Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

RegSvr32 Error after removing with MalwareBytes and AdwCleaner

google chrome virus

  • Please log in to reply

#1
lolokzarecool

lolokzarecool

    New Member

  • Member
  • Pip
  • 2 posts

I recently got infected with a virus which screwed up my chrome and was randomly installing things on my pc.. Now after running malwarebytes and adw cleaner sometimes if i run the malwarebytes scan again the virus comes back.

What should i do? It is also producing this error on startup.
error.png
 


  • 0

Advertisements


#2
lolokzarecool

lolokzarecool

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts

From googling and searching the forum i also saw the step to scan using Farbar and here are the logs usually requested.

FRST.tx

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-10-2016
Ran by Kitz (administrator) on KITZ-PC (01-11-2016 00:41:37)
Running from C:\Users\Kitz\Downloads
Loaded Profiles: Kitz (Available Profiles: Kitz)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser not detected!)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Hammer & Chisel, Inc.) C:\Users\Kitz\AppData\Local\Discord\app-0.0.296\Discord.exe
(Flux Software LLC) C:\Users\Kitz\AppData\Local\FluxSoftware\Flux\flux.exe
(BitTorrent, Inc.) G:\uTorrent.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Hammer & Chisel, Inc.) C:\Users\Kitz\AppData\Local\Discord\app-0.0.296\Discord.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
(Hammer & Chisel, Inc.) C:\Users\Kitz\AppData\Local\Discord\app-0.0.296\Discord.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\mspaint.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ====================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8521968 2015-08-06] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1844280 2016-09-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216 2015-06-15] (Intel Corporation)
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2860832 2016-10-13] (Valve Corporation)
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\Run: [Discord] => C:\Users\Kitz\AppData\Local\Discord\app-0.0.296\Discord.exe [62471352 2016-08-24] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\Run: [f.lux] => C:\Users\Kitz\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC)
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\Run: [uTorrent] => G:\uTorrent.exe [399736 2016-09-12] (BitTorrent, Inc.)
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\Run: [Akzworks] => C:\Windows\SysWOW64\regsvr32.exe C:\Users\Kitz\AppData\Local\Imvmsoft\cdzmucjt.dll
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8912088 2016-08-27] (Piriform Ltd)
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\MountPoints2: {babc12dc-833a-11e6-956c-305a3a455e1f} - D:\OnePlus_setup.exe /s
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\MountPoints2: {e89c4449-77d7-11e6-8fed-806e6f6e6963} - D:\Autorun.exe
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4
Tcpip\..\Interfaces\{397D0EF8-50E3-4FAF-891B-3502BAFBE58F}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{397D0EF8-50E3-4FAF-891B-3502BAFBE58F}: [DhcpNameServer] 192.168.1.1
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
SearchScopes: HKU\S-1-5-21-3699050178-1426195755-1879288008-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
 
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-10-24] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-10-24] (Google Inc.)
 
Chrome: 
=======
CHR DefaultProfile: ChromeDefaultData
CHR HomePage: ChromeDefaultData -> hxxp://www.reddit.com/r/DotA2/
CHR StartupUrls: ChromeDefaultData -> "hxxp://www.youndoo.com/?z=a311236d336993ba7f98076g5z1mfqco1ebz8g3m2t&from=amz&uid=KINGSTONXSUV400S37240G_50026B72680253BD&type=hp","hxxp://www.google.com/","hxxp://www.youndoo.com/?z=0dd8f5b44799fc6ced11a3fg5z8m8qaoeq2t4tdt6o&from=amz&uid=KINGSTONXSUV400S37240G_50026B72680253BD&type=hp","hxxp://www.mylucky123.com/?type=hp&ts=1477408857&z=383d97f883b1fecb561b6f5gcz2m4m2zbeab0b0w6t&from=interhop1024&uid=KINGSTONXSUV400S37240G_50026B72680253BD"
CHR Session Restore: ChromeDefaultData -> is enabled.
CHR Profile: C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2016-11-01] <==== ATTENTION
CHR Extension: (BetterTTV) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2016-10-26]
CHR Extension: (uBlock Origin) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2016-10-28]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2016-10-26]
CHR Extension: (Black Black Chrome Theme Dark Blue Highlight) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\njpbabhpbnilgchdjbajcbgnnclkaida [2016-10-24]
CHR Extension: (Hover Zoom+) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pccckmaobkjjboncdfnnofkonhgpceea [2016-10-26]
CHR Extension: (Chrome Media Router) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-24]
CHR Profile: C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default [2016-11-01]
CHR Extension: (BetterTTV) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2016-10-12]
CHR Extension: (uBlock Origin) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2016-10-12]
CHR Extension: (Tampermonkey) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2016-10-12]
CHR Extension: (Session Buddy) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko [2016-10-12]
CHR Extension: (Chrome extension source viewer) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\jifpbeccnghkjeaalbbjmodiffmgedin [2016-10-12]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2016-10-12]
CHR Extension: (Black Black Chrome Theme Dark Blue Highlight) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\njpbabhpbnilgchdjbajcbgnnclkaida [2016-10-12]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-12]
CHR Extension: (Enhanced Steam) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\okadibdjfemgnhjiembecghcbfknbfhg [2016-10-12]
CHR Extension: (Hover Zoom+) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pccckmaobkjjboncdfnnofkonhgpceea [2016-10-12]
CHR Extension: (Chrome Media Router) - C:\Users\Kitz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-12]
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1468608 2016-10-06] (Disc Soft Ltd)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [457272 2016-09-30] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [457272 2016-09-30] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-10-26] (NVIDIA Corporation)
R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1165368 2016-09-30] (NVIDIA Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2015-08-18] (Microsoft Corporation)
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 cpuz140; C:\Users\Kitz\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [43840 2016-10-28] (CPUID)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2016-10-12] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2016-10-12] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-11] (Broadcom Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [29240 2016-09-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47672 2016-09-30] (NVIDIA Corporation)
S4 NVHDA; system32\drivers\nvhda64v.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-11-01 00:41 - 2016-11-01 00:41 - 02408960 _____ (Farbar) C:\Users\Kitz\Downloads\FRST64.exe
2016-11-01 00:41 - 2016-11-01 00:41 - 00013448 _____ C:\Users\Kitz\Downloads\FRST.txt
2016-11-01 00:41 - 2016-11-01 00:41 - 00000000 ____D C:\FRST
2016-11-01 00:27 - 2016-11-01 00:27 - 00028466 _____ C:\ProgramData\1477931252.bdinstall.bin
2016-11-01 00:25 - 2016-11-01 00:26 - 00000000 ____D C:\AdwCleaner
2016-11-01 00:25 - 2016-11-01 00:25 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\QuickScan
2016-11-01 00:25 - 2016-11-01 00:25 - 00000000 ____D C:\Program Files\Bitdefender Antivirus Free
2016-11-01 00:24 - 2016-11-01 00:25 - 03910208 _____ C:\Users\Kitz\Downloads\AdwCleaner.exe
2016-11-01 00:22 - 2016-11-01 00:27 - 00000000 ____D C:\Program Files\Bitdefender Agent
2016-11-01 00:22 - 2016-11-01 00:23 - 00000000 ____D C:\ProgramData\BDLogging
2016-11-01 00:22 - 2016-11-01 00:22 - 08141704 _____ C:\Users\Kitz\Downloads\bitdefender_online.exe
2016-11-01 00:22 - 2016-11-01 00:22 - 00044134 _____ C:\ProgramData\1477930964.bdinstall.bin
2016-11-01 00:22 - 2016-11-01 00:22 - 00000000 ____D C:\ProgramData\Bitdefender Agent
2016-10-30 14:42 - 2016-10-30 14:42 - 00001098 _____ C:\Users\Public\Desktop\Overwatch.lnk
2016-10-30 04:04 - 2016-10-30 04:04 - 00011410 _____ C:\Users\Kitz\Downloads\LEA-002.torrent
2016-10-30 04:04 - 2016-10-30 04:04 - 00011410 _____ C:\Users\Kitz\Downloads\LEA-002 (1).torrent
2016-10-30 04:04 - 2016-10-30 04:04 - 00011292 _____ C:\Users\Kitz\Downloads\LEA-002.mp4.torrent
2016-10-30 04:03 - 2016-10-30 04:03 - 00013206 _____ C:\Users\Kitz\Downloads\#_LEA001.torrent
2016-10-30 04:02 - 2016-10-30 04:02 - 00032795 _____ C:\Users\Kitz\Downloads\lea-002.HD.mp4 (1).torrent
2016-10-30 04:02 - 2016-10-30 04:02 - 00013699 _____ C:\Users\Kitz\Downloads\LEA004.avi.torrent
2016-10-30 04:02 - 2016-10-30 04:02 - 00013202 _____ C:\Users\Kitz\Downloads\LEA-001.avi.torrent
2016-10-30 04:01 - 2016-10-30 04:01 - 00032795 _____ C:\Users\Kitz\Downloads\lea-002.HD.mp4.torrent
2016-10-30 03:57 - 2016-10-30 03:57 - 00017982 _____ C:\Users\Kitz\Downloads\[HD]KKJ-011.mkv.torrent
2016-10-28 23:10 - 2016-10-28 23:10 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2016-10-28 23:09 - 2016-10-28 23:09 - 22032537 _____ C:\Users\Kitz\Downloads\RTSSSetup640-[Guru3D.com].zip
2016-10-28 22:13 - 2016-11-01 00:27 - 00003018 _____ C:\Windows\System32\Tasks\MSIAfterburner
2016-10-28 21:59 - 2016-10-30 10:21 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2016-10-28 21:59 - 2016-10-30 10:21 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2016-10-28 21:59 - 2016-10-28 21:59 - 00001090 _____ C:\Users\Kitz\Desktop\MSI Afterburner.lnk
2016-10-28 21:59 - 2016-10-28 21:59 - 00000000 ____D C:\Windows\SysWOW64\directx
2016-10-28 21:59 - 2016-10-28 21:59 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2016-10-28 21:59 - 2016-10-28 21:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Kombustor 3
2016-10-28 21:59 - 2016-10-28 21:59 - 00000000 ____D C:\Program Files\MSI Kombustor 3
2016-10-28 21:58 - 2016-10-28 21:59 - 18085042 _____ (MSI Co., LTD ) C:\Users\Kitz\Downloads\MSI_Kombustor_Setup_3.5.0.4_x64.exe
2016-10-28 21:58 - 2016-10-28 21:58 - 40376862 _____ C:\Users\Kitz\Downloads\MSIAfterburnerSetup.zip
2016-10-28 21:47 - 2016-10-28 21:47 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-10-28 21:47 - 2016-09-10 02:25 - 00269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2016-10-28 21:47 - 2016-09-10 02:25 - 00261920 _____ C:\Windows\system32\vulkan-1.dll
2016-10-28 21:47 - 2016-09-10 02:25 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2016-10-28 21:47 - 2016-09-10 02:24 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe
2016-10-28 21:46 - 2016-10-26 05:39 - 40123840 _____ C:\Windows\system32\nvcompiler.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 35224632 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 34701760 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 28138552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 14033976 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-10-28 21:46 - 2016-10-26 05:39 - 10912232 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 10773504 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 10324400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 09113296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 08913512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 08716056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 03628992 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 03193912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 01953336 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437570.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437570.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 01037248 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00974272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00945208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00897080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00683640 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00572888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00521096 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00439864 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00436088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00407064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00388544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00170688 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00153368 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00148200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2016-10-28 21:46 - 2016-10-26 05:39 - 00131536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2016-10-28 21:18 - 2016-10-28 21:18 - 00016298 _____ C:\Users\Kitz\AppData\cc_20161028_211815.reg
2016-10-28 21:16 - 2016-10-28 21:16 - 00160393 _____ C:\Users\Kitz\Downloads\show.do
2016-10-27 00:48 - 2016-10-27 00:48 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\Macromedia
2016-10-27 00:45 - 2016-10-27 00:45 - 00000000 ____D C:\Users\Kitz\Documents\Yunofno
2016-10-27 00:43 - 2016-10-27 00:44 - 00000000 ____D C:\Users\Kitz\AppData\Local\CyberElf
2016-10-26 22:35 - 2016-10-27 00:23 - 00000000 ____D C:\Users\Kitz\AppData\Local\AG___Tia
2016-10-26 22:33 - 2016-10-26 22:33 - 00000000 ____D C:\Users\Kitz\Documents\Temp
2016-10-26 20:53 - 2016-10-26 20:55 - 00000003 _____ C:\Windows\SysWOW64\hoewmds
2016-10-25 01:03 - 2016-10-26 04:17 - 06386232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-10-25 01:03 - 2016-10-26 04:17 - 02475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-10-25 01:03 - 2016-10-26 04:17 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-10-25 01:03 - 2016-10-26 04:17 - 00548408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-10-25 01:03 - 2016-10-26 04:17 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-10-25 01:03 - 2016-10-26 04:17 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-10-25 01:03 - 2016-10-26 04:17 - 00069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-10-25 01:03 - 2016-10-24 14:31 - 07507695 _____ C:\Windows\system32\nvcoproc.bin
2016-10-25 01:02 - 2016-10-26 05:39 - 19925152 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2016-10-25 01:02 - 2016-10-26 05:39 - 17429080 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-10-25 01:02 - 2016-10-26 05:39 - 17348752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2016-10-25 01:02 - 2016-10-26 05:39 - 14397272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2016-10-25 01:02 - 2016-10-26 05:39 - 03933968 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-10-25 01:02 - 2016-10-26 05:39 - 03473368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-10-25 01:02 - 2016-10-26 05:39 - 00492744 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2016-10-25 01:02 - 2016-10-26 05:39 - 00041344 _____ C:\Windows\system32\nvinfo.pb
2016-10-25 01:02 - 2016-10-19 05:23 - 01951680 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437557.dll
2016-10-25 01:02 - 2016-10-19 05:23 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437557.dll
2016-10-25 01:02 - 2016-10-19 05:23 - 00213952 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-10-25 01:02 - 2016-10-19 05:23 - 00201664 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-10-25 01:02 - 2016-10-19 05:23 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-10-25 01:02 - 2016-10-19 05:23 - 00000669 _____ C:\Windows\system32\nv-vk64.json
2016-10-25 00:54 - 2016-10-28 21:59 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\NVIDIA
2016-10-25 00:48 - 2016-10-26 04:13 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2016-10-25 00:48 - 2016-10-26 02:48 - 00001410 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-10-25 00:48 - 2016-10-25 00:48 - 00003828 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-10-25 00:48 - 2016-10-25 00:48 - 00003828 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-10-25 00:48 - 2016-10-25 00:48 - 00003778 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-10-25 00:48 - 2016-10-25 00:48 - 00003766 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-10-25 00:48 - 2016-10-25 00:48 - 00003590 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-10-25 00:48 - 2016-10-25 00:48 - 00003530 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-10-25 00:48 - 2016-10-25 00:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-10-25 00:48 - 2016-09-30 12:25 - 00095800 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2016-10-25 00:48 - 2016-09-30 12:25 - 00047672 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2016-10-24 22:15 - 2016-11-01 00:26 - 00000890 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-24 22:15 - 2016-11-01 00:21 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-10-24 22:15 - 2016-10-24 22:15 - 00003890 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-10-24 22:15 - 2016-10-24 22:15 - 00003638 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-10-24 22:15 - 2016-10-24 22:15 - 00000000 ____D C:\Program Files (x86)\Google
2016-10-24 21:44 - 2016-10-24 21:44 - 00000000 ____D C:\Windows\pss
2016-10-20 23:18 - 2016-11-01 00:26 - 00000000 ____D C:\Windows\system32\log
2016-10-20 23:17 - 2016-10-26 20:55 - 00000000 _____ C:\Users\Public\Documents\report.dat
2016-10-20 23:16 - 2016-10-31 18:29 - 00000000 _____ C:\Users\Public\Documents\temp.dat
2016-10-20 23:16 - 2016-10-20 23:17 - 00000003 _____ C:\Windows\SysWOW64\xaabbbbbbb
2016-10-16 02:58 - 2016-10-16 02:58 - 00132574 _____ C:\Users\Kitz\Downloads\Akihabara Kabukicho Chiropractor Clinic 1-19.torrent
2016-10-16 02:55 - 2016-10-16 02:55 - 00014311 _____ C:\Users\Kitz\Downloads\GS-1702.mp4.torrent
2016-10-16 02:50 - 2016-10-16 02:50 - 00013399 _____ C:\Users\Kitz\Downloads\[Thz.tw][Thz.la]RIX-006.1080p.torrent
2016-10-12 19:08 - 2016-10-12 19:08 - 00000000 ____D C:\Users\Public\Documents\Daemon Tools Images
2016-10-12 19:08 - 2016-10-12 19:08 - 00000000 ____D C:\Users\Kitz\AppData\Local\Disc_Soft_Ltd
2016-10-12 19:08 - 2016-10-12 19:08 - 00000000 ____D C:\Program Files\DAEMON Tools Lite
2016-10-12 19:00 - 2016-10-12 19:00 - 00000000 ____D C:\ProgramData\Avira
2016-10-12 19:00 - 2016-10-12 19:00 - 00000000 ____D C:\ProgramData\Avg
2016-10-12 19:00 - 2016-10-12 19:00 - 00000000 ____D C:\ProgramData\AVAST Software
2016-10-12 01:26 - 2016-11-01 00:16 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-10-12 01:26 - 2016-10-26 02:48 - 00001100 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-10-12 01:26 - 2016-10-12 18:59 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-10-12 01:26 - 2016-10-12 01:26 - 22851472 _____ (Malwarebytes ) C:\Users\Kitz\Downloads\mbam-setup-2.2.1.1043.exe
2016-10-12 01:26 - 2016-10-12 01:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-10-12 01:26 - 2016-10-12 01:26 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-10-12 01:26 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-10-12 01:26 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-10-12 01:26 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-10-12 01:24 - 2016-10-12 01:24 - 00011930 _____ C:\Users\Kitz\AppData\cc_20161012_012409.reg
2016-10-12 01:09 - 2016-10-12 01:09 - 00290304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\subinacl.exe
2016-10-12 01:03 - 2016-10-26 20:55 - 00002256 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-12 00:58 - 2016-10-26 02:48 - 00000860 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-10-12 00:58 - 2016-10-12 00:58 - 08244656 _____ (Piriform Ltd) C:\Users\Kitz\Downloads\ccsetup522.exe
2016-10-12 00:58 - 2016-10-12 00:58 - 08244656 _____ (Piriform Ltd) C:\Users\Kitz\Downloads\ccsetup522 (1).exe
2016-10-12 00:58 - 2016-10-12 00:58 - 00002786 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2016-10-12 00:58 - 2016-10-12 00:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-10-12 00:58 - 2016-10-12 00:58 - 00000000 ____D C:\Program Files\CCleaner
2016-10-12 00:48 - 2016-10-21 22:25 - 00000000 ____D C:\Windows\system32\appmgmt
2016-10-12 00:46 - 2016-10-12 00:48 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\Opera Software
2016-10-12 00:46 - 2016-10-12 00:48 - 00000000 ____D C:\Users\Kitz\AppData\Local\Opera Software
2016-10-12 00:44 - 2016-10-12 19:10 - 00000000 ____D C:\Users\Kitz\AppData\Local\Imvmsoft
2016-10-12 00:44 - 2016-10-12 19:10 - 00000000 ____D C:\Users\Kitz\AppData\Local\Ajkworks
2016-10-12 00:43 - 2016-10-12 19:00 - 00061134 _____ C:\Users\Kitz\AppData\Roaming\Carney.DLB
2016-10-12 00:43 - 2016-10-12 00:43 - 00008862 _____ C:\Windows\System32\Tasks\Wefowardvahodom Monitor
2016-10-12 00:42 - 2016-10-12 19:10 - 00000000 ____D C:\Program Files (x86)\Windows Loader
2016-10-12 00:42 - 2016-10-12 19:08 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\DAEMON Tools Lite
2016-10-12 00:42 - 2016-10-12 18:58 - 00003514 _____ C:\Windows\System32\Tasks\PPI Update 3
2016-10-12 00:42 - 2016-10-12 18:58 - 00003510 _____ C:\Windows\System32\Tasks\PPI Update 2
2016-10-12 00:42 - 2016-10-12 01:47 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\Ghuvert
2016-10-12 00:42 - 2016-10-12 00:42 - 00047672 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtliteusbbus.sys
2016-10-12 00:42 - 2016-10-12 00:42 - 00030264 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtlitescsibus.sys
2016-10-12 00:42 - 2016-10-12 00:42 - 00000000 ____D C:\Users\Kitz\AppData\Local\Raverpyaronergh
2016-10-12 00:41 - 2016-10-12 00:42 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2016-10-11 23:28 - 2016-10-12 01:47 - 00000000 ____D C:\Windows\Minidump
2016-10-10 15:33 - 2016-10-10 15:33 - 00060457 _____ C:\Users\Kitz\AppData\Roaming\bookmaking.rgj
2016-10-10 15:33 - 2016-10-10 15:33 - 00000677 _____ C:\Users\Kitz\AppData\Roaming\adventives.zkh
2016-10-09 17:06 - 2016-10-12 19:10 - 00000000 ____D C:\Program Files (x86)\Livestreamer
2016-10-09 17:01 - 2016-10-09 17:06 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\livestreamer
2016-10-06 00:24 - 2016-10-06 00:24 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-11-01 00:41 - 2016-09-12 03:54 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\uTorrent
2016-11-01 00:34 - 2009-07-14 12:45 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-11-01 00:34 - 2009-07-14 12:45 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-11-01 00:32 - 2016-02-28 22:47 - 00745036 _____ C:\Windows\system32\perfh00C.dat
2016-11-01 00:32 - 2016-02-28 22:47 - 00478334 _____ C:\Windows\system32\perfh001.dat
2016-11-01 00:32 - 2016-02-28 22:47 - 00148960 _____ C:\Windows\system32\perfc00C.dat
2016-11-01 00:32 - 2016-02-28 22:47 - 00094152 _____ C:\Windows\system32\perfc001.dat
2016-11-01 00:32 - 2009-07-14 13:13 - 02229580 _____ C:\Windows\system32\PerfStringBackup.INI
2016-11-01 00:32 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\inf
2016-11-01 00:27 - 2016-09-11 14:18 - 00000000 ____D C:\ProgramData\NVIDIA
2016-11-01 00:27 - 2016-09-11 13:22 - 00000000 ____D C:\Program Files (x86)\Steam
2016-11-01 00:26 - 2016-09-11 13:30 - 00000000 ____D C:\Users\Kitz\AppData\Local\Battle.net
2016-11-01 00:26 - 2009-07-14 13:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-11-01 00:26 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\system
2016-11-01 00:15 - 2016-09-28 21:45 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\Skype
2016-11-01 00:15 - 2016-09-28 21:45 - 00000000 ____D C:\ProgramData\Skype
2016-11-01 00:15 - 2016-09-11 13:22 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-10-30 23:22 - 2016-10-01 16:48 - 00000000 ____D C:\Users\Kitz\AppData\Local\CrashDumps
2016-10-30 14:50 - 2016-09-11 15:59 - 00000000 ____D C:\Program Files (x86)\Mudfish Cloud VPN
2016-10-30 14:42 - 2016-09-11 13:33 - 00000000 ____D C:\Program Files (x86)\Overwatch
2016-10-30 10:40 - 2016-10-01 11:11 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\OBS
2016-10-29 14:02 - 2016-09-12 03:44 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\MPC-HC
2016-10-28 21:55 - 2016-09-11 13:31 - 00000000 ____D C:\Users\Kitz\AppData\Roaming\discord
2016-10-28 09:08 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\L2Schemas
2016-10-26 02:48 - 2016-10-01 12:24 - 00000968 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk
2016-10-26 02:48 - 2016-09-18 00:25 - 00000959 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2016-10-26 02:48 - 2016-09-18 00:25 - 00000927 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2016-10-26 02:48 - 2016-09-12 02:45 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-10-26 02:48 - 2016-09-11 14:05 - 00000907 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2016-10-26 02:48 - 2016-09-11 11:50 - 00001393 _____ C:\Users\Kitz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-10-26 02:48 - 2009-07-14 12:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-10-26 02:48 - 2009-07-14 12:57 - 00001330 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2016-10-26 02:48 - 2009-07-14 12:57 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2016-10-26 02:48 - 2009-07-14 12:54 - 00001210 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2016-10-26 02:47 - 2016-10-01 10:56 - 00000939 _____ C:\Users\Kitz\Desktop\Open Broadcaster Software.lnk
2016-10-26 02:47 - 2009-07-14 13:32 - 00000000 ____D C:\Windows\Offline Web Pages
2016-10-26 02:47 - 2009-07-14 13:01 - 00001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2016-10-26 02:47 - 2009-07-14 12:49 - 00001266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2016-10-26 02:47 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\AppCompat
2016-10-26 01:23 - 2016-09-15 01:24 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
2016-10-25 19:19 - 2016-09-11 13:22 - 00000000 ____D C:\Users\Kitz\AppData\Local\NVIDIA Corporation
2016-10-25 01:03 - 2016-09-11 13:17 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-10-25 01:03 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\Help
2016-10-25 01:02 - 2016-09-11 13:20 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-10-25 01:02 - 2016-09-11 13:20 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-10-25 00:48 - 2016-09-11 13:21 - 00000000 ____D C:\Users\Kitz\AppData\Local\NVIDIA
2016-10-24 22:15 - 2016-09-11 12:54 - 00000000 ____D C:\Users\Kitz\AppData\Local\Deployment
2016-10-24 21:43 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\Web
2016-10-24 21:43 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\LiveKernelReports
2016-10-24 21:20 - 2016-09-11 15:50 - 00000000 ____D C:\Users\Kitz\Documents\Overwatch
2016-10-24 01:53 - 2016-09-11 12:54 - 00058016 _____ C:\Users\Kitz\AppData\Local\GDIPFONTCACHEV1.DAT
2016-10-23 18:36 - 2009-07-14 12:45 - 00267672 _____ C:\Windows\system32\FNTCACHE.DAT
2016-10-23 18:16 - 2009-07-14 11:20 - 00000000 __RSD C:\Windows\Media
2016-10-23 18:16 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\Cursors
2016-10-12 19:10 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\platforms
2016-10-12 19:10 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\Vss
2016-10-12 18:59 - 2016-10-01 10:56 - 00000000 ____D C:\Program Files (x86)\OBS
2016-10-12 18:59 - 2016-09-18 01:39 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\translations
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\styles
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\sqldrivers
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\soundbackends
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\sound
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\plugins
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\news
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\imageformats
2016-10-12 18:59 - 2016-09-18 00:25 - 00000000 ____D C:\Program Files (x86)\gfx
2016-10-12 18:59 - 2016-09-12 11:23 - 00000000 ____D C:\Program Files (x86)\Notepad++
2016-10-12 18:59 - 2016-09-11 13:17 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-10-12 18:59 - 2016-09-11 13:13 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-10-12 18:59 - 2016-09-11 13:12 - 00000000 ____D C:\Program Files (x86)\Intel
2016-10-12 18:59 - 2016-09-11 13:11 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2016-10-12 18:59 - 2016-09-11 12:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-10-12 18:59 - 2016-09-11 12:28 - 00000000 ____D C:\Program Files (x86)\TP-LINK
2016-10-12 18:59 - 2009-07-14 13:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2016-10-12 18:59 - 2009-07-14 13:32 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-10-12 18:59 - 2009-07-14 13:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-10-12 18:59 - 2009-07-14 13:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-10-12 18:59 - 2009-07-14 13:32 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-10-12 18:59 - 2009-07-14 13:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-10-12 18:59 - 2009-07-14 11:20 - 00000000 ____D C:\Program Files (x86)\Windows NT
2016-10-12 01:03 - 2016-09-11 12:54 - 00000000 ____D C:\Users\Kitz\AppData\Local\Google
2016-10-12 00:58 - 2016-09-12 03:43 - 00000000 ____D C:\Windows\Panther
 
==================== Files in the root of some directories =======
 
2016-07-14 18:26 - 2016-07-14 18:26 - 0161821 _____ () C:\Program Files (x86)\changelog.txt
2016-07-14 18:26 - 2016-07-14 18:26 - 0375336 _____ () C:\Program Files (x86)\createfileassoc.exe
2016-07-14 18:26 - 2016-07-14 18:26 - 0447256 _____ (TeamSpeak Systems GmbH) C:\Program Files (x86)\error_report.exe
2016-03-08 22:16 - 2016-03-08 22:16 - 2084352 _____ (The OpenSSL Project, http://www.openssl.org/)C:\Program Files (x86)\libeay32.dll
2013-10-05 06:58 - 2013-10-05 06:58 - 0660128 _____ (Microsoft Corporation) C:\Program Files (x86)\msvcp120.dll
2013-10-05 06:58 - 2013-10-05 06:58 - 0963232 _____ (Microsoft Corporation) C:\Program Files (x86)\msvcr120.dll
2016-07-14 18:26 - 2016-07-14 18:26 - 0474904 _____ (TeamSpeak Systems GmbH) C:\Program Files (x86)\package_inst.exe
2016-07-14 14:45 - 2016-07-14 14:45 - 0000321 _____ () C:\Program Files (x86)\plugin_sdk.html
2016-04-19 23:02 - 2016-04-19 23:02 - 5629952 _____ (The Qt Company Ltd) C:\Program Files (x86)\Qt5Core.dll
2016-04-19 23:18 - 2016-04-19 23:18 - 3935744 _____ (The Qt Company Ltd) C:\Program Files (x86)\Qt5Gui.dll
2016-04-19 23:03 - 2016-04-19 23:03 - 1094656 _____ (The Qt Company Ltd) C:\Program Files (x86)\Qt5Network.dll
2016-04-19 23:02 - 2016-04-19 23:02 - 0216576 _____ (The Qt Company Ltd) C:\Program Files (x86)\Qt5Sql.dll
2016-04-19 23:05 - 2016-04-19 23:05 - 5426176 _____ (The Qt Company Ltd) C:\Program Files (x86)\Qt5Widgets.dll
2016-07-14 18:25 - 2016-07-14 18:25 - 0174872 _____ () C:\Program Files (x86)\quazip.dll
2016-03-08 22:16 - 2016-03-08 22:16 - 0349696 _____ (The OpenSSL Project, http://www.openssl.org/)C:\Program Files (x86)\ssleay32.dll
2016-07-14 18:25 - 2016-07-14 18:25 - 11479320 _____ (TeamSpeak Systems GmbH) C:\Program Files (x86)\ts3client_win64.exe
2016-09-18 00:25 - 2016-09-18 00:25 - 0393331 _____ (TeamSpeak Systems GmbH) C:\Program Files (x86)\Uninstall.exe
2016-07-14 18:25 - 2016-07-14 18:25 - 1532696 _____ (TeamSpeak Systems GmbH) C:\Program Files (x86)\update.exe
2016-07-14 14:45 - 2016-07-14 14:45 - 0579975 _____ () C:\Program Files (x86)\usb.ids
2016-06-17 14:54 - 2016-06-17 14:54 - 0004436 _____ () C:\Users\Kitz\AppData\Roaming\90msp-RKSJ-V
2016-10-10 15:33 - 2016-10-10 15:33 - 0000677 _____ () C:\Users\Kitz\AppData\Roaming\adventives.zkh
2016-06-17 14:53 - 2016-06-17 14:53 - 0001196 _____ () C:\Users\Kitz\AppData\Roaming\Athens
2016-10-10 15:33 - 2016-10-10 15:33 - 0060457 _____ () C:\Users\Kitz\AppData\Roaming\bookmaking.rgj
2016-10-12 00:43 - 2016-10-12 19:00 - 0061134 _____ () C:\Users\Kitz\AppData\Roaming\Carney.DLB
2016-06-17 14:53 - 2016-06-17 14:53 - 0001930 _____ () C:\Users\Kitz\AppData\Roaming\compare-with-callbacks.js
2016-06-17 14:53 - 2016-06-17 14:53 - 0003119 _____ () C:\Users\Kitz\AppData\Roaming\frnphon.env
2016-09-13 16:13 - 2016-09-28 23:26 - 0000600 _____ () C:\Users\Kitz\AppData\Local\PUTTY.RND
2016-11-01 00:22 - 2016-11-01 00:22 - 0044134 _____ () C:\ProgramData\1477930964.bdinstall.bin
2016-11-01 00:27 - 2016-11-01 00:27 - 0028466 _____ () C:\ProgramData\1477931252.bdinstall.bin
2016-09-11 13:17 - 2016-09-11 13:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
 
Some files in TEMP:
====================
C:\Users\Kitz\AppData\Local\Temp\libeay32.dll
C:\Users\Kitz\AppData\Local\Temp\msvcr120.dll
C:\Users\Kitz\AppData\Local\Temp\sqlite3.dll
 
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-10-25 20:03
 
==================== End of FRST.txt ============================
 
 
 
Addition.txt
 
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-10-2016
Ran by Kitz (01-11-2016 00:41:46)
Running from C:\Users\Kitz\Downloads
Windows 7 Ultimate Service Pack 1 (X64) (2016-09-11 03:50:39)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3699050178-1426195755-1879288008-500 - Administrator - Disabled)
Guest (S-1-5-21-3699050178-1426195755-1879288008-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3699050178-1426195755-1879288008-1004 - Limited - Enabled)
Kitz (S-1-5-21-3699050178-1426195755-1879288008-1000 - Administrator - Enabled) => C:\Users\Kitz
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKLM-x32\...\uTorrent) (Version: 2.2.1 - )
Ansel (Version: 375.70 - NVIDIA Corporation) Hidden
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.33.1 - Asmedia Technology)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlerite (HKLM\...\Steam App 504370) (Version:  - Stunlock Studios)
CCleaner (HKLM\...\CCleaner) (Version: 5.22 - Piriform)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version:  - Valve)
CPUID CPU-Z 1.77 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
CPUID HWMonitor 1.29 (HKLM\...\CPUID HWMonitor_is1) (Version:  - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0196 - Disc Soft Ltd)
Dead by Daylight (HKLM\...\Steam App 381210) (Version:  - Behaviour Digital Inc.)
Discord (HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.)
Dota 2 (HKLM\...\Steam App 570) (Version:  - Valve)
f.lux (HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\...\Flux) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 4.0.0.36 - Intel Corporation)
Livestreamer 1.12.2 (HKLM-x32\...\Livestreamer) (Version:  - )
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team)
MSI Afterburner 4.3.0 (HKLM-x32\...\Afterburner) (Version: 4.3.0 - MSI Co., LTD)
MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version:  - MSI Co., LTD)
Mudfish Cloud VPN v4.4.1 (HKLM-x32\...\Mudfish Cloud VPN) (Version: 4.4.1 - )
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.2 - Notepad++ Team)
NVIDIA GeForce Experience 3.0.7.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.0.7.34 - NVIDIA Corporation)
NVIDIA Graphics Driver 375.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 375.70 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (Version: 3.0.7.34 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 1.0.0.0 - NVIDIA Corporation) Hidden
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (VersiAon:  - )
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.92.115.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7576 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 6.4.0 (HKLM-x32\...\RTSS) (Version: 6.4.0 - Unwinder)
SHIELD Streaming (Version: 7.1.0320 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.0.7.34 - NVIDIA Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TL-WN851ND Driver (HKLM-x32\...\{4BAE4C76-44C3-418F-B715-6BBF5A65323E}) (Version: 1.00.0000 - TP-LINK)
TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 2.01.0012 - TP-LINK)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {02F50694-A2E7-4C45-A324-E056CF29ECA4} - System32\Tasks\PPI Update 2 => "hxxp://vlcdownload.online/download.php?mn=3333" <==== ATTENTION
Task: {33AB8CB0-0344-45FB-A7FB-4560535784EF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-24] (Google Inc.)
Task: {6C373A2D-EDDA-45A0-B44F-53F3A32A542E} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-09-30] (NVIDIA Corporation)
Task: {74D3D8C9-468A-40D7-8CE0-D23082259AB4} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-09-30] (NVIDIA Corporation)
Task: {80F5515C-97CD-457B-A2AD-8D2B3A2106B0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-09-30] (NVIDIA Corporation)
Task: {8F971012-2115-4B9C-AAE7-92DB7CE11D43} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-09-30] (NVIDIA Corporation)
Task: {917D7F0C-7FDE-45AD-B869-28F8AE27403B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-09-30] (NVIDIA Corporation)
Task: {99F9C953-40C1-40E9-BDBB-10BB62536569} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2016-10-24] ()
Task: {A3E4C3A7-3023-4842-8F5B-A7FC304C6C5B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-24] (Google Inc.)
Task: {D1C2433A-161F-490A-A55F-894AF6F0A922} - System32\Tasks\PPI Update 3 => "hxxp://vlcdownload.online/downloadv2.php?mn=3333" <==== ATTENTION
Task: {DC9219D5-BD78-4C6D-B4F7-1BA8DD02869E} - System32\Tasks\Wefowardvahodom Monitor => C:\Program Files (x86)\Ateqerly\jemige.exe
Task: {EC1381A5-37FE-4631-96AB-43FA125A1FB9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-08-27] (Piriform Ltd)
Task: {FB1BC531-2774-4B36-9163-1CCB88D194FE} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2016-09-30] (NVIDIA Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
ShortcutWithArgument: C:\Users\Kitz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=ChromeDefaultData
 
==================== Loaded Modules (Whitelisted) ==============
 
2016-10-25 00:48 - 2016-09-30 12:25 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-10-25 00:48 - 2016-09-30 12:25 - 04490808 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-10-25 00:48 - 2016-09-30 12:25 - 00419896 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\_nvspserviceplugin64.dll
2016-10-25 01:03 - 2016-10-26 04:17 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-10-24 22:15 - 2016-10-20 16:56 - 02367080 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.71\libglesv2.dll
2016-10-24 22:15 - 2016-10-20 16:56 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.71\libegl.dll
2016-10-25 00:48 - 2016-09-30 01:20 - 00500792 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2016-10-25 00:48 - 2016-09-30 01:20 - 00255936 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2016-10-25 00:48 - 2016-09-30 01:20 - 02801208 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2016-10-25 00:48 - 2016-09-30 01:20 - 00244672 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2016-10-25 00:48 - 2016-09-30 01:20 - 00430648 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
2016-10-25 00:48 - 2016-09-30 01:20 - 00336832 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2016-10-25 00:48 - 2016-09-30 01:20 - 00373696 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node
2016-10-25 00:48 - 2016-09-30 12:25 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-09-11 13:29 - 2016-09-08 11:14 - 00784672 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-09-11 13:29 - 2016-09-01 09:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-09-11 13:29 - 2016-09-01 09:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-09-11 13:29 - 2016-09-01 09:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-09-11 13:29 - 2016-10-13 09:58 - 02321696 _____ () C:\Program Files (x86)\Steam\video.dll
2016-09-11 13:29 - 2016-01-27 15:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2016-09-11 13:29 - 2016-01-27 15:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2016-09-11 13:29 - 2016-01-27 15:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2016-09-11 13:29 - 2016-01-27 15:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2016-09-11 13:29 - 2016-01-27 15:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-09-11 13:29 - 2016-10-13 09:58 - 00836896 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-09-11 13:29 - 2016-07-05 06:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2016-09-11 13:31 - 2016-08-24 17:49 - 01950392 _____ () C:\Users\Kitz\AppData\Local\Discord\app-0.0.296\ffmpeg.dll
2016-09-11 13:31 - 2016-09-11 13:31 - 01050296 _____ () \\?\C:\Users\Kitz\AppData\Roaming\discord\0.0.296\modules\discord_voice\discord_voice.node
2016-09-11 13:31 - 2016-09-11 13:31 - 03793080 _____ () \\?\C:\Users\Kitz\AppData\Roaming\discord\0.0.296\modules\discord_voice\libdiscord.dll
2016-09-11 13:31 - 2016-09-11 13:31 - 00894136 _____ () \\?\C:\Users\Kitz\AppData\Roaming\discord\0.0.296\modules\discord_utils\discord_utils.node
2016-09-11 13:31 - 2016-08-24 17:49 - 02230456 _____ () C:\Users\Kitz\AppData\Local\Discord\app-0.0.296\libglesv2.dll
2016-09-11 13:31 - 2016-08-24 17:49 - 00088760 _____ () C:\Users\Kitz\AppData\Local\Discord\app-0.0.296\libegl.dll
2016-10-23 18:17 - 2016-08-05 04:56 - 49825056 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.winxp\libcef.dll
2016-11-01 00:27 - 2016-11-01 00:27 - 00170496 _____ () \\?\C:\Users\Kitz\AppData\Local\Temp\584C.tmp.node
2016-09-11 13:31 - 2016-10-21 21:27 - 02658304 _____ () \\?\C:\Users\Kitz\AppData\Roaming\discord\0.0.296\modules\discord_rpc\discord_rpc.node
2016-09-11 13:32 - 2016-10-21 21:27 - 02147328 _____ () \\?\C:\Users\Kitz\AppData\Roaming\discord\0.0.296\modules\discord_contact_import\discord_contact_import.node
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-14 10:34 - 2009-06-11 05:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3699050178-1426195755-1879288008-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Kitz\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is disabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TP-LINK Wireless Configuration Utility.lnk => C:\Windows\pss\TP-LINK Wireless Configuration Utility.lnk.CommonStartup
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
MSCONFIG\startupreg: Imvmsoft => C:\Users\Kitz\AppData\Local\Imvmsoft\9a3e0f04234f71644e58d8b1236a9983.exe
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{6621DD8E-AE56-4E53-BD59-7027BD2ED7DE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{42A7DAB1-C43A-4394-854D-3CD0901F0160}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [TCP Query User{8E2CF81F-0DB8-419A-9D44-D2309E17452A}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{22FBA636-B8E8-43EB-B801-46126E36C6B9}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [{944DA04D-9302-4601-9F09-84D4B1DE6FFA}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D26588CF-A72D-44C1-8840-B53FC2C18ABD}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{93D58D78-8042-4E5E-BEFE-7A0CCD8C2FC3}] => (Allow) G:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7B71BF53-162F-4B51-97F7-7FAEE3DA1DA5}] => (Allow) G:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{D7431C7C-2DEE-4EF7-A46D-F1C4EA9887F6}G:\utorrent.exe] => (Allow) G:\utorrent.exe
FirewallRules: [UDP Query User{476721A3-0913-47EE-BA7D-47CDB05D5D8A}G:\utorrent.exe] => (Allow) G:\utorrent.exe
FirewallRules: [{D32E3D46-BA4B-48FA-BE49-BAEE5296D260}] => (Allow) G:\uTorrent.exe
FirewallRules: [{F089A2E3-87DC-4C44-893B-95BE922F15F6}] => (Allow) G:\uTorrent.exe
FirewallRules: [{FC86D1B8-67D4-4CA9-B858-C6BC3CE9D835}] => (Allow) G:\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [{73F3A998-9A8A-4173-9DFC-07411881694D}] => (Allow) G:\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [{4D4DE3F0-2CD2-453F-8767-AFC9BE9B7C33}] => (Allow) G:\SteamLibrary\steamapps\common\Battlerite\Battlerite.exe
FirewallRules: [{8187C73B-98B5-44AB-BA30-97CB0FDC0959}] => (Allow) G:\SteamLibrary\steamapps\common\Battlerite\Battlerite.exe
FirewallRules: [{AA26E1DF-02DC-4273-8BF9-3546B46BF2FC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{499DA784-82FD-43F9-B489-D1B7724E114F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{AFCE4B6F-7FB5-4B57-8D42-D735B1BECEE0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{DF5A23DF-C954-4D48-BC1D-5C60F912E235}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{F1983D62-D2F3-4BBF-96AD-78BAB7AF29E7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F09ABD1E-A248-4308-897A-5F66A129A1FF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{BE84993E-14D7-4D8F-93FD-AE090A25F56C}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{608FC3DA-E7B0-4E3D-A7B6-B4D1460A3A64}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{0CE410C2-E84F-4F29-B2AF-814BCBBF41BD}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{744DA2A7-D812-4355-B3B7-7163F56446AF}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9B4A1392-D55F-4E9C-A28B-7F16C9E653E5}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{122DDBFC-E73E-4FE2-AAA6-986B05C1724E}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{81524E18-C491-43F5-A6F7-DF93A21CFFE1}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{40D204F5-0316-48AD-BD99-E44B48DDEF54}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4E2DDAA6-2B70-4970-9C00-BC84B12BDA9A}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FD3965DF-A8C8-45A5-865D-5A7D80AC034E}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5CE037DA-21F9-4E94-9FBC-DF0F57B7D490}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0F5AFF5D-2E2C-44BC-B6BB-A08DADDF16B0}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A7BD1F33-3E19-4200-A5FD-CE343D7616C6}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A1981E6E-ACC0-405C-B5FA-8A856A7A3E3F}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2011E391-9DE9-4B7C-B903-377E922C5503}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FC103F0F-D846-452C-A6C8-9F988E3DBE32}] => (Allow) G:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
 
==================== Restore Points =========================
 
21-10-2016 22:20:43 Removed InterHop
21-10-2016 22:25:31 Removed amuleC
26-10-2016 23:58:49 Removed amuleC
28-10-2016 21:18:36 Removed InterHop
01-11-2016 00:15:03 Removed Skype™ 7.28
 
==================== Faulty Device Manager Devices =============
 
Name: PCI Memory Controller
Description: PCI Memory Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
Name: SM Bus Controller
Description: SM Bus Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
Name: Microsoft PS/2 Mouse
Description: Microsoft PS/2 Mouse
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
 
Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
 
Name: Standard PS/2 Keyboard
Description: Standard PS/2 Keyboard
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard keyboards)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
 
Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (11/01/2016 12:28:49 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
Error: (10/31/2016 06:31:26 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
Error: (10/30/2016 11:22:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Faulting module name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2
Exception code: 0xc0000005
Fault offset: 0x00037b59
Faulting process id: 0xe0c
Faulting application start time: 0x01d23276a287cc01
Faulting application path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Faulting module path: C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe
Report Id: a7b11100-9eb4-11e6-9cbd-305a3a455e1f
 
Error: (10/30/2016 02:28:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
Error: (10/29/2016 01:38:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: MSI_Kombustor.exe, version: 3.4.0.0, time stamp: 0x54227350
Faulting module name: nvoglv64.DLL, version: 21.21.13.7570, time stamp: 0x580fb458
Exception code: 0x40000015
Fault offset: 0x00000000015c7662
Faulting process id: 0x1748
Faulting application start time: 0x01d231a694f41510
Faulting application path: C:\Program Files\MSI Kombustor 3\MSI_Kombustor.exe
Faulting module path: C:\Windows\system32\nvoglv64.DLL
Report Id: fb48b4b0-9d99-11e6-b4aa-305a3a455e1f
 
Error: (10/29/2016 01:38:54 PM) (Source: NVIDIA OpenGL Driver) (EventID: 1) (User: )
Description: Unable to recover from a kernel exception. The application must close.
 
 
Error code: 3 (subcode 2)
 (pid=5960 tid=6476 msi_kombustor.exe 64bit)
 
Visit http://www.nvidia.co...ge/support.htmlfor more information.
 
Error: (10/28/2016 10:55:38 PM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
 
Error: (10/28/2016 10:33:58 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
Error: (10/28/2016 10:16:44 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program MSI_Kombustor.exe version 3.4.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
 
Process ID: 68c
 
Start Time: 01d231238e8aa140
 
Termination Time: 2
 
Application Path: C:\Program Files\MSI Kombustor 3\MSI_Kombustor.exe
 
Report Id: 264c32d1-9d19-11e6-aeae-305a3a455e1f
 
Error: (10/28/2016 09:57:06 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
 
 
System errors:
=============
Error: (11/01/2016 12:27:04 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
cdrom
 
Error: (11/01/2016 12:26:50 AM) (Source: Application Popup) (EventID: 56) (User: )
Description: Driver ACPI returned invalid ID for a child device (5).
 
Error: (11/01/2016 12:26:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Windows Media Player Network Sharing Service service failed to start due to the following error: 
The service did not start due to a logon failure.
 
Error: (11/01/2016 12:26:31 AM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: The WMPNetworkSvc service was unable to log on as NT AUTHORITY\NetworkService with the currently configured password due to the following error: 
The request is not supported.
 
 
To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
 
Error: (11/01/2016 12:26:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Windows Search service failed to start due to the following error: 
The service did not start due to a logon failure.
 
Error: (11/01/2016 12:26:31 AM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: The WSearch service was unable to log on as NT AUTHORITY\SYSTEM with the currently configured password due to the following error: 
The request is not supported.
 
 
To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
 
Error: (11/01/2016 12:26:01 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Product Agent Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (11/01/2016 12:26:01 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Media Player Network Sharing Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.
 
Error: (11/01/2016 12:26:01 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Search service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.
 
Error: (11/01/2016 12:26:01 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The NVIDIA Display Container LS service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i5-6600K CPU @ 3.50GHz
Percentage of memory in use: 21%
Total physical RAM: 16315.09 MB
Available physical RAM: 12735.94 MB
Total Virtual: 32628.37 MB
Available Virtual: 28173.82 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:223.57 GB) (Free:145.57 GB) NTFS
Drive g: (Game Volume) (Fixed) (Total:838.53 GB) (Free:791.18 GB) NTFS
Drive m: (Dump Drive) (Fixed) (Total:1024 GB) (Free:75.39 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 223.6 GB) (Disk ID: 4455193C)
Partition 1: (Not Active) - (Size=223.6 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 44551904)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1024 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=838.5 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

 

Attached Files


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP