Additional scan result of Farbar Recovery Scan Tool (x64) Version:30-07-2015 Ran by lilian rodriguez (2015-08-01 14:56:40) Running from C:\Users\lilian rodriguez\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3992782600-320336532-2615484944-500 - Administrator - Disabled) Guest (S-1-5-21-3992782600-320336532-2615484944-501 - Limited - Disabled) lilian rodriguez (S-1-5-21-3992782600-320336532-2615484944-1001 - Administrator - Enabled) => C:\Users\lilian rodriguez ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.9.30.9239 - BlueStack Systems, Inc.) BlueStacks Notification Center (HKLM-x32\...\{79809712-A577-4B8C-A9FC-51945690C7DC}) (Version: 0.9.30.9239 - BlueStack Systems, Inc.) Boxore Client (HKLM-x32\...\{D8D8A342-0E9F-47EA-A35E-CF431B50B286}) (Version: 5.0.0.0 - Boxore OU) <==== ATTENTION Camtasia Studio 8 (HKLM-x32\...\{0B341FFF-66F9-4B82-A73A-C2317514A30F}) (Version: 8.4.3.1793 - TechSmith Corporation) Cinema 4D version R12 (HKLM-x32\...\{7D9D8134-9FA3-4FFF-ADA1-BF609F29997A}_is1) (Version: R12 - Salat Production) <==== ATTENTION Clicker Heroes (HKLM-x32\...\Steam App 363970) (Version: - ) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden EPSON XP-215 217 Series Printer Uninstall (HKLM\...\EPSON XP-215 217 Series) (Version: - SEIKO EPSON Corporation) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Galerie de photos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.125 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) IncrediMail (x32 Version: 6.3.9.5274 - IncrediMail) Hidden IncrediMail 2.0 (HKLM-x32\...\IncrediMail) (Version: 6.3.9.5274 - IncrediMail Ltd.) InterActual Player (HKLM-x32\...\InterActual Player) (Version: - ) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Les Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) Les Sims™ 3 Destination Aventure (HKLM-x32\...\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}) (Version: 2.0.86 - Electronic Arts) Les Sims™ 3 Super-pouvoirs (HKLM-x32\...\{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}) (Version: 15.0.135 - Electronic Arts) Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.149.2 - McAfee, Inc.) Microsoft Keyboard Layout Creator 1.4 (HKLM-x32\...\{99E66BC9-E4B6-485F-ABFC-31EFCE36DFDF}) (Version: 1.4.6000 - Microsoft Corp.) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Open Office Packages (HKU\S-1-5-21-3992782600-320336532-2615484944-1001\...\Open Office Packages) (Version: - ) <==== ATTENTION OpenOffice 4.0.1 (HKLM-x32\...\{8D5D54B8-3D29-4AB4-8DA8-1868DAF941D8}) (Version: 4.01.9714 - Apache Software Foundation) Photo Notifier and Animation Creator (HKLM-x32\...\Photo Notifier and Animation Creator) (Version: 1.0.0.1009 - IncrediMail Ltd.) PhotoFiltre 7 (HKU\S-1-5-21-3992782600-320336532-2615484944-1001\...\PhotoFiltre 7) (Version: - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Plague Inc: Evolved (HKLM-x32\...\Steam App 246620) (Version: - Ndemic Creations) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Start Menu Reviver (HKLM-x32\...\Start Menu Reviver) (Version: 2.5.0.18 - ReviverSoft) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Toribash (HKLM-x32\...\Steam App 248570) (Version: - Nabi Studios) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinRAR 5.11 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3992782600-320336532-2615484944-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-3992782600-320336532-2615484944-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-3992782600-320336532-2615484944-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-3992782600-320336532-2615484944-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-3992782600-320336532-2615484944-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation) CustomCLSID: HKU\S-1-5-21-3992782600-320336532-2615484944-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) ==================== Restore Points ========================= 24-06-2015 12:00:05 Windows Update 25-07-2015 05:56:30 Scheduled Checkpoint 28-07-2015 15:35:37 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2015-07-24 19:54 - 00000854 ____A C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {05298ED7-CC4B-4224-8287-D5DB48E5BE92} - System32\Tasks\EPSON XP-215 217 Series Update {2FFDEC18-9E1C-42E9-A4CF-CEE72EBFE0C3} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLGE.EXE [2013-09-12] (SEIKO EPSON CORPORATION) Task: {1E583165-A681-4B66-901E-E1B55E5D2EB2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-29] (Google Inc.) Task: {1FAF7A6B-8950-46A8-BF04-B5BCD01D1BDB} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-24] (Adobe Systems Incorporated) Task: {29B21BDD-BBCB-4A2A-B65D-DB85BAA2A24A} - System32\Tasks\{E5FC84BC-6178-4C8B-A036-7AD88A78D594} => pcalua.exe -a "C:\Program Files\InterActual\InterActual Player\iPlayer.exe" -d "C:\Users\lilian rodriguez\Desktop" Task: {6108ECF2-40C6-42FB-A2AB-5D4E6F906AD8} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-07-03] (Microsoft Corporation) Task: {627ACB57-9224-4192-BA00-341CBE19DCC6} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe <==== ATTENTION Task: {706D8287-9695-46E8-93EA-391B6B757410} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-29] (Google Inc.) Task: {7E5E5B4E-D6B7-4AA1-853F-96603BBFB351} - System32\Tasks\CleanerPro_Start => C:\Program Files (x86)\Cleaner Pro\CleanerPro.exe Task: {87FBFDF3-60B7-4338-9BE1-C8D34AFA0DCA} - System32\Tasks\SoftwareUpdateTaskMachineUA => C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe <==== ATTENTION Task: {8F9FEBDB-69DB-47D8-B870-096A8003E735} - System32\Tasks\ReviverSoft Start Menu Run once task => C:\Program Files\ReviverSoft\Start Menu Reviver\StartMenuReviver.exe [2014-09-17] (ReviverSoft) Task: {A4B68682-653D-4C79-B8C9-270BF610939C} - System32\Tasks\EPSON XP-215 217 Series Invitation {2FFDEC18-9E1C-42E9-A4CF-CEE72EBFE0C3} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLGE.EXE [2013-09-12] (SEIKO EPSON CORPORATION) Task: {ABBB8C27-205E-4DB6-93A5-0D4BC858B909} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {BAFF7F2E-AAB4-4F07-90BD-0447F16ED117} - System32\Tasks\FRAPS => C:\Fraps\fraps.exe [2013-02-26] (Beepa P/L) Task: {BD520C03-4F91-4C43-A7F7-55320684177F} - System32\Tasks\CleanerPro_Popup => C:\Program Files (x86)\Cleaner Pro\Splash.exe Task: {D1E8BBA8-343D-467C-9644-FDC7C2D08FFC} - System32\Tasks\{7AE9B6FC-F493-427D-8863-90D88235415B} => pcalua.exe -a "C:\Users\lilian rodriguez\Desktop\MCreator 1.5.6 [1.7.10] (1).exe" -d "C:\Users\lilian rodriguez\Desktop" (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\EPSON XP-215 217 Series Invitation {2FFDEC18-9E1C-42E9-A4CF-CEE72EBFE0C3}.job => 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ask: C:\WINDOWS\Tasks\EPSON XP-215 217 Series Update {2FFDEC18-9E1C-42E9-A4CF-CEE72EBFE0C3}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLGE.EXE:/EXE:{2FFDEC18-9E1C-42E9-A4CF-CEE72EBFE0C3} /F:UpdateWORKGROUP\LILIAN$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\SoftwareUpdateTaskMachineUA.job => C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe <==== ATTENTION ==================== Loaded Modules (Whitelisted) ============== 2014-09-30 17:02 - 2007-09-02 12:58 - 00495616 _____ () C:\Program Files (x86)\RocketDock\RocketDock.exe 2015-06-17 20:36 - 2015-07-01 08:47 - 00532784 _____ () C:\Users\lilian rodriguez\AppData\Roaming\cacaoweb\cacaoweb.exe 2015-04-30 09:48 - 2015-04-30 06:18 - 01011200 _____ () C:\Program Files (x86)\BlueStacks\HD-Adb.exe 2014-09-30 17:02 - 2007-09-02 12:57 - 00069632 _____ () C:\Program Files (x86)\RocketDock\RocketDock.dll 2014-09-30 18:06 - 2014-09-30 18:06 - 00268712 _____ () C:\Program Files (x86)\IncrediMail\Bin\ImLookExU.dll 2014-09-30 18:06 - 2014-09-30 18:06 - 00033128 _____ () C:\Program Files (x86)\IncrediMail\Bin\IMHttpComm.dll 2014-09-30 18:06 - 2014-09-30 18:06 - 00072104 _____ () C:\Program Files (x86)\IncrediMail\Bin\wlessfp1.dll 2013-07-21 10:54 - 2013-07-21 10:54 - 00108888 _____ () C:\Program Files (x86)\IncrediMail\Bin\pmc.dll 2015-02-04 15:03 - 2015-07-03 18:12 - 00778240 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-02-04 15:03 - 2015-07-03 18:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-02-04 15:03 - 2015-07-24 01:24 - 02410176 _____ () C:\Program Files (x86)\Steam\video.dll 2015-02-04 15:03 - 2015-07-03 18:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-02-04 15:03 - 2015-07-03 18:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2015-02-04 15:03 - 2014-12-01 23:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2015-02-04 15:03 - 2014-12-01 23:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2015-02-04 15:03 - 2014-12-01 23:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2015-02-04 15:03 - 2014-12-01 23:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2015-02-04 15:03 - 2014-12-01 23:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2015-02-04 15:03 - 2015-07-24 01:23 - 00703168 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2015-07-24 19:51 - 2015-07-07 22:41 - 00169984 _____ () C:\Program Files (x86)\Steam\bin\openvr_api.dll 2014-09-30 18:06 - 2014-09-30 18:06 - 00080296 _____ () C:\Program Files (x86)\IncrediMail\bin\ImAppRU.dll 2014-09-30 18:06 - 2014-09-30 18:06 - 00133544 _____ () C:\Program Files (x86)\IncrediMail\Bin\ImComUtlU.dll 2015-02-04 15:03 - 2015-07-03 18:12 - 39553928 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2015-05-07 16:48 - 2014-09-01 15:23 - 00195584 _____ () C:\Program Files (x86)\BlueStacks\libEGL.dll 2015-05-07 16:48 - 2014-09-01 15:23 - 01467392 _____ () C:\Program Files (x86)\BlueStacks\libGLESv2.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3992782600-320336532-2615484944-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\lilian rodriguez\Pictures\DSCN2917.JPG DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKU\S-1-5-21-3992782600-320336532-2615484944-1001\...\StartupApproved\Run: => "EADM" HKU\S-1-5-21-3992782600-320336532-2615484944-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_294700467FAAB469971B8289D3B813D4" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{AEA2A30E-A78B-4586-A23A-C75F27B7CA95}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe FirewallRules: [{13B29099-91E2-4236-A0D6-ABEAEBDA293C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe FirewallRules: [TCP Query User{D067B406-814D-4D2E-9724-7CAAFA39C107}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{AE915B9A-B76F-42E5-9ECF-903AE5B52130}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [{E19084D0-38B5-4278-B8C7-434F25246FF5}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{253D68B2-6166-427C-B768-02A595A33C46}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{41197BEC-BC13-4999-871D-23623A09408D}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe FirewallRules: [{EDE4270A-AEB3-40DC-8711-14DDEFEC80CE}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe FirewallRules: [TCP Query User{4FE368D1-7E90-4922-9D49-65ECFDE266D9}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{B6A7666C-2182-4DD0-96E3-5CDADF816673}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{33F03560-AAA1-4DD2-99B0-E44C85D0E177}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{F74C0550-B829-4ADB-8FF2-167AC00D2ABF}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [TCP Query User{FDD367F2-3B09-4BC9-971B-E5A7EBB0DD17}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{FBF15283-94E6-4EE0-9FFA-0AC41CC0E8AB}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{99D14A38-B3AB-4AAB-B14C-A12D82219BBA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe FirewallRules: [{CA800491-79D6-4D5F-828A-69CFF180A97B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe FirewallRules: [{A27A6B33-F28A-4C56-9B84-13549E8D8AAC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe FirewallRules: [{FBACEEEF-F5E3-481E-80C4-7BFCA2DFE367}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe FirewallRules: [{25A24AE3-3AC3-468B-9CBA-F145B8190F19}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{33FFFE8D-2446-4318-A9B3-D2388C9725DF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{1A10483E-CD6C-4FF2-9923-7C07E9EEACC9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe FirewallRules: [{264492D5-A537-41BE-80EA-E3C3364F6801}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe FirewallRules: [{3E694C41-D257-42E6-9200-5863C15FEB4D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{9DCDB893-BE2E-4741-91EE-173BEE802DA5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{3825523C-61F5-47CE-B3AB-0555812DA10B}] => (Allow) LPort=8317 FirewallRules: [{2490F591-A778-44D6-B880-AE44DAEFEA06}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{594EBDDF-E960-4D1E-804A-E5F0FAE94F48}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{538E2E8A-B480-4748-AE37-3BFD7B43690E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{81817092-641E-4E83-ADCC-EEB56926320F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{7EAF1940-A7F4-4594-8651-3B932F69BF8E}] => (Allow) C:\Program Files (x86)\DigiHelp\bin\DigiHelp.BRT.Helper.exe FirewallRules: [{C8C6FD29-83C9-4368-9333-26B09547269F}] => (Allow) C:\Program Files (x86)\DigiHelp\bin\DigiHelp.BRT.Helper.exe FirewallRules: [{EEFE7FF3-332C-4DA3-ACA2-610A8A7E92CD}] => (Allow) C:\Program Files (x86)\DigiHelp\bin\DigiHelp.BRT.Helper.exe FirewallRules: [{130EB9E5-2D15-487F-BB83-168FB28B375C}] => (Allow) C:\Program Files (x86)\DigiHelp\bin\DigiHelp.BRT.Helper.exe FirewallRules: [{9EF9CBB4-F096-4E43-BEC2-5080FBCBE9ED}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{1534F796-07E2-4DC2-A753-4EDE18F81FD2}] => (Allow) LPort=2869 FirewallRules: [{D21FB336-475B-463A-B1FC-597B44093341}] => (Allow) LPort=1900 FirewallRules: [{2F18C76E-79F3-4842-A63D-659B689EBD7F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe FirewallRules: [{70B86078-8CBB-46D4-9CEF-772FD7EA5F41}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe FirewallRules: [{4EEA3DB9-5A76-4B2A-B41B-1FC86D36DE98}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{A2AA0A3F-6B01-4EEE-AB8C-2384D5A08331}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{ECF4CF24-B915-445C-BDC4-EBEE40D1B3C1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{8BDC2EC3-9908-47A5-A6E4-217A61967231}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [TCP Query User{8DF19D07-2A7A-415A-A2F0-5006F963B2E6}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{E4B2D5E3-1DD9-408C-BD09-70F1BF0EB2B5}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{8933D988-6DB5-4036-9A14-EA9E473B2336}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{A0F5AC5B-38EE-4851-8B52-ACF8FC8F93EF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C646C2F3-8E68-480D-A0E6-47231144CB83}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{AE39EE26-6D45-44D9-9486-F49A9DE728AF}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{50873EA1-8663-4949-B926-BD867B45EF45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PlagueInc\PlagueIncEvolved.exe FirewallRules: [{1114BAED-6205-4896-969D-B0B81AB2E20A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PlagueInc\PlagueIncEvolved.exe FirewallRules: [{D6832ACF-3085-46AD-B0FA-0786B6F8F37F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Toribash\toribash.exe FirewallRules: [{72DEDCF0-D8D6-4E68-B009-A8AC6D5F3428}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Toribash\toribash.exe FirewallRules: [{5ED3F596-544C-497C-8EBC-3537B8CDD1FD}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe FirewallRules: [{BE80463A-62A4-4238-8C53-D1D3D6B8A65E}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe FirewallRules: [TCP Query User{CF2CE61A-96FE-4B59-AAB5-29379B9C0725}C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe FirewallRules: [UDP Query User{395D4768-3FFA-48C9-992C-4923B3382432}C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe FirewallRules: [TCP Query User{60A80100-C059-4ADF-8760-50A4C2B92CC4}C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{316F786D-5FBB-4462-BF96-97E480193221}C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{201D655E-95E0-40ED-AE29-F4275C74D9D0}C:\users\lilian rodriguez\appdata\roaming\cacaoweb\cacaoweb.exe] => (Allow) C:\users\lilian rodriguez\appdata\roaming\cacaoweb\cacaoweb.exe FirewallRules: [UDP Query User{C225D039-6A73-475A-95CC-A3D0A38674F8}C:\users\lilian rodriguez\appdata\roaming\cacaoweb\cacaoweb.exe] => (Allow) C:\users\lilian rodriguez\appdata\roaming\cacaoweb\cacaoweb.exe FirewallRules: [TCP Query User{9538EE3E-AF72-4494-81D8-D9A7A9B0DC3E}C:\pylo\mcreator156\jdk\bin\java.exe] => (Block) C:\pylo\mcreator156\jdk\bin\java.exe FirewallRules: [UDP Query User{C578F09B-58A0-487F-8AE8-AF2BA42E0562}C:\pylo\mcreator156\jdk\bin\java.exe] => (Block) C:\pylo\mcreator156\jdk\bin\java.exe FirewallRules: [TCP Query User{A6F568C1-20D4-4260-B1FB-3091FFA30610}C:\pylo\mcreator157\jdk\bin\java.exe] => (Block) C:\pylo\mcreator157\jdk\bin\java.exe FirewallRules: [UDP Query User{C802B5CA-8A58-467B-9E8A-5117799A377A}C:\pylo\mcreator157\jdk\bin\java.exe] => (Block) C:\pylo\mcreator157\jdk\bin\java.exe FirewallRules: [{7F81614F-ED1A-42EF-ABC2-03A9D6AECA19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe FirewallRules: [{C4E83D00-07AA-4253-BC1C-5639002309A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe FirewallRules: [{3271BCFE-4FB8-41F3-A680-E0CDB635113F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{CC087CCC-6A9B-4A9E-9A4E-92679BA8B9D3}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{098CF47E-9D30-4982-B704-3C61D61D062D}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{8AF7A30E-2A2F-45DF-9BD7-67BE645D1EAF}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{98C11C22-5911-4C8E-9956-0A6898670C62}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/27/2015 10:52:24 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante Hearthstone Deck Tracker.exe, version : 0.1.0.0, horodatage : 0x559412b4 Nom du module défaillant : KERNELBASE.dll, version : 6.3.9600.17415, horodatage : 0x54504ade Code d’exception : 0xe0434352 Décalage d’erreur : 0x00014598 ID du processus défaillant : 0x80c Heure de début de l’application défaillante : 0xHearthstone Deck Tracker.exe0 Chemin d’accès de l’application défaillante : Hearthstone Deck Tracker.exe1 Chemin d’accès du module défaillant: Hearthstone Deck Tracker.exe2 ID de rapport : Hearthstone Deck Tracker.exe3 Nom complet du package défaillant : Hearthstone Deck Tracker.exe4 ID de l’application relative au package défaillant : Hearthstone Deck Tracker.exe5 Error: (07/27/2015 10:52:24 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : Hearthstone Deck Tracker.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.Windows.Markup.XamlParseException Pile : à System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri) à System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri) à System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean) à System.Windows.Application.LoadComponent(System.Object, System.Uri) à Hearthstone_Deck_Tracker.App.InitializeComponent() à Hearthstone_Deck_Tracker.App.Main() Error: (07/27/2015 10:52:14 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante Hearthstone Deck Tracker.exe, version : 0.1.0.0, horodatage : 0x559412b4 Nom du module défaillant : KERNELBASE.dll, version : 6.3.9600.17415, horodatage : 0x54504ade Code d’exception : 0xe0434352 Décalage d’erreur : 0x00014598 ID du processus défaillant : 0x154c Heure de début de l’application défaillante : 0xHearthstone Deck Tracker.exe0 Chemin d’accès de l’application défaillante : Hearthstone Deck Tracker.exe1 Chemin d’accès du module défaillant: Hearthstone Deck Tracker.exe2 ID de rapport : Hearthstone Deck Tracker.exe3 Nom complet du package défaillant : Hearthstone Deck Tracker.exe4 ID de l’application relative au package défaillant : Hearthstone Deck Tracker.exe5 Error: (07/27/2015 10:52:13 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : Hearthstone Deck Tracker.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.Windows.Markup.XamlParseException Pile : à System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri) à System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri) à System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean) à System.Windows.Application.LoadComponent(System.Object, System.Uri) à Hearthstone_Deck_Tracker.App.InitializeComponent() à Hearthstone_Deck_Tracker.App.Main() Error: (07/24/2015 08:53:20 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT AUTHORITY) Description: There was an error with the Windows Location Provider database Error: (06/30/2015 05:00:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GWXUX.exe, version : 6.3.9600.17813, horodatage : 0x554a15f3 Nom du module défaillant : ntdll.dll, version : 6.3.9600.17736, horodatage : 0x550f4336 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000003d85e ID du processus défaillant : 0x1394 Heure de début de l’application défaillante : 0xGWXUX.exe0 Chemin d’accès de l’application défaillante : GWXUX.exe1 Chemin d’accès du module défaillant: GWXUX.exe2 ID de rapport : GWXUX.exe3 Nom complet du package défaillant : GWXUX.exe4 ID de l’application relative au package défaillant : GWXUX.exe5 Error: (06/29/2015 07:36:58 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GWXUX.exe, version : 6.3.9600.17813, horodatage : 0x554a15f3 Nom du module défaillant : ntdll.dll, version : 6.3.9600.17736, horodatage : 0x550f4336 Code d’exception : 0xc0000008 Décalage d’erreur : 0x00000000000ec180 ID du processus défaillant : 0x2fb0 Heure de début de l’application défaillante : 0xGWXUX.exe0 Chemin d’accès de l’application défaillante : GWXUX.exe1 Chemin d’accès du module défaillant: GWXUX.exe2 ID de rapport : GWXUX.exe3 Nom complet du package défaillant : GWXUX.exe4 ID de l’application relative au package défaillant : GWXUX.exe5 Error: (06/29/2015 06:28:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme PhotoFiltre7.exe version 7.1.2.0 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 28c0 Heure de début : 01d0b288917cf54a Heure de fin : 57 Chemin d’accès de l’application : C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe ID de rapport : e187109a-1e7b-11e5-82f7-448a5b2c558d Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (06/29/2015 06:25:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GWXUX.exe, version : 6.3.9600.17813, horodatage : 0x554a15f3 Nom du module défaillant : ntdll.dll, version : 6.3.9600.17736, horodatage : 0x550f4336 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000003d85e ID du processus défaillant : 0x164c Heure de début de l’application défaillante : 0xGWXUX.exe0 Chemin d’accès de l’application défaillante : GWXUX.exe1 Chemin d’accès du module défaillant: GWXUX.exe2 ID de rapport : GWXUX.exe3 Nom complet du package défaillant : GWXUX.exe4 ID de l’application relative au package défaillant : GWXUX.exe5 Error: (06/28/2015 05:45:07 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme WinRAR.exe version 5.11.0.0 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : d98 Heure de début : 01d0b1b8fdd5c1be Heure de fin : 4294967295 Chemin d’accès de l’application : C:\Program Files (x86)\WinRAR\WinRAR.exe ID de rapport : a5df9170-1dac-11e5-82f7-448a5b2c558d Nom complet du package défaillant : ID de l’application relative au package défaillant : System errors: ============= Error: (08/01/2015 02:47:56 PM) (Source: DCOM) (EventID: 10010) (User: lilian) Description: {5C65F4B0-3651-4514-B207-D10CB699B14B} Error: (08/01/2015 01:30:57 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service TerminusEdit. Error: (08/01/2015 01:30:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service UAC File Virtualization n’a pas pu démarrer en raison de l’erreur : %%1275 Error: (08/01/2015 11:32:55 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070057 : Microsoft.Office.OneNote. Error: (08/01/2015 11:32:40 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070057 : Microsoft.Reader. Error: (08/01/2015 11:23:56 AM) (Source: DCOM) (EventID: 10010) (User: lilian) Description: {5C65F4B0-3651-4514-B207-D10CB699B14B} Error: (08/01/2015 11:23:26 AM) (Source: DCOM) (EventID: 10010) (User: lilian) Description: {5C65F4B0-3651-4514-B207-D10CB699B14B} Error: (07/31/2015 06:12:36 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070057 : Microsoft.Office.OneNote. Error: (07/31/2015 06:12:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070057 : Microsoft.Reader. Error: (07/31/2015 06:02:32 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070057 : Microsoft.Office.OneNote. Microsoft Office: ========================= CodeIntegrity: =================================== Date: 2015-07-28 15:39:12.782 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-24 21:45:52.817 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 12:57:39.546 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-25 17:57:22.241 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-20 12:43:19.517 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-13 17:31:07.824 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-12 18:21:20.933 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-10 13:49:56.133 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-09 12:24:24.300 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-08 18:02:27.436 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: AMD A8-6600K APU with Radeon(tm) HD Graphics Percentage of memory in use: 33% Total physical RAM: 7384.18 MB Available physical RAM: 4889.77 MB Total Virtual: 8792.18 MB Available Virtual: 5905.29 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:931.51 GB) (Free:620.98 GB) NTFS ==>[drive with boot components (obtained from BCD)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 919FC05B) Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== End of log ============================