Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

I removed some malware from Chrome, but not sure if completely gone


  • Please log in to reply

#1
adjc98

adjc98

    Member

  • Member
  • PipPip
  • 29 posts

Hello,

 

I removed some malware from Chrome that kept replicating when I deleted it.  I used Malwarebytes, but it seemed to keep coming back.

 

It kept saying that it had pup.optional.mindspark.  I used some other malware cleaners like hitman pro and Adcleaner.  Each of them found things that Malwarebytes had not.

 

Anyway, the computer is also blue screening a few times a day.  I think it might be related to the malware possibly.

 

Can you look at the logs produced to see if there is something still hanging around?

 

Thank You!

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-07-2016
Ran by Mike (administrator) on MIKEOFFICE (28-07-2016 21:03:56)
Running from C:\Users\Mike\Desktop
Loaded Profiles: Mike (Available Profiles: Mike)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe
(Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\agent.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Carbonite, Inc.) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\natspeak.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\NaturallySpeaking13\dgnuiasvr.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\NaturallySpeaking13\x64\dgnuiasvr_x64.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\dnsspserver.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\NaturallySpeaking13\dragonbar.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
(Relational Systems, Inc.) C:\Program Files (x86)\Relational Systems\WinSearch\WSConsole.exe
(Relational Systems, Inc.) C:\Program Files (x86)\Relational Systems\WinSearch\wsmain.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Relational Systems, Inc.) C:\Program Files (x86)\Relational Systems\WinSearch\SEARCH.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.EXE
(Microsoft Corporation) C:\Windows\splwow64.exe
(Carbonite, Inc. (www.carbonite.com)) C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\winword.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [287592 2014-02-26] (Intel Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2068856 2011-10-12] (Flexera Software LLC.)
HKLM-x32\...\Run: [DNS7reminder] => "C:\Program Files (x86)\Nuance\NaturallySpeaking13\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\NaturallySpeaking13\Ereg.ini"
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Carbonite Backup] => C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe [1103056 2016-03-15] (Carbonite, Inc.)
HKU\S-1-5-21-255563057-703633522-3626342054-1000\...\Run: [BitTorrent Sync] => "C:\Program Files (x86)\BitTorrent Sync\BTSync.exe"  /MINIMIZED
HKU\S-1-5-21-255563057-703633522-3626342054-1000\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2068856 2011-10-12] (Flexera Software LLC.)
HKU\S-1-5-21-255563057-703633522-3626342054-1000\...\Run: [HP Officejet Pro 8600 (NET)] => C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
ShellIconOverlayIdentifiers: [ Carbonite.Green] -> {95A27763-F62A-4114-9072-E81D87DE3B68} => C:\Program Files\Carbonite\Carbonite Backup\CarboniteNSE.dll [2016-03-15] (Carbonite, Inc.)
ShellIconOverlayIdentifiers: [ Carbonite.Partial] -> {E300CD91-100F-4E67-9AF3-1384A6124015} => C:\Program Files\Carbonite\Carbonite Backup\CarboniteNSE.dll [2016-03-15] (Carbonite, Inc.)
ShellIconOverlayIdentifiers: [ Carbonite.Yellow] -> {5E529433-B50E-4bef-A63B-16A6B71B071A} => C:\Program Files\Carbonite\Carbonite Backup\CarboniteNSE.dll [2016-03-15] (Carbonite, Inc.)
ShellIconOverlayIdentifiers-x32: [ Carbonite.Green] -> {95A27763-F62A-4114-9072-E81D87DE3B68} => C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteNSE.dll [2016-03-15] (Carbonite, Inc.)
ShellIconOverlayIdentifiers-x32: [ Carbonite.Partial] -> {E300CD91-100F-4E67-9AF3-1384A6124015} => C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteNSE.dll [2016-03-15] (Carbonite, Inc.)
ShellIconOverlayIdentifiers-x32: [ Carbonite.Yellow] -> {5E529433-B50E-4bef-A63B-16A6B71B071A} => C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteNSE.dll [2016-03-15] (Carbonite, Inc.)
Startup: C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dragon NaturallySpeaking.lnk [2015-06-10]
ShortcutTarget: Dragon NaturallySpeaking.lnk -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\natspeak.exe (Nuance Communications, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
Tcpip\..\Interfaces\{178B275B-3F19-45DF-88A4-66173AC9319F}: [DhcpNameServer] 209.18.47.61 209.18.47.62
Tcpip\..\Interfaces\{4DE6AF7D-E347-4566-AFD2-67437F3FC400}: [DhcpNameServer] 209.18.47.61 209.18.47.62
 
Internet Explorer:
==================
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-06-14] (Microsoft Corporation)
BHO: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\x64\dgnriaie_x64.dll [2014-07-23] (Nuance Communications, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2016-06-14] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-06-14] (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated)
BHO-x32: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\dgnriaie.dll [2014-07-23] (Nuance Communications, Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-06-14] (Microsoft Corporation)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation.)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-19] (Microsoft Corporation)
 
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: nuance.com/DgnRia2_x86_64 -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\x64\npDgnRia2_x64.dll [2014-07-23] (Nuance Communications, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-05-05] (Microsoft Corporation)
FF Plugin-x32: nuance.com/DgnRia2 -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\npDgnRia2.dll [2014-07-23] (Nuance Communications, Inc.)
FF Plugin HKU\S-1-5-21-255563057-703633522-3626342054-1000: SkypePlugin -> C:\Users\Mike\AppData\Local\SkypePlugin\7.12.0.55\npGatewayNpapi.dll [2015-12-08] (Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-255563057-703633522-3626342054-1000: SkypePlugin64 -> C:\Users\Mike\AppData\Local\SkypePlugin\7.12.0.55\npGatewayNpapi-x64.dll [2015-12-08] (Skype Technologies S.A.)
 
Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://google.com/","hxxp://www.foxnews.com/"
CHR Profile: C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-04]
CHR Extension: (Google Docs) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-04]
CHR Extension: (Google Drive) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (Skype Calling) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2016-01-05]
CHR Extension: (YouTube) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Google Search) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Google Sheets) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-04]
CHR Extension: (Google Docs Offline) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (MapsGalaxy) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijjnmdphpnlnelhbhefnfmimenjgbfcn [2016-07-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-04]
CHR Extension: (MyTransitGuide) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\npmoikddpdgbhgbkjgjemncoegpojpng [2016-07-15]
CHR Extension: (Gmail) - C:\Users\Mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-04]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3189488 2016-07-02] (Microsoft Corporation)
R2 DragonLoggerService; C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe [137280 2014-07-23] (Nuance Communications, Inc.)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89840 2015-03-28] (Hewlett-Packard Company)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-02-26] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [345864 2015-03-19] (Intel Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation)
R2 MSSQLSERVER; c:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [62382256 2015-03-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation)
S2 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [24576 2015-05-07] (Realtek Semiconductor.) [File not signed]
S4 SQLSERVERAGENT; c:\Program Files\Microsoft SQL Server\MSSQL10_50.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [442536 2015-03-30] (Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-05-05] ()
R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [488216 2015-05-06] (Intel Corporation)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2014-02-26] (Intel Corporation)
R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-01-19] ()
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation)
S4 RsFx0153; C:\Windows\System32\DRIVERS\RsFx0153.sys [322736 2015-03-30] (Microsoft Corporation)
S3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam620.sys [58512 2015-05-05] (Realtek Corporation)
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-07-28 21:03 - 2016-07-28 21:04 - 00016872 _____ C:\Users\Mike\Desktop\FRST.txt
2016-07-28 21:03 - 2016-07-28 21:03 - 00000000 ____D C:\FRST
2016-07-28 21:02 - 2016-07-28 21:01 - 02394112 _____ (Farbar) C:\Users\Mike\Desktop\FRST64.exe
2016-07-28 21:01 - 2016-07-28 21:01 - 02394112 _____ (Farbar) C:\Users\Mike\Downloads\FRST64.exe
2016-07-27 18:30 - 2016-07-27 18:30 - 03157824 _____ C:\Users\Mike\Desktop\MIKEOFFICE-Wed_07_27_2016_182621_83.zip
2016-07-26 16:22 - 2016-07-26 16:22 - 00117869 _____ C:\Users\Mike\Downloads\Resume_-_en.2016.2.pdf
2016-07-26 15:51 - 2016-07-26 15:51 - 00134650 _____ C:\Users\Mike\Downloads\Resume_-_Vargas_Jeffrey.pdf
2016-07-24 17:32 - 2016-07-24 17:32 - 00000000 ____D C:\Users\Mike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crucial Storage Executive
2016-07-24 17:32 - 2016-07-24 17:32 - 00000000 ____D C:\Program Files\Crucial
2016-07-24 17:30 - 2016-07-24 17:30 - 172700055 _____ C:\Users\Mike\Downloads\storage-executive-win-64.zip
2016-07-24 17:30 - 2016-07-24 17:30 - 00000000 ____D C:\Users\Mike\Downloads\storage-executive-win-64
2016-07-20 03:00 - 2016-07-20 03:00 - 00000000 ____D C:\Windows\EOONotify
2016-07-15 23:23 - 2016-07-15 23:23 - 00000000 ____D C:\Program Files\HitmanPro
2016-07-15 23:22 - 2016-07-15 23:28 - 00000000 ____D C:\ProgramData\HitmanPro
2016-07-15 23:22 - 2016-07-15 23:22 - 11438608 _____ (SurfRight B.V.) C:\Users\Mike\Downloads\hitmanpro_x64.exe
2016-07-15 23:22 - 2016-07-15 23:22 - 11438608 _____ (SurfRight B.V.) C:\Users\Mike\Downloads\hitmanpro_x64 (1).exe
2016-07-15 23:08 - 2016-07-15 23:11 - 00000000 ____D C:\AdwCleaner
2016-07-15 23:05 - 2016-07-15 23:05 - 03712064 _____ C:\Users\Mike\Downloads\adwcleaner_5.201.exe
2016-07-15 22:46 - 2016-07-15 22:53 - 00036270 _____ C:\Users\Mike\Desktop\CHKDSKResults.txt
2016-07-13 04:15 - 2016-06-25 20:35 - 00041704 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-07-13 04:15 - 2016-06-25 20:27 - 01208320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-07-13 04:15 - 2016-06-25 20:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-07-13 04:15 - 2016-06-25 20:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-07-13 04:15 - 2016-06-25 20:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2016-07-13 04:15 - 2016-06-25 20:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2016-07-13 04:15 - 2016-06-25 20:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2016-07-13 04:15 - 2016-06-25 15:54 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2016-07-13 04:15 - 2016-06-25 15:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2016-07-13 04:15 - 2016-06-25 15:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2016-07-13 04:15 - 2016-06-25 15:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2016-07-13 04:15 - 2016-06-25 15:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2016-07-13 04:15 - 2016-06-22 09:06 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2016-07-13 04:15 - 2016-06-17 14:24 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-07-13 04:15 - 2016-06-17 14:24 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-07-13 04:15 - 2016-06-17 14:24 - 00544256 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-07-13 04:15 - 2016-06-17 14:24 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-07-13 04:15 - 2016-06-17 14:24 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-07-13 04:15 - 2016-06-17 14:24 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-07-13 04:15 - 2016-06-14 11:03 - 03217408 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-07-08 15:12 - 2016-07-08 15:12 - 00124079 _____ C:\Users\Mike\Downloads\Copeland-resume.pdf
2016-07-08 11:47 - 2016-07-08 11:47 - 00359822 _____ C:\Users\Mike\Downloads\CV-MITUL1-1.pdf
2016-07-05 17:15 - 2016-07-05 17:15 - 00510169 _____ C:\Users\Mike\Downloads\BILL_BOSCARINO_03-21-2016_500k.pdf
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-07-28 21:04 - 2015-05-11 08:53 - 00000000 ____D C:\ProgramData\TEMP
2016-07-28 20:26 - 2015-05-04 23:35 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-28 20:26 - 2015-05-04 23:35 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-28 20:21 - 2015-05-04 23:35 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-07-28 20:21 - 2015-05-04 23:35 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-07-28 20:16 - 2009-07-14 00:45 - 00018560 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-28 20:16 - 2009-07-14 00:45 - 00018560 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-27 18:45 - 2015-05-05 00:15 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-07-27 15:47 - 2009-07-14 01:13 - 00007312 _____ C:\Windows\system32\PerfStringBackup.INI
2016-07-27 15:44 - 2015-05-05 18:55 - 00000000 __SHD C:\Users\Mike\IntelGraphicsProfiles
2016-07-27 15:42 - 2015-05-08 03:57 - 00000000 ____D C:\Windows\Minidump
2016-07-27 15:42 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072716-3946-01.dmp
2016-07-27 15:42 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-07-27 15:25 - 2010-11-20 23:27 - 00504488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-07-27 09:40 - 2015-05-11 08:57 - 00001715 _____ C:\Users\Mike\AppData\Roaming\SAS7_000.DAT
2016-07-27 02:51 - 2015-05-05 20:05 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-07-27 02:51 - 2015-05-05 20:00 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-07-27 02:50 - 2015-05-05 02:23 - 00320296 ____N C:\Windows\Minidump\072716-3712-01.dmp
2016-07-26 16:44 - 2009-07-14 01:08 - 00032556 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-07-25 15:28 - 2015-05-05 02:23 - 00318440 ____N C:\Windows\Minidump\072516-3759-01.dmp
2016-07-25 04:46 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072516-4321-01.dmp
2016-07-24 23:29 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072416-3681-01.dmp
2016-07-24 17:52 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\oobe
2016-07-24 17:45 - 2016-06-18 19:40 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-07-24 17:01 - 2015-05-06 18:09 - 00000000 ____D C:\Users\Mike\Desktop\Winsearch Backups
2016-07-22 21:15 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072216-3822-01.dmp
2016-07-22 16:23 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072216-3853-01.dmp
2016-07-22 06:03 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072216-4399-01.dmp
2016-07-22 05:27 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072216-3993-01.dmp
2016-07-21 21:15 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072116-4446-02.dmp
2016-07-21 20:00 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072116-3775-01.dmp
2016-07-21 16:47 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072116-4446-01.dmp
2016-07-21 10:55 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072116-3868-01.dmp
2016-07-21 06:15 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072116-3806-01.dmp
2016-07-21 00:07 - 2015-05-05 02:23 - 00318824 ____N C:\Windows\Minidump\072116-4461-01.dmp
2016-07-20 16:51 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\072016-4446-01.dmp
2016-07-20 08:23 - 2015-05-05 02:23 - 00318952 ____N C:\Windows\Minidump\072016-3946-01.dmp
2016-07-20 03:00 - 2015-05-05 18:54 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2016-07-20 03:00 - 2015-05-05 18:54 - 00000000 ___SD C:\Windows\system32\GWX
2016-07-19 00:43 - 2015-05-05 02:23 - 00318312 ____N C:\Windows\Minidump\071916-4461-01.dmp
2016-07-18 19:36 - 2015-05-05 02:23 - 00318376 ____N C:\Windows\Minidump\071816-3822-01.dmp
2016-07-17 08:08 - 2015-05-05 02:23 - 00320360 ____N C:\Windows\Minidump\071716-4633-01.dmp
2016-07-15 22:46 - 2015-05-06 18:08 - 00000000 ____D C:\Users\Mike\Desktop\Ryan's Backups and documents for Mikw Gutowski
2016-07-14 04:08 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\rescache
2016-07-14 03:20 - 2009-07-14 00:45 - 00335544 _____ C:\Windows\system32\FNTCACHE.DAT
2016-07-14 03:19 - 2015-05-05 18:54 - 00000000 ____D C:\Windows\system32\appraiser
2016-07-14 03:19 - 2011-04-12 04:28 - 00000000 ____D C:\Program Files\Windows Journal
2016-07-14 03:04 - 2015-05-05 00:05 - 00000000 ____D C:\Windows\system32\MRT
2016-07-14 03:01 - 2015-05-05 00:05 - 144749672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
 
==================== Files in the root of some directories =======
 
2015-05-11 08:57 - 2016-07-27 09:40 - 0001715 _____ () C:\Users\Mike\AppData\Roaming\SAS7_000.DAT
2016-04-01 20:23 - 2015-11-09 22:50 - 0023920 _____ () C:\Users\Mike\AppData\Local\Z@!-cdaf1cb2-795d-4d15-a5c1-7dfbff5ea01f.tmp
2016-04-01 20:23 - 2015-11-09 22:50 - 0023920 _____ () C:\Users\Mike\AppData\Local\Z@!-e76442cb-f6bf-459f-b023-da0da8e5b8c1.tmp
2016-04-01 20:23 - 2015-11-09 22:50 - 0022896 _____ () C:\Users\Mike\AppData\Local\Z@S!-3302615b-590a-40dd-b01c-a8739752101d.tmp
2016-04-01 20:23 - 2015-11-09 22:50 - 0022896 _____ () C:\Users\Mike\AppData\Local\Z@S!-b1fcc9f6-4ec0-4e4a-ae9c-725966f4541b.tmp
2015-05-13 11:37 - 2015-05-13 11:37 - 0000057 _____ () C:\ProgramData\Ament.ini
2015-05-05 21:20 - 2015-05-05 21:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
 
Some files in TEMP:
====================
C:\Users\Mike\AppData\Local\Temp\libeay32.dll
C:\Users\Mike\AppData\Local\Temp\msvcr120.dll
C:\Users\Mike\AppData\Local\Temp\proxy_vole7431011363634765421.dll
C:\Users\Mike\AppData\Local\Temp\sqlite3.dll
 
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-07-27 00:35
 
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-07-2016
Ran by Mike (2016-07-28 21:04:20)
Running from C:\Users\Mike\Desktop
Windows 7 Professional Service Pack 1 (X64) (2015-05-05 03:27:55)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-255563057-703633522-3626342054-500 - Administrator - Disabled)
ASPNET (S-1-5-21-255563057-703633522-3626342054-1006 - Limited - Enabled)
Guest (S-1-5-21-255563057-703633522-3626342054-501 - Limited - Disabled)
Mike (S-1-5-21-255563057-703633522-3626342054-1000 - Administrator - Enabled) => C:\Users\Mike
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Microsoft Security Essentials (Enabled - Up to date) {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
AS: Microsoft Security Essentials (Enabled - Up to date) {CDE0C533-D3CD-62A1-E772-AFADDF863628}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated)
Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.0.4990 - Adobe Systems Inc.)
Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated)
Belkin USB Wireless Adapter (HKLM-x32\...\InstallShield_{549CE1BD-88E4-4C5E-BF75-B155624714CC}) (Version: 1.0.0.13 - Belkin)
Belkin USB Wireless Adapter (x32 Version: 1.0.0.13 - Belkin) Hidden
Bing Bar (HKLM-x32\...\{3611CA6C-5FCA-4900-A329-6A118123CCFC}) (Version: 7.1.355.0 - Microsoft Corporation)
Carbonite (HKLM-x32\...\{002B76BA-7054-48A3-963F-F5780F68CA0E}) (Version: 5.8.6 build 5912 (Mar-15-2016) - Carbonite)
Crucial Storage Executive (HKU\S-1-5-21-255563057-703633522-3626342054-1000\...\Crucial Storage Executive 3.30.022016.10) (Version: 3.30.022016.10 - Crucial)
Dragon NaturallySpeaking 13 (HKLM-x32\...\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}) (Version: 13.00.000 - Nuance Communications Inc.)
Folder Transfer 4.1.2 Build 0428 (HKLM-x32\...\Folder Transfer_is1) (Version:  - )
GDR 4033 for SQL Server 2008 R2 (KB2977320) (64-bit) (HKLM\...\KB2977320) (Version: 10.52.4033.0 - Microsoft Corporation)
GDR 4042 for SQL Server 2008 R2 (KB3045313) (64-bit) (HKLM\...\KB3045313) (Version: 10.52.4042.0 - Microsoft Corporation)
Google Apps Sync™ for Microsoft Outlook® 3.8.440.1250 (HKLM-x32\...\{091C294E-F243-432C-93E1-DEC4C2B9635B}) (Version: 3.8.440.1250 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version:  - EFD Software)
HP Officejet Pro 8600 Basic Device Software (HKLM\...\{791A06E2-340F-43B0-8FAB-62D151339362}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Officejet Pro 8600 Help (HKLM-x32\...\{46235FF7-2CBE-4A84-BEDA-87348D1F7850}) (Version: 28.0.0 - Hewlett Packard)
HP Officejet Pro 8600 Product Improvement Study (HKLM\...\{2BF5E9CC-C55D-4B0F-ACAF-FFE77F333CD8}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Support Solutions Framework (HKLM-x32\...\{FC3C2B77-6800-48C6-A15D-9D1031130C16}) (Version: 11.51.0049 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Intel® Chipset Device Software (x32 Version: 10.0.17 - Intel® Corporation) Hidden
Intel® Network Connections 19.0.27.0 (HKLM\...\PROSetDX) (Version: 19.0.27.0 - Intel)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4170 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.0.0.1098 - Intel Corporation)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.1.41 - Intel Corporation)
Kits Configuration Installer (x32 Version: 8.100.25984 - Microsoft) Hidden
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office Home and Student 2013 - en-us (HKLM\...\HomeStudentRetail - en-us) (Version: 15.0.4841.1002 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-255563057-703633522-3626342054-1000\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation)
Microsoft Outlook 2010 (HKLM-x32\...\Office14.OUTLOOKR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Report Viewer Redistributable 2008 SP1 (HKLM-x32\...\Microsoft Report Viewer Redistributable 2008 (KB971119)) (Version:  - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.9.218.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 (64-bit) (HKLM\...\Microsoft SQL Server 2008 R2) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{49860BCD-24D6-44C1-922E-AC12FE32234E}) (Version: 10.52.4042.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Policies (HKLM-x32\...\{D21BC5B2-CBAC-48FA-A701-B5A63C1CA7B8}) (Version: 10.50.1600.1 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Setup (English) (HKLM\...\{B2213E4E-F502-4D36-BE95-9293C866EF3F}) (Version: 10.52.4042.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation)
Microsoft SQL Server Browser (HKLM-x32\...\{BF9BF038-FE03-429D-9B26-2FA0FD756052}) (Version: 10.52.4000.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 Query Tools ENU (HKLM-x32\...\{DDFD8348-058C-4F4B-85E5-6D740D4AB3FE}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{288D79EE-A2D1-42AF-9597-B0ADCC23A8ED}) (Version: 10.52.4000.0 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{4ECF4BDC-8387-329A-ABE9-CF5798F84BB2}) (Version: 9.0.35191 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4841.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4841.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4841.1002 - Microsoft Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek)
Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.7 - Realtek)
SDK Debuggers (x32 Version: 8.100.26936 - Microsoft Corporation) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-001A-0000-0000-0000000FF1CE}_Office14.OUTLOOKR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for SQL Server 2008 R2 (KB2630458) (64-bit) (HKLM\...\KB2630458) (Version: 10.52.4000.0 - Microsoft Corporation)
Skype Web Plugin (HKLM-x32\...\{F6C18D35-D3EB-4AEA-B266-C2F11B6DB723}) (Version: 7.12.0.55 - Skype Technologies S.A.)
Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.)
SQL Server 2008 R2 SP2 Common Files (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP2 Database Engine Services (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP2 Database Engine Shared (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP2 Management Studio (Version: 10.52.4000.0 - Microsoft Corporation) Hidden
Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1 - Microsoft Corporation) Hidden
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.47484 - TeamViewer)
Windows Software Development Kit for Windows 8.1 (HKLM-x32\...\{ed3a6e6d-9661-4357-abe4-fcc03dc57a07}) (Version: 8.100.26936 - Microsoft Corporation)
WinSearch (HKLM-x32\...\InstallShield_{C0997B1D-95E0-4151-B45C-92B0DEBA4AE5}) (Version: 7.2 - Relational Systems)
WinSearch (x32 Version: 7.2 - Relational Systems) Hidden
WSOutlook (HKLM-x32\...\{1E9D332E-23C9-4A84-9C13-80CF5EF6257B}) (Version: 7.2.1 - Relational Systems)
WSWordSC (HKLM-x32\...\{08D71267-912B-47F6-8FBA-CC343B3DBEF6}) (Version: 7.2.0 - Relational Systems)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-255563057-703633522-3626342054-1000_Classes\CLSID\{147D75F3-19D5-4810-800D-7F50A02E8B60}\InprocServer32 -> C:\Users\Mike\AppData\Local\SkypePlugin\7.12.0.55\GatewayActiveX-x64.dll (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-255563057-703633522-3626342054-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-255563057-703633522-3626342054-1000_Classes\CLSID\{B9BE850C-F3F7-48AD-BB5B-A0CDA0706DB5}\localserver32 -> C:\Users\Mike\AppData\Local\SkypePlugin\7.12.0.55\GatewayVersion-x64.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-255563057-703633522-3626342054-1000_Classes\CLSID\{CBF9CD8C-2714-4F36-B76A-43E6C7547BC2}\localserver32 -> C:\Users\Mike\AppData\Local\SkypePlugin\7.12.0.55\EdgeCalling.exe (Skype Technologies S.A.)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {119D2513-3D61-49AA-98A1-DC5F3A355BBA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-04] (Google Inc.)
Task: {14FC05E9-FDF6-4170-A7B4-0F787661BD96} - System32\Tasks\HPCustParticipation HP Officejet Pro 8600 => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {75F973D1-F9BA-4ABF-B92E-D91FD2FB36C8} - System32\Tasks\ASUS\i-Setup211129 => C:\Windows\Intel_Chipset_Win7-8-8-1_V10016\AsusSetup.exe [2015-05-05] (ASUSTeK Computer Inc.)
Task: {7E0475BD-C4E4-400F-83DC-A04B93AB33B2} - System32\Tasks\Microsoft\Windows\Setup\EOONotify => C:\Windows\EOONotify\EOONotify.exe [2016-07-08] (Microsoft Corporation)
Task: {7F2DCB4B-B935-4E96-98BB-97D84CFB28AF} - System32\Tasks\{5F6010C8-60E5-41f3-BF5B-C3AF5DBE12D4} => C:\ProgramData\Carbonite\Carbonite Backup\CarboniteUpgrade.exe
Task: {A34CCC76-D6E1-4AB8-AE46-DC8DE5CDD034} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-04] (Google Inc.)
Task: {C4FA0727-1F1C-4393-98CD-1241C6BB7EB8} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-06-14] (Microsoft Corporation)
Task: {E393672A-3948-425B-8A14-AA8B0C750F4B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-06-14] (Microsoft Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-05-05 20:00 - 2016-05-24 09:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-10-28 10:01 - 2016-05-24 12:43 - 08909504 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-03-19 21:02 - 2015-03-19 21:02 - 00393480 _____ () C:\Windows\system32\igfxTray.exe
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-11-11 03:42 - 2015-11-11 03:42 - 01045672 _____ () C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
2016-02-23 16:06 - 2016-02-23 16:06 - 00325824 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream32.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\ProgramData\TEMP:0FF263E8 [273]
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-255563057-703633522-3626342054-1000\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 209.18.47.61 - 209.18.47.62
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: USB3MON => "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{591F981B-EA41-4BF4-A7F9-25E500096373}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{3FFD665C-18DF-4C9A-AEC2-FAD3D2AD5FAE}] => (Allow) C:\Users\Mike\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [TCP Query User{501E7D82-5665-4E4C-A9EF-53EF7BA0B921}C:\program files (x86)\foldertransfer4\foldertransfernew.exe] => (Allow) C:\program files (x86)\foldertransfer4\foldertransfernew.exe
FirewallRules: [UDP Query User{AC4B971F-DCE2-4606-8C88-77376D9C20E5}C:\program files (x86)\foldertransfer4\foldertransfernew.exe] => (Allow) C:\program files (x86)\foldertransfer4\foldertransfernew.exe
FirewallRules: [{0217426A-CBE5-4E43-81B6-9057DB373D19}] => (Allow) LPort=51001
FirewallRules: [{5D32AF7E-6F77-4D7F-8292-4E43992037E6}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\FaxApplications.exe
FirewallRules: [{3898F0E6-C26E-45C7-8A42-B37960CCFE1C}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\DigitalWizards.exe
FirewallRules: [{F72A9396-370D-4348-A6E3-5E318D508D99}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\SendAFax.exe
FirewallRules: [{A30D775F-06D6-4766-8C11-158F7D46CB5F}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\DeviceSetup.exe
FirewallRules: [{BB32FEA7-F491-49BE-9891-1E5E74EB8AE3}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicator.exe
FirewallRules: [{366DFB4E-BF01-4E32-95AB-8CD356744793}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{A0731D8E-9DE1-424F-83CE-C9AD9C3B5E02}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{918C728C-B816-4A5D-89B5-8DF34B8A0616}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{7BC47E40-3F42-47AF-8A09-BD79133867AB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{D8B16354-7ACC-47C3-9754-74FAD9737EB0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{698C0A16-FEF8-472F-AE47-60A53AC838EE}] => (Allow) LPort=51001
FirewallRules: [{2CCB676A-B19A-42CE-9021-CA451369A592}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{81B5741C-D8AE-4E30-9DF1-DAE080BECF69}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{97587252-2D59-4BBB-8BCD-251E04EB0856}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{80250F13-A236-4CA3-AB9B-29A2E14E51FD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [TCP Query User{589B8A6A-C1D5-47F1-BA6F-8F00A994C4CF}C:\users\mike\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe] => (Allow) C:\users\mike\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe
FirewallRules: [UDP Query User{35BB68B6-B0B5-44F8-A219-623852B0719F}C:\users\mike\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe] => (Allow) C:\users\mike\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe
FirewallRules: [{E7AF5FD5-D6D4-4279-92D1-5C583461067B}] => (Allow) C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe
FirewallRules: [{1A12072D-82A3-4B4B-AE84-74FC843AE351}] => (Allow) C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe
FirewallRules: [{32D8684A-A071-4A33-8821-DBFF54522E3F}] => (Allow) C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe
FirewallRules: [{A9EC824E-A368-45EE-BE40-DB5F55652418}] => (Allow) C:\Program Files\Carbonite\Carbonite Backup\CarboniteService.exe
FirewallRules: [{FD785669-5A68-4229-AD8D-F417DBCD6F3F}] => (Allow) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteSetup.exe
FirewallRules: [{4A7EA1E7-3E4B-4CE7-8F6F-A24DB8E9A8C2}] => (Allow) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteSetup.exe
FirewallRules: [{DEBD286E-0C15-46B3-BEB1-085EA45B3522}] => (Allow) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteSetup.exe
FirewallRules: [{8F169C29-27E0-4FCD-ADF8-C16DA8DD0723}] => (Allow) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteSetup.exe
FirewallRules: [{8A63D815-1D39-423B-8F84-9EFB9DCAF63A}] => (Allow) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
FirewallRules: [{341BFD18-F4D3-43FF-9B57-860766A34808}] => (Allow) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
FirewallRules: [{3E04DDD7-8938-4C9C-8234-E4ADCE756E9E}] => (Allow) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
FirewallRules: [{1C0A325D-8F43-4A83-B6E1-BF63586C6E97}] => (Allow) C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
FirewallRules: [{97D1C63F-E5D1-4060-9880-D7DEF3503642}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{B827E314-6306-44F3-BBB7-E264434E434C}C:\program files\crucial\crucial storage executive\java\bin\javaw.exe] => (Allow) C:\program files\crucial\crucial storage executive\java\bin\javaw.exe
FirewallRules: [UDP Query User{6A9D7226-221C-4AC9-A36F-408CE10A4481}C:\program files\crucial\crucial storage executive\java\bin\javaw.exe] => (Allow) C:\program files\crucial\crucial storage executive\java\bin\javaw.exe
 
==================== Restore Points =========================
 
17-07-2016 05:00:23 Windows Update
20-07-2016 03:00:10 Windows Update
23-07-2016 21:27:12 Windows Update
26-07-2016 21:40:39 Windows Update
28-07-2016 03:00:10 Windows Update
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (07/27/2016 03:47:56 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code.
 
Error: (07/27/2016 03:47:56 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section.
 
Error: (07/27/2016 03:45:25 PM) (Source: DNS logging) (EventID: 0) (User: )
Description: Logger: Socket error: 10054
 
Error: (07/27/2016 03:45:16 PM) (Source: DNS logging) (EventID: 0) (User: )
Description: Logger: Socket error: 10054
 
Error: (07/27/2016 03:44:38 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (07/27/2016 03:42:46 PM) (Source: SetupARService) (EventID: 0) (User: )
Description: Service cannot be started. System.NullReferenceException: Object reference not set to an instance of an object.
   at SetupAfterRebootService.SetupARService.OnStart(String[] args)
   at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
 
Error: (07/27/2016 03:13:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: LogonUI.exe, version: 6.1.7601.17514, time stamp: 0x4ce79f70
Faulting module name: DUI70.dll, version: 6.1.7600.16385, time stamp: 0x4a5bdf25
Exception code: 0xc0000005
Fault offset: 0x00000000000035da
Faulting process id: 0x2580
Faulting application start time: 0xLogonUI.exe0
Faulting application path: LogonUI.exe1
Faulting module path: LogonUI.exe2
Report Id: LogonUI.exe3
 
Error: (07/27/2016 02:10:18 PM) (Source: DNS logging) (EventID: 0) (User: )
Description: Logger: Socket error: 10054
 
Error: (07/27/2016 11:30:13 AM) (Source: DNS logging) (EventID: 0) (User: )
Description: Logger: Socket error: 10054
 
Error: (07/27/2016 09:40:35 AM) (Source: DNS logging) (EventID: 0) (User: )
Description: Logger: Socket error: 10054
 
 
System errors:
=============
Error: (07/28/2016 08:55:20 PM) (Source: TermDD) (EventID: 56) (User: )
Description: The Terminal Server security layer detected an error in the protocol stream and has disconnected the client.
Client IP: 118.70.118.218.
 
Error: (07/28/2016 08:55:19 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
Error: (07/28/2016 08:35:40 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
Error: (07/28/2016 08:35:40 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
Error: (07/28/2016 08:35:03 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
Error: (07/28/2016 08:35:03 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
Error: (07/28/2016 08:16:02 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
Error: (07/28/2016 08:16:02 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
Error: (07/28/2016 08:04:03 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
Error: (07/28/2016 08:04:03 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: The following fatal alert was generated: 10. The internal error state is 1203.
 
 
CodeIntegrity:
===================================
  Date: 2016-07-24 18:38:19.670
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i5-4460 CPU @ 3.20GHz
Percentage of memory in use: 21%
Total physical RAM: 24269.33 MB
Available physical RAM: 19068.32 MB
Total Virtual: 48536.84 MB
Available Virtual: 43285.26 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:476.84 GB) (Free:136.32 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 476.9 GB) (Disk ID: 049A4552)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=476.8 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

 


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,598 posts
  • MVP
 
Download : ADWCleaner to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @BleepingComputer
 
NOTE: If using Internet Explorer and you get an alert that stops the program downloading, click on the warning and allow the download to complete.
 
Close  all programs, pause your anti-virus and run AdwCleaner (Vista or Win 7 => right click and Run As Administrator).
 
scan-results.jpg
 
Click on Scan  and follow the prompts. Let it run unhindered. When done, click on the Clean button, and follow the prompts. Allow the system to reboot. You will then be presented with the report. Copy & Paste this report on your next reply.
 
The report will be saved in the C:\AdwCleaner folder.
 
 
 
Junkware-Removal-Tool
 
Please download Junkware Removal Tool to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @Author's site
  • Pause your anti-virus.  Close all browsers.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  •  
     

     
    Download BlueScreenView
     
    Double click on BlueScreenView.exe file to run the program.
    When scanning is done, go Edit, Select All.
     
    Go File, Save Selected Items, and save the report as BSOD.txt.
    Open BSOD.txt in Notepad, copy all content, and paste it into your next reply.

    • 0

    #3
    adjc98

    adjc98

      Member

    • Topic Starter
    • Member
    • PipPip
    • 29 posts

    I had ran both adwcleaner and jrt on the 15th, but couldn't remember what they were called.

     

    Ran them both again today on the 30th.

     

    Ran Adwcleaner:  there were four log files.  I put the last two here:

     

    # AdwCleaner v5.201 - Logfile created 30/07/2016 at 11:03:07
    # Updated 30/06/2016 by ToolsLib
    # Database : 2016-07-29.2 [Server]
    # Operating system : Windows 7 Professional Service Pack 1 (X64)
    # Username : Mike - MIKEOFFICE
    # Running from : C:\Users\Mike\Downloads\AdwCleaner.exe
    # Option : Scan
     
    ***** [ Services ] *****
     
     
    ***** [ Folders ] *****
     
     
    ***** [ Files ] *****
     
     
    ***** [ DLL ] *****
     
     
    ***** [ WMI ] *****
     
     
    ***** [ Shortcuts ] *****
     
     
    ***** [ Scheduled tasks ] *****
     
     
    ***** [ Registry ] *****
     
     
    ***** [ Web browsers ] *****
     
     
    *************************
     
    C:\AdwCleaner\AdwCleaner[C1].txt - [1524 bytes] - [15/07/2016 23:11:31]
    C:\AdwCleaner\AdwCleaner[S1].txt - [1051 bytes] - [15/07/2016 23:09:32]
    C:\AdwCleaner\AdwCleaner[S2].txt - [1338 bytes] - [15/07/2016 23:10:49]
    C:\AdwCleaner\AdwCleaner[S3].txt - [862 bytes] - [30/07/2016 11:03:07]
     
    ########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [934 bytes] ##########
    # AdwCleaner v5.201 - Logfile created 30/07/2016 at 11:04:11
    # Updated 30/06/2016 by ToolsLib
    # Database : 2016-07-29.2 [Server]
    # Operating system : Windows 7 Professional Service Pack 1 (X64)
    # Username : Mike - MIKEOFFICE
    # Running from : C:\Users\Mike\Downloads\AdwCleaner.exe
    # Option : Scan
     
    ***** [ Services ] *****
     
     
    ***** [ Folders ] *****
     
     
    ***** [ Files ] *****
     
     
    ***** [ DLL ] *****
     
     
    ***** [ WMI ] *****
     
     
    ***** [ Shortcuts ] *****
     
     
    ***** [ Scheduled tasks ] *****
     
     
    ***** [ Registry ] *****
     
     
    ***** [ Web browsers ] *****
     
     
    *************************
     
    C:\AdwCleaner\AdwCleaner[C1].txt - [1524 bytes] - [15/07/2016 23:11:31]
    C:\AdwCleaner\AdwCleaner[S1].txt - [1051 bytes] - [15/07/2016 23:09:32]
    C:\AdwCleaner\AdwCleaner[S2].txt - [1338 bytes] - [15/07/2016 23:10:49]
    C:\AdwCleaner\AdwCleaner[S3].txt - [1012 bytes] - [30/07/2016 11:03:07]
    C:\AdwCleaner\AdwCleaner[S4].txt - [935 bytes] - [30/07/2016 11:04:11]
     
    ########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1007 bytes] ##########
     

    JRT:

     

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Malwarebytes
    Version: 8.0.7 (07.03.2016)
    Operating System: Windows 7 Professional x64 
    Ran by Mike (Administrator) on Sat 07/30/2016 at 11:06:41.43
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
     
     
     
     
    File System: 16 
     
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2B3SITHH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3FW6IJXG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8GC095XB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EU71Q4UA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GXC6C1TA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LZ1IH1W2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M0XH5RS0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Users\Mike\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TR3W13FZ (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2B3SITHH (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3FW6IJXG (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8GC095XB (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EU71Q4UA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GXC6C1TA (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LZ1IH1W2 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M0XH5RS0 (Temporary Internet Files Folder) 
    Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TR3W13FZ (Temporary Internet Files Folder) 
     
     
     
    Registry: 0 
     
     
     
     
     
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on Sat 07/30/2016 at 11:07:46.00
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ==================================================
    Dump File         : 073016-3681-01.dmp
    Crash Time        : 7/30/2016 9:48:29 AM
    Bug Check String  : NTFS_FILE_SYSTEM
    Bug Check Code    : 0x00000024
    Parameter 1       : 00000000`001904fb
    Parameter 2       : fffff880`03393438
    Parameter 3       : fffff880`03392c90
    Parameter 4       : fffff800`02e7899e
    Caused By Driver  : Ntfs.sys
    Caused By Address : Ntfs.sys+4211
    File Description  : NT File System Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\073016-3681-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,568
    Dump File Time    : 7/30/2016 9:49:14 AM
    ==================================================
     
    ==================================================
    Dump File         : 072916-3853-01.dmp
    Crash Time        : 7/29/2016 5:55:50 PM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`04cb68a0
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+6f400
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072916-3853-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,632
    Dump File Time    : 7/29/2016 5:56:10 PM
    ==================================================
     
    ==================================================
    Dump File         : 072816-4227-01.dmp
    Crash Time        : 7/28/2016 11:47:38 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00079efc
    Parameter 3       : fffff880`07fc9c40
    Parameter 4       : 00000000`00000000
    Caused By Driver  : peauth.sys
    Caused By Address : peauth.sys+1f8c498
    File Description  : Protected Environment Authentication and Authorization Export Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.18741 (win7sp1_gdr.150202-1526)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072816-4227-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 319,080
    Dump File Time    : 7/28/2016 11:48:25 PM
    ==================================================
     
    ==================================================
    Dump File         : 072716-3946-01.dmp
    Crash Time        : 7/27/2016 3:42:18 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff800`02fc1773
    Parameter 3       : fffff880`02875200
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+6f400
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072716-3946-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/27/2016 3:42:41 PM
    ==================================================
     
    ==================================================
    Dump File         : 072716-3712-01.dmp
    Crash Time        : 7/27/2016 2:50:10 AM
    Bug Check String  : KMODE_EXCEPTION_NOT_HANDLED
    Bug Check Code    : 0x0000001e
    Parameter 1       : ffffffff`c0000005
    Parameter 2       : fffff960`0028e590
    Parameter 3       : 00000000`00000000
    Parameter 4       : ffffffff`ffffffff
    Caused By Driver  : win32k.sys
    Caused By Address : win32k.sys+26e590
    File Description  : Multi-User Win32 Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072716-3712-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 320,296
    Dump File Time    : 7/27/2016 2:50:56 AM
    ==================================================
     
    ==================================================
    Dump File         : 072516-3759-01.dmp
    Crash Time        : 7/25/2016 3:27:24 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`0010b97d
    Parameter 3       : fffff880`0adabe60
    Parameter 4       : 00000000`00000000
    Caused By Driver  : win32k.sys
    Caused By Address : win32k.sys+cb97d
    File Description  : Multi-User Win32 Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072516-3759-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,440
    Dump File Time    : 7/25/2016 3:28:09 PM
    ==================================================
     
    ==================================================
    Dump File         : 072516-4321-01.dmp
    Crash Time        : 7/25/2016 4:45:21 AM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00013d4f
    Parameter 3       : fffff880`07326070
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ISCTD64.sys
    Caused By Address : ISCTD64.sys+fac3cd4f
    File Description  : Intel® Smart Connect Technology Device Driver
    Product Name      : ISCT Driver
    Company           : 
    File Version      : 1, 0, 8, 0
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072516-4321-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/25/2016 4:46:07 AM
    ==================================================
     
    ==================================================
    Dump File         : 072416-3681-01.dmp
    Crash Time        : 7/24/2016 11:29:03 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00184041
    Parameter 3       : fffff880`1a17ab30
    Parameter 4       : 00000000`00000000
    Caused By Driver  : rasl2tp.sys
    Caused By Address : rasl2tp.sys+fb76e041
    File Description  : RAS L2TP mini-port/call-manager driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.17514 (win7sp1_rtm.101119-1850)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072416-3681-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/24/2016 11:29:49 PM
    ==================================================
     
    ==================================================
    Dump File         : 072216-3822-01.dmp
    Crash Time        : 7/22/2016 9:14:27 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00073d4f
    Parameter 3       : fffff880`0763a070
    Parameter 4       : 00000000`00000000
    Caused By Driver  : win32k.sys
    Caused By Address : win32k.sys+3d4f
    File Description  : Multi-User Win32 Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072216-3822-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/22/2016 9:15:13 PM
    ==================================================
     
    ==================================================
    Dump File         : 072216-3853-01.dmp
    Crash Time        : 7/22/2016 4:22:59 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff800`02fb5aa9
    Parameter 3       : fffff880`0b186530
    Parameter 4       : 00000000`00000000
    Caused By Driver  : mouclass.sys
    Caused By Address : mouclass.sys+7557530
    File Description  : Mouse Class Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072216-3853-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/22/2016 4:23:23 PM
    ==================================================
     
    ==================================================
    Dump File         : 072216-4399-01.dmp
    Crash Time        : 7/22/2016 6:02:52 AM
    Bug Check String  : KMODE_EXCEPTION_NOT_HANDLED
    Bug Check Code    : 0x0000001e
    Parameter 1       : ffffffff`c0000005
    Parameter 2       : fffff960`002ce69e
    Parameter 3       : 00000000`00000000
    Parameter 4       : ffffffff`ffffffff
    Caused By Driver  : win32k.sys
    Caused By Address : win32k.sys+26e69e
    File Description  : Multi-User Win32 Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072216-4399-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/22/2016 6:03:38 AM
    ==================================================
     
    ==================================================
    Dump File         : 072216-3993-01.dmp
    Crash Time        : 7/22/2016 5:26:20 AM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00073d4f
    Parameter 3       : fffff880`066fc070
    Parameter 4       : 00000000`00000000
    Caused By Driver  : win32k.sys
    Caused By Address : win32k.sys+3d4f
    File Description  : Multi-User Win32 Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072216-3993-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/22/2016 5:27:05 AM
    ==================================================
     
    ==================================================
    Dump File         : 072116-4446-02.dmp
    Crash Time        : 7/21/2016 9:14:37 PM
    Bug Check String  : KERNEL_APC_PENDING_DURING_EXIT
    Bug Check Code    : 0x00000020
    Parameter 1       : 00000000`00000000
    Parameter 2       : 00000000`0000ffff
    Parameter 3       : 00000000`00000000
    Parameter 4       : 00000000`00000000
    Caused By Driver  : portcls.sys
    Caused By Address : portcls.sys+643b90
    File Description  : Port Class (Class Driver for Port/Miniport Devices)
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072116-4446-02.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/21/2016 9:15:23 PM
    ==================================================
     
    ==================================================
    Dump File         : 072116-3775-01.dmp
    Crash Time        : 7/21/2016 8:00:13 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`0011040d
    Parameter 3       : fffff880`0764cfa0
    Parameter 4       : 00000000`00000000
    Caused By Driver  : win32k.sys
    Caused By Address : win32k.sys+9040d
    File Description  : Multi-User Win32 Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072116-3775-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/21/2016 8:00:58 PM
    ==================================================
     
    ==================================================
    Dump File         : 072116-4446-01.dmp
    Crash Time        : 7/21/2016 4:46:48 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`0031f64f
    Parameter 3       : fffff880`09a3e7a0
    Parameter 4       : 00000000`00000000
    Caused By Driver  : rdpbus.sys
    Caused By Address : rdpbus.sys+fb8e364f
    File Description  : Microsoft RDP Bus Device driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072116-4446-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/21/2016 4:47:34 PM
    ==================================================
     
    ==================================================
    Dump File         : 072116-3868-01.dmp
    Crash Time        : 7/21/2016 10:54:45 AM
    Bug Check String  : KMODE_EXCEPTION_NOT_HANDLED
    Bug Check Code    : 0x0000001e
    Parameter 1       : ffffffff`c0000005
    Parameter 2       : fffff800`02e89e56
    Parameter 3       : 00000000`00000000
    Parameter 4       : ffffffff`ffffffff
    Caused By Driver  : mouclass.sys
    Caused By Address : mouclass.sys+56d5a90
    File Description  : Mouse Class Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072116-3868-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/21/2016 10:55:21 AM
    ==================================================
     
    ==================================================
    Dump File         : 072116-3806-01.dmp
    Crash Time        : 7/21/2016 6:14:42 AM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00073d4f
    Parameter 3       : fffff880`0276f070
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+6f400
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072116-3806-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/21/2016 6:15:27 AM
    ==================================================
     
    ==================================================
    Dump File         : 072116-4461-01.dmp
    Crash Time        : 7/21/2016 12:06:23 AM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff800`02e76ae5
    Parameter 3       : fffff880`074e1d10
    Parameter 4       : 00000000`00000000
    Caused By Driver  : AsIO.sys
    Caused By Address : AsIO.sys+31cbd10
    File Description  : 
    Product Name      : 
    Company           : 
    File Version      : 
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072116-4461-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,824
    Dump File Time    : 7/21/2016 12:07:09 AM
    ==================================================
     
    ==================================================
    Dump File         : 072016-4446-01.dmp
    Crash Time        : 7/20/2016 4:51:38 PM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00003d4f
    Parameter 3       : fffff880`091de070
    Parameter 4       : 00000000`00000000
    Caused By Driver  : raspptp.sys
    Caused By Address : raspptp.sys+faa70d4f
    File Description  : Peer-to-Peer Tunneling Protocol
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.17514 (win7sp1_rtm.101119-1850)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072016-4446-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/20/2016 4:51:58 PM
    ==================================================
     
    ==================================================
    Dump File         : 072016-3946-01.dmp
    Crash Time        : 7/20/2016 8:22:38 AM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00003d4f
    Parameter 3       : fffff880`0acb4070
    Parameter 4       : 00000000`00000000
    Caused By Driver  : swenum.sys
    Caused By Address : swenum.sys+face3d4f
    File Description  : Plug and Play Software Device Enumerator
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\072016-3946-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,952
    Dump File Time    : 7/20/2016 8:23:24 AM
    ==================================================
     
    ==================================================
    Dump File         : 071916-4461-01.dmp
    Crash Time        : 7/19/2016 12:43:12 AM
    Bug Check String  : SYSTEM_SERVICE_EXCEPTION
    Bug Check Code    : 0x0000003b
    Parameter 1       : 00000000`c0000005
    Parameter 2       : fffff960`00013d4f
    Parameter 3       : fffff880`05c2d070
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+6f400
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\071916-4461-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,312
    Dump File Time    : 7/19/2016 12:43:59 AM
    ==================================================
     
    ==================================================
    Dump File         : 071816-3822-01.dmp
    Crash Time        : 7/18/2016 7:35:28 PM
    Bug Check String  : NTFS_FILE_SYSTEM
    Bug Check Code    : 0x00000024
    Parameter 1       : 00000000`001904fb
    Parameter 2       : fffff880`0b07a8d8
    Parameter 3       : fffff880`0b07a130
    Parameter 4       : fffff880`0143b27c
    Caused By Driver  : Ntfs.sys
    Caused By Address : Ntfs.sys+4211
    File Description  : NT File System Driver
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\071816-3822-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 318,376
    Dump File Time    : 7/18/2016 7:36:14 PM
    ==================================================
     
    ==================================================
    Dump File         : 071716-4633-01.dmp
    Crash Time        : 7/17/2016 8:07:56 AM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041284
    Parameter 2       : fffff900`c01d7001
    Parameter 3       : 00000000`00000000
    Parameter 4       : fffff900`00812000
    Caused By Driver  : UsbFltr.sys
    Caused By Address : UsbFltr.sys+d14c00
    File Description  : Ortek USB Keypad Driver
    Product Name      : Ortek USB Keypad
    Company           : Waytech Development, Inc.
    File Version      : 1.2.0.0 built by: WinDDK
    Processor         : x64
    Crash Address     : ntoskrnl.exe+6f400
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\071716-4633-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 320,360
    Dump File Time    : 7/17/2016 8:08:42 AM
    ==================================================
     
    ==================================================
    Dump File         : 071315-4430-01.dmp
    Crash Time        : 7/13/2015 8:05:59 PM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`04c168b0
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\071315-4430-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 7/13/2015 8:06:54 PM
    ==================================================
     
    ==================================================
    Dump File         : 071115-3931-01.dmp
    Crash Time        : 7/11/2015 9:32:16 PM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`051db3f0
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\071115-3931-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 7/11/2015 9:33:15 PM
    ==================================================
     
    ==================================================
    Dump File         : 071015-3400-01.dmp
    Crash Time        : 7/10/2015 11:15:15 PM
    Bug Check String  : KERNEL_DATA_INPAGE_ERROR
    Bug Check Code    : 0x0000007a
    Parameter 1       : 00000000`00000001
    Parameter 2       : ffffffff`c0000005
    Parameter 3       : fffffa80`1f0300f0
    Parameter 4       : fffff6fb`40159000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\071015-3400-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 7/10/2015 11:16:15 PM
    ==================================================
     
    ==================================================
    Dump File         : 070915-3276-01.dmp
    Crash Time        : 7/9/2015 2:03:36 AM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041284
    Parameter 2       : 00000000`03f33001
    Parameter 3       : 00000000`00001cc8
    Parameter 4       : fffff700`01080000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\070915-3276-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 7/9/2015 2:04:32 AM
    ==================================================
     
    ==================================================
    Dump File         : 070615-3260-01.dmp
    Crash Time        : 7/6/2015 10:19:54 AM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`04e682b0
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\070615-3260-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 7/6/2015 10:20:54 AM
    ==================================================
     
    ==================================================
    Dump File         : 070515-3229-01.dmp
    Crash Time        : 7/5/2015 1:07:44 AM
    Bug Check String  : KMODE_EXCEPTION_NOT_HANDLED
    Bug Check Code    : 0x0000001e
    Parameter 1       : ffffffff`c0000005
    Parameter 2       : fffff800`02ce39b7
    Parameter 3       : 00000000`00000000
    Parameter 4       : ffffffff`ffffffff
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\070515-3229-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 7/5/2015 1:08:41 AM
    ==================================================
     
    ==================================================
    Dump File         : 063015-3915-01.dmp
    Crash Time        : 6/30/2015 9:07:21 PM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`04ca3130
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\063015-3915-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/30/2015 9:08:19 PM
    ==================================================
     
    ==================================================
    Dump File         : 063015-3900-01.dmp
    Crash Time        : 6/30/2015 12:11:15 PM
    Bug Check String  : KMODE_EXCEPTION_NOT_HANDLED
    Bug Check Code    : 0x0000001e
    Parameter 1       : ffffffff`c0000005
    Parameter 2       : fffff800`02c919b7
    Parameter 3       : 00000000`00000000
    Parameter 4       : ffffffff`ffffffff
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\063015-3900-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/30/2015 12:12:10 PM
    ==================================================
     
    ==================================================
    Dump File         : 062215-4009-01.dmp
    Crash Time        : 6/22/2015 10:48:20 PM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041284
    Parameter 2       : fffff8a0`1bc62001
    Parameter 3       : 00000000`0001a068
    Parameter 4       : fffff781`c0000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\062215-4009-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/22/2015 10:49:18 PM
    ==================================================
     
    ==================================================
    Dump File         : 062115-3307-01.dmp
    Crash Time        : 6/21/2015 7:48:33 AM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`04db1730
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\062115-3307-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/21/2015 7:49:03 AM
    ==================================================
     
    ==================================================
    Dump File         : 061915-3400-01.dmp
    Crash Time        : 6/19/2015 11:05:50 AM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00005005
    Parameter 2       : fffff700`01080000
    Parameter 3       : 00000000`000006c8
    Parameter 4       : 00000000`000006c9
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\061915-3400-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/19/2015 11:06:44 AM
    ==================================================
     
    ==================================================
    Dump File         : 061815-4056-01.dmp
    Crash Time        : 6/18/2015 7:39:19 AM
    Bug Check String  : KMODE_EXCEPTION_NOT_HANDLED
    Bug Check Code    : 0x0000001e
    Parameter 1       : ffffffff`c0000005
    Parameter 2       : fffff800`02cc79b7
    Parameter 3       : 00000000`00000000
    Parameter 4       : ffffffff`ffffffff
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\061815-4056-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/18/2015 7:40:17 AM
    ==================================================
     
    ==================================================
    Dump File         : 061515-7519-01.dmp
    Crash Time        : 6/15/2015 5:00:22 PM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`0508cb30
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\061515-7519-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/15/2015 5:01:19 PM
    ==================================================
     
    ==================================================
    Dump File         : 061515-3853-01.dmp
    Crash Time        : 6/15/2015 3:39:51 PM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`05003130
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\061515-3853-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/15/2015 3:40:54 PM
    ==================================================
     
    ==================================================
    Dump File         : 061115-3291-01.dmp
    Crash Time        : 6/11/2015 10:38:55 AM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`050b8570
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\061115-3291-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/11/2015 10:39:50 AM
    ==================================================
     
    ==================================================
    Dump File         : 060315-4134-01.dmp
    Crash Time        : 6/3/2015 3:44:51 AM
    Bug Check String  : MEMORY_MANAGEMENT
    Bug Check Code    : 0x0000001a
    Parameter 1       : 00000000`00041790
    Parameter 2       : fffffa80`053433f0
    Parameter 3       : 00000000`0000ffff
    Parameter 4       : 00000000`00000000
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\060315-4134-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 6/3/2015 3:45:56 AM
    ==================================================
     
    ==================================================
    Dump File         : 050815-4196-01.dmp
    Crash Time        : 5/8/2015 3:56:42 AM
    Bug Check String  : PAGE_FAULT_IN_NONPAGED_AREA
    Bug Check Code    : 0x00000050
    Parameter 1       : fffffa90`1fc3a010
    Parameter 2       : 00000000`00000000
    Parameter 3       : fffff800`02cf99c5
    Parameter 4       : 00000000`00000005
    Caused By Driver  : ntoskrnl.exe
    Caused By Address : ntoskrnl.exe+748c0
    File Description  : NT Kernel & System
    Product Name      : Microsoft® Windows® Operating System
    Company           : Microsoft Corporation
    File Version      : 6.1.7601.23418 (win7sp1_ldr.160408-2045)
    Processor         : x64
    Crash Address     : ntoskrnl.exe+748c0
    Stack Address 1   : 
    Stack Address 2   : 
    Stack Address 3   : 
    Computer Name     : 
    Full Path         : C:\Windows\Minidump\050815-4196-01.dmp
    Processors Count  : 4
    Major Version     : 15
    Minor Version     : 7601
    Dump File Size    : 280,576
    Dump File Time    : 5/8/2015 3:57:39 AM
    ==================================================
     

    • 0

    #4
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 24,598 posts
    • MVP

    Download aswMBR.exe  to your desktop.
    Right click on aswMBR.exe and Run As ADmin
    uncheck trace disk IO calls
    Change the Quickscan to C:\
     (Allow the Avast engine download if asked) Click the "Scan" button to start scan
    On completion of the scan (Note if the Fix button is enabled (not the FixMBR button) and tell me) click save log, save it to your desktop and post in your next reply
     
     
     
    Get the free version of Speccy:
     
    http://www.filehippo...download_speccy (Look in the upper right for the Download
    Latest Version button  - Do NOT press the large Start Download button on the upper left!)  
    Download, Save and Install it.  Tell it you do not need CCLEANER.    Run Speccy.  When it finishes (the little icon in the bottom left will stop moving), 
    File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  
    (It will be near the top about 10 lines down.) Save the file.  Attach the file to your next post.  (More Reply Options, Choose File, Open, Attach This File)
     

    Get Process Explorer
     
    Save it to your desktop then run it (Vista or Win7 - right click and Run As Administrator).  
     
    View, Select Column, check Verified Signer, OK
    Options, Verify Image Signatures
     
     
    Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  
     
    Wait a full minute then:
     
    File, Save As, Save.  Note the file name.   Open the file  on your desktop and copy and paste the text to a reply.
     

    • 0

    #5
    adjc98

    adjc98

      Member

    • Topic Starter
    • Member
    • PipPip
    • 29 posts

      aswMBR.exe   won't seem to run on my computer.  It keeps getting interrupted.  Here is the screenshot of the error below the other information:  I ran it multiple times, but it wouldn't work.

     

     

    For the process information:  WinSearch Relational Systems, Inc is an known program that is not malware.

     

     

    Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
    System Idle Process 56.22 0 K 24 K 0
    System 1.01 380 K 16,108 K 4
     Interrupts 0.16 0 K 0 K n/a Hardware Interrupts and DPCs
     smss.exe < 0.01 608 K 1,280 K 324 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows
    csrss.exe 0.01 2,524 K 8,384 K 436 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows
    wininit.exe < 0.01 1,732 K 4,816 K 512 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows
     services.exe 0.09 5,288 K 14,960 K 560 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows
      svchost.exe 0.10 5,300 K 16,964 K 752 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
       dllhost.exe < 0.01 11,636 K 29,548 K 4108 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
       WmiPrvSE.exe 0.02 7,596 K 14,920 K 4292 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
       WmiPrvSE.exe 8.90 22,228 K 32,096 K 5888 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
      svchost.exe 0.03 5,764 K 15,608 K 840 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      MsMpEng.exe 0.14 210,272 K 331,416 K 908 Antimalware Service Executable Microsoft Corporation (Verified) Microsoft Corporation
      svchost.exe 0.04 19,188 K 27,160 K 340 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      svchost.exe < 0.01 11,344 K 33,360 K 360 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
       WUDFHost.exe < 0.01 2,072 K 6,468 K 3112 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows
       dwm.exe 1.26 40,300 K 48,844 K 2544 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows
      svchost.exe < 0.01 11,756 K 29,828 K 448 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      svchost.exe 0.20 43,056 K 74,716 K 476 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
       wuauclt.exe < 0.01 2,320 K 7,816 K 1048 Windows Update Microsoft Corporation (Verified) Microsoft Windows
      UMVPFSrv.exe < 0.01 1,164 K 4,440 K 700 Logitech User mode UMVPF service Logitech Inc. (Verified) Logitech Inc
      svchost.exe < 0.01 3,764 K 13,452 K 1116 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      igfxCUIService.exe < 0.01 2,396 K 7,612 K 1236 igfxCUIService Module Intel Corporation (Verified) Intel Corporation - pGFX
      svchost.exe < 0.01 33,952 K 51,148 K 1372 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      spoolsv.exe 0.02 7,828 K 14,888 K 1508 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
      svchost.exe 0.01 11,596 K 19,088 K 1536 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      CarboniteService.exe 0.03 25,840 K 63,000 K 1656 Carbonite Secure Backup Engine Carbonite, Inc. (www.carbonite.com) (Verified) Carbonite
      officeclicktorun.exe < 0.01 13,332 K 21,748 K 1708 Microsoft Office Click-to-Run Microsoft Corporation (Verified) Microsoft Corporation
      svchost.exe < 0.01 6,972 K 19,076 K 1788 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      dgnsvc.exe < 0.01 1,632 K 5,556 K 1824 Dragon NaturallySpeaking Service Nuance Communications, Inc. (Verified) Nuance Communications
      HPSupportSolutionsFrameworkService.exe < 0.01 13,440 K 18,088 K 1856 SolutionsFrameworkService Hewlett-Packard Company (Verified) Hewlett-Packard Company
      IPROSetMonitor.exe < 0.01 2,356 K 6,856 K 2012 Intel® PROSet Monitoring Service Intel Corporation (Verified) Intel Corporation
      sqlservr.exe 0.01 294,980 K 162,476 K 1296 SQL Server Windows NT - 64 Bit Microsoft Corporation (Verified) Microsoft Corporation
      sqlbrowser.exe < 0.01 1,692 K 4,688 K 2136 SQL Browser Service EXE Microsoft Corporation (Verified) Microsoft Corporation
      sqlwriter.exe < 0.01 2,272 K 6,928 K 2172 SQL Server VSS Writer - 64 Bit Microsoft Corporation (Verified) Microsoft Corporation
      TeamViewer_Service.exe 0.41 34,808 K 42,212 K 2272 TeamViewer 10 TeamViewer GmbH (Verified) TeamViewer
       TeamViewer.exe 25.10 49,256 K 51,832 K 2960 TeamViewer 10 TeamViewer GmbH (Verified) TeamViewer
       tv_w32.exe < 0.01 1,396 K 5,304 K 3744 TeamViewer 10 TeamViewer GmbH (Verified) TeamViewer
       tv_x64.exe < 0.01 1,852 K 5,436 K 3476 TeamViewer 10 TeamViewer GmbH (Verified) TeamViewer
       TeamViewer_Desktop.exe 4.63 481,836 K 454,968 K 5836 TeamViewer 10 TeamViewer GmbH (Verified) TeamViewer
      loggerservice.exe < 0.01 4,268 K 7,124 K 2628 Dragon NaturallySpeaking Logging Service Nuance Communications, Inc. (Verified) Nuance Communications
      svchost.exe < 0.01 2,576 K 12,056 K 2792 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      NisSrv.exe < 0.01 20,316 K 9,716 K 2988 Microsoft Network Realtime Inspection Service Microsoft Corporation (Verified) Microsoft Corporation
      IAStorDataMgrSvc.exe < 0.01 31,652 K 44,840 K 3944 IAStorDataSvc Intel Corporation (Verified) Intel Corporation - Intel® Rapid Storage Technology
      SearchIndexer.exe < 0.01 66,916 K 52,084 K 2032 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
      svchost.exe < 0.01 2,168 K 10,324 K 3576 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      SeaPort.EXE < 0.01 3,856 K 9,208 K 1056 Microsoft SeaPort Search Enhancement Broker Microsoft Corporation. (Verified) Microsoft Corporation
      PresentationFontCache.exe < 0.01 27,924 K 20,548 K 3724 PresentationFontCache.exe Microsoft Corporation (Verified) Microsoft Corporation
      TrustedInstaller.exe < 0.01 49,476 K 53,752 K 5768 Windows Modules Installer Microsoft Corporation (Verified) Microsoft Windows
      OSPPSVC.EXE < 0.01 3,420 K 11,680 K 5800 Microsoft Office Software Protection Platform Service Microsoft Corporation (Verified) Microsoft Corporation
      svchost.exe < 0.01 1,932 K 5,904 K 5140 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      svchost.exe < 0.01 2,400 K 6,960 K 4688 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
      WmiApSrv.exe 0.30 2,196 K 6,520 K 5540 WMI Performance Reverse Adapter Microsoft Corporation (Verified) Microsoft Windows
      WmiApSrv.exe 0.32 2,184 K 6,460 K 4424 WMI Performance Reverse Adapter Microsoft Corporation (Verified) Microsoft Windows
     lsass.exe 0.05 7,240 K 19,520 K 592 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows
     lsm.exe 0.01 4,096 K 7,480 K 600 Local Session Manager Service Microsoft Corporation (Verified) Microsoft Windows
    csrss.exe 0.07 3,176 K 85,436 K 520 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows
    winlogon.exe < 0.01 3,608 K 8,628 K 656 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows
    explorer.exe 0.01 120,280 K 137,936 K 3292 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
     msseces.exe 0.02 6,728 K 17,028 K 2284 Microsoft Security Client User Interface Microsoft Corporation (Verified) Microsoft Corporation
     OUTLOOK.EXE 0.04 93,840 K 158,936 K 3800 Microsoft Outlook Microsoft Corporation (Verified) Microsoft Corporation
      WSConsole.exe < 0.01 3,588 K 11,804 K 5652 WSConsole Module Relational Systems, Inc. (No signature was present in the subject) Relational Systems, Inc.
      wsmain.exe < 0.01 17,452 K 29,216 K 6132 WinSearch Relational Systems, Inc. (No signature was present in the subject) Relational Systems, Inc.
       SEARCH.exe < 0.01 5,436 K 13,136 K 4704 WSSearch Relational Systems, Inc. (No signature was present in the subject) Relational Systems, Inc.
     chrome.exe 0.01 63,740 K 106,800 K 5520 Google Chrome Google Inc. (Verified) Google Inc
      chrome.exe < 0.01 1,476 K 4,408 K 4496 Google Chrome Google Inc. (Verified) Google Inc
      chrome.exe < 0.01 38,040 K 31,608 K 4660 Google Chrome Google Inc. (Verified) Google Inc
      chrome.exe 0.05 34,504 K 39,480 K 3392 Google Chrome Google Inc. (Verified) Google Inc
     procexp.exe < 0.01 5,132 K 9,188 K 580 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
      procexp64.exe 0.89 58,660 K 57,856 K 2984 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
    IAStorIcon.exe < 0.01 21,884 K 28,596 K 6008 IAStorIcon Intel Corporation (Verified) Intel Corporation - Intel® Rapid Storage Technology
    Speccy64.exe 0.10 20,816 K 42,872 K 4552 Speccy Piriform Ltd (Verified) Piriform Ltd

     

    Attached Thumbnails

    • Capture.JPG

    Attached Files


    Edited by adjc98, 31 July 2016 - 05:01 PM.

    • 0

    #6
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 24,598 posts
    • MVP

    Are you using Teamviewer to log in to the PC remotely right now?

     

    It appears that Teamviewer is eating up a large amount of CPU time:

     

    TeamViewer.exe 25.10 49,256 K 51,832 K 2960 TeamViewer 10 TeamViewer GmbH (Verified) TeamViewer

     

     

    This is an older version of Teamviwer and should be updated to 11 anyway.

     

    Speccy says the temps are OK and the Hard drive is good so I would run the memory test:

     

    http://www.sevenforu...stics-tool.html

     

    See if it picks up anything.  


    • 0

    #7
    adjc98

    adjc98

      Member

    • Topic Starter
    • Member
    • PipPip
    • 29 posts

    I was using Teamviewer at the time.  I wasn't in front of my computer then, but I updated it to version 11 now.  I can shut it off if we need to, just let me know.

     

    I ran the memory test and it made two log files that said:  The Windows Memory Diagnostic tested the computer's memory and detected no errors.

     

    So I guess it didn't find anything.  It only took about 5 minutes or less to do the test. 


    • 0

    #8
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 24,598 posts
    • MVP

    I would like to see a Process Explorer log without TeamViewer if you get a chance.

     

    There is a better memory test:

     

    http://www.memtest.org/

     

    You have to put it on a CD or or USB drive and boot from it.  Once it starts running it will keep running until you stop it.  Most people let it do several passes to make sure that the memory isn't flaky.

     

     
    Right click on (My) Computer and select Manage (Continue) Then click on the arrow in front of Event Viewer. Next Click on the arrow in front of Windows Logs Right click on System and Clear Log, Clear. Repeat for Application.
     
    Reboot. 
     
    Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator.  Then type (with an Enter after each line).
    sfc  /scannow
     
     
     
    Copy the next two lines:
     
    findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log  >  \windows\logs\cbs\junk.txt 
    notepad \windows\logs\cbs\junk.txt 
     
    Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.
    Hit Enter. Copy and paste the text from notepad or if it is too big, just attach the file.)
     
     
    1. Please download the Event Viewer Tool by Vino Rosso
    and save it to your Desktop:
    2. Right-click VEW.exe and Run AS Administrator
    3. Under 'Select log to query', select:
     
    * System
    4. Under 'Select type to list', select:
    * Error
    * Warning
     
     
    Then use the 'Number of events' as follows:
     
     
    1. Click the radio button for 'Number of events'
    Type 20 in the 1 to 20 box
    Then click the Run button.
    Notepad will open with the output log.
     
     
    Please post the Output log in your next reply then repeat but select Application.  (Each time you run VEW it overwrites the log so copy the first one to a Reply or rename it before running it a second time.)
     
    It might be worth monitoring the temps in real time with Speedfan:
     
     
    Download, save and Install it (Win 7 or Vista right click and Run As Admin.) then run it (Win 7 or Vista right click and Run As Admin.).
     
    It will tell you your temps in real time tho the default is to show the hard drive temp in the systray.  You can change it:  Hit Configure then click on the highest temp and check Show in tray
     

    • 0

    #9
    adjc98

    adjc98

      Member

    • Topic Starter
    • Member
    • PipPip
    • 29 posts

    I will run memtest86 tomorrow.

     

    Here are the results from the rest of run commands you asked for:

     

     

    Speedfan wouldn't run , Windows said it was not compatible with 64 bit system

     

    Thank You!

     

    2016-08-03 19:53:29, Info                  CSI    00000009 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:29, Info                  CSI    0000000a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:30, Info                  CSI    0000000c [SR] Verify complete
    2016-08-03 19:53:30, Info                  CSI    0000000d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:30, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:30, Info                  CSI    00000010 [SR] Verify complete
    2016-08-03 19:53:30, Info                  CSI    00000011 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:30, Info                  CSI    00000012 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:30, Info                  CSI    00000014 [SR] Verify complete
    2016-08-03 19:53:30, Info                  CSI    00000015 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:30, Info                  CSI    00000016 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:30, Info                  CSI    00000018 [SR] Verify complete
    2016-08-03 19:53:31, Info                  CSI    00000019 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:31, Info                  CSI    0000001a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:31, Info                  CSI    0000001c [SR] Verify complete
    2016-08-03 19:53:31, Info                  CSI    0000001d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:31, Info                  CSI    0000001e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:31, Info                  CSI    00000020 [SR] Verify complete
    2016-08-03 19:53:31, Info                  CSI    00000021 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:31, Info                  CSI    00000022 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:31, Info                  CSI    00000024 [SR] Verify complete
    2016-08-03 19:53:31, Info                  CSI    00000025 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:31, Info                  CSI    00000026 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:32, Info                  CSI    00000028 [SR] Verify complete
    2016-08-03 19:53:32, Info                  CSI    00000029 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:32, Info                  CSI    0000002a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:32, Info                  CSI    0000002c [SR] Verify complete
    2016-08-03 19:53:32, Info                  CSI    0000002d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:32, Info                  CSI    0000002e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:32, Info                  CSI    00000030 [SR] Verify complete
    2016-08-03 19:53:32, Info                  CSI    00000031 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:32, Info                  CSI    00000032 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:33, Info                  CSI    00000034 [SR] Verify complete
    2016-08-03 19:53:33, Info                  CSI    00000035 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:33, Info                  CSI    00000036 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:33, Info                  CSI    00000038 [SR] Verify complete
    2016-08-03 19:53:33, Info                  CSI    00000039 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:33, Info                  CSI    0000003a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:33, Info                  CSI    0000003c [SR] Verify complete
    2016-08-03 19:53:33, Info                  CSI    0000003d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:33, Info                  CSI    0000003e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:33, Info                  CSI    00000040 [SR] Verify complete
    2016-08-03 19:53:34, Info                  CSI    00000041 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:34, Info                  CSI    00000042 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:34, Info                  CSI    00000044 [SR] Verify complete
    2016-08-03 19:53:34, Info                  CSI    00000045 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:34, Info                  CSI    00000046 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:34, Info                  CSI    00000048 [SR] Verify complete
    2016-08-03 19:53:34, Info                  CSI    00000049 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:34, Info                  CSI    0000004a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:34, Info                  CSI    0000004c [SR] Verify complete
    2016-08-03 19:53:34, Info                  CSI    0000004d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:34, Info                  CSI    0000004e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:35, Info                  CSI    00000050 [SR] Verify complete
    2016-08-03 19:53:35, Info                  CSI    00000051 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:35, Info                  CSI    00000052 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:35, Info                  CSI    00000054 [SR] Verify complete
    2016-08-03 19:53:35, Info                  CSI    00000055 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:35, Info                  CSI    00000056 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:35, Info                  CSI    00000058 [SR] Verify complete
    2016-08-03 19:53:35, Info                  CSI    00000059 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:35, Info                  CSI    0000005a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:36, Info                  CSI    0000005c [SR] Verify complete
    2016-08-03 19:53:36, Info                  CSI    0000005d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:36, Info                  CSI    0000005e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:36, Info                  CSI    00000060 [SR] Verify complete
    2016-08-03 19:53:36, Info                  CSI    00000061 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:36, Info                  CSI    00000062 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:36, Info                  CSI    00000064 [SR] Verify complete
    2016-08-03 19:53:37, Info                  CSI    00000065 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:37, Info                  CSI    00000066 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:37, Info                  CSI    00000068 [SR] Verify complete
    2016-08-03 19:53:37, Info                  CSI    00000069 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:37, Info                  CSI    0000006a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:37, Info                  CSI    0000006c [SR] Verify complete
    2016-08-03 19:53:37, Info                  CSI    0000006d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:37, Info                  CSI    0000006e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:37, Info                  CSI    00000070 [SR] Verify complete
    2016-08-03 19:53:38, Info                  CSI    00000071 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:38, Info                  CSI    00000072 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:38, Info                  CSI    00000074 [SR] Verify complete
    2016-08-03 19:53:38, Info                  CSI    00000075 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:38, Info                  CSI    00000076 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:38, Info                  CSI    00000078 [SR] Verify complete
    2016-08-03 19:53:38, Info                  CSI    00000079 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:38, Info                  CSI    0000007a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:38, Info                  CSI    0000007c [SR] Verify complete
    2016-08-03 19:53:39, Info                  CSI    0000007d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:39, Info                  CSI    0000007e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:39, Info                  CSI    00000080 [SR] Verify complete
    2016-08-03 19:53:39, Info                  CSI    00000081 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:39, Info                  CSI    00000082 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:39, Info                  CSI    00000084 [SR] Verify complete
    2016-08-03 19:53:39, Info                  CSI    00000085 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:39, Info                  CSI    00000086 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:40, Info                  CSI    00000088 [SR] Verify complete
    2016-08-03 19:53:40, Info                  CSI    00000089 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:40, Info                  CSI    0000008a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:40, Info                  CSI    0000008c [SR] Verify complete
    2016-08-03 19:53:40, Info                  CSI    0000008d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:40, Info                  CSI    0000008e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:41, Info                  CSI    00000090 [SR] Verify complete
    2016-08-03 19:53:41, Info                  CSI    00000091 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:41, Info                  CSI    00000092 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:43, Info                  CSI    00000095 [SR] Verify complete
    2016-08-03 19:53:43, Info                  CSI    00000096 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:43, Info                  CSI    00000097 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:44, Info                  CSI    0000009c [SR] Verify complete
    2016-08-03 19:53:44, Info                  CSI    0000009d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:44, Info                  CSI    0000009e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:45, Info                  CSI    000000a1 [SR] Verify complete
    2016-08-03 19:53:45, Info                  CSI    000000a2 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:45, Info                  CSI    000000a3 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:46, Info                  CSI    000000a5 [SR] Verify complete
    2016-08-03 19:53:46, Info                  CSI    000000a6 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:46, Info                  CSI    000000a7 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:48, Info                  CSI    000000ba [SR] Verify complete
    2016-08-03 19:53:48, Info                  CSI    000000bb [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:48, Info                  CSI    000000bc [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:50, Info                  CSI    000000d0 [SR] Verify complete
    2016-08-03 19:53:50, Info                  CSI    000000d1 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:50, Info                  CSI    000000d2 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:51, Info                  CSI    000000d4 [SR] Verify complete
    2016-08-03 19:53:51, Info                  CSI    000000d5 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:51, Info                  CSI    000000d6 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:52, Info                  CSI    000000d8 [SR] Verify complete
    2016-08-03 19:53:52, Info                  CSI    000000d9 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:52, Info                  CSI    000000da [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:53, Info                  CSI    000000dc [SR] Verify complete
    2016-08-03 19:53:53, Info                  CSI    000000dd [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:53, Info                  CSI    000000de [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:54, Info                  CSI    000000e0 [SR] Verify complete
    2016-08-03 19:53:54, Info                  CSI    000000e1 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:54, Info                  CSI    000000e2 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:55, Info                  CSI    000000e4 [SR] Verify complete
    2016-08-03 19:53:55, Info                  CSI    000000e5 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:55, Info                  CSI    000000e6 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:57, Info                  CSI    000000ea [SR] Verify complete
    2016-08-03 19:53:57, Info                  CSI    000000eb [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:57, Info                  CSI    000000ec [SR] Beginning Verify and Repair transaction
    2016-08-03 19:53:59, Info                  CSI    0000010d [SR] Verify complete
    2016-08-03 19:53:59, Info                  CSI    0000010e [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:53:59, Info                  CSI    0000010f [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:02, Info                  CSI    00000111 [SR] Verify complete
    2016-08-03 19:54:02, Info                  CSI    00000112 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:02, Info                  CSI    00000113 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:04, Info                  CSI    00000115 [SR] Verify complete
    2016-08-03 19:54:04, Info                  CSI    00000116 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:04, Info                  CSI    00000117 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:05, Info                  CSI    0000011b [SR] Verify complete
    2016-08-03 19:54:06, Info                  CSI    0000011c [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:06, Info                  CSI    0000011d [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:06, Info                  CSI    0000011f [SR] Verify complete
    2016-08-03 19:54:06, Info                  CSI    00000120 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:06, Info                  CSI    00000121 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:06, Info                  CSI    00000123 [SR] Verify complete
    2016-08-03 19:54:06, Info                  CSI    00000124 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:06, Info                  CSI    00000125 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:07, Info                  CSI    00000127 [SR] Verify complete
    2016-08-03 19:54:07, Info                  CSI    00000128 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:07, Info                  CSI    00000129 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:11, Info                  CSI    0000013c [SR] Verify complete
    2016-08-03 19:54:11, Info                  CSI    0000013d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:11, Info                  CSI    0000013e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:11, Info                  CSI    00000140 [SR] Verify complete
    2016-08-03 19:54:11, Info                  CSI    00000141 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:11, Info                  CSI    00000142 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:12, Info                  CSI    00000144 [SR] Verify complete
    2016-08-03 19:54:12, Info                  CSI    00000145 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:12, Info                  CSI    00000146 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:12, Info                  CSI    00000148 [SR] Verify complete
    2016-08-03 19:54:12, Info                  CSI    00000149 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:12, Info                  CSI    0000014a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:14, Info                  CSI    0000014d [SR] Verify complete
    2016-08-03 19:54:14, Info                  CSI    0000014e [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:14, Info                  CSI    0000014f [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:17, Info                  CSI    00000152 [SR] Verify complete
    2016-08-03 19:54:17, Info                  CSI    00000153 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:17, Info                  CSI    00000154 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:18, Info                  CSI    00000156 [SR] Verify complete
    2016-08-03 19:54:18, Info                  CSI    00000157 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:18, Info                  CSI    00000158 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:18, Info                  CSI    0000015a [SR] Verify complete
    2016-08-03 19:54:18, Info                  CSI    0000015b [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:18, Info                  CSI    0000015c [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:19, Info                  CSI    0000015e [SR] Verify complete
    2016-08-03 19:54:20, Info                  CSI    0000015f [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:20, Info                  CSI    00000160 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:21, Info                  CSI    00000162 [SR] Verify complete
    2016-08-03 19:54:21, Info                  CSI    00000163 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:21, Info                  CSI    00000164 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:22, Info                  CSI    00000166 [SR] Verify complete
    2016-08-03 19:54:22, Info                  CSI    00000167 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:22, Info                  CSI    00000168 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:26, Info                  CSI    0000017b [SR] Verify complete
    2016-08-03 19:54:26, Info                  CSI    0000017c [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:26, Info                  CSI    0000017d [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:28, Info                  CSI    00000184 [SR] Verify complete
    2016-08-03 19:54:28, Info                  CSI    00000185 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:28, Info                  CSI    00000186 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:32, Info                  CSI    00000188 [SR] Verify complete
    2016-08-03 19:54:32, Info                  CSI    00000189 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:32, Info                  CSI    0000018a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:33, Info                  CSI    0000018c [SR] Verify complete
    2016-08-03 19:54:34, Info                  CSI    0000018d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:34, Info                  CSI    0000018e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:36, Info                  CSI    00000191 [SR] Verify complete
    2016-08-03 19:54:36, Info                  CSI    00000192 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:36, Info                  CSI    00000193 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:37, Info                  CSI    00000195 [SR] Verify complete
    2016-08-03 19:54:37, Info                  CSI    00000196 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:37, Info                  CSI    00000197 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:38, Info                  CSI    00000199 [SR] Verify complete
    2016-08-03 19:54:38, Info                  CSI    0000019a [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:38, Info                  CSI    0000019b [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:39, Info                  CSI    0000019d [SR] Verify complete
    2016-08-03 19:54:39, Info                  CSI    0000019e [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:39, Info                  CSI    0000019f [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:40, Info                  CSI    000001a1 [SR] Verify complete
    2016-08-03 19:54:40, Info                  CSI    000001a2 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:40, Info                  CSI    000001a3 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:41, Info                  CSI    000001a7 [SR] Verify complete
    2016-08-03 19:54:41, Info                  CSI    000001a8 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:41, Info                  CSI    000001a9 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:44, Info                  CSI    000001ab [SR] Verify complete
    2016-08-03 19:54:44, Info                  CSI    000001ac [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:44, Info                  CSI    000001ad [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:45, Info                  CSI    000001b0 [SR] Verify complete
    2016-08-03 19:54:45, Info                  CSI    000001b1 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:45, Info                  CSI    000001b2 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:46, Info                  CSI    000001b5 [SR] Verify complete
    2016-08-03 19:54:46, Info                  CSI    000001b6 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:46, Info                  CSI    000001b7 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:48, Info                  CSI    000001b9 [SR] Verify complete
    2016-08-03 19:54:48, Info                  CSI    000001ba [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:48, Info                  CSI    000001bb [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:50, Info                  CSI    000001be [SR] Verify complete
    2016-08-03 19:54:50, Info                  CSI    000001bf [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:50, Info                  CSI    000001c0 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:51, Info                  CSI    000001c2 [SR] Verify complete
    2016-08-03 19:54:51, Info                  CSI    000001c3 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:51, Info                  CSI    000001c4 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:52, Info                  CSI    000001c6 [SR] Repairing corrupted file [ml:520{260},l:108{54}]"\??\C:\Program Files\Common Files\Microsoft Shared\Ink"\[l:22{11}]"hwruklm.dat" from store
    2016-08-03 19:54:52, Info                  CSI    000001c8 [SR] Verify complete
    2016-08-03 19:54:52, Info                  CSI    000001c9 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:52, Info                  CSI    000001ca [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:53, Info                  CSI    000001cc [SR] Verify complete
    2016-08-03 19:54:53, Info                  CSI    000001cd [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:53, Info                  CSI    000001ce [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:55, Info                  CSI    000001d1 [SR] Verify complete
    2016-08-03 19:54:55, Info                  CSI    000001d2 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:55, Info                  CSI    000001d3 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:56, Info                  CSI    000001d5 [SR] Verify complete
    2016-08-03 19:54:56, Info                  CSI    000001d6 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:56, Info                  CSI    000001d7 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:57, Info                  CSI    000001da [SR] Verify complete
    2016-08-03 19:54:57, Info                  CSI    000001db [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:57, Info                  CSI    000001dc [SR] Beginning Verify and Repair transaction
    2016-08-03 19:54:58, Info                  CSI    000001df [SR] Verify complete
    2016-08-03 19:54:58, Info                  CSI    000001e0 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:54:58, Info                  CSI    000001e1 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:00, Info                  CSI    000001e4 [SR] Verify complete
    2016-08-03 19:55:00, Info                  CSI    000001e5 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:00, Info                  CSI    000001e6 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:01, Info                  CSI    000001e9 [SR] Verify complete
    2016-08-03 19:55:01, Info                  CSI    000001ea [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:01, Info                  CSI    000001eb [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:02, Info                  CSI    000001ed [SR] Verify complete
    2016-08-03 19:55:03, Info                  CSI    000001ee [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:03, Info                  CSI    000001ef [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:04, Info                  CSI    000001f2 [SR] Verify complete
    2016-08-03 19:55:04, Info                  CSI    000001f3 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:04, Info                  CSI    000001f4 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:05, Info                  CSI    000001f6 [SR] Verify complete
    2016-08-03 19:55:05, Info                  CSI    000001f7 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:05, Info                  CSI    000001f8 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:05, Info                  CSI    000001fa [SR] Verify complete
    2016-08-03 19:55:06, Info                  CSI    000001fb [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:06, Info                  CSI    000001fc [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:07, Info                  CSI    000001fe [SR] Verify complete
    2016-08-03 19:55:07, Info                  CSI    000001ff [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:07, Info                  CSI    00000200 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:07, Info                  CSI    00000202 [SR] Verify complete
    2016-08-03 19:55:07, Info                  CSI    00000203 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:07, Info                  CSI    00000204 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:09, Info                  CSI    00000206 [SR] Verify complete
    2016-08-03 19:55:09, Info                  CSI    00000207 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:09, Info                  CSI    00000208 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:09, Info                  CSI    0000020a [SR] Verify complete
    2016-08-03 19:55:09, Info                  CSI    0000020b [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:09, Info                  CSI    0000020c [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:10, Info                  CSI    0000020e [SR] Verify complete
    2016-08-03 19:55:10, Info                  CSI    0000020f [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:10, Info                  CSI    00000210 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:12, Info                  CSI    00000212 [SR] Verify complete
    2016-08-03 19:55:12, Info                  CSI    00000213 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:12, Info                  CSI    00000214 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:15, Info                  CSI    00000216 [SR] Verify complete
    2016-08-03 19:55:15, Info                  CSI    00000217 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:15, Info                  CSI    00000218 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:16, Info                  CSI    0000021a [SR] Verify complete
    2016-08-03 19:55:16, Info                  CSI    0000021b [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:16, Info                  CSI    0000021c [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:17, Info                  CSI    0000021e [SR] Verify complete
    2016-08-03 19:55:17, Info                  CSI    0000021f [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:17, Info                  CSI    00000220 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:17, Info                  CSI    00000222 [SR] Verify complete
    2016-08-03 19:55:17, Info                  CSI    00000223 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:17, Info                  CSI    00000224 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:18, Info                  CSI    00000226 [SR] Verify complete
    2016-08-03 19:55:18, Info                  CSI    00000227 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:18, Info                  CSI    00000228 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:18, Info                  CSI    0000022a [SR] Verify complete
    2016-08-03 19:55:19, Info                  CSI    0000022b [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:19, Info                  CSI    0000022c [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:19, Info                  CSI    0000022e [SR] Verify complete
    2016-08-03 19:55:19, Info                  CSI    0000022f [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:19, Info                  CSI    00000230 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:19, Info                  CSI    00000232 [SR] Verify complete
    2016-08-03 19:55:19, Info                  CSI    00000233 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:19, Info                  CSI    00000234 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:21, Info                  CSI    0000023c [SR] Verify complete
    2016-08-03 19:55:21, Info                  CSI    0000023d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:21, Info                  CSI    0000023e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:22, Info                  CSI    00000240 [SR] Verify complete
    2016-08-03 19:55:22, Info                  CSI    00000241 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:22, Info                  CSI    00000242 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:23, Info                  CSI    00000244 [SR] Verify complete
    2016-08-03 19:55:23, Info                  CSI    00000245 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:23, Info                  CSI    00000246 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:23, Info                  CSI    00000248 [SR] Verify complete
    2016-08-03 19:55:24, Info                  CSI    00000249 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:24, Info                  CSI    0000024a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:24, Info                  CSI    0000024c [SR] Verify complete
    2016-08-03 19:55:24, Info                  CSI    0000024d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:24, Info                  CSI    0000024e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:26, Info                  CSI    00000251 [SR] Verify complete
    2016-08-03 19:55:26, Info                  CSI    00000252 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:26, Info                  CSI    00000253 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:28, Info                  CSI    00000255 [SR] Verify complete
    2016-08-03 19:55:29, Info                  CSI    00000256 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:29, Info                  CSI    00000257 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:29, Info                  CSI    00000259 [SR] Verify complete
    2016-08-03 19:55:29, Info                  CSI    0000025a [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:29, Info                  CSI    0000025b [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:31, Info                  CSI    0000025d [SR] Verify complete
    2016-08-03 19:55:31, Info                  CSI    0000025e [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:31, Info                  CSI    0000025f [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:34, Info                  CSI    00000264 [SR] Verify complete
    2016-08-03 19:55:35, Info                  CSI    00000265 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:35, Info                  CSI    00000266 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:36, Info                  CSI    0000026b [SR] Verify complete
    2016-08-03 19:55:36, Info                  CSI    0000026c [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:36, Info                  CSI    0000026d [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:38, Info                  CSI    00000270 [SR] Verify complete
    2016-08-03 19:55:38, Info                  CSI    00000271 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:38, Info                  CSI    00000272 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:40, Info                  CSI    0000027f [SR] Verify complete
    2016-08-03 19:55:40, Info                  CSI    00000280 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:40, Info                  CSI    00000281 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:41, Info                  CSI    00000287 [SR] Verify complete
    2016-08-03 19:55:41, Info                  CSI    00000288 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:41, Info                  CSI    00000289 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:42, Info                  CSI    0000028b [SR] Verify complete
    2016-08-03 19:55:42, Info                  CSI    0000028c [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:42, Info                  CSI    0000028d [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:43, Info                  CSI    00000291 [SR] Verify complete
    2016-08-03 19:55:43, Info                  CSI    00000292 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:43, Info                  CSI    00000293 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:44, Info                  CSI    00000295 [SR] Verify complete
    2016-08-03 19:55:44, Info                  CSI    00000296 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:44, Info                  CSI    00000297 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:46, Info                  CSI    000002bc [SR] Verify complete
    2016-08-03 19:55:46, Info                  CSI    000002bd [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:46, Info                  CSI    000002be [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:47, Info                  CSI    000002c0 [SR] Verify complete
    2016-08-03 19:55:47, Info                  CSI    000002c1 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:47, Info                  CSI    000002c2 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:48, Info                  CSI    000002c4 [SR] Verify complete
    2016-08-03 19:55:48, Info                  CSI    000002c5 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:48, Info                  CSI    000002c6 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:49, Info                  CSI    000002c8 [SR] Verify complete
    2016-08-03 19:55:49, Info                  CSI    000002c9 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:49, Info                  CSI    000002ca [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:50, Info                  CSI    000002d8 [SR] Verify complete
    2016-08-03 19:55:50, Info                  CSI    000002d9 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:50, Info                  CSI    000002da [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:51, Info                  CSI    000002dc [SR] Verify complete
    2016-08-03 19:55:51, Info                  CSI    000002dd [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:51, Info                  CSI    000002de [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:54, Info                  CSI    000002ec [SR] Verify complete
    2016-08-03 19:55:54, Info                  CSI    000002ed [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:54, Info                  CSI    000002ee [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:54, Info                  CSI    000002f0 [SR] Verify complete
    2016-08-03 19:55:54, Info                  CSI    000002f1 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:54, Info                  CSI    000002f2 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:55, Info                  CSI    000002f4 [SR] Verify complete
    2016-08-03 19:55:55, Info                  CSI    000002f5 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:55, Info                  CSI    000002f6 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:57, Info                  CSI    000002f9 [SR] Verify complete
    2016-08-03 19:55:57, Info                  CSI    000002fa [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:57, Info                  CSI    000002fb [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:57, Info                  CSI    000002fd [SR] Verify complete
    2016-08-03 19:55:57, Info                  CSI    000002fe [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:57, Info                  CSI    000002ff [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:58, Info                  CSI    00000301 [SR] Verify complete
    2016-08-03 19:55:58, Info                  CSI    00000302 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:58, Info                  CSI    00000303 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:55:59, Info                  CSI    00000305 [SR] Verify complete
    2016-08-03 19:55:59, Info                  CSI    00000306 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:55:59, Info                  CSI    00000307 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:01, Info                  CSI    00000310 [SR] Verify complete
    2016-08-03 19:56:01, Info                  CSI    00000311 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:01, Info                  CSI    00000312 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:03, Info                  CSI    00000325 [SR] Verify complete
    2016-08-03 19:56:03, Info                  CSI    00000326 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:03, Info                  CSI    00000327 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:07, Info                  CSI    00000329 [SR] Verify complete
    2016-08-03 19:56:07, Info                  CSI    0000032a [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:07, Info                  CSI    0000032b [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:08, Info                  CSI    0000032d [SR] Verify complete
    2016-08-03 19:56:08, Info                  CSI    0000032e [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:08, Info                  CSI    0000032f [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:09, Info                  CSI    00000331 [SR] Verify complete
    2016-08-03 19:56:09, Info                  CSI    00000332 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:09, Info                  CSI    00000333 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:09, Info                  CSI    00000337 [SR] Verify complete
    2016-08-03 19:56:10, Info                  CSI    00000338 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:10, Info                  CSI    00000339 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:10, Info                  CSI    0000033b [SR] Verify complete
    2016-08-03 19:56:10, Info                  CSI    0000033c [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:10, Info                  CSI    0000033d [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:11, Info                  CSI    0000033f [SR] Verify complete
    2016-08-03 19:56:11, Info                  CSI    00000340 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:11, Info                  CSI    00000341 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:12, Info                  CSI    00000343 [SR] Verify complete
    2016-08-03 19:56:12, Info                  CSI    00000344 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:12, Info                  CSI    00000345 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:13, Info                  CSI    00000348 [SR] Verify complete
    2016-08-03 19:56:13, Info                  CSI    00000349 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:13, Info                  CSI    0000034a [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:14, Info                  CSI    0000034c [SR] Verify complete
    2016-08-03 19:56:14, Info                  CSI    0000034d [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:14, Info                  CSI    0000034e [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:15, Info                  CSI    00000350 [SR] Verify complete
    2016-08-03 19:56:15, Info                  CSI    00000351 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:15, Info                  CSI    00000352 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:16, Info                  CSI    00000354 [SR] Verify complete
    2016-08-03 19:56:16, Info                  CSI    00000355 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:16, Info                  CSI    00000356 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:17, Info                  CSI    00000359 [SR] Verify complete
    2016-08-03 19:56:17, Info                  CSI    0000035a [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:17, Info                  CSI    0000035b [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:18, Info                  CSI    0000035d [SR] Verify complete
    2016-08-03 19:56:18, Info                  CSI    0000035e [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:18, Info                  CSI    0000035f [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:19, Info                  CSI    00000361 [SR] Verify complete
    2016-08-03 19:56:19, Info                  CSI    00000362 [SR] Verifying 100 (0x0000000000000064) components
    2016-08-03 19:56:19, Info                  CSI    00000363 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:20, Info                  CSI    00000365 [SR] Verify complete
    2016-08-03 19:56:20, Info                  CSI    00000366 [SR] Verifying 66 (0x0000000000000042) components
    2016-08-03 19:56:20, Info                  CSI    00000367 [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:21, Info                  CSI    00000369 [SR] Verify complete
    2016-08-03 19:56:21, Info                  CSI    0000036a [SR] Repairing 1 components
    2016-08-03 19:56:21, Info                  CSI    0000036b [SR] Beginning Verify and Repair transaction
    2016-08-03 19:56:21, Info                  CSI    0000036d [SR] Cannot repair member file [l:22{11}]"hwruklm.dat" of Microsoft-Windows-TabletPC-CoreInkRecognition.en-gb.ale, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture = [l:10{5}]"en-gb", VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
    2016-08-03 19:56:21, Info                  CSI    0000036f [SR] Cannot repair member file [l:22{11}]"hwruklm.dat" of Microsoft-Windows-TabletPC-CoreInkRecognition.en-gb.ale, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture = [l:10{5}]"en-gb", VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
    2016-08-03 19:56:21, Info                  CSI    00000370 [SR] This component was referenced by [l:174{87}]"Microsoft-Windows-TabletPC-OC-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.TabletPCOC"
    2016-08-03 19:56:21, Info                  CSI    00000373 [SR] Could not reproject corrupted file [ml:520{260},l:108{54}]"\??\C:\Program Files\Common Files\Microsoft Shared\Ink"\[l:22{11}]"hwruklm.dat"; source file in store is also corrupted
    2016-08-03 19:56:21, Info                  CSI    00000375 [SR] Repair complete
    2016-08-03 19:56:21, Info                  CSI    00000376 [SR] Committing transaction
    2016-08-03 19:56:21, Info                  CSI    0000037a [SR] Verify and Repair Transaction completed. All files and registry keys listed in this transaction  have been successfully repaired
     
     
    Vino's Event Viewer v01c run on Windows 2008 in English
    Report run at 03/08/2016 8:02:03 PM
     
    Note: All dates below are in the format dd/mm/yyyy
     
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - Critical Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - Error Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - Warning Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
     
     
    Vino's Event Viewer v01c run on Windows 2008 in English
    Report run at 03/08/2016 8:03:54 PM
     
    Note: All dates below are in the format dd/mm/yyyy
     
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - Critical Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - Error Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - Warning Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
     
     
     
     

     

    Attached Thumbnails

    • notrunspeed.JPG
    • notrunspeed2.JPG

    • 0

    #10
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 24,598 posts
    • MVP

    When trying to install Speedfan did you remember to right click and run as administrator?  It really ought to run.  I have a 64 bit system win 7 too  and it works without a problem.

     

    Can you reboot if you haven't already and rerun VEW?


    • 0

    #11
    adjc98

    adjc98

      Member

    • Topic Starter
    • Member
    • PipPip
    • 29 posts

    Ok, I ran memtest86+ for 1.5 passes and got 95 errors.  Looks like I might have bad ram.  I am uploading a screenshot to get your opinion.  It was on a total of 24 GB of ram 3 at 8 GB a piece.

     

    I can try and run  VEW again tonight after a reboot.

     

    I think I am going to start running memtest86+ with a stick of ram, one at a time to narrow down a culprit.

     

    20160804_184218.jpg


    • 0

    #12
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 24,598 posts
    • MVP

    Makes sense that some RAM is bad.  Couldn't see anything else that would cause your problems.  One at a time is a good idea.


    • 0

    #13
    adjc98

    adjc98

      Member

    • Topic Starter
    • Member
    • PipPip
    • 29 posts

    Thanks for the help.  I definitely had a bad stick of ram. After reading the reviews on this particular Ram stick I have installed on this computer I saw way too many reviews with Ram failing after a year or two for this brand.  I am going to just replace all of my Ram in the computer with another brand.  I will update you once I install it.  I am planning on installing around the 15th of August.  


    • 0

    #14
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 24,598 posts
    • MVP

    Glad you found the problem.  I don't lock posts so you should be able to just Reply when you get the new RAM installed.  Hint:  Test the new RAM with memtest as soon as you get it.


    • 0






    Similar Topics

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP