72-E8906218918A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{FA6808E9-1F1D-46F1-AB43-1A2A2478C6F4}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{C1961B59-8682-4FAB-87EF-844C8FB74CFA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{FEF048D0-8AF0-4429-B551-837CFB201F25}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{AB1CB904-6E98-4663-BF2C-458B72A1FA7E}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{A0B8DFF5-D2AC-4F1E-A3A8-8EE57A4FB2CC}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{BD30E36B-B6A7-49E8-940E-1EB8563F2C22}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{1EFDDDAC-F852-4D1E-8AD4-925BBD6D0186}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{A0892272-D600-4F5C-8370-3429A09F8258}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{AC5EBC05-B9FD-4870-A9A3-691ACF14A663}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6D3A065B-B583-41A6-B965-BBEAAA99544C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C7ED0B86-9743-4C29-AE05-79294D5C621A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C3F230BA-FC6F-41A5-B8D8-C4932A7D0CEA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{99D0FB7B-C336-4B86-AFFA-D99517423845}] => (Allow) C:\Windows\explorer.exe FirewallRules: [{217031CA-3E9A-4E43-8DEC-ED762874A475}] => (Allow) C:\Windows\system32\rundll32.exe ==================== Faulty Device Manager Devices ============= Could not list Devices. Check "winmgmt" service or repair WMI. ==================== Event log errors: ========================= Application errors: ================== Error: (09/04/2015 06:35:39 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: chrome.exe, version: 45.0.2454.85, time stamp: 0x55df881b Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x13e536b0 Faulting process id: 0x3b40 Faulting application start time: 0xchrome.exe0 Faulting application path: chrome.exe1 Faulting module path: chrome.exe2 Report Id: chrome.exe3 Faulting package full name: chrome.exe4 Faulting package-relative application ID: chrome.exe5 Error: (09/04/2015 06:33:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: LogonUI.exe, version: 6.3.9600.17415, time stamp: 0x5450541b Faulting module name: OmniPassCredProv.dll_unloaded, version: 8.0.1.11, time stamp: 0x5335c168 Exception code: 0xc0000005 Fault offset: 0x0000000000011e12 Faulting process id: 0x4908 Faulting application start time: 0xLogonUI.exe0 Faulting application path: LogonUI.exe1 Faulting module path: LogonUI.exe2 Report Id: LogonUI.exe3 Faulting package full name: LogonUI.exe4 Faulting package-relative application ID: LogonUI.exe5 Error: (09/04/2015 06:31:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: chrome.exe, version: 45.0.2454.85, time stamp: 0x55df881b Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0ac536b0 Faulting process id: 0x56c8 Faulting application start time: 0xchrome.exe0 Faulting application path: chrome.exe1 Faulting module path: chrome.exe2 Report Id: chrome.exe3 Faulting package full name: chrome.exe4 Faulting package-relative application ID: chrome.exe5 Error: (09/04/2015 06:31:31 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: chrome.exe, version: 45.0.2454.85, time stamp: 0x55df881b Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0dee36b0 Faulting process id: 0x1478 Faulting application start time: 0xchrome.exe0 Faulting application path: chrome.exe1 Faulting module path: chrome.exe2 Report Id: chrome.exe3 Faulting package full name: chrome.exe4 Faulting package-relative application ID: chrome.exe5 Error: (09/04/2015 06:31:09 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe, version: 6.3.9600.17415, time stamp: 0x54503c68 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x006113f2 Faulting process id: 0x5b4c Faulting application start time: 0xsvchost.exe0 Faulting application path: svchost.exe1 Faulting module path: svchost.exe2 Report Id: svchost.exe3 Faulting package full name: svchost.exe4 Faulting package-relative application ID: svchost.exe5 Error: (09/03/2015 04:33:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: chrome.exe, version: 45.0.2454.85, time stamp: 0x55df881b Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x103636b0 Faulting process id: 0x4414 Faulting application start time: 0xchrome.exe0 Faulting application path: chrome.exe1 Faulting module path: chrome.exe2 Report Id: chrome.exe3 Faulting package full name: chrome.exe4 Faulting package-relative application ID: chrome.exe5 Error: (09/03/2015 04:33:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: chrome.exe, version: 45.0.2454.85, time stamp: 0x55df881b Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x09a636b0 Faulting process id: 0x485c Faulting application start time: 0xchrome.exe0 Faulting application path: chrome.exe1 Faulting module path: chrome.exe2 Report Id: chrome.exe3 Faulting package full name: chrome.exe4 Faulting package-relative application ID: chrome.exe5 Error: (09/03/2015 02:16:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mbamservice.exe, version: 3.2.13.0, time stamp: 0x558200e9 Faulting module name: mbamservice.exe, version: 3.2.13.0, time stamp: 0x558200e9 Exception code: 0x40000015 Fault offset: 0x000ace66 Faulting process id: 0x5bf0 Faulting application start time: 0xmbamservice.exe0 Faulting application path: mbamservice.exe1 Faulting module path: mbamservice.exe2 Report Id: mbamservice.exe3 Faulting package full name: mbamservice.exe4 Faulting package-relative application ID: mbamservice.exe5 Error: (09/03/2015 01:45:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: HP) Description: Activation of app windows.immersivecontrolpanel_cw5n1h2txyewy!microsoft.windows.immersivecontrolpanel failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (09/03/2015 01:44:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: HP) Description: App windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy+microsoft.windows.immersivecontrolpanel did not launch within its allotted time. System errors: ============= Error: (09/03/2015 04:34:03 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AMD External Events Utility service. Error: (09/03/2015 02:16:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The MBAMService service terminated unexpectedly. It has done this 2 time(s). Error: (09/03/2015 01:45:01 PM) (Source: DCOM) (EventID: 10010) (User: HP) Description: microsoft.windows.immersivecontrolpanel Error: (09/03/2015 10:07:19 AM) (Source: DCOM) (EventID: 10010) (User: HP) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (09/03/2015 09:56:16 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The MBAMService service terminated unexpectedly. It has done this 1 time(s). Error: (09/03/2015 09:05:48 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: The ScRegSetValueExW call failed for FailureActions with the following error: %%5 Error: (09/03/2015 09:00:36 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 8:40:25 AM on ‎3/‎09/‎2015 was unexpected. Error: (09/03/2015 08:43:39 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The MBAMService service terminated unexpectedly. It has done this 1 time(s). Error: (09/03/2015 08:01:06 AM) (Source: DCOM) (EventID: 10010) (User: HP) Description: microsoft.windows.immersivecontrolpanel Error: (09/03/2015 04:05:29 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: The ScRegSetValueExW call failed for FailureActions with the following error: %%5 Microsoft Office: ========================= Error: (09/04/2015 06:35:39 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: chrome.exe45.0.2454.8555df881bunknown0.0.0.000000000c000000513e536b03b4001d0e6880e0d6073C:\Program Files (x86)\Google\Chrome\Application\chrome.exeunknown564ae736-527b-11e5-8280-acb57d643697 Error: (09/04/2015 06:33:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: LogonUI.exe6.3.9600.174155450541bOmniPassCredProv.dll_unloaded8.0.1.115335c168c00000050000000000011e12490801d0e687bfe63eeaC:\Windows\System32\LogonUI.exeOmniPassCredProv.dll081ea7bc-527b-11e5-8280-acb57d643697 Error: (09/04/2015 06:31:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: chrome.exe45.0.2454.8555df881bunknown0.0.0.000000000c00000050ac536b056c801d0e68788e1614aC:\Program Files (x86)\Google\Chrome\Application\chrome.exeunknowncfa6f6cb-527a-11e5-8280-acb57d643697 Error: (09/04/2015 06:31:31 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: chrome.exe45.0.2454.8555df881bunknown0.0.0.000000000c00000050dee36b0147801d0e6877a2b366dC:\Program Files (x86)\Google\Chrome\Application\chrome.exeunknownc275c6ca-527a-11e5-8280-acb57d643697 Error: (09/04/2015 06:31:09 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: svchost.exe6.3.9600.1741554503c68unknown0.0.0.000000000c0000005006113f25b4c01d0e68773638579C:\Windows\SysWOW64\svchost.exeunknownb54f41ae-527a-11e5-8280-acb57d643697 Error: (09/03/2015 04:33:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: chrome.exe45.0.2454.8555df881bunknown0.0.0.000000000c0000005103636b0441401d0e61263f5f588C:\Program Files (x86)\Google\Chrome\Application\chrome.exeunknownac373017-5205-11e5-8280-acb57d643697 Error: (09/03/2015 04:33:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: chrome.exe45.0.2454.8555df881bunknown0.0.0.000000000c000000509a636b0485c01d0e61263ba5ac0C:\Program Files (x86)\Google\Chrome\Application\chrome.exeunknownaad3f199-5205-11e5-8280-acb57d643697 Error: (09/03/2015 02:16:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbamservice.exe3.2.13.0558200e9mbamservice.exe3.2.13.0558200e940000015000ace665bf001d0e5f23f7a4ab7C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe7ca0f097-51f2-11e5-8280-acb57d643697 Error: (09/03/2015 01:45:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: HP) Description: windows.immersivecontrolpanel_cw5n1h2txyewy!microsoft.windows.immersivecontrolpanel-2144927142 Error: (09/03/2015 01:44:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: HP) Description: windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy+microsoft.windows.immersivecontrolpanel ==================== Memory info =========================== Processor: AMD A4-5000 APU with Radeon(TM) HD Graphics Percentage of memory in use: 75% Total physical RAM: 3537.01 MB Available physical RAM: 877.03 MB Total Virtual: 13265.01 MB Available Virtual: 9234.32 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:443.86 GB) (Free:401.23 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:20.88 GB) (Free:2.04 GB) NTFS ==>[system with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================