cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Additional scan result of Farbar Recovery Scan Tool (x64) Version:07-02-2016
Ran by BiosCry (2016-02-12 14:08:10)
Running from C:\Users\BiosCry\Desktop
Windows 7 Ultimate Service Pack 1 (X64) (2015-04-08 12:35:01)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1775429119-1847652726-1671412050-500 - Administrator - Disabled)
BiosCry (S-1-5-21-1775429119-1847652726-1671412050-1000 - Administrator - Enabled) => C:\Users\BiosCry
Guest (S-1-5-21-1775429119-1847652726-1671412050-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 15.14 (x64) (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov)
Adobe Acrobat Reader DC - Português (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AC0F074E4100}) (Version: 15.010.20056 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Application Insights Tools for Visual Studio 2013 (x32 Version: 2.4 - Microsoft Corporation) Hidden
Auslogics DiskDefrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 5.4.0.0 - Auslogics Labs Pty Ltd)
BitTorrent (HKU\S-1-5-21-1775429119-1847652726-1671412050-1000\...\BitTorrent) (Version: 7.9.5.41713 - BitTorrent Inc.)
BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.9.30.9239 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM-x32\...\{3792811C-832F-4392-B44A-24092901EDDC}) (Version: 0.9.30.9239 - BlueStack Systems, Inc.)
Build Tools - amd64 (Version: 12.0.31101 - Microsoft Corporation) Hidden
Build Tools - x86 (x32 Version: 12.0.31101 - Microsoft Corporation) Hidden
Build Tools Language Resources - x86 (x32 Version: 12.0.31101 - Microsoft Corporation) Hidden
Call of Duty: Modern Warfare 3 - Multiplayer (HKLM-x32\...\Steam App 42690) (Version: - Infinity Ward)
Call of Duty: Modern Warfare 3 (HKLM-x32\...\Steam App 42680) (Version: - Infinity Ward)
CCleaner (HKLM\...\CCleaner) (Version: 5.04 - Piriform)
Dolby Axon - 1.5.1.1 (HKLM-x32\...\{17936630-5344-4F18-9970-616129E2A114}_is1) (Version: 1.5.1.1 - Dolby Laboratories)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - )
EVGA Precision 1.8.1 (HKLM-x32\...\Precision) (Version: 1.8.1 - EVGA Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.109 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Grids 2.4.1.1 (HKLM\...\Grids) (Version: - )
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Word Viewer 2003 (HKLM-x32\...\{90850416-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
MPC-HC 1.7.4.13 (d4d872c) Nightly (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.4.13 - MPC-HC Team)
Natural Color Pro (HKLM-x32\...\{FC2C7405-BC58-4E11-8F51-29671BEAC06B}) (Version: 1.00.0004 - )
Nero 7 Essentials (HKLM-x32\...\{EF3E420F-2DCF-4C24-8E37-896801901046}) (Version: 7.03.1055 - Nero AG)
NVIDIA Graphics Driver 341.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.92 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
Pen Tablet (HKLM-x32\...\Pen Tablet Driver) (Version: - Wacom Technology Corp.)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.)
Python Tools Redirection Template (x32 Version: 1.3 - Microsoft Corporation) Hidden
Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
Setup (HKLM-x32\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) <==== ATTENTION
Source SDK Base 2007 (HKLM-x32\...\Steam App 218) (Version: - Valve)
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve)
Telegram Desktop version 0.9.18 (HKU\S-1-5-21-1775429119-1847652726-1671412050-1000\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 0.9.18 - Telegram Messenger LLP)
TERA (HKLM-x32\...\Steam App 323370) (Version: - Bluehole Inc.)
TypeScript Power Tool (x32 Version: 1.0.5.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2013 (x32 Version: 1.0.5.0 - Microsoft Corporation) Hidden
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Visual Studio 2013 Update 4 (KB2829760) (HKLM-x32\...\{53d408db-eb91-43fb-9d8f-167681c19763}) (Version: 12.0.31101 - Microsoft Corporation)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
VS Update core components (x32 Version: 12.0.31101 - Microsoft Corporation) Hidden
VSO ConvertXToDVD (HKLM-x32\...\{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1) (Version: 5.2.0.64 - VSO Software)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {130DA203-4ED5-4FCD-B2F0-3AE482A33F7C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-03-13] (Piriform Ltd)
Task: {2A89E0C6-840D-4C51-BC9B-C00F478DBE5B} - System32\Tasks\{37EA6B5D-C068-42F6-8ADA-6AE27F884CB4} => pcalua.exe -a D:\monsetup.exe -d D:\
Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - System32\Tasks\Microsoft\Windows\WindowsBackup\ConfigNotification
Task: {42635641-F7CA-4EFC-8C46-0AE429A4FF4C} - System32\Tasks\{FE6CCB59-20EE-4583-A882-2D93C38F3FF8} => C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe
Task: {5807BC5C-5A58-4F4A-8208-5639458C6484} - System32\Tasks\AdobeAAMUpdater-1.0-BiosCry-PC-BiosCry => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-05-26] (Adobe Systems Incorporated)
Task: {5A40E926-9E86-4B89-9CFD-B12311724371} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig
Task: {731821DA-7B71-43BB-97C9-3EBC83F4D5A5} - System32\Tasks\{BD5F2189-DF10-4E27-8EFC-FDC0309B26F7} => pcalua.exe -a "C:\Users\BiosCry\Desktop\Redfield Fractalius 1.83\SetupFractalius.exe" -d "C:\Users\BiosCry\Desktop\Redfield Fractalius 1.83"
Task: {753C47AE-EC5E-44B3-95A9-2C8E553F0E39} - System32\Tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary
Task: {78F7ACF8-8981-4A49-B3B0-454D749F75E9} - System32\Tasks\ttwifi => C:\Program Files (x86)\ttwifi\tiantianwifi.exe
Task: {85E94BC7-636B-42AB-B423-0A1705DE6058} - System32\Tasks\osTip => C:\ProgramData\WindowsMsg\osmsg.exe [2016-02-09] ()
Task: {8BFE2666-B7D1-4458-A1C4-351DED399238} - System32\Tasks\{0D80DCBB-8BC7-40E7-AC12-D27BC3D0F381} => pcalua.exe -a "D:\Program Files\Setup.exe" -d "D:\Program Files"
Task: {8E00E7E0-8A00-4AF9-86ED-BD89AC3D5A0F} - System32\Tasks\{DBBE364F-8F38-48BF-8265-FA2AC00C25C1} => pcalua.exe -a D:\Driver\Setup.exe -d D:\Driver
Task: {92F4C827-1CC7-46AE-92CD-D22D8EA2543A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {9C1CE2FE-EA72-4185-A874-3E04F2F63C48} - System32\Tasks\{5A891EC9-50ED-4FC2-9F2A-993610402EBF} => C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe
Task: {ABB6225C-5FED-4EBD-AA3E-34CC67BAB751} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-08] (Google Inc.)
Task: {AC03C161-992A-426C-81C0-3CD32BC4B13F} - System32\Tasks\{F504051B-5894-488D-A9E6-A06F45DB9051} => C:\Program Files (x86)\Google\Picasa3\Picasa3.exe [2015-10-13] (Google Inc.)
Task: {C36D40F2-72BB-4FDE-9724-624CDFAF5857} - System32\Tasks\{B445BBAB-8ADB-4F66-8E0C-BA1E820017DA} => pcalua.exe -a "C:\Users\BiosCry\Desktop\zloBF3 - Complete Edition\pbsetup.exe" -d "C:\Users\BiosCry\Desktop\zloBF3 - Complete Edition"
Task: {D0250F3F-6480-484F-B719-42F659AC64D5} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting
Task: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange
Task: {E54CB2A2-C531-455F-A044-EE49FF6D245D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-08] (Google Inc.)
Task: {F77E02D2-54D8-492F-BDAB-372C410591F3} - System32\Tasks\{C5754B5E-2671-46D9-91D0-B3996671DCE9} => pcalua.exe -a "C:\Program Files (x86)\Tablet\Pen\Remove.exe" -d "C:\Program Files (x86)\Tablet\Pen" -c /p

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-11-27 01:49 - 2015-10-13 15:26 - 00125616 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-11-25 01:24 - 2015-11-25 01:23 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe
2016-02-12 13:31 - 2016-02-09 12:30 - 02036224 _____ () C:\ProgramData\WindowsMsg\osmsg.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:054B9966

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-02-11 18:30 - 2016-02-12 13:19 - 00000967 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 down.baidu2016.com
127.0.0.1 123.sogou.com
127.0.0.1 www.czzsyzgm.com
127.0.0.1 www.czzsyzxl.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1775429119-1847652726-1671412050-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\BiosCry\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 208.67.222.222 - 208.67.220.220
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GammaTray.exe.lnk => C:\Windows\pss\GammaTray.exe.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NCProTray.lnk => C:\Windows\pss\NCProTray.lnk.CommonStartup
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: MagicTuneEngine => C:\Program Files\MagicTune Premium\MagicTuneLauncher.exe

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{BB8DD80B-9373-4CBF-8743-E1F8A5A558C0}C:\users\bioscry\appdata\roaming\bittorrent\bittorrent.exe] => (Allow) C:\users\bioscry\appdata\roaming\bittorrent\bittorrent.exe
FirewallRules: [UDP Query User{4441C739-C81E-4890-B6FD-D8AD39774542}C:\users\bioscry\appdata\roaming\bittorrent\bittorrent.exe] => (Allow) C:\users\bioscry\appdata\roaming\bittorrent\bittorrent.exe
FirewallRules: [TCP Query User{8F026760-C3DA-43EF-86F5-88D137A670CB}C:\program files\magictune premium\magictune.exe] => (Allow) C:\program files\magictune premium\magictune.exe
FirewallRules: [UDP Query User{A2D50B1C-2340-47C4-BAF7-AC530B9BEDAD}C:\program files\magictune premium\magictune.exe] => (Allow) C:\program files\magictune premium\magictune.exe
FirewallRules: [{843ED6C5-35F2-4A34-B54A-9187A03C5EF1}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{1222EFAB-53DF-4B5B-B2AE-6399EA1031A2}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\Steam.exe
FirewallRules: [TCP Query User{8AA41DFC-DC5D-4C4B-886E-5CD99266A5B9}C:\program files\magictune premium\magictune.exe] => (Block) C:\program files\magictune premium\magictune.exe
FirewallRules: [UDP Query User{524D20E6-4E32-40DC-B226-9EB8542EA0D5}C:\program files\magictune premium\magictune.exe] => (Block) C:\program files\magictune premium\magictune.exe
FirewallRules: [{7F2A77A2-BC5A-41B5-A087-18FAB6AC7DF6}] => (Allow) C:\Program Files (x86)\DolbyAxon\Axon.exe
FirewallRules: [{914930BA-31D1-4B5A-ABB8-2E1610955077}] => (Allow) C:\Program Files (x86)\DolbyAxon\Axon.exe
FirewallRules: [{9E8ECD72-504E-454A-B041-5D19AC7F87DB}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{71569233-9312-4780-8FD2-3F8303E92705}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{60213789-8A5C-4BC6-B9B5-B0BB1A041FBD}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{710BF9A5-8E80-451A-A0E5-9D6B6F5C7BCB}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [TCP Query User{5E4C40ED-70F6-4264-9D5B-04FDC657A371}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe
FirewallRules: [UDP Query User{80FD36D4-E8AA-4E7E-8FE6-136ACB4A2F93}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe
FirewallRules: [{E66F52B4-882D-4124-9EBF-4DCECC8E2DA6}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{00304F9D-FA89-4711-BA96-F701B0E66C7E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{BDC0BC81-F206-4806-9DE2-DDE879728FFA}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{007CBBC6-774B-43EF-8196-E4B6A9649F43}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{D9774AAA-873C-464A-B7AB-67F2724C2870}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BA20F443-7CFE-4374-852E-1545A31A9739}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{85954D5A-F92C-4746-8202-292FCC478461}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\TERA\TERA-Launcher.exe
FirewallRules: [{B9870F37-A254-4CB5-A6B3-EC1C3047C07D}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\TERA\TERA-Launcher.exe
FirewallRules: [{D7D16813-2486-489E-A8A8-CA3F0E796B68}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\Call of Duty Modern Warfare 3\iw5mp.exe
FirewallRules: [{3C432F3E-4625-4722-A7EF-02345FA04F10}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\Call of Duty Modern Warfare 3\iw5mp.exe
FirewallRules: [{CC5D0C70-4B96-4106-8A02-3273FFCDE268}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\Call of Duty Modern Warfare 3\iw5sp.exe
FirewallRules: [{959BC27A-0062-410D-B34C-B37AECE506BD}] => (Allow) C:\Windows.old\Program Files (x86)\Steam\steamapps\common\Call of Duty Modern Warfare 3\iw5sp.exe
FirewallRules: [{ECCDC3E3-4DCD-4031-930B-1708E8FB92CC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

12-02-2016 05:34:04 photoshop_bug
12-02-2016 05:41:08 Restore Operation
12-02-2016 06:25:56 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
12-02-2016 06:26:25 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
12-02-2016 06:26:51 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
12-02-2016 06:27:20 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
12-02-2016 13:09:08 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
12-02-2016 13:10:10 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (02/12/2016 02:02:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/12/2016 01:59:25 PM) (Source: ESENT) (EventID: 215) (User: )
Description: WinMail (2120) WindowsMail0: The backup has been stopped because it was halted by the client or the connection with the client failed.

Error: (02/12/2016 01:48:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Photoshop.exe, version: 16.0.0.88, time stamp: 0x55681d39
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x5315a05a
Exception code: 0xc0000005
Fault offset: 0x000000000002464e
Faulting process id: 0xf0
Faulting application start time: 0xPhotoshop.exe0
Faulting application path: Photoshop.exe1
Faulting module path: Photoshop.exe2
Report Id: Photoshop.exe3

Error: (02/12/2016 01:48:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Photoshop.exe, version: 16.0.0.88, time stamp: 0x55681d39
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x5315a05a
Exception code: 0xc0000005
Fault offset: 0x000000000002464e
Faulting process id: 0x119c
Faulting application start time: 0xPhotoshop.exe0
Faulting application path: Photoshop.exe1
Faulting module path: Photoshop.exe2
Report Id: Photoshop.exe3

Error: (02/12/2016 01:47:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Photoshop.exe, version: 16.0.0.88, time stamp: 0x55681d39
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x5315a05a
Exception code: 0xc0000005
Fault offset: 0x000000000002464e
Faulting process id: 0xf64
Faulting application start time: 0xPhotoshop.exe0
Faulting application path: Photoshop.exe1
Faulting module path: Photoshop.exe2
Report Id: Photoshop.exe3

Error: (02/12/2016 01:46:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Photoshop.exe, version: 16.0.0.88, time stamp: 0x55681d39
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x5315a05a
Exception code: 0xc0000005
Fault offset: 0x000000000002464e
Faulting process id: 0x1550
Faulting application start time: 0xPhotoshop.exe0
Faulting application path: Photoshop.exe1
Faulting module path: Photoshop.exe2
Report Id: Photoshop.exe3

Error: (02/12/2016 01:32:28 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program 6C8E.tmp version 51.52.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 214

Start Time: 01d165aa67fb7134

Termination Time: 2

Application Path: C:\Users\BiosCry\AppData\Local\Temp\is-K5FGK.tmp\6C8E.tmp

Report Id:

Error: (02/12/2016 01:23:02 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program PDApp.exe version 9.0.0.100 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 52c

Start Time: 01d165a8d92cc0f8

Termination Time: 31

Application Path: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe

Report Id:

Error: (02/12/2016 08:33:18 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/12/2016 06:38:24 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (02/12/2016 02:10:19 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Encrypting File System (EFS) service terminated with the following error:
%%193

Error: (02/12/2016 02:10:19 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Encrypting File System (EFS) service terminated with the following error:
%%193

Error: (02/12/2016 02:10:19 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Encrypting File System (EFS) service terminated with the following error:
%%193

Error: (02/12/2016 02:10:19 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Encrypting File System (EFS) service terminated with the following error:
%%193

Error: (02/12/2016 02:10:19 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Encrypting File System (EFS) service terminated with the following error:
%%193

Error: (02/12/2016 02:10:19 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Encrypting File System (EFS) service terminated with the following error:
%%193

Error: (02/12/2016 02:01:06 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
NCPro

Error: (02/12/2016 02:00:55 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Encrypting File System (EFS) service terminated with the following error:
%%193

Error: (02/12/2016 01:59:31 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error:
%%1056

Error: (02/12/2016 01:59:09 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Encrypting File System (EFS) service terminated with the following error:
%%193


CodeIntegrity:
===================================
Date: 2016-02-12 13:58:44.291
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:58:44.229
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:58:31.930
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:58:31.883
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:58:31.505
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:58:31.442
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:58:31.103
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:58:31.040
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:57:43.274
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 13:57:43.211
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz
Percentage of memory in use: 30%
Total physical RAM: 4094.54 MB
Available physical RAM: 2858.37 MB
Total Virtual: 8187.27 MB
Available Virtual: 6920.3 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.77 GB) (Free:87.97 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (DVD) (CDROM) (Total:4.08 GB) (Free:0 GB) UDF
Drive e: () (Fixed) (Total:38.28 GB) (Free:1.83 GB) NTFS
Drive f: (KINGSTON) (Removable) (Total:3.73 GB) (Free:1.78 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 38.3 GB) (Disk ID: 57F357F3)
Partition 1: (Active) - (Size=38.3 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 44714470)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 3.7 GB) (Disk ID: 04030201)
Partition 1: (Not Active) - (Size=3.7 GB) - (Type=0B)

==================== End of Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité