cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12.05.2018
Ran by NAJIM (14-05-2018 21:14:27)
Running from C:\Users\NAJIM\Downloads
Windows 7 Professional Service Pack 1 (X64) (2018-05-04 08:11:58)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1850633730-2674195154-2145226730-500 - Administrator - Disabled)
Guest (S-1-5-21-1850633730-2674195154-2145226730-501 - Limited - Disabled) => C:\Users\Guest
NAJIM (S-1-5-21-1850633730-2674195154-2145226730-1000 - Administrator - Enabled) => C:\Users\NAJIM

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 18.011.20035 - Adobe Systems Incorporated)
Adobe Flash Player 29 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 29.0.0.140 - Adobe Systems Incorporated)
Cheat Engine 6.7 (HKLM-x32\...\Cheat Engine 6.7_is1) (Version: - Cheat Engine)
Counter-Strike Global Offensive version 1.35.6.5 (HKLM\...\{BD051FE3-1575-4CD6-81ED-E905FA94720B}_is1) (Version: 1.35.6.5 - Strogino CS Portal)
FastStone Capture 7.1 (HKLM-x32\...\FastStone Capture) (Version: 7.1 - FastStone Soft)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.3.29.5288 - GOM & Company)
GOM Remote (HKLM-x32\...\GOM Remote) (Version: 2.1.1.6 - GOM & Company)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 66.0.3359.139 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2993 - Intel Corporation)
Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version: - Tonec Inc.)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 7.4.0.8 - IObit)
Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation)
Malwarebytes version 3.5.0.2508 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.0.2508 - Malwarebytes)
Microsoft .NET Framework 4.7.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02558 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professionnel Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25017 (HKLM-x32\...\{d6f233bd-3f8c-43f6-878b-07bd0568d595}) (Version: 14.10.25017.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 (HKLM-x32\...\{cb7c3049-21de-415b-bd85-b65c14e547df}) (Version: 14.10.25017.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.0 (HKLM-x32\...\{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}) (Version: 3.0.11010.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PES Professionals Patch 2017 V4 (HKLM-x32\...\PES Professionals Patch 2017 V4) (Version: V4 - PES Professionals)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 8.6.4.593 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.61.612.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8339 - Realtek Semiconductor Corp.)
Realtek PC Camera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10269 - Realtek Semiconductor Corp.)
Smart Game Booster 4 (HKLM-x32\...\Smart Game Booster_is1) (Version: 4.0.0 - Smart Game Booster)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Vista Shortcut Manager x64 (HKLM\...\{C7311329-C491-427B-8880-133E84869B3A}) (Version: 2.0 - Frameworkx)
VMware Workstation (HKLM\...\{0D94F75A-0EA6-4951-B3AF-B145FA9E05C6}) (Version: 10.0.0 - VMware, Inc.) Hidden
VMware Workstation (HKLM-x32\...\VMware_Workstation) (Version: 10.0.0 - VMware, Inc)
WinRAR 5.60 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.60.3 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2018-03-30] (Tonec Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll -> No File
ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2018-01-25] (IObit)
ContextMenuHandlers1: [SmartGameBoosterMenu] -> {96C86AD1-055D-457D-9C00-0D4A91ECF1B4} => C:\Program Files (x86)\PCGameBoost\Smart Game Booster\MenuExt64.dll [2016-12-06] ()
ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-05-04] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-05-04] (Alexander Roshal)
ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll -> No File
ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Workstation\vmdkShellExt.dll [2013-08-27] (VMware, Inc.)
ContextMenuHandlers2-x32: [VMDiskMenuHandler64] -> {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} => C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll [2013-08-27] (VMware, Inc.)
ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll -> No File
ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2018-01-25] (IObit)
ContextMenuHandlers4: [SmartGameBoosterMenu] -> {96C86AD1-055D-457D-9C00-0D4A91ECF1B4} => C:\Program Files (x86)\PCGameBoost\Smart Game Booster\MenuExt64.dll [2016-12-06] ()
ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2018-05-04] (Intel Corporation)
ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2018-01-25] (IObit)
ContextMenuHandlers6: [SmartGameBoosterMenu] -> {96C86AD1-055D-457D-9C00-0D4A91ECF1B4} => C:\Program Files (x86)\PCGameBoost\Smart Game Booster\MenuExt64.dll [2016-12-06] ()
ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-05-04] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-05-04] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2D5FF884-F334-41A4-A4D7-72C7100958A9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-21] (Microsoft Corporation)
Task: {3117478D-E43B-41FC-81F3-0331E2648333} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-05-06] (Google Inc.)
Task: {370C0E5F-D518-4849-BFB3-E55BA14C35EF} - System32\Tasks\SmartGameBooster SkipUAC (NAJIM) => C:\Program Files (x86)\PCGameBoost\Smart Game Booster\SgbMain.exe [2016-12-20] ()
Task: {3D7A83FA-3A63-4F32-9F14-CAD8E8FF18EB} - System32\Tasks\SmartGameBooster Update => C:\Program Files (x86)\PCGameBoost\Smart Game Booster\SgbUpdater.exe [2016-12-19] ()
Task: {47CEE936-E565-4131-9271-FE263689CF01} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-21] (Microsoft Corporation)
Task: {6A4E8316-0F3C-433B-9921-51BD773FF06D} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {9AEDEFBB-4011-433B-8EB4-9150B2416F96} - System32\Tasks\SmartGameBooster Startup => C:\Program Files (x86)\PCGameBoost\Smart Game Booster\SgbTray.exe [2016-12-19] ()
Task: {AC14EB94-9D4A-479F-A43C-6891EF98587B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-05-04] (Adobe Systems Incorporated)
Task: {C8497F73-F791-4E1A-A9F6-D090F5BD2BCB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-01-17] (Adobe Systems Incorporated)
Task: {DB32BC60-199F-43C5-8563-39487078023C} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2018-05-04] ()
Task: {E2A628CE-19E2-49F5-BBE9-54565D45F90D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-05-06] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2018-05-12 10:07 - 2016-12-06 15:05 - 000133296 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\MenuExt64.dll
2013-08-27 12:09 - 2013-08-27 12:09 - 014401104 _____ () C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
2018-05-12 10:07 - 2016-12-19 20:57 - 001383600 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\SgbTray.exe
2018-05-12 10:07 - 2016-12-20 11:08 - 003665072 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\SgbMain.exe
2018-05-04 13:19 - 2018-03-26 13:55 - 000849160 _____ () C:\Program Files (x86)\Razer\Razer Cortex\RazerGamecasterEngine.exe
2013-08-27 12:42 - 2013-08-27 12:42 - 001260624 _____ () C:\Program Files (x86)\VMware\VMware Workstation\libxml2.dll
2018-05-12 10:07 - 2016-12-06 15:05 - 000442032 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\madExcept_.bpl
2018-05-12 10:07 - 2016-12-06 15:05 - 000210608 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\madBasic_.bpl
2018-05-12 10:07 - 2016-12-06 15:05 - 000059568 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\madDisAsm_.bpl
2018-05-12 10:07 - 2016-12-15 18:22 - 001138352 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\MsgBox.dll
2018-05-12 10:07 - 2016-12-06 15:05 - 000899760 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\webres.dll
2018-05-12 10:07 - 2016-12-06 15:09 - 000523952 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\sqlite3.dll
2018-05-12 10:07 - 2016-12-08 15:56 - 000796848 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\DX_Info.dll
2018-05-12 10:07 - 2016-12-06 15:05 - 000631472 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\StatTool.dll
2018-05-12 10:07 - 2016-12-08 15:56 - 000523952 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\DX_Output.dll
2018-05-12 10:07 - 2016-12-06 15:04 - 000277168 _____ () C:\Program Files (x86)\PCGameBoost\Smart Game Booster\D3DX8Wrapper.dll
2018-05-12 10:07 - 2016-12-06 15:05 - 000382128 _____ () c:\program files (x86)\pcgameboost\smart game booster\DX_Check.dll
2018-05-04 13:19 - 2018-03-26 13:54 - 001025848 _____ () C:\Program Files (x86)\Razer\Razer Cortex\CefSharp.Core.dll
2018-05-04 13:19 - 2018-03-26 13:54 - 053913416 _____ () C:\Program Files (x86)\Razer\Razer Cortex\libcef.dll
2018-03-25 19:58 - 2018-03-25 20:00 - 001005408 _____ () C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.Core.dll
2018-03-25 19:58 - 2018-03-25 20:00 - 053444984 _____ () C:\Program Files (x86)\Razer\Razer Services\Razer Central\libcef.dll
2018-05-04 13:19 - 2017-07-27 16:44 - 000149352 _____ () C:\Program Files (x86)\Razer\Razer Cortex\SimbaDeviceControl.dll
2018-05-04 13:19 - 2018-03-26 13:54 - 000146280 _____ () C:\Program Files (x86)\Razer\Razer Cortex\ftl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1850633730-2674195154-2145226730-1000\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1850633730-2674195154-2145226730-1000\...\webcompanion.com -> hxxp://webcompanion.com

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 02:34 - 2018-05-07 14:04 - 000001188 _____ C:\Windows\system32\Drivers\etc\hosts

0.0.0.0 anchorfree.net
0.0.0.0 rss2search.com
0.0.0.0 techbrowsing.com
0.0.0.0 box.anchorfree.net
0.0.0.0 www.mefeedia.com
0.0.0.0 www.anchorfree.net
0.0.0.0 www.mefeedia.com
0.0.0.0 anchorfree.us
0.0.0.0 a433.com
0.0.0.0 anchorfree.net
0.0.0.0 rpt.anchorfree.net
0.0.0.0 delivery.anchorfree.us/land.php
0.0.0.0 hsselite.com
0.0.0.0 www.hsselite.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1850633730-2674195154-2145226730-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\NAJIM\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: Advanced SystemCare 11 => "C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" /Auto
MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe
MSCONFIG\startupreg: IObit Malware Fighter => "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart
MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
MSCONFIG\startupreg: uTorrent => %APPDATA%\uTorrent\uTorrent.exe

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{407B91A8-160C-4F71-B58E-150CBF9244BE}] => (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe
FirewallRules: [{EF3567F0-6E4F-4891-BFBF-F4DFA593E4AB}] => (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe
FirewallRules: [{5BFAC761-D325-4A13-8E41-809A2FD51CEB}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{53F5B4FA-4F44-47EF-BA7F-FDAD91248558}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{70249EF1-DD2D-46D1-B6F4-97B8FE96E32E}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{B75FC270-B112-4749-B960-A46FAAC6E409}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{8A4AD4F4-F71B-4C07-A64B-8B6C8486A42F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{7A75412D-F968-4691-BE13-DC4ED931B811}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{B6029A64-692A-4217-8240-51FC962C0E65}] => (Allow) C:\Program Files (x86)\GRETECH\GOMRemote2\GomRemote2.exe
FirewallRules: [{729D628F-D558-4431-86E1-FAC79B532785}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
FirewallRules: [{F755B0FC-0859-47F4-B003-7DD89809DD62}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
FirewallRules: [{2B39B603-ED1E-44EF-9B2A-AD1BD95C1662}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
FirewallRules: [{F5E5194F-876C-4D68-A886-FBC6E669625A}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
FirewallRules: [{8275A346-6D28-46AE-B4BC-EC4D1A990E9C}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe
FirewallRules: [TCP Query User{35097AEB-D997-4EBF-9638-87D10AD8383B}D:\local disk\games\counter-strike global offensive\csgo.exe] => (Allow) D:\local disk\games\counter-strike global offensive\csgo.exe
FirewallRules: [UDP Query User{08B2AEA4-1E86-4351-A177-4EBEA9268245}D:\local disk\games\counter-strike global offensive\csgo.exe] => (Allow) D:\local disk\games\counter-strike global offensive\csgo.exe
FirewallRules: [{456073A6-8372-4F83-A0A4-B8B91BA6A776}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{9F2C77F1-8294-4E05-BFE0-393E5FE8427B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{B295FADA-44A4-4E3E-B361-73C224E6638A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{247ED29D-AB1E-49DB-B6D9-B5F44CFD6CA4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe

==================== Restore Points =========================

14-05-2018 12:36:39 Device Driver Package Install: LXD Company Human Interface Devices
14-05-2018 15:22:50 Installed DirectX
14-05-2018 17:32:35 Installed DirectX
14-05-2018 19:25:34 Installed DirectX

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (05/14/2018 09:03:28 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\GRETECH\GOMPlayer\GOM.EXE".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error: (05/14/2018 09:01:06 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\GRETECH\GOMPlayer\GOM.EXE".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error: (05/14/2018 09:01:06 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\GRETECH\GOMPlayer\GOM.EXE".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error: (05/14/2018 07:58:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: csgo.exe, version: 0.0.0.0, time stamp: 0x582e1b2f
Faulting module name: tier0.dll, version: 0.0.0.0, time stamp: 0x587836e5
Exception code: 0xc0000005
Fault offset: 0x000093c4
Faulting process id: 0x1010
Faulting application start time: 0x01d3ebbdbcdc438b
Faulting application path: D:\Local Disk\Games\Counter-Strike Global Offensive\csgo.exe
Faulting module path: D:\Local Disk\Games\Counter-Strike Global Offensive\bin\tier0.dll
Report Id: 2ed16c0f-57b1-11e8-9e49-005056c00008

Error: (05/14/2018 07:56:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: csgo.exe, version: 0.0.0.0, time stamp: 0x582e1b2f
Faulting module name: tier0.dll, version: 0.0.0.0, time stamp: 0x587836e5
Exception code: 0xc0000005
Fault offset: 0x000093c4
Faulting process id: 0x1378
Faulting application start time: 0x01d3ebbd97fc7c02
Faulting application path: D:\Local Disk\Games\Counter-Strike Global Offensive\csgo.exe
Faulting module path: D:\Local Disk\Games\Counter-Strike Global Offensive\bin\tier0.dll
Report Id: d8db76b7-57b0-11e8-9e49-005056c00008

Error: (05/14/2018 07:55:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: csgo.exe, version: 0.0.0.0, time stamp: 0x582e1b2f
Faulting module name: tier0.dll, version: 0.0.0.0, time stamp: 0x587836e5
Exception code: 0xc0000005
Fault offset: 0x000093c4
Faulting process id: 0x16a4
Faulting application start time: 0x01d3ebbd7ac62e92
Faulting application path: D:\Local Disk\Games\Counter-Strike Global Offensive\csgo.exe
Faulting module path: D:\Local Disk\Games\Counter-Strike Global Offensive\bin\tier0.dll
Report Id: bec587cf-57b0-11e8-9e49-005056c00008

Error: (05/14/2018 07:45:16 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (05/14/2018 06:58:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: csgo.exe, version: 0.0.0.0, time stamp: 0x5a1dede1
Faulting module name: engine.dll, version: 0.0.0.0, time stamp: 0x5aeccc15
Exception code: 0xc0000005
Fault offset: 0x0020e78c
Faulting process id: 0x1098
Faulting application start time: 0x01d3ebb57daf5097
Faulting application path: D:\Local Disk\Games\CSGO\Counter-Strike_Global_Offensive\csgo.exe
Faulting module path: d:\local disk\games\csgo\counter-strike_global_offensive\bin\engine.dll
Report Id: bca14124-57a8-11e8-9f4f-005056c00008


System errors:
=============
Error: (05/14/2018 07:54:08 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 70.

Error: (05/14/2018 07:45:33 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (05/14/2018 07:44:37 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (05/14/2018 07:44:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The rzpnk service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Error: (05/14/2018 07:43:16 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Arp Intelligent Protection Service service failed to start due to the following error:
The system cannot find the file specified.

Error: (05/14/2018 07:43:10 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 7:41:08 PM on ‎5/‎14/‎2018 was unexpected.

Error: (05/14/2018 06:15:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Steam Client Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.

Error: (05/14/2018 06:15:32 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.


CodeIntegrity:
===================================

Date: 2018-05-14 19:44:14.317
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\rzpnk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-05-14 19:44:14.255
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\rzpnk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-05-14 17:05:26.550
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\rzpnk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-05-14 17:05:26.487
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\rzpnk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-05-14 15:32:58.643
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\rzpnk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-05-14 15:32:58.580
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\rzpnk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-05-14 14:10:47.647
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Cheat Engine 6.7\dbk64.sys because the set of per-page image hashes could not be found on the system.

Date: 2018-05-14 14:10:47.486
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Cheat Engine 6.7\dbk64.sys because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3 CPU M 380 @ 2.53GHz
Percentage of memory in use: 35%
Total physical RAM: 5941.86 MB
Available physical RAM: 3832.72 MB
Total Virtual: 11881.89 MB
Available Virtual: 9327.38 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:87.35 GB) (Free:39.86 GB) NTFS
Drive d: (NàOùFàll NàJim) (Fixed) (Total:210.2 GB) (Free:64.49 GB) NTFS
Drive f: (Réservé au système) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]

\\?\Volume{666f073e-500f-11e8-be53-806e6f6e6963}\ () (Fixed) (Total:0.44 GB) (Free:0.11 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: 31393138)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=87.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=210.2 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité