Format du document : text/plain
Prévisualisation
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 02-06-2017
Ran by Mr Amine (03-06-2017 22:59:08)
Running from C:\Users\Mr Amine\Downloads
Microsoft Windows 7 Professional Service Pack 1 (X86) (2016-10-09 13:39:32)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-2541504113-2086445549-289826373-500 - Administrator - Disabled)
Guest (S-1-5-21-2541504113-2086445549-289826373-501 - Limited - Disabled)
Mr Amine (S-1-5-21-2541504113-2086445549-289826373-1000 - Administrator - Enabled) => C:\Users\Mr Amine
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-2541504113-2086445549-289826373-1000\...\uTorrent) (Version: 3.5.0.43804 - BitTorrent Inc.)
4Media Video Cutter 2 (HKLM\...\4Media Video Cutter 2) (Version: 2.2.0.20170209 - 4Media)
7-Zip 16.04 (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
Adguard (HKLM\...\{e2a82ed3-dba7-43f6-8ef3-e303140c55dd}) (Version: 6.1.331.1732 - Performix LLC)
Adguard (Version: 6.1.331.1732 - Performix LLC) Hidden
Adobe Acrobat Reader DC (HKLM\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated)
Adobe After Effects CS4 (HKLM\...\Adobe_3dcb365ab9e01871fb8c6f27b0ea079) (Version: 9 - Adobe Systems Incorporated)
Adobe Flash Player 25 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 25.0.0.171 - Adobe Systems Incorporated)
Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 17.4.2294 - AVAST Software)
Avidemux 2.6 - 32 bits (32-bit) (HKLM\...\Avidemux 2.6 - 32 bits) (Version: 2.6.18.170105 - )
Camtasia Studio 8 (HKLM\...\{80AE23DF-71A4-4E3F-B931-F93AB5DF0BDD}) (Version: 8.4.2.1768 - TechSmith Corporation)
Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
Driver Easy 5.1.6 (HKLM\...\DriverEasy_is1) (Version: 5.1.6 - Easeware)
ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - )
ETDWare X86 11.7.13.2_WHQL (HKLM\...\Elantech) (Version: 11.7.13.2 - ELAN Microelectronic Corp.)
FormatFactory 4.1.0.0 (HKLM\...\FormatFactory) (Version: 4.1.0.0 - Free Time)
Free Video Cutter (HKLM\...\{94895EA7-873E-4FCB-9C7B-DD3F7019D618}_is1) (Version: - FreeVideoCutter.com)
Google Chrome (HKLM\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.)
Google Update Helper (Version: 1.3.33.5 - Google Inc.) Hidden
Intel Security True Key (HKLM\...\TrueKey) (Version: 4.17.107.1 - Intel Security)
Lexmark 2400 Series (HKLM\...\Lexmark 2400 Series) (Version: - Lexmark International, Inc.)
Microsoft .NET Framework 4.6.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01590 - Microsoft Corporation)
Microsoft Expression Encoder 4 (HKLM\...\Encoder_4.0.1651.0) (Version: 4.0.1651.0 - Microsoft Corporation)
Microsoft Expression Encoder 4 Screen Capture Codec (HKLM\...\{952DCCD8-4039-46C8-BC8B-5C1EB6C8E130}) (Version: 4.0.1651.0 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
PDF Reader 4 (HKLM\...\PDF Reader 4) (Version: - )
Photoshop Camera Raw (Version: 5.0 - Adobe Systems Incorporated) Hidden
Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.40.126.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8036 - Realtek Semiconductor Corp.)
Snagit 13 (HKLM\...\{4fcd74bf-76ca-4f48-bfe4-5b444eccb4a3}) (Version: 13.0.2.6653 - TechSmith Corporation)
Snagit 13 (Version: 13.0.2 - TechSmith Corporation) Hidden
Sticky Password 8.0.10.54 (HKLM\...\Sticky Password_is1) (Version: 8.0 - Lamantine Software)
Suite Shared Configuration CS4 (Version: 1.0 - Adobe Systems Incorporated) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
WinRAR 5.40 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Xilisoft Video Converter Ultimate (HKLM\...\Xilisoft Video Converter Ultimate) (Version: 7.7.2.20130217 - Xilisoft)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{094AE5CB-62E5-4845-8ED6-617D9FE893DD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{11CD84A3-A5E0-43CB-B3DF-92C623C0E0E0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{22756E83-8EBC-4B16-A4A4-0AA73BE497B1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{2A235D7E-0358-40E2-B51A-DE22F8F5C50D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{56C94D6A-7370-4885-A04E-7097FE4E0BAF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{672CDBDB-0270-4EB9-83EC-216377522D21}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{79811B29-9C10-4FCB-A117-6030F2DC12BB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{841BFDCA-6A9A-4EBC-BC7E-194AA5DCE428}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{94330D48-EB33-49BB-87F1-AD8C0352C010}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{F7CA46A9-ACA5-45A6-967E-03FF5A282D01}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {27874076-FE29-4045-9585-A43076A1FD48} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [2017-04-12] (McAfee, Inc.)
Task: {399EDC34-F260-446D-A281-9EF19B99338F} - System32\Tasks\TechSmith Updater => C:\Program Files\Common Files\TechSmith Shared\Updater\TSCUpdClt.exe [2016-03-28] (TechSmith Corporation)
Task: {4EA9D40E-8005-4630-83FA-4C483D487001} - System32\Tasks\{8ACF6F6C-79B9-465C-A7F1-12313667B944} => pcalua.exe -a "C:\Program Files\Xilisoft\Video Joiner 2\Uninstall.exe"
Task: {6064E413-0653-4EBA-9236-E905C124BBC4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated)
Task: {64F8B347-57F9-4CF9-B613-BCDE8D2148C8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-10-09] (Google Inc.)
Task: {6E6BBB3D-B88A-43D2-8D5C-3761BD3604F6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-10-09] (Google Inc.)
Task: {8086BD4B-CCFE-4A2B-9B22-532452E40FAC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-10] (Adobe Systems Incorporated)
Task: {8CD30930-FE89-443A-AF4B-73F490BBE105} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software)
Task: {BF032AD2-FB23-4F4A-8740-D8A03C4E2780} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-05-09] (AVAST Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2017-05-09 12:42 - 2017-05-09 12:42 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-05-09 12:42 - 2017-05-09 12:42 - 00176992 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-05-09 12:42 - 2017-05-09 12:42 - 00223224 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2017-06-03 12:29 - 2017-06-03 12:29 - 06101296 _____ () C:\Program Files\AVAST Software\Avast\defs\17060300\algo.dll
2017-05-09 12:42 - 2017-05-09 12:42 - 00684656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2017-05-09 12:42 - 2017-05-09 12:42 - 00230632 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2017-01-31 21:51 - 2006-11-27 04:50 - 00117760 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxcrpp5c.dll
2017-03-27 20:41 - 2017-03-27 20:41 - 01415952 _____ () C:\Program Files\Adguard\AdguardNetApi.DLL
2017-03-27 20:41 - 2017-03-27 20:41 - 00142096 _____ () C:\Program Files\Adguard\AdguardNetLib.DLL
2017-05-09 12:42 - 2017-05-09 12:42 - 00997896 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll
2017-05-09 12:42 - 2017-05-09 12:43 - 67717632 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-05-09 12:42 - 2017-05-09 12:42 - 00291824 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2016-10-09 18:46 - 2016-09-06 13:00 - 05197312 _____ () C:\Users\Mr Amine\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1\libglesv2.dll
2016-10-09 18:46 - 2016-09-06 13:00 - 00147456 _____ () C:\Users\Mr Amine\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1\libegl.dll
2017-05-09 12:42 - 2017-05-09 12:42 - 00134920 _____ () c:\Program Files\AVAST Software\Avast\vaarclient.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:04 - 2017-05-14 16:31 - 00000950 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 65.52.240.48
127.0.0.1 69.167.144.18
127.0.0.1 oscount.techsmith.com
127.0.0.1 activation.cloud.techsmith.com
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2541504113-2086445549-289826373-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mr Amine\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^PlutoTV.lnk => C:\Windows\pss\PlutoTV.lnk.CommonStartup
MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: EzPrint => "C:\Program Files\Lexmark 2400 Series\ezprint.exe"
MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
MSCONFIG\startupreg: LXCRCATS => rundll32 C:\Windows\system32\spool\DRIVERS\W32X86\3\LXCRtime.dll,_RunDLLEntry@16
MSCONFIG\startupreg: lxcrmon.exe => "C:\Program Files\Lexmark 2400 Series\lxcrmon.exe"
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
MSCONFIG\startupreg: uTorrent => "C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{F8FE42B0-8C7D-4BAC-BEAF-EB40B09BDC36}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{A9D5042C-469A-499D-9A19-FC0C03C30D80}] => (Allow) LPort=8317
FirewallRules: [{915E180C-A79D-4A2C-AA8D-9057C4B551F0}] => (Allow) LPort=8298
FirewallRules: [{C081D6D3-6B0F-4D0D-A99A-60032A8E3D93}] => (Allow) LPort=8298
FirewallRules: [{4B769AAC-2FFF-4604-AFDC-AE5F0D3F70DD}] => (Allow) LPort=8298
FirewallRules: [{BE3C0632-8FC7-477C-8932-0FD76DB587B4}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{AC338B89-6E22-421C-A326-845AF8415603}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{FE936B2A-8FF6-49A2-9C6B-83D684FE216B}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6290302F-7610-485E-8AC3-FA81ED94726E}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{0DE0C6C7-7F19-4E88-A9BB-D216A60E360B}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{C3A1E379-9259-4185-8C00-6D23F62CAC7F}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7189EE29-8AEA-4D54-81E6-EC2EBBA30AE3}] => (Allow) C:\Windows\System32\lxcrcoms.exe
FirewallRules: [{856298CC-6238-4D65-B86D-D515F8DDD947}] => (Allow) C:\Windows\System32\lxcrcoms.exe
FirewallRules: [{F4D20099-5A1A-45EA-B4C4-AE064DAED19D}] => (Allow) C:\Program Files\Lexmark 2400 Series\lxcrmon.exe
FirewallRules: [{D4F4100A-6754-4C6D-975F-6ED20F408F03}] => (Allow) C:\Program Files\Lexmark 2400 Series\lxcrmon.exe
FirewallRules: [{A048EDC5-C19B-4E4D-90C3-FA2056A90FAB}] => (Allow) C:\Program Files\Lexmark 2400 Series\LXCRaiox.exe
FirewallRules: [{4EC08BE3-F7BC-47DF-9363-D74AD40C80DF}] => (Allow) C:\Program Files\Lexmark 2400 Series\LXCRaiox.exe
FirewallRules: [{8FC92E4D-F136-4E88-A3DB-44CC9546F972}] => (Allow) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
FirewallRules: [{C93FA3E1-DF6F-4E5A-8B7A-6879BE5E0258}] => (Allow) C:\Program Files\Adguard\AdguardSvc.exe
FirewallRules: [{09E7B674-B813-4376-95E1-5629B533AB27}] => (Allow) C:\Program Files\Sticky Password\stpass.exe
FirewallRules: [{D34D17E3-626D-443A-83EF-2AD94D315BDC}] => (Allow) C:\Program Files\Sticky Password\stpass.exe
FirewallRules: [TCP Query User{3EF6FAE6-D909-4DC5-A850-982865267A02}C:\program files\sony\vegas pro 9.0\vegsrv90.exe] => (Block) C:\program files\sony\vegas pro 9.0\vegsrv90.exe
FirewallRules: [UDP Query User{A7ED0051-99E4-419F-B6F0-3C4C7DEADC05}C:\program files\sony\vegas pro 9.0\vegsrv90.exe] => (Block) C:\program files\sony\vegas pro 9.0\vegsrv90.exe
FirewallRules: [{F96817E7-5F90-4E4B-9A29-48E0D1BA742D}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe
FirewallRules: [{0FE7BF92-E0E2-4760-80C9-97F7F762774B}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{B94A4955-D7CF-4987-8297-3049B83A287A}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{DC506AFB-4C76-47AD-959C-6CEA02E6BE2A}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe
FirewallRules: [{D8749925-348F-418A-BBDB-39364785A016}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (06/03/2017 09:01:40 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: FRST.exe, version: 2.6.2017.0, time stamp: 0x5931774a
Faulting module name: FRST.exe, version: 2.6.2017.0, time stamp: 0x5931774a
Exception code: 0xc0000005
Fault offset: 0x000211de
Faulting process id: 0x1298
Faulting application start time: 0x01d2dca3b40ddb05
Faulting application path: C:\Users\Mr Amine\Downloads\FRST.exe
Faulting module path: C:\Users\Mr Amine\Downloads\FRST.exe
Report Id: 74907733-4897-11e7-8162-e811328ef8d5
Error: (06/03/2017 06:30:49 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (06/03/2017 01:22:03 PM) (Source: MsiInstaller) (EventID: 11935) (User: MrAmine-PC)
Description: Product: Adobe Setup -- Error 1935.An error occurred during the installation of assembly 'Microsoft.VC80.CRT,publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762",processorArchitecture="x86"'. Please refer to Help and Support for more information. HRESULT: 0x80070091. assembly interface: IAssemblyCacheItem, function: Commit, component: {98CB24AD-52FB-DB5F-A01F-C8B3B9A1E18E}
Error: (06/02/2017 01:26:07 AM) (Source: Adguard) (EventID: 0) (User: )
Description: Switching logger to invalid state because of System.ObjectDisposedException: Cannot access a closed file.
Source: mscorlib
Stack trace: at System.IO.__Error.FileNotOpen()
at System.IO.FileStream.get_Length()
at Microsoft.VisualBasic.Logging.FileLogTraceListener.ResourcesAvailable(Int64 newEntrySize)
at Microsoft.VisualBasic.Logging.FileLogTraceListener.WriteLine(String message)
at Adguard.Commons.Utils.Logger.TraceLine(TraceLevel level, String message)
Error: (05/28/2017 01:41:19 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (05/26/2017 11:02:05 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (05/26/2017 01:27:25 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program chrome.exe version 58.0.3029.110 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.
Process ID: 1250
Start Time: 01d2d5b68545c13d
Termination Time: 60000
Application Path: C:\Program Files\Google\Chrome\Application\chrome.exe
Report Id: eb0e612c-41a9-11e7-85a2-e811328ef8d5
Error: (05/24/2017 09:54:44 PM) (Source: System.ServiceModel 3.0.0.0) (EventID: 3) (User: IIS APPPOOL)
Description: WebHost failed to process a request.
Sender Information: System.ServiceModel.Activation.HostedHttpRequestAsyncResult/42194754
Exception: System.Web.HttpException: The service '/rest.svc' does not exist. ---> System.ServiceModel.EndpointNotFoundException: The service '/rest.svc' does not exist.
at System.ServiceModel.ServiceHostingEnvironment.HostingManager.EnsureServiceAvailable(String normalizedVirtualPath)
at System.ServiceModel.ServiceHostingEnvironment.EnsureServiceAvailableFast(String relativeVirtualPath)
at System.ServiceModel.Activation.HostedHttpRequestAsyncResult.HandleRequest()
at System.ServiceModel.Activation.HostedHttpRequestAsyncResult.BeginRequest()
--- End of inner exception stack trace ---
at System.ServiceModel.AsyncResult.End[TAsyncResult](IAsyncResult result)
at System.ServiceModel.Activation.HostedHttpRequestAsyncResult.End(IAsyncResult result)
Process Name: w3wp
Process ID: 5856
Error: (05/24/2017 09:53:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: CamtasiaStudio.exe, version: 8.4.2.1768, time stamp: 0x53bc29b9
Faulting module name: spCapBtn.dll_unloaded, version: 0.0.0.0, time stamp: 0x58383028
Exception code: 0xc0000005
Fault offset: 0x08a6e4dc
Faulting process id: 0x1878
Faulting application start time: 0x01d2d4cfc0400c9e
Faulting application path: C:\Program Files\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe
Faulting module path: spCapBtn.dll
Report Id: 09ac3cca-40c3-11e7-85a2-e811328ef8d5
Error: (05/24/2017 09:53:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: CamtasiaStudio.exe, version: 8.4.2.1768, time stamp: 0x53bc29b9
Faulting module name: spCapBtn.dll_unloaded, version: 0.0.0.0, time stamp: 0x58383028
Exception code: 0xc0000005
Fault offset: 0x08a6e5f3
Faulting process id: 0x1878
Faulting application start time: 0x01d2d4cfc0400c9e
Faulting application path: C:\Program Files\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe
Faulting module path: spCapBtn.dll
Report Id: 058518c9-40c3-11e7-85a2-e811328ef8d5
System errors:
=============
Error: (06/03/2017 10:30:36 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server {995C996E-D918-4A8C-A302-45719A6F4EA7} did not register with DCOM within the required timeout.
Error: (06/03/2017 08:19:17 PM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
Error: (06/03/2017 06:30:15 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The MBAMService service depends on the MBAMProtector service which failed to start because of the following error:
The system cannot find the file specified.
Error: (06/03/2017 06:30:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Service Installer TrueKey service failed to start due to the following error:
The system cannot find the file specified.
Error: (06/03/2017 06:29:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The MBAMProtector service failed to start due to the following error:
The system cannot find the file specified.
Error: (06/03/2017 06:28:22 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.
Module Path: C:\Windows\system32\athihvs.dll
Error: (06/03/2017 06:28:22 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.
Module Path: C:\Windows\system32\athihvs.dll
Error: (06/03/2017 06:28:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Intel Security True Key service failed to start due to the following error:
The pipe has been ended.
Error: (06/03/2017 06:28:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Adguard Service service failed to start due to the following error:
The pipe has been ended.
Error: (06/03/2017 06:27:48 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has stopped unexpectedly.
Module Path: C:\Windows\system32\athihvs.dll
==================== Memory info ===========================
Processor: AMD E-350 Processor
Percentage of memory in use: 54%
Total physical RAM: 3068.06 MB
Available physical RAM: 1390.56 MB
Total Virtual: 12266.38 MB
Available Virtual: 10424.99 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:76.07 GB) (Free:18.8 GB) NTFS
Drive d: () (Fixed) (Total:72.88 GB) (Free:67.48 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149.1 GB) (Disk ID: 021CBDED)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=76.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=72.9 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================