Additional scan result of Farbar Recovery Scan Tool (x86) Version: 29-06-2016 Ran by user (2016-06-30 10:12:05) Running from C:\Users\user\Desktop Microsoft Windows 7 Enterprise Service Pack 1 (X86) (2016-05-16 05:02:22) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-482811646-3738513467-4202334608-500 - Administrator - Disabled) Guest (S-1-5-21-482811646-3738513467-4202334608-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-482811646-3738513467-4202334608-1002 - Limited - Enabled) user (S-1-5-21-482811646-3738513467-4202334608-1000 - Administrator - Enabled) => C:\Users\user ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ESET NOD32 Antivirus 4.2 (Enabled - Up to date) {77DEAFED-8149-104B-25A1-21771CA47CD1} AS: ESET NOD32 Antivirus 4.2 (Enabled - Up to date) {CCBF4E09-A773-1FC5-1F11-1A056723366C} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 4nec2 full version 5.8.16 (HKLM\...\4nec2_is1) (Version: - 4nec2@gmx.net (Use "4nec2 modeller" as the subject)) 7-Zip 4.65 (HKLM\...\7-Zip) (Version: - ) Adobe Acrobat Reader DC (HKLM\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{C33568B1-DDE6-14E2-556B-E00F1B63839A}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Apple Application Support (32-bit) (HKLM\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{15A0A9A6-6CF0-4EEE-8E12-096B33F92CA7}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) ASIO4ALL (HKLM\...\ASIO4ALL) (Version: 2.12 - Michael Tippach) Audacity 2.1.2 (HKLM\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) Bonjour (HKLM\...\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}) (Version: 3.1.0.1 - Apple Inc.) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0190 - Disc Soft Ltd) Dolby Advanced Audio v2 (HKLM\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) ESET NOD32 Antivirus (HKLM\...\{A66242A1-9101-425D-9BE5-D19A50E1D0D8}) (Version: 4.2.71.2 - ESET, spol. s r.o.) FinePrint (HKLM\...\FinePrint) (Version: 7.21 - FinePrint Software, LLC) FL Studio 12 (HKLM\...\FL Studio 12) (Version: - Image-Line) FL Studio ASIO (HKLM\...\FL Studio ASIO) (Version: - Image-Line) foobar2000 v1.3.10 (HKLM\...\foobar2000) (Version: 1.3.10 - Peter Pawlowski) Google Chrome (HKLM\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.) Google Update Helper (Version: 1.3.21.115 - Google Inc.) Hidden Google Update Helper (Version: 1.3.30.3 - Google Inc.) Hidden HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.14.265 - SurfRight B.V.) HP Deskjet 2540 series Basic Device Software (HKLM\...\{516046F1-6F81-4967-8E63-32273AE2A929}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) IL Download Manager (HKLM\...\IL Download Manager) (Version: - Image-Line) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4352 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.2.54 - Intel Corporation) Internet Download Manager (HKLM\...\Internet Download Manager) (Version: - Tonec Inc.) iTunes (HKLM\...\{7C14EFF4-6BD4-4398-AF8D-41F40F8D71F1}) (Version: 12.4.1.6 - Apple Inc.) Lenovo EasyCamera (HKLM\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10260 - Realtek Semiconductor Corp.) LINE (HKU\S-1-5-21-482811646-3738513467-4202334608-1000\...\LINE) (Version: 4.7.0.1027 - LINE Corporation) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{2af972c7-13b0-4978-92a8-fee26a4fb4e9}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mozilla Firefox 46.0.1 (x86 en-US) (HKLM\...\Mozilla Firefox 46.0.1 (x86 en-US)) (Version: 46.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 46.0.1 - Mozilla) MPC-HC 1.7.10 (HKLM\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.10 - MPC-HC Team) OEM Application Profile (HKLM\...\{1D464EFF-EC8B-F225-2F74-F74143200DDF}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) pdfFactory Pro (HKLM\...\pdfFactory Pro) (Version: 4.80 - FinePrint Software, LLC) PowerXpressHybrid (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden PX Profile Update (Version: 1.00.1. - AMD) Hidden Qualcomm Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.78.1218.2013 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7383 - Realtek Semiconductor Corp.) Stardew Valley (HKLM\...\1453375253_is1) (Version: 2.6.0.8 - GOG.com) The Sims 4 (HKLM\...\The Sims 4_R.G. Mechanics_is1) (Version: - R.G. Mechanics, ProZorg_tm) WinRAR 5.31 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{00BB2763-6A77-11D0-A535-00C04FD7D062}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{00EEBF57-477D-4084-9921-7AB3C2C9459D}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{03C036F1-A186-11D0-824A-00AA005B4383}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{08244EE6-92F0-47F2-9FC9-929BAA2E7235}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{0AF10CEC-2ECD-4B92-9581-34F6AE0637F3}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{0E5AAE11-A475-4C5B-AB00-C66DE400274E}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{16F3DD56-1AF5-4347-846D-7C10C4192619}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{1F486A52-3CB1-48FD-8F50-B8DC300D9F9D}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{2916C86E-86A6-43FE-8112-43ABE6BF8DCC}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{35786D3C-B075-49B9-88DD-029876E11C01}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{4E77131D-3629-431C-9818-C5679DC83E81}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{640167B4-59B0-47A6-B335-A6B3C0695AEA}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{76765B11-3F95-4AF2-AC9D-EA55D8994F1A}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{807C1E6C-1D00-453F-B920-B61BB7CDD997}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{82C588E7-E54B-408C-9F8C-6AF9ADF6F1E9}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{9113A02D-00A3-46B9-BC5F-9C04DADDD5D7}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{920E6DB1-9907-4370-B3A0-BAFC03D81399}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{99FD978C-D287-4F50-827F-B2C658EDA8E7}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{AE054212-3535-4430-83ED-D501AA6680E6}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{B155BDF8-02F0-451E-9A26-AE317CFD7779}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{B8967F85-58AE-4F46-9FB2-5D7904798F4B}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{E88DCCE0-B7B3-11D1-A9F0-00AA0060FA31}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{EDB5F444-CB8D-445A-A523-EC5AB6EA33C7}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}\InprocServer32 -> no filepath CustomCLSID: HKU\S-1-5-21-482811646-3738513467-4202334608-1000_Classes\CLSID\{FE841493-835C-4FA3-B6CC-B4B2D4719848}\InprocServer32 -> no filepath ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {21D1E77D-54AB-4A19-AD46-1CCA010490EC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-05-16] (Google Inc.) Task: {7DE3B0B6-E323-4D78-9DCB-E3BC235B09EC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-05-16] (Google Inc.) Task: {8728C205-79FD-4C95-AE0B-2EB6A707B168} - \AutoKMS -> No File <==== ATTENTION Task: {A835762E-5988-4CA5-B2D8-17B5C1E8D363} - System32\Tasks\{373BFA6F-224A-4176-99B6-BE177D6B4E04} => pcalua.exe -a C:\4nec2\exe\4nec2.exe Task: {B3DAFB83-C6E4-47C8-9FD9-F8AE344082A5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated) Task: {E882E464-FA44-4F52-8F28-A179C0FF54F8} - System32\Tasks\ESET Windows 10 upgrade – Refresh settings => C:\Program Files\Common Files\AV\ESET NOD32 Antivirus 4.2\upgrade.exe [2016-06-29] (ESET) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2010-01-30 02:41 - 2010-01-30 02:41 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2010-03-24 21:17 - 2010-03-24 21:17 - 08794464 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll 2016-06-06 14:25 - 2016-04-22 01:08 - 00080184 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-06-06 14:25 - 2016-04-22 01:08 - 01047864 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-05-16 22:40 - 2013-10-01 18:36 - 00075808 ____N () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe 2015-12-21 18:39 - 2015-12-21 18:39 - 00415720 _____ () C:\Windows\system32\igfxTray.exe 2016-06-18 14:01 - 2016-06-15 16:15 - 01745560 _____ () C:\Program Files\Google\Chrome\Application\51.0.2704.103\libglesv2.dll 2016-06-18 14:01 - 2016-06-15 16:15 - 00091288 _____ () C:\Program Files\Google\Chrome\Application\51.0.2704.103\libegl.dll 2016-06-18 14:01 - 2016-06-15 16:15 - 17599640 _____ () C:\Program Files\Google\Chrome\Application\51.0.2704.103\PepperFlash\pepflashplayer.dll 2016-06-06 14:25 - 2016-04-22 01:07 - 00244024 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxslt.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) HKU\S-1-5-21-482811646-3738513467-4202334608-1000\Software\Classes\.exe: => <===== ATTENTION HKU\S-1-5-21-482811646-3738513467-4202334608-1000\Software\Classes\.bat: => <===== ATTENTION HKU\S-1-5-21-482811646-3738513467-4202334608-1000\Software\Classes\regfile: regedit.exe "%1" <===== ATTENTION HKU\S-1-5-21-482811646-3738513467-4202334608-1000\Software\Classes\.reg: => <===== ATTENTION ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 09:04 - 2009-06-11 04:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-482811646-3738513467-4202334608-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{75D67769-2DB9-45D6-909E-BAE17733F175}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{B8BBE3CD-BE41-4415-86D4-569DC3F8CEB7}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{D7C6DDD9-12D2-4BA4-8957-7531CCD5C66E}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\DeviceSetup.exe FirewallRules: [{0A04B670-BBBB-40C1-80EE-68BDD71C022E}] => (Allow) LPort=5357 FirewallRules: [{9570E34A-7BE6-4C28-9FBF-629DBC61A13E}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{986C8E03-D980-458D-910F-E78070BF14C2}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{91EE8D36-0442-4247-855B-6847BA7047E6}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [{1E4DED65-D50C-4374-B412-554E21F0920E}] => (Allow) C:\Users\user\AppData\Local\LINE\bin\4.7.0.1027\LINE.exe FirewallRules: [{B296DC72-55C2-4F0A-818F-DC70D7802760}] => (Allow) C:\Users\user\AppData\Local\LINE\bin\4.7.0.1027\LINE.exe FirewallRules: [{8DD765F7-1BD3-4F70-82C5-14210D3A1D67}] => (Allow) C:\Users\user\AppData\Local\LINE\bin\4.7.0.1027\LineUpdater.exe FirewallRules: [{1BB9E5D3-80D8-4764-9D1F-31AD4773BE4E}] => (Allow) C:\Users\user\AppData\Local\LINE\bin\4.7.0.1027\LineUpdater.exe FirewallRules: [{D41036E1-146C-40DB-8D9D-967339940194}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{3EDD5A12-2EA3-45C7-BA70-DCA19AF37004}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{73B801BF-E06B-426C-AFF5-E1C6509962E7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{49C70D57-E605-4009-9E57-95F8F62D7802}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{BE4D319B-B6B6-49D1-B3D7-857FDE0AFA60}] => (Allow) C:\Program Files\iTunes\iTunes.exe StandardProfile\AuthorizedApplications: [C:\Program Files\Orbitdownloader\orbitdm.exe] => Enabled:Orbit StandardProfile\AuthorizedApplications: [C:\Program Files\Orbitdownloader\orbitnet.exe] => Enabled:Orbit ==================== Restore Points ========================= 30-06-2016 08:47:02 End of disinfection ==================== Faulty Device Manager Devices ============= Name: SM Bus Controller Description: SM Bus Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Video Controller Description: Video Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: PCI Device Description: PCI Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/30/2016 09:51:38 AM) (Source: Office Software Protection Platform Service) (EventID: 1001) (User: ) Description: The Software Protection service failed to start. 0x80070005 14.0.370.400 Error: (06/30/2016 09:51:38 AM) (Source: Office Software Protection Platform Service) (EventID: 1001) (User: ) Description: The Software Protection service failed to start. 0x80070005 14.0.370.400 Error: (06/30/2016 09:36:35 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/30/2016 09:36:34 AM) (Source: Office Software Protection Platform Service) (EventID: 1001) (User: ) Description: The Software Protection service failed to start. 0x80070005 14.0.370.400 Error: (06/30/2016 09:05:41 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/30/2016 09:05:40 AM) (Source: Office Software Protection Platform Service) (EventID: 1001) (User: ) Description: The Software Protection service failed to start. 0x80070005 14.0.370.400 Error: (06/30/2016 08:47:02 AM) (Source: VSS) (EventID: 8194) (User: ) Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied. . This is often caused by incorrect security settings in either the writer or requestor process. Operation: Gathering Writer Data Context: Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220} Writer Name: System Writer Writer Instance ID: {f211ca89-2a51-4ec5-8206-055bb993611b} Error: (06/30/2016 08:30:11 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/30/2016 08:30:00 AM) (Source: Office Software Protection Platform Service) (EventID: 1001) (User: ) Description: The Software Protection service failed to start. 0x80070005 14.0.370.400 Error: (06/30/2016 08:21:43 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (06/30/2016 09:51:38 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Office Software Protection Platform service terminated with the following error: %%5 = Access is denied. Error: (06/30/2016 09:51:38 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Office Software Protection Platform service terminated with the following error: %%5 = Access is denied. Error: (06/30/2016 09:36:34 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Office Software Protection Platform service terminated with the following error: %%5 = Access is denied. Error: (06/30/2016 09:06:32 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: ) Description: WMPNetworkSvc0x80004005 Error: (06/30/2016 09:05:40 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Office Software Protection Platform service terminated with the following error: %%5 = Access is denied. Error: (06/30/2016 08:30:00 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Office Software Protection Platform service terminated with the following error: %%5 = Access is denied. Error: (06/30/2016 08:21:40 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Office Software Protection Platform service terminated with the following error: %%5 = Access is denied. Error: (06/30/2016 08:02:25 AM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: The HitmanPro 3.7 Crusader (Boot) service terminated with service-specific error %%0 = The operation completed successfully. . Error: (06/30/2016 08:01:20 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Office Software Protection Platform service terminated with the following error: %%5 = Access is denied. Error: (06/30/2016 07:51:51 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Office Software Protection Platform service terminated with the following error: %%5 = Access is denied. CodeIntegrity: =================================== Date: 2016-06-28 12:29:04.525 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 12:24:04.745 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 12:23:43.702 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 12:23:24.535 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 12:22:50.312 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 12:07:35.578 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 12:07:04.026 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 12:05:02.383 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 12:03:36.842 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 11:58:37.024 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\comdlg32.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz Percentage of memory in use: 88% Total physical RAM: 1966.94 MB Available physical RAM: 221.34 MB Total Virtual: 3933.88 MB Available Virtual: 1935.34 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:224.51 GB) (Free:158.54 GB) NTFS Drive d: () (Fixed) (Total:241.15 GB) (Free:61.2 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D9FA2484) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=224.5 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=241.2 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================