Additional scan result of Farbar Recovery Scan Tool (x86) Version: 13-07-2016 02 Ran by breda (2016-07-15 01:21:24) Running from C:\Documents and Settings\breda\My Documents\Downloads Microsoft Windows XP Home Edition Service Pack 3 (X86) (2012-11-29 17:44:21) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1614895754-1390067357-839522115-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator ASPNET (S-1-5-21-1614895754-1390067357-839522115-1005 - Limited - Enabled) breda (S-1-5-21-1614895754-1390067357-839522115-1004 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\breda Guest (S-1-5-21-1614895754-1390067357-839522115-501 - Limited - Disabled) HelpAssistant (S-1-5-21-1614895754-1390067357-839522115-1000 - Limited - Disabled) SUPPORT_388945a0 (S-1-5-21-1614895754-1390067357-839522115-1002 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: IObit Malware Fighter (Disabled - Out of date) {0ED16AC2-4656-4907-BD42-21EA693640D6} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 22 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 22.0.0.210 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Atu'los Online (HKLM\...\Atu'los Online) (Version: - ) CCleaner (HKLM\...\CCleaner) (Version: 5.19 - Piriform) Dell System Detect (HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\58d94f3ce2c27db0) (Version: 7.6.0.4 - Dell) Facebook Video Calling 3.1.0.521 (HKLM\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) gamelauncher-ps2-psg (HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\SOE-C:/Program Files/Sony Online Entertainment/Installed Games/PlanetSide 2 PSG) (Version: - Sony Online Entertainment) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: - ) Java 7 Update 80 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217080FF}) (Version: 7.0.800 - Oracle) LastChaosUSA (HKLM\...\{0AF3FEAE-B651-4421-97EF-4808A588B4E5}) (Version: 1.00.000 - Barunsongames CO., LTD.) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft Base Smart Card Cryptographic Service Provider Package (HKLM\...\KB909520) (Version: - Microsoft Corporation) Microsoft Compression Client Pack 1.0 for Windows XP (HKLM\...\MSCompPackV1) (Version: 1 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{2E660A2A-A55F-43CD-9F73-CAD7382EEB78}) (Version: 3.0.19.0 - Microsoft Corporation) Microsoft User-Mode Driver Framework Feature Pack 1.0 (HKLM\...\Wudf01000) (Version: - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: - ) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Mozilla Firefox 47.0 (x86 en-GB) (HKLM\...\Mozilla Firefox 47.0 (x86 en-GB)) (Version: 47.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 43.0.1 - Mozilla) PCPitstop Panda AntiVirus Scan (remove only) (HKLM\...\PCPitstop Panda AntiVirus Scan) (Version: - ) Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SpeedFan (remove only) (HKLM\...\SpeedFan) (Version: - ) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden System Requirements Lab for Intel (HKLM\...\{53C63F43-B827-42D9-8886-4698D91EA33B}) (Version: 4.5.15.0 - Husdawg, LLC) Uninstall Helper (HKLM\...\Uninstall Helper 2.0.1.0) (Version: 2.0.1.0 - W3i, LLC) Uninstall Helper (Version: 2.0.1.0 - W3i, LLC) Hidden Unity Web Player (HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WebFldrs XP (Version: 9.50.5318 - Microsoft Corporation) Hidden WhoCrashed 4.01 (HKLM\...\WhoCrashed_is1) (Version: - Resplendence Software Projects Sp.) Windows Management Framework Core (HKLM\...\KB968930) (Version: - Microsoft Corporation) Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - ) Windows Media Player 11 (HKLM\...\Windows Media Player) (Version: - ) Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031525 - Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1614895754-1390067357-839522115-1004_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Documents and Settings\breda\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) CustomCLSID: HKU\S-1-5-21-1614895754-1390067357-839522115-1004_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Documents and Settings\breda\Local Settings\Application Data\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS) CustomCLSID: HKU\S-1-5-21-1614895754-1390067357-839522115-1004_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Documents and Settings\breda\Local Settings\Application Data\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1614895754-1390067357-839522115-1004Core.job => C:\Documents and Settings\breda\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1614895754-1390067357-839522115-1004UA.job => C:\Documents and Settings\breda\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job => C:\WINDOWS\system32\xp_eos.exe Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{46326FC0-C325-4341-869A-C246C8B695B6}.job => C:\WINDOWS\system32\msfeedssync.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2001-08-18 13:00 - 2013-01-02 07:49 - 01292288 _____ () C:\WINDOWS\system32\quartz.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\WINDOWS\system32\IObitSmartDefragExtension.dll:SummaryInformation [43] AlternateDataStreams: C:\WINDOWS\system32\IObitSmartDefragExtension.dll:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BsScanner => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nm => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nm.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UploadMgr => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-19\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-19\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-19\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-19\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-20\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-20\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-20\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-20\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\dell.com -> dell.com IE trusted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\sony.com -> sony.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-1614895754-1390067357-839522115-1004\...\100sexlinks.com -> 100sexlinks.com There are 4788 more sites. ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2001-08-18 13:00 - 2001-08-18 13:00 - 00000734 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1614895754-1390067357-839522115-1004\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\Web\Wallpaper\Bliss.bmp DNS Servers: 192.168.1.254 Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) StandardProfile\AuthorizedApplications: [C:\Program Files\Malwarebytes Anti-Malware\mbam.exe] => Enabled:Malwarebytes Anti-Malware StandardProfile\AuthorizedApplications: [C:\WINDOWS\network diagnostic\xpnetdiag.exe] => Enabled:Network Diagnostic for Windows XP StandardProfile\AuthorizedApplications: [C:\Documents and Settings\breda\Local Settings\Application Data\AtulosFree\csao.exe] => Enabled: StandardProfile\AuthorizedApplications: [C:\Program Files\Atu'los Online\AtulosOnline.exe] => Enabled:Atu'los Online StandardProfile\AuthorizedApplications: [C:\Documents and Settings\breda\Local Settings\Application Data\AtulosPremier\csao.exe] => Enabled: StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox) StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\dpvsetup.exe] => Enabled:Microsoft DirectPlay Voice Test StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\rundll32.exe] => Enabled:Run a DLL as an App StandardProfile\AuthorizedApplications: [C:\WINDOWS\system32\dxdiag.exe] => Enabled:Microsoft DirectX Diagnostic Tool StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Disabled:@xpsp2res.dll,-22007 StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Disabled:@xpsp2res.dll,-22008 ==================== Restore Points ========================= 10-04-2016 01:00:13 System Checkpoint 11-04-2016 14:03:34 System Checkpoint 11-04-2016 14:54:39 Adobe Flash Player 21 PPAPI restore point 11-04-2016 14:55:15 Adobe Flash Player 21 NPAPI restore point 11-04-2016 14:55:39 Adobe Flash Player 21 ActiveX restore point 13-04-2016 11:16:18 Software Distribution Service 3.0 13-04-2016 14:21:17 Installed GFACE Launcher 13-04-2016 20:19:47 Driver Booster : Adobe Flash Player ActiveX 17-04-2016 01:30:48 System Checkpoint 22-04-2016 11:11:28 System Checkpoint 23-04-2016 07:51:32 GFACE Launcher restore point 24-04-2016 07:52:08 System Checkpoint 26-04-2016 23:34:41 System Checkpoint 28-04-2016 12:40:52 System Checkpoint 04-05-2016 13:28:21 System Checkpoint 05-05-2016 23:43:35 System Checkpoint 08-05-2016 01:27:26 System Checkpoint 10-05-2016 04:19:05 System Checkpoint 11-05-2016 03:00:22 Software Distribution Service 3.0 12-05-2016 13:49:10 System Checkpoint 17-05-2016 13:07:11 System Checkpoint 18-05-2016 13:55:25 PC Decrapifier Restore Point 19-05-2016 23:42:56 System Checkpoint 21-05-2016 00:12:09 System Checkpoint 23-05-2016 14:03:47 System Checkpoint 24-05-2016 17:28:40 Google Chrome restore point 28-05-2016 20:15:50 System Checkpoint 30-05-2016 12:42:30 System Checkpoint 01-06-2016 01:15:56 System Checkpoint 02-06-2016 11:51:58 System Checkpoint 04-06-2016 08:53:33 System Checkpoint 04-06-2016 12:28:03 PowerDVD restore point 06-06-2016 00:33:09 System Checkpoint 08-06-2016 10:03:23 System Checkpoint 10-06-2016 01:59:28 System Checkpoint 14-06-2016 04:54:13 System Checkpoint 15-06-2016 03:00:16 Software Distribution Service 3.0 16-06-2016 08:59:03 System Checkpoint 20-06-2016 14:06:47 Unsigned driver install 20-06-2016 14:54:35 Restore Operation 20-06-2016 15:01:00 PowerDVD restore point 20-06-2016 15:02:16 Software Distribution Service 3.0 20-06-2016 15:25:44 Mozilla Firefox 46.0.1 (x86 en-US) restore point 20-06-2016 15:37:07 Configured LastChaosUSA 21-06-2016 05:55:11 Update to an unsigned driver 21-06-2016 06:09:13 Driver Booster : Multimedia Audio Controller 21-06-2016 06:25:34 Intel® Driver Update Utility 22-06-2016 02:38:02 Driver Booster : Multimedia Audio Controller 22-06-2016 03:37:19 Restore Operation 22-06-2016 04:07:58 Mozilla Firefox 47.0 (x86 en-US) restore point 22-06-2016 04:12:10 Software Distribution Service 3.0 23-06-2016 03:34:18 Update to an unsigned driver 24-06-2016 12:04:10 Installed SoundMAX 24-06-2016 12:04:21 Installed SoundMAX 24-06-2016 12:47:16 Update to an unsigned driver 26-06-2016 02:43:21 System Checkpoint 26-06-2016 21:43:21 First Restore Point 28-06-2016 23:49:51 System Checkpoint 30-06-2016 10:02:05 System Checkpoint 30-06-2016 13:42:52 IObit Malware Fighter 4 restore point 30-06-2016 14:20:13 Revo Uninstaller's restore point - IObit Malware Fighter 4 30-06-2016 14:28:08 Revo Uninstaller's restore point - Max Uninstaller version 3.6 30-06-2016 14:30:14 Revo Uninstaller's restore point - Smart Defrag 4 07-07-2016 04:33:48 DllTool 1.0 restore point 07-07-2016 05:13:47 IObit Malware Fighter 4 restore point 07-07-2016 05:18:50 Revo Uninstaller's restore point - IObit Uninstaller 07-07-2016 05:22:02 Revo Uninstaller's restore point - Surfing Protection 07-07-2016 05:23:22 Revo Uninstaller's restore point - Advanced SystemCare 9 07-07-2016 05:41:18 Revo Uninstaller's restore point - Driver Booster 3.3 08-07-2016 12:03:55 Revo Uninstaller's restore point - SoundMAX 08-07-2016 12:04:03 Configured SoundMAX 08-07-2016 12:04:24 Removed SoundMAX 08-07-2016 12:09:58 Unsigned driver install 09-07-2016 17:14:23 System Checkpoint 11-07-2016 16:22:43 System Checkpoint 12-07-2016 05:53:22 Revo Uninstaller's restore point - Dashlane 12-07-2016 05:55:36 Revo Uninstaller's restore point - Dashlane 12-07-2016 06:00:25 Revo Uninstaller's restore point - IObit Malware Fighter 4 13-07-2016 15:01:48 Software Distribution Service 3.0 ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/12/2016 05:39:13 AM) (Source: MsiInstaller) (EventID: 11704) (User: BREDA-5S48NJN9B) Description: Product: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 -- Error 1704.An installation for Kaspersky Anti-Virus is currently suspended. You must undo the changes made by that installation to continue. Do you want to undo those changes? Error: (07/07/2016 04:01:24 AM) (Source: MsiInstaller) (EventID: 10005) (User: BREDA-5S48NJN9B) Description: Application: Kaspersky Anti-Virus -- Error 29005. <<29005>>InstallDir=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\ Error: (07/07/2016 04:01:10 AM) (Source: MsiInstaller) (EventID: 10005) (User: BREDA-5S48NJN9B) Description: Application: Kaspersky Anti-Virus -- Error 29005. <<29005>>InstallDir=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\ Error: (07/07/2016 03:59:32 AM) (Source: MsiInstaller) (EventID: 10005) (User: BREDA-5S48NJN9B) Description: Application: Kaspersky Anti-Virus -- Error 29005. <<29005>>InstallDir=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\ Error: (07/07/2016 03:58:59 AM) (Source: MsiInstaller) (EventID: 10005) (User: BREDA-5S48NJN9B) Description: Application: Kaspersky Anti-Virus -- Error 29005. <<29005>>InstallDir=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\ Error: (06/23/2016 03:01:55 AM) (Source: Microsoft Management Console) (EventID: 1001) (User: ) Description: -1992399038 Error: (06/23/2016 03:01:44 AM) (Source: Microsoft Management Console) (EventID: 1000) (User: ) Description: mmc.exe5.2.3790.4136ntdll.dll5.1.2600.605500010a19 Error: (06/23/2016 03:01:23 AM) (Source: Microsoft Management Console) (EventID: 1001) (User: ) Description: -1990623892 Error: (06/23/2016 03:01:15 AM) (Source: Microsoft Management Console) (EventID: 1000) (User: ) Description: mmc.exe5.2.3790.4136ntdll.dll5.1.2600.60550001168b Error: (06/19/2016 03:24:06 PM) (Source: Microsoft Management Console) (EventID: 1001) (User: ) Description: -1992399038 System errors: ============= Error: (07/14/2016 03:49:45 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/14/2016 03:43:36 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/14/2016 01:35:38 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/14/2016 11:49:05 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/14/2016 03:13:50 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/13/2016 09:51:01 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/13/2016 12:11:38 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/12/2016 12:58:24 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/12/2016 06:03:40 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: MpFilter Error: (07/12/2016 06:00:35 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The IMF Service service terminated unexpectedly. It has done this 1 time(s). ==================== Memory info =========================== Processor: Intel(R) Pentium(R) 4 CPU 3.00GHz Percentage of memory in use: 33% Total physical RAM: 2550.07 MB Available physical RAM: 1693.43 MB Total Virtual: 3917.73 MB Available Virtual: 3275.55 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:74.5 GB) (Free:51.25 GB) NTFS ==>[drive with boot components (Windows XP)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows XP) (Size: 74.5 GB) (Disk ID: F4F1F4F1) Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================