Additional scan result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01 Ran by Tara at 2015-06-29 16:11:50 Running from C:\Users\Tara\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Admin (S-1-5-21-2048283220-1224427567-1862485828-1000 - Administrator - Enabled) Administrator (S-1-5-21-2048283220-1224427567-1862485828-500 - Administrator - Disabled) Eddie (S-1-5-21-2048283220-1224427567-1862485828-1006 - Limited - Enabled) => C:\Users\Eddie Guest (S-1-5-21-2048283220-1224427567-1862485828-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2048283220-1224427567-1862485828-1008 - Limited - Enabled) Katie (S-1-5-21-2048283220-1224427567-1862485828-1004 - Limited - Enabled) => C:\Users\Katie Tara (S-1-5-21-2048283220-1224427567-1862485828-1002 - Administrator - Enabled) => C:\Users\Tara Tess (S-1-5-21-2048283220-1224427567-1862485828-1005 - Limited - Enabled) => C:\Users\Tess Will (S-1-5-21-2048283220-1224427567-1862485828-1003 - Limited - Enabled) => C:\Users\Will ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 3DMark06 (HKLM-x32\...\{7F3AD00A-1819-4B15-BB7D-08B3586336D7}) (Version: 1.2.0 - Futuremark Corporation) Adobe Acrobat 4.0 (HKLM-x32\...\Adobe Acrobat 4.0) (Version: 4.0 - Adobe Systems, Inc.) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated) Adobe Reader X (10.1.9) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.9 - Adobe Systems Incorporated) AGEIA PhysX v7.03.21 (HKLM-x32\...\{85EBB283-65AF-4C53-9EBE-7C0A232762F7}) (Version: 7.03.21 - AGEIA Technologies, Inc.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.4.5.0 - Asmedia Technology) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) Canon G.726 WMP-Decoder (HKLM-x32\...\Canon G.726 WMP-Decoder) (Version: 1.0.1.3 - ) CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.5.0.3 - Canon Inc.) Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.6.1.6 - Canon Inc.) Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 2.3.0.19 - ) Canon MP Navigator EX 3.0 (HKLM-x32\...\MP Navigator EX 3.0) (Version: - ) Canon MP560 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP560_series) (Version: - ) Canon MP560 series User Registration (HKLM-x32\...\Canon MP560 series User Registration) (Version: - ) Canon PhotoRecord (HKLM-x32\...\{BEF56F2D-56ED-4176-BF72-7B68D4A3B98D}) (Version: 02.00.00029 - Cisra) Canon RAW Image Task for ZoomBrowser EX (HKLM-x32\...\RAW Image Task) (Version: 3.3.0.5 - Canon Inc.) Canon RemoteCapture Task for ZoomBrowser EX (HKLM-x32\...\InstallShield_{821DC151-4691-4E26-AE7E-522921D0FD54}) (Version: 0.9.1 - Canon) Canon Utilities CameraWindow (HKLM-x32\...\CameraWindowLauncher) (Version: 7.1.0.2 - Canon Inc.) Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX (HKLM-x32\...\CameraWindowDVC6) (Version: 6.4.2.16 - Canon Inc.) Canon Utilities Digital Photo Professional 3.4 (HKLM-x32\...\DPP) (Version: 3.4.0.0 - Canon Inc.) Canon Utilities Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: - ) Canon Utilities EOS Utility (HKLM-x32\...\EOS Utility) (Version: 2.4.0.1 - Canon Inc.) Canon Utilities My Printer (HKLM-x32\...\CanonMyPrinter) (Version: - ) Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 6.4.0.5 - Canon Inc.) Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.21.45 - Canon Inc.) Canon Utilities Picture Style Editor (HKLM-x32\...\Picture Style Editor) (Version: 1.3.0.0 - Canon Inc.) Canon Utilities RemoteCapture Task for ZoomBrowser EX (HKLM-x32\...\RemoteCaptureTask) (Version: 1.7.1.9 - Canon Inc.) Canon Utilities Solution Menu (HKLM-x32\...\CanonSolutionMenu) (Version: - ) Canon Utilities WFT-E1/E2/E3 Utility (HKLM-x32\...\WFTK) (Version: 3.2.1.1 - Canon Inc.) Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.1.1.21 - Canon Inc.) Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.1.0.8 - Canon Inc.) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation) CPUID CPU-Z 1.57 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) DV Network Software (HKLM-x32\...\InstallShield_{AB85A4DB-357F-41B5-94A6-C9A4CBBD791B}) (Version: 2.00.0000 - Canon Inc.) DV Network Software (x32 Version: 2.00.0000 - Canon Inc.) Hidden Edimax Wireless LAN Driver and Utility (HKLM-x32\...\{9C049499-055C-4a0c-A916-1D8CA1FF45EB}) (Version: 1.00.0142 - Edimax Technology Co.) Final Draft (HKLM-x32\...\{7C3C895B-AE02-4F30-8A6A-051D37A38DD0}) (Version: 8.0.3.120 - Final Draft, Inc.) Final Draft 6 (HKLM-x32\...\{CC8B19D1-91D2-4D5B-B331-F885F432745E}) (Version: 6.0.35 - Final Draft, Inc.) Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 3.21.2.1 - Futuremark Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6227.252 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden GoToAssist Corporate (HKLM-x32\...\GoToAssist) (Version: 9.0.0.599 - Citrix Online, a division of Citrix Systems, Inc.) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2266 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.0.0.1046 - Intel Corporation) IRIS Payroll Basics (HKLM-x32\...\InstallShield_{05EA281F-6888-4F1D-8149-C60BD40FEAF0}) (Version: 1.21.0.42 - IRIS Software Ltd) IRIS Payroll Basics (x32 Version: 1.21.0.42 - IRIS Software Ltd) Hidden Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{91E30409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Mozilla Firefox 33.0.3 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 33.0.3 (x86 en-US)) (Version: 33.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla) Oil Platform Simulator version 1.0 (HKLM-x32\...\{C4AAD29A-6D55-4853-B241-45925CF1711B}_is1) (Version: 1.0 - Rondomedia) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Pinnacle InstantCD/DVD Suite (HKLM-x32\...\{CFB93E3F-D045-4E78-9D35-CFA7AC35BE5D}) (Version: 7 - Pinnacle Systems Inc) RealDownloader (x32 Version: 1.3.3 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.3 - RealNetworks) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.31.1025.2010 - Realtek) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden RemoteCapture Task (x32 Version: 0.9.1 - Canon) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.4.0 - Renesas Electronics Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 6.7 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.7.102 - Skype Technologies S.A.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 25-06-2015 00:00:01 Scheduled Checkpoint 29-06-2015 11:42:26 Removed Skype Click to Call 29-06-2015 12:07:58 Configured IRIS Payroll Basics 29-06-2015 13:00:59 Windows Update 29-06-2015 14:07:12 Restore Operation 29-06-2015 14:13:32 avast! antivirus system restore point 29-06-2015 14:16:50 Restore Operation 29-06-2015 14:53:21 avast! antivirus system restore point 29-06-2015 15:00:26 avast! antivirus system restore point 29-06-2015 15:12:11 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0EACC85E-9714-4E23-8603-B44DAABFF48C} - System32\Tasks\{902F691E-DE4E-40DD-8B05-EAB2A0C28F6E} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {17D8BDAC-3D7C-423D-9A37-48E0CFBC5072} - System32\Tasks\{FA7DD1CE-3E3E-49D9-BB21-3E241DEC7D66} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {1DB3621A-531B-49E6-892F-15AEA7910B94} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {2AA87B96-563E-41C1-93C1-7B6D90D18E26} - System32\Tasks\{7A41DE67-00E7-4D09-B3DC-7D3B412D11CF} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {2CA8B159-A38F-4677-BBDB-BDABCF4841D4} - System32\Tasks\{43D8719E-5FB0-4A4D-A133-29A7B6D136A0} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {4652F9A0-1E54-415D-BF1F-95F993194B64} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-29] (Avast Software s.r.o.) Task: {62A4CC8C-764D-4173-A269-2F333C19806D} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2048283220-1224427567-1862485828-1002 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {6B393BAF-5DAB-4544-9059-8BA2C4023EE5} - System32\Tasks\{4CB30B13-39FC-4962-A67E-8B95E77F508B} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {74EB0915-9837-415C-8B76-9AA581763FB9} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2048283220-1224427567-1862485828-1000UA => C:\Users\TEMP.Admin-PC\AppData\Local\Google\Update\GoogleUpdate.exe Task: {81F6250E-AD74-4B1E-B28F-6915A85F92D2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-24] (Adobe Systems Incorporated) Task: {8376F9D6-15EC-4E66-9176-272C6994EF2B} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2048283220-1224427567-1862485828-1006 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {8BE89542-DBD7-4FE3-AA65-BD60964F09A9} - System32\Tasks\{AD50B0CB-748E-4AFC-AF2B-E88C8F07CC66} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {8CD04733-B5B4-4B8C-9735-3013496030FE} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2048283220-1224427567-1862485828-1000Core => C:\Users\TEMP.Admin-PC\AppData\Local\Google\Update\GoogleUpdate.exe Task: {98ACFAF8-C3EA-4A71-BDCE-74B648629F5D} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2011-04-20] (Microsoft Corporation) Task: {A7CBD2E9-521B-4D2C-9013-2ED8C0A13A5B} - System32\Tasks\{B153704D-4C89-45E6-B4C6-6CADFA28A865} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {A835D3AC-5B96-49FF-99F0-DE90868C31C3} - System32\Tasks\{3C128C57-C56C-49CD-97F4-6034B30D9075} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {A8803302-D7CE-446E-B407-65C9EB5862C8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.) Task: {ACB07355-8397-474E-97A8-7354DEB514C0} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2048283220-1224427567-1862485828-1006 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {B38F6DF3-7913-4246-95E1-D838B40BABA7} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2048283220-1224427567-1862485828-1002 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {C84D4532-0129-409D-98A9-99BD09EE1776} - System32\Tasks\{9ABFE79A-21DF-42F9-8E59-68A8875E7827} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: {EAF7D9E2-23D3-41BF-BC03-E112121E2097} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.) Task: {F3CFA743-F5EA-434A-8469-552AAE0DFF47} - System32\Tasks\{65F40E80-A9BA-4A6C-96EE-B87D2F8FDC16} => G:\ADR-2011-000589\Program Files\Final Draft 8\Final Draft.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2048283220-1224427567-1862485828-1000Core.job => C:\Users\TEMP.Admin-PC\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2048283220-1224427567-1862485828-1000UA.job => C:\Users\TEMP.Admin-PC\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2013-08-14 16:19 - 2013-08-14 16:19 - 00039056 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 2010-12-16 16:37 - 2010-12-16 16:37 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2011-09-16 20:28 - 2009-12-09 21:20 - 00126976 _____ () C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\EnumDevLib.dll 2014-10-16 12:14 - 2014-10-16 12:14 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\ba8588c3319d63350220ec2ac3eb2c36\IsdiInterop.ni.dll 2011-04-20 09:57 - 2010-09-13 18:28 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2015-06-29 15:08 - 2015-06-29 15:08 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-06-29 15:08 - 2015-06-29 15:08 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-06-29 15:08 - 2015-06-29 15:08 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15062900\algo.dll 2015-06-29 15:08 - 2015-06-29 15:08 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\GoToAssist => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2048283220-1224427567-1862485828-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Tara\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.254 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{7C56BACB-1D9C-44D4-90F8-59CE4CD59C85}] => (Allow) C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{594150CE-DA11-42AB-BD49-E12D564BABB8}] => (Allow) C:\Program Files (x86)\Edimax\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{D0D1B8E6-1C97-4846-8CCA-9909A00174B6}] => (Allow) LPort=1542 FirewallRules: [{F18BB138-7859-40D8-B8DC-E87F15914363}] => (Allow) LPort=1542 FirewallRules: [{ABB85AFC-2DEC-4716-94A7-8A57B32B6D6A}] => (Allow) LPort=53 FirewallRules: [{5F2602E0-CEDA-4130-88E9-771F0E5D3FA9}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{142BBF73-40E8-4302-B40D-5DCF43D5AC81}] => (Allow) C:\Users\Tara\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{8E73CAC2-9865-4D53-819D-9BF3B49A56FF}] => (Allow) C:\Users\Tara\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{A46F0F78-06AB-4C7A-8C3D-8AB279A676DB}C:\users\tara\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\tara\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{B7614489-BE95-4C91-863C-28B4CEBD0944}C:\users\tara\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\tara\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{56239D6A-63BC-4B7D-A6BE-399F6E639164}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{7BBE07DD-0F80-4EF7-B891-FAF4149B7BDE}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [{33B03C03-C501-4FDC-9959-44E902938AEF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: VOB InstantDrive Controller Description: VOB InstantDrive Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/29/2015 02:57:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 02:26:11 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 02:14:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 02:14:46 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional information: 0xc0000022. Error: (06/29/2015 01:13:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 00:06:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 11:59:46 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 10:41:54 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 00:06:38 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: Admin-PC) Description: Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off. Error: (06/29/2015 00:06:38 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: Admin-PC) Description: Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on. System errors: ============= Error: (06/29/2015 02:56:30 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: vobcom vobiw Error: (06/29/2015 02:56:01 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\Cdrdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error: (06/29/2015 02:56:01 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\ASAPIW2K.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error: (06/29/2015 02:55:58 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\vobiw.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error: (06/29/2015 02:55:58 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\vobcom.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error: (06/29/2015 02:24:53 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: vobcom vobiw Error: (06/29/2015 02:24:20 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\Cdrdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error: (06/29/2015 02:24:20 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\ASAPIW2K.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error: (06/29/2015 02:24:19 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\vobiw.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Error: (06/29/2015 02:24:18 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\Drivers\vobcom.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. Microsoft Office: ========================= Error: (06/29/2015 02:57:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 02:26:11 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 02:14:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 02:14:46 PM) (Source: System Restore) (EventID: 8210) (User: ) Description: Scheduled Checkpoint0xc0000022 Error: (06/29/2015 01:13:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 00:06:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 11:59:46 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 10:41:54 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 00:06:38 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: Admin-PC) Description: Error: (06/29/2015 00:06:38 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: Admin-PC) Description: ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz Percentage of memory in use: 46% Total physical RAM: 4007.22 MB Available physical RAM: 2137.35 MB Total Pagefile: 8012.64 MB Available Pagefile: 5896.02 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:387.85 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 84446E7A) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS) ==================== End of log ============================