Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01 Ran by Gareth (2016-03-28 22:18:55) Running from C:\Users\Gareth\Downloads\Programs Windows 7 Home Premium Service Pack 1 (X64) (2016-02-13 19:04:53) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-778663071-3000615460-497893972-500 - Administrator - Disabled) Gareth (S-1-5-21-778663071-3000615460-497893972-1000 - Administrator - Enabled) => C:\Users\Gareth Guest (S-1-5-21-778663071-3000615460-497893972-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-778663071-3000615460-497893972-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ESET NOD32 Antivirus 9.0.349.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: ESET NOD32 Antivirus 9.0.375.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) 2007 Microsoft Office Suite Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden 2007 Microsoft Office system (HKLM-x32\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation) 7-Zip 15.14 (x64) (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov) Acronis True Image 2014 (HKLM-x32\...\{6B38A7DF-F641-45D5-BBCA-3E676ABCF5C8}Visible) (Version: 17.0.6673 - Acronis) Acronis True Image 2014 (x32 Version: 17.0.6673 - Acronis) Hidden Adobe Flash Player 21 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 21.0.0.197 - Adobe Systems Incorporated) Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated) Allway Sync version 15.3.1 (HKLM-x32\...\Allway Sync_is1) (Version: - Botkind Inc) Apple Application Support (32-bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Ashampoo Burning Studio 10 v.10.0.15 (HKLM-x32\...\{91B33C97-4FC4-BE7D-63C6-5AF22B65AC5E}_is1) (Version: 10.0.15 - Ashampoo GmbH & Co. KG) Ashampoo WinOptimizer 12 (HKLM-x32\...\{4209F371-15B6-1CE4-15F7-A7BA46F431E3}_is1) (Version: 12.00.45 - Ashampoo GmbH & Co. KG) Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.65 - Atheros Communications) C337H SKYMASTER HD SERIES FSX/P3D (HKLM-x32\...\C337H SKYMASTER HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado) Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: 4.5.0 - Canon Inc.) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - ‪Canon Inc.‬) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - ‪Canon Inc.‬) Canon MG5400 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5400_series) (Version: 1.00 - Canon Inc.) Canon MG5400 series On-screen Manual (HKLM-x32\...\Canon MG5400 series On-screen Manual) (Version: 7.5.0 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.6.1 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform) Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Core Temp 1.0 RC8 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu) Corsair K50 Gaming Keyboard Driver V1.0 (HKLM-x32\...\{5F80696B-8F74-4A67-9830-EC2DBA79AD7A}_is1) (Version: 1.00.00.15 - ) CPUID CPU-Z 1.75 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dropbox (HKLM-x32\...\Dropbox) (Version: 3.17.31 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.35.1 - Dropbox, Inc.) Hidden Duplicate Cleaner Free 3.2.7 (HKLM-x32\...\Duplicate Cleaner Free) (Version: 3.2.7 - DigitalVolcano Software Ltd) <==== ATTENTION EaseUS Partition Master 10.8 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) EaseUS Todo Backup Free 9.0 (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 9.0 - CHENGDU YIWO Tech Development Co., Ltd) ESET NOD32 Antivirus (HKLM\...\{39609CFB-57C5-4879-9C76-8BE895969C5B}) (Version: 9.0.349.0 - ESET, spol. s r.o.) Flight1 Citation Mustang P3D (HKLM-x32\...\f1mustang_FSX) (Version: 1.11 - Flight One Software) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.3.0.118 - Foxit Software Inc.) Free FLV Player (HKLM-x32\...\Free FLV Player) (Version: - ) FS2Crew: PMDG 737 NGX Reboot Edition (HKLM-x32\...\FS2Crew: PMDG 737 NGX Reboot Edition) (Version: - ) FSWidgets - Network Pack (HKLM-x32\...\FSWidgets Network Pack_is1) (Version: Version 2.0 - FSWidgets) Garmin GTN Trainer Lite (HKLM-x32\...\{FE8823C2-815A-493B-B3A4-DC2C20268AE8}) (Version: 5.13.0 - Garmin) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.) Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.) iFunbox (v3.0.3109.1352) (HKLM-x32\...\iFunbox_is1) (Version: v3.0.3109.1352 - iFunbox DevTeam) Intel(R) Driver Update Utility 2.4 (x32 Version: 2.4.0.7 - Intel) Hidden Intel(R) Network Connections 16.1.53.0 (HKLM\...\PROSetDX) (Version: 16.1.53.0 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) Intel® Driver Update Utility (HKLM-x32\...\{561b5fb5-1d4d-40e8-b3e4-ad52858b217c}) (Version: 2.4.0.7 - Intel) Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version: - Tonec Inc.) JMicron JMB36X Driver (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.17.62.0 - JMicron Technology Corp.) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Karen's Directory Printer (HKLM-x32\...\Karen's Directory Printer) (Version: 5.3.0.2 - Karen Kenworthy) Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech) marvell 91xx driver (HKLM-x32\...\MagniDriver) (Version: 1.1.0.6 - Marvell) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Flight Simulator SimConnect Client v10.0.60905.0 (HKLM-x32\...\{D1AC9B0B-2727-4811-91DC-1FC3C4E47A9B}) (Version: 10.0.60905.0 - Microsoft Corporation) Microsoft Flight Simulator SimConnect Client v10.0.61242.0 (HKLM-x32\...\{85DF6786-66AA-42EE-8616-AE456B07BD99}) (Version: 10.0.61242.0 - Microsoft Corporation) Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 45.0.1 (x86 en-GB) (HKLM-x32\...\Mozilla Firefox 45.0.1 (x86 en-GB)) (Version: 45.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0.1.5918 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MyTraffic Professional 6.0a (HKLM-x32\...\{54837FEE-DD02-49B3-BA89-2C0DE323D804}) (Version: 6.0.1 - MyTraffic) Navigraph Charts 5 (HKLM-x32\...\{97F1794A-C314-4E2D-9127-0B76E9DED18E}) (Version: 5.0.7.0 - Navigraph) Navigraph FMS Data Manager 1.2.3.0308 (HKLM-x32\...\{7E4D5716-374A-4DB6-90CF-D2AEB67362CE}_is1) (Version: 1.2.3.0308 - Navigraph) NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Driver 361.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 361.91 - NVIDIA Corporation) NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation) NVIDIA Graphics Driver 361.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 361.91 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) OpusFSI for FSX, FSX-SE, and Prepar3D Flight Simulators (HKLM-x32\...\{12A4FE85-A32A-4F1F-A37A-E0EF85FA3CC3}) (Version: 4.65.3 - Opus Software Limited) PMDG 737 8900 NGX Base Package P3D (HKLM-x32\...\{0EA92925-36E7-40CB-A714-118AB046099B}) (Version: 1.10.6461 - PMDG Simulations, LLC.) PowerChute Personal Edition 3.0.2 (HKLM-x32\...\{8ED262EE-FC73-47A9-BB86-D92223246881}) (Version: 3.0.2 - Schneider Electric) Prepar3D v3 Academic (HKLM-x32\...\{98d538ce-2e29-4c9e-8d9b-c73a3c4af6a1}) (Version: 3.1.2.15831 - Lockheed Martin) Prepar3D v3 Academic Client (HKLM-x32\...\{213CD124-D688-436D-9BD8-FFB56DC830BE}) (Version: 3.2.2.16659 - Lockheed Martin) Prepar3D v3 Content (HKLM-x32\...\{CE8E65FC-9BE3-438A-8449-BCD5E8ACC6BE}) (Version: 3.2.3.16769 - Lockheed Martin) Prepar3D v3 Scenery (HKLM-x32\...\{3F2CF900-1437-4F93-9ABF-07B8B80E37DA}) (Version: 3.1.2.15831 - Lockheed Martin) PrivateTunnel (HKLM-x32\...\PrivateTunnel) (Version: 2.5.5.8 - OpenVPN Technologies) PRO-ATC/X version 1.7.2.0 (HKLM-x32\...\PRO-ATC/X_is1) (Version: 1.7.2.0 - ) RealAir Legacy V2 P3D3 (HKLM-x32\...\Legacy V22.05.19 P3D3) (Version: 2.05.19 - RealAir Simulations) RealAir Turbine Duke V2 P3D3 (HKLM-x32\...\Turbine Duke V22.10.08 P3D3) (Version: 2.10.08 - RealAir Simulations) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.43.321.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.) RemoteFlight Server (HKU\S-1-5-21-778663071-3000615460-497893972-1000\...\99bc7aed10c867fe) (Version: 1.0.0.44 - Inputwish) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.32.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.32.0 - Renesas Electronics Corporation) Hidden Revo Uninstaller Pro 3.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.5 - VS Revo Group, Ltd.) REX 4 - Texture Direct - SP6 (HKLM-x32\...\{255E36DE-A4C2-452F-B9CF-E128E0F1813A}) (Version: 4.6.2016.0210 - REX Game Studios, LLC.) REX 4 - Texture Direct - SP6 Hotfix 1 (HKLM-x32\...\{B2004DB8-745F-45F7-A327-E6FCA8341B1B}) (Version: 4.6.2016.0314 - REX Game Studios, LLC.) REX Download Manager (HKLM-x32\...\{EB29E39C-7D9B-44B3-A46E-58B7E2B4DDE6}) (Version: 1.5.2016.0203 - REX Game Studios, LLC.) REX Soft Clouds - SP3 (HKLM-x32\...\{6743C1E7-6E56-4774-8D88-5C5201748CC8}) (Version: 4.3.2016.0210 - REX Game Studios, LLC.) REX Soft Clouds - SP3 Hotfix 1 (HKLM-x32\...\REX Soft Clouds - SP3 Hotfix 1 4.3.2016.0314) (Version: 4.3.2016.0314 - REX Game Studios, LLC.) REX Soft Clouds - SP3 Hotfix 1 (x32 Version: 4.3.2016.0314 - REX Game Studios, LLC.) Hidden ScanSoft OmniPage SE 4 (HKLM-x32\...\{BF6E1DCB-4E59-4843-8174-122192B4C1E9}) (Version: 15.2.0020 - Nuance Communications, Inc.) SeaTools for Windows 1.4.0.4 (HKLM-x32\...\SeaTools for Windows) (Version: 1.4.0.4 - Seagate Technology) SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Syncios version 5.0.2 (HKLM-x32\...\{068A5D84-8419-4BDE-9689-FE65F412EFBB}_is1) (Version: 5.0.2 - Anvsoft, Inc.) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.56083 - TeamViewer) TIDAL (HKLM-x32\...\TIDAL 1.2.0.697) (Version: 1.2.0.697 - TIDAL) TIDAL (x32 Version: 1.2.0.697 - TIDAL) Hidden TreeSize Personal V6.2.3 (HKLM-x32\...\TreeSize Personal_is1) (Version: 6.2.3 - JAM Software) UltraSearch V2.0.3 (64 bit) (HKLM\...\UltraSearch_is1) (Version: 2.0.3 - JAM Software) UmmyVideoDownloader (HKLM-x32\...\{E028DBDA-EEE7-48A0-ADF7-D250589A02C5}_is1) (Version: 1.6.0.1 - ) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) VFXCentral (HKLM-x32\...\VFXCentral) (Version: 1.0.0.61 - OldProp Solutions Inc) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.2 - VideoLAN) Watchtower Library 2015 - English (HKLM-x32\...\{F0D4F127-987D-4345-AA96-5699CF14AF35}) (Version: 17.0 - Watchtower Bible and Tract Society of Pennsylvania, Inc.) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {08316FEF-563B-4DD1-A1C6-6B47E8AE6CEF} - System32\Tasks\{3C53C8FF-E516-4D98-864D-A4E6C73C88E7} => pcalua.exe -a "C:\Program Files (x86)\Creative\USB Sound Blaster HD\Program\Setup.exe" -d "C:\Program Files (x86)\Creative\USB Sound Blaster HD\Program" Task: {093F7DC9-11A1-448A-B16B-E88646838FF0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-18] (Google Inc.) Task: {12C79E90-A9CC-42E4-862A-D26E3BEB70FE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-18] (Google Inc.) Task: {1E69312B-D378-49AE-9FC1-24AA59B1CC86} - System32\Tasks\{79E23259-D4C8-4C6D-BC43-BD0C5076F08D} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\Program\Setup.exe Task: {28B81185-C0DA-43BF-A503-BF58DEB50C11} - System32\Tasks\{8AA51621-886D-4A65-85C1-B223581941C0} => pcalua.exe -a C:\Users\Gareth\Downloads\Compressed\VFXCentral\VFXCentral_Setup.exe -d C:\Users\Gareth\Downloads\Compressed\VFXCentral Task: {2C673A39-2460-41B7-AF79-52AB777C30E2} - System32\Tasks\{DDAD9C5B-590A-4CCA-BC13-172752FA2236} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\Console Launcher 3\Entertainment Console\EntC.exe Task: {2D964311-791A-4D18-8C0C-8EF4C25C5636} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {3E963B9F-6255-4120-B07E-1E6D3EBB72F7} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-03-22] (Dropbox, Inc.) Task: {563D4123-C3C6-43AE-9529-6EE297958446} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-03-22] (Dropbox, Inc.) Task: {57A0DB24-BAE1-42EE-B1D4-4398159BC79C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd) Task: {6D614185-929E-4977-B58E-6713A512A41F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {8EE8476B-C456-46D1-B66E-358DEC778FF8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.) Task: {B0896212-6290-4DB4-9C82-A98BFF51DD95} - System32\Tasks\{D45F72E8-BB68-4E28-BDE6-C652F382082A} => C:\Users\Gareth\Downloads\Programs\_Getintopc.com_ATIH2014_trial_en-US.exe [2016-02-16] (Acronis) Task: {B4DE5EB5-478F-4CF0-9A4B-4443BB9FCE9A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-24] (Adobe Systems Incorporated) Task: {BD72F90B-82DA-4003-98E2-FB0D40798F4E} - System32\Tasks\One-Click Optimizer WO12 => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\WO12.exe [2016-01-20] (Ashampoo Development GmbH & Co. KG) Task: {E30C4BDE-1BB8-490B-B7E9-84AD0F6F3C67} - System32\Tasks\{91FD1F86-90F5-4C9A-BB89-90258E2D367D} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\AudioCS\CTAudCS.exe Task: {FA78C9F5-B1A5-4491-B487-313C8FFA9A90} - System32\Tasks\{54D63A48-ECE3-4048-B964-3549F26127DA} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\AudioCS\CTAudCS.exe Task: {FC6DE738-09C3-44F4-B287-50428B60851E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.) Task: {FEAFE1F4-770E-4F20-9DB7-D8AFD8F9C26A} - System32\Tasks\{D36577A2-C398-493F-84BA-6B617ECC74E5} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\Program\Setup.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\One-Click Optimizer WO12.job => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\WO12.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Orbx\Cleanup_FTXGFreeware.lnk -> F:\Lockheed Martin\Prepar3D v3\ORBX\Scripts\Cleanup_FTXGFreeware.bat () ==================== Loaded Modules (Whitelisted) ============== 2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-12-17 19:38 - 2015-12-17 19:38 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-02-15 14:56 - 2016-02-09 07:41 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-02-15 14:59 - 2015-10-29 13:44 - 00182784 _____ () C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe 2016-02-19 12:06 - 2016-02-17 08:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2016-02-19 12:06 - 2016-02-17 08:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2016-02-15 14:56 - 2016-02-17 08:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-01-23 00:48 - 2016-01-23 00:48 - 01491320 _____ () C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\ovpnagent.exe 2016-02-16 13:59 - 2015-12-10 07:14 - 00249384 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe 2013-10-01 11:26 - 2013-10-01 11:26 - 02810968 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll 2016-02-15 09:35 - 2015-06-01 22:00 - 00102912 _____ () C:\Windows\System32\IccLibDll_x64.dll 2016-02-16 14:00 - 2015-12-10 07:16 - 00253992 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\TrayTipAgent.exe 2016-02-18 17:50 - 2016-01-20 11:25 - 00231248 _____ () C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe 2016-02-16 13:59 - 2015-12-10 07:04 - 00080936 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 01296424 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00060968 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00017448 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00088616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00022568 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CmcTbProxy.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00186408 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCPipeCenter.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00165928 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCAdapt.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00058408 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBInfo.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00015912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCNetTokenProxy.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00108072 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\logsys.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00030760 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DiskSearchImg.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00068136 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\MountImg.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00158248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFile.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00281128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DsImgFile.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00072232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckImg.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00139816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\vhdvmdk.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00037416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\BootDriver.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00769064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00193064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00443944 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidImage.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00148008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumDisk.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00076840 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FatLib.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00207912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSLib.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00111656 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileStorage.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00169512 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudInterface.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00501800 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\StorageMgr.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00024616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\GetDriverInfo.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00020520 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CorrectMbr.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00032296 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00034856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00064040 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\RegLib.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00025128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00059944 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00201768 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00018984 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00136232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\VMConfig.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00020008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidDeviceManager.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00043048 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbDataSwap.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00353832 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceManager.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00027176 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceAdapter.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00138792 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Device.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00146984 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Partition.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00050216 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileSystemAnalyser.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00061992 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FATFileSystemAnalyser.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00089640 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Common.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00056360 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSFileSystemAnalyser.dll 2016-02-16 14:08 - 2014-05-13 13:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2016-02-16 14:08 - 2014-05-13 13:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2016-02-16 14:08 - 2014-05-13 13:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2016-02-16 14:08 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2016-02-16 13:59 - 2015-12-10 07:04 - 00224808 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SmartBackup.dll 2016-02-15 14:56 - 2016-02-17 09:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-12-17 19:39 - 2015-12-17 19:39 - 01040144 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2015-01-20 23:35 - 2015-01-20 23:35 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2015-12-17 19:38 - 2015-12-17 19:38 - 00237328 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll 2016-02-16 14:00 - 2015-12-10 07:16 - 00223272 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\traynet.dll 2016-02-16 14:00 - 2015-12-10 07:16 - 00275496 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\libcurl.dll 2016-02-16 14:00 - 2015-12-10 07:16 - 00118328 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\zlib1.dll 2016-02-16 14:00 - 2015-12-10 07:16 - 00249896 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\uexper.dll 2014-02-04 19:25 - 2014-02-04 19:25 - 00036672 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\qt_icontray_ex.dll 2014-02-04 19:25 - 2014-02-04 19:25 - 00028992 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\thread_pool.dll 2016-03-03 20:32 - 2012-05-14 13:39 - 00043008 _____ () C:\Program Files (x86)\Corsair\K50 Keyboard\hidGetKey.dll 2016-03-22 00:30 - 2016-03-21 23:50 - 00034768 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd 2016-03-23 09:23 - 2016-03-21 23:51 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd 2016-03-23 09:23 - 2016-03-21 23:50 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll 2016-03-22 00:30 - 2016-03-21 23:50 - 00093640 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd 2016-03-22 00:30 - 2016-03-21 23:50 - 00018376 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd 2016-03-22 00:30 - 2016-03-23 01:33 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd 2016-03-23 09:23 - 2016-03-21 23:50 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll 2016-03-22 00:30 - 2016-03-23 01:33 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd 2016-03-22 00:30 - 2016-03-21 23:50 - 00692688 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd 2016-03-22 00:30 - 2016-03-21 23:51 - 00112592 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 01682760 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd 2016-03-22 00:30 - 2016-03-23 01:34 - 00021840 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd 2016-03-23 09:23 - 2016-03-21 23:52 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00114640 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd 2016-03-22 00:30 - 2016-03-23 01:34 - 00021832 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00117056 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd 2016-03-22 00:30 - 2016-03-23 01:34 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd 2016-03-22 00:30 - 2016-03-21 23:50 - 00134608 _____ () C:\Program Files (x86)\Dropbox\Client\_elementtree.pyd 2016-03-23 09:23 - 2016-03-21 23:50 - 00134088 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd 2016-03-23 09:23 - 2016-03-21 23:51 - 00240584 _____ () C:\Program Files (x86)\Dropbox\Client\jpegtran.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd 2016-03-23 09:23 - 2016-03-21 23:52 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll 2016-03-23 09:23 - 2016-03-23 01:33 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd 2016-03-22 00:30 - 2016-03-23 01:34 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd 2016-03-22 00:30 - 2016-03-23 01:34 - 00021824 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32._winffi_kernel32.pyd 2016-03-22 00:30 - 2016-03-23 01:34 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd 2016-03-22 00:30 - 2016-03-23 01:34 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd 2016-03-22 00:30 - 2016-03-21 23:52 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd 2016-03-22 00:30 - 2016-03-23 01:34 - 00022352 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00084280 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL 2016-03-23 09:23 - 2016-03-23 01:33 - 01826096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd 2016-03-22 00:30 - 2016-03-21 23:51 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 03928880 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 01971504 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00531248 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00132912 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00223544 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00158008 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00042808 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd 2016-03-23 09:23 - 2016-03-21 23:54 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll 2016-03-23 09:23 - 2016-03-21 23:54 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll 2016-03-22 00:30 - 2016-03-23 01:34 - 00024904 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00546096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd 2016-03-23 09:23 - 2016-03-23 01:33 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd 2016-03-22 00:30 - 2016-03-21 23:56 - 00697304 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll 2014-02-04 19:28 - 2014-02-04 19:28 - 00420160 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-778663071-3000615460-497893972-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^PrivateTunnel.lnk => C:\Windows\pss\PrivateTunnel.lnk.CommonStartup MSCONFIG\startupreg: EaseUS EPM tray => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe MSCONFIG\startupreg: EaseUS EPM Tray Agent => "C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\TrayPopupE\TrayTipAgentE.exe" MSCONFIG\startupreg: iCloudDrive => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe MSCONFIG\startupreg: iFunBox => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe /tray MSCONFIG\startupreg: Navigraph FMS Data Manager => C:\Program Files (x86)\Navigraph\FMS Data Manager\NGFMSAgent.exe -autostart MSCONFIG\startupreg: SDTray => "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: SpybotPostWindows10UpgradeReInstall => "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe" MSCONFIG\startupreg: SSBkgdUpdate => "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot MSCONFIG\startupreg: Syncios device service => C:\Program Files (x86)\Syncios\SynciosDeviceService.exe MSCONFIG\startupreg: TIDAL => "C:\Program Files (x86)\TIDAL\TIDAL.exe" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{1E2A2D37-AFDF-4517-ADCA-39F546F654FF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{5B77FE15-0622-4D9A-9D82-372256BEF9FC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{BFCB7319-CAC3-4129-9B45-2F3BEF8BFADB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{F692CE5B-1294-418F-8558-AF45BE60923B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{EBE178DD-1AA0-4B25-AD70-6852CA8D73AB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{69BF6D4B-0D7B-40E4-84AC-EE170FC51EE0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{D4ED6B00-4A0F-4DA7-ABAE-2F568E837061}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{7C16042C-1B42-4216-944F-8DD518838654}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{600F7F53-4C96-4ED0-AD6A-ED742656609A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E27DEF1B-E276-4DB1-92D2-92DD90F39324}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{DA1D8147-5414-44E1-A79F-FC9B6CD3077C}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{AFECF834-97D6-4435-B04D-92A5F7D079A0}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{B7F30F9A-2C41-4C77-9620-781B112552E2}] => (Allow) LPort=2869 FirewallRules: [{AB484500-2FA5-4D8D-A136-D19AC1E31BBB}] => (Allow) LPort=1900 FirewallRules: [{0D57E87A-CE83-41E7-9CAE-6582A90A92FC}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe FirewallRules: [{1CD3A595-E127-435D-AEF7-CA53BBA7FF36}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe FirewallRules: [{46FDCCFC-15F3-4C3A-8302-CC8C45B7E7BA}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe FirewallRules: [{AB341366-F239-4709-B52F-5DDE1BA95AA9}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe FirewallRules: [{519E3F68-F401-4737-A700-A0EEAE7BD09A}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe FirewallRules: [{94D37A84-B2F4-4D80-B445-44A25292481A}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe FirewallRules: [{34E21C04-A843-4D27-90A6-7252265FC79B}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{081866F3-46A2-4132-80B6-1A72A960E411}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{8E0B1FF7-8F2D-4B95-86B8-B36697FAD2A5}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{C9B1833A-5CBA-4A18-AAFF-23338CD8755F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{337320FA-ED7F-4CA8-A4E2-30E65E45ED9E}C:\program files (x86)\fswidgets network pack\fswnethost.exe] => (Allow) C:\program files (x86)\fswidgets network pack\fswnethost.exe FirewallRules: [UDP Query User{F6572895-1D8C-4599-B69E-02042B4E79ED}C:\program files (x86)\fswidgets network pack\fswnethost.exe] => (Allow) C:\program files (x86)\fswidgets network pack\fswnethost.exe FirewallRules: [TCP Query User{9B6404EE-5F48-4C35-94A6-378B7BB834B8}C:\users\gareth\downloads\compressed\remoteflightserver\remoteflightserver\remoteflightserver.exe] => (Allow) C:\users\gareth\downloads\compressed\remoteflightserver\remoteflightserver\remoteflightserver.exe FirewallRules: [UDP Query User{5053CDA9-1066-4609-B6D6-72F079D4F88A}C:\users\gareth\downloads\compressed\remoteflightserver\remoteflightserver\remoteflightserver.exe] => (Allow) C:\users\gareth\downloads\compressed\remoteflightserver\remoteflightserver\remoteflightserver.exe FirewallRules: [TCP Query User{E5D5A573-0402-488C-9268-1F31370D377A}C:\users\gareth\appdata\local\apps\2.0\tq22bzj1.97l\v5ckpbvn.q7b\remo..tion_5f383c4b101aca72_0001.0000_b04a1ed958360fff\remoteflightserver.exe] => (Allow) C:\users\gareth\appdata\local\apps\2.0\tq22bzj1.97l\v5ckpbvn.q7b\remo..tion_5f383c4b101aca72_0001.0000_b04a1ed958360fff\remoteflightserver.exe FirewallRules: [UDP Query User{997C1EA6-1A66-4520-AEDA-4ED332C85451}C:\users\gareth\appdata\local\apps\2.0\tq22bzj1.97l\v5ckpbvn.q7b\remo..tion_5f383c4b101aca72_0001.0000_b04a1ed958360fff\remoteflightserver.exe] => (Allow) C:\users\gareth\appdata\local\apps\2.0\tq22bzj1.97l\v5ckpbvn.q7b\remo..tion_5f383c4b101aca72_0001.0000_b04a1ed958360fff\remoteflightserver.exe FirewallRules: [{6CBD7688-D654-44BB-8C99-14D8AB91B9E8}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [{BE979F15-D0CB-4788-BCE7-B0FFFCF841AD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{CC24249D-64F9-47FF-A20C-5805C76173AF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{DF3147DF-80DC-40C6-86A6-6F0865595BAA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{5F9AF26B-A637-4A7B-AD72-F1A000B9D2B2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Restore Points ========================= 17-03-2016 18:38:07 Removed Creative ASIO (USB) 17-03-2016 18:39:53 Installed USB Sound Blaster HD 17-03-2016 18:42:51 Revo Uninstaller Pro's restore point - USB Sound Blaster HD 17-03-2016 18:43:11 Removed USB Sound Blaster HD 17-03-2016 18:57:12 Windows Update 17-03-2016 19:00:21 Restore Operation 19-03-2016 23:45:33 Windows Update 22-03-2016 14:54:08 Configured USB Sound Blaster HD 22-03-2016 15:10:08 Revo Uninstaller Pro's restore point - Creative Media Toolbox 6 (Shared Components) 22-03-2016 16:17:35 Revo Uninstaller Pro's restore point - Creative ASIO (USB) 22-03-2016 16:17:46 Removed Creative ASIO (USB) 22-03-2016 16:18:47 Revo Uninstaller Pro's restore point - Creative Media Toolbox 6 (Shared Components) 22-03-2016 16:54:24 Installed USB Sound Blaster HD 22-03-2016 17:09:11 Installed WaveStudio 7 22-03-2016 17:09:40 Installed Creative Smart Recorder 22-03-2016 17:10:33 Installed Creative Media Toolbox 6 24-03-2016 04:00:14 Windows Update 28-03-2016 14:39:56 Configured USB Sound Blaster HD 28-03-2016 15:00:57 Configured USB Sound Blaster HD 28-03-2016 15:04:25 Revo Uninstaller Pro's restore point - Creative Media Toolbox 6 (Shared Components) 28-03-2016 15:12:17 Configured USB Sound Blaster HD 28-03-2016 15:16:06 Configured USB Sound Blaster HD 28-03-2016 15:22:35 Revo Uninstaller Pro's restore point - Creative System Information 28-03-2016 15:22:44 Removed Creative System Information 28-03-2016 15:28:26 Revo Uninstaller Pro's restore point - Creative Media Toolbox 6 (Shared Components) 28-03-2016 15:43:09 Installed USB Sound Blaster HD 28-03-2016 15:52:51 Removed Creative ASIO (USB) 28-03-2016 15:53:16 Removed Creative System Information 28-03-2016 16:00:23 Configured USB Sound Blaster HD 28-03-2016 16:14:00 Revo Uninstaller Pro's restore point - Creative System Information 28-03-2016 16:14:09 Removed Creative System Information ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/28/2016 10:10:35 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/28/2016 08:24:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/28/2016 07:17:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DllHost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7 Faulting module name: ti_managers.dll, version: 17.0.0.6673, time stamp: 0x52f0f945 Exception code: 0xc0000005 Fault offset: 0x0056c316 Faulting process id: 0x2024 Faulting application start time: 0xDllHost.exe0 Faulting application path: DllHost.exe1 Faulting module path: DllHost.exe2 Report Id: DllHost.exe3 Error: (03/28/2016 07:11:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: explorer.exe, version: 6.1.7601.19135, time stamp: 0x56a1bbe2 Faulting module name: SHELL32.dll, version: 6.1.7601.19135, time stamp: 0x56a1ca0d Exception code: 0xc000041d Fault offset: 0x0000000000050596 Faulting process id: 0x1ad0 Faulting application start time: 0xexplorer.exe0 Faulting application path: explorer.exe1 Faulting module path: explorer.exe2 Report Id: explorer.exe3 Error: (03/28/2016 07:10:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: explorer.exe, version: 6.1.7601.19135, time stamp: 0x56a1bbe2 Faulting module name: SHELL32.dll, version: 6.1.7601.19135, time stamp: 0x56a1ca0d Exception code: 0xc000041d Fault offset: 0x0000000000050596 Faulting process id: 0x828 Faulting application start time: 0xexplorer.exe0 Faulting application path: explorer.exe1 Faulting module path: explorer.exe2 Report Id: explorer.exe3 Error: (03/28/2016 07:09:06 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80004005 Error: (03/28/2016 05:03:25 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/28/2016 04:14:00 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied. . This is often caused by incorrect security settings in either the writer or requestor process. Operation: Gathering Writer Data Context: Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220} Writer Name: System Writer Writer Instance ID: {b09f70e4-7da6-413b-8c2f-1f92eabd9178} Error: (03/28/2016 04:02:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/28/2016 03:45:08 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (03/28/2016 10:01:53 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk4\DR4. Error: (03/28/2016 10:01:53 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk4\DR4. Error: (03/28/2016 10:01:52 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk4\DR4. Error: (03/28/2016 08:37:26 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C} Error: (03/28/2016 06:44:50 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk5\DR5. Error: (03/28/2016 06:44:49 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk5\DR5. Error: (03/28/2016 06:44:48 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk5\DR5. Error: (03/26/2016 11:37:21 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk4\DR4. Error: (03/26/2016 09:20:32 AM) (Source: VDS Basic Provider) (EventID: 1) (User: ) Description: Unexpected failure. Error code: D@01010004 Error: (03/25/2016 10:57:04 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk4\DR4. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-2700K CPU @ 3.50GHz Percentage of memory in use: 30% Total physical RAM: 8089.14 MB Available physical RAM: 5661.66 MB Total Virtual: 16176.48 MB Available Virtual: 13368.42 MB ==================== Drives ================================ Drive c: (System) (Fixed) (Total:300.95 GB) (Free:152.93 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: (Repair disc Windows Setup 64-bit) (CDROM) (Total:0.16 GB) (Free:0 GB) UDF Drive e: (Spare) (Fixed) (Total:119.24 GB) (Free:110.43 GB) NTFS Drive f: (P3D) (Fixed) (Total:238.46 GB) (Free:87.52 GB) NTFS Drive g: (Samsung USB) (Removable) (Total:29.86 GB) (Free:29.16 GB) FAT32 Drive j: (Seagate Expansion Drive) (Fixed) (Total:1863.02 GB) (Free:1049.47 GB) NTFS Drive l: (SANDISK) (Removable) (Total:28.95 GB) (Free:28.75 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D2A4F91E) Partition 1: (Active) - (Size=300.9 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: 8517ACC9) Partition 1: (Not Active) - (Size=238.5 GB) - (Type=OF Extended) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: B1D917C3) Partition 2: (Active) - (Size=119.2 GB) - (Type=05) ======================================================== Disk: 3 (Size: 1863 GB) (Disk ID: 909CEF0A) Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS) ======================================================== Disk: 4 (MBR Code: Windows 7 or 8) (Size: 29 GB) (Disk ID: 0FD48FA8) Partition 1: (Active) - (Size=29 GB) - (Type=0C) ======================================================== Disk: 5 (MBR Code: Windows XP) (Size: 29.9 GB) (Disk ID: C3072E18) Partition 1: (Not Active) - (Size=29.9 GB) - (Type=0C) ==================== End of Addition.txt ============================