Additional scan result of Farbar Recovery Scan Tool (x86) Version: 19-04-2017 Ran by Gilene (20-04-2017 09:10:18) Running from C:\Users\Gilene\Desktop Microsoft Windows 7 Ultimate Service Pack 1 (X86) (2016-05-03 00:56:03) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1288689158-1679700385-1912068367-500 - Administrator - Disabled) Gilene (S-1-5-21-1288689158-1679700385-1912068367-1000 - Administrator - Enabled) => C:\Users\Gilene Guest (S-1-5-21-1288689158-1679700385-1912068367-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1288689158-1679700385-1912068367-1000\...\uTorrent) (Version: 3.4.9.43388 - BitTorrent Inc.) 32 Bit HP CIO Components Installer (Version: 6.1.1 - Hewlett-Packard) Hidden 3uTools (HKLM\...\3uTools) (Version: 2.09.015 - ShangHai ZhangZheng Network Technology Co., Ltd.) 7-Zip 16.04 (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov) Adobe Flash Player 10 ActiveX (HKLM\...\{922E8525-AC7E-4294-ACAA-43712D4423C0}) (Version: 10.0.22.87 - Adobe Systems, Inc.) Adobe Photoshop CS4 (HKLM\...\Adobe Photoshop CS4_is1) (Version: - ) Android SDK Tools (HKLM\...\Android SDK Tools) (Version: 1.16 - Google Inc.) Apple Application Support (32-bit) (HKLM\...\{9BA1A894-B42F-4805-BC8C-349C905A3930}) (Version: 5.3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{D9F3D66A-9885-4DDD-A800-9DDF488359A1}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Avast Premium (HKLM\...\Avast Antivirus) (Version: 17.2.2288 - AVAST Software) Bonjour (HKLM\...\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}) (Version: 3.1.0.1 - Apple Inc.) BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden Copy (Version: 130.0.366.000 - Hewlett-Packard) Hidden Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (Version: 130.0.372.000 - Hewlett-Packard) Hidden DJ_AIO_05_F4400_Software_Min (Version: 130.0.448.000 - Hewlett-Packard) Hidden F4400 (Version: 130.0.448.000 - Hewlett-Packard) Hidden Google Chrome (HKLM\...\Google Chrome) (Version: 57.0.2987.133 - Google Inc.) Google Update Helper (Version: 1.3.33.3 - Google Inc.) Hidden GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden HFSExplorer 0.23.1 (HKLM\...\HFSExplorer) (Version: 0.23.1 - Catacombae Software) HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP) HP Deskjet F4400 Printer Driver Software 13.0 Rel .5 (HKLM\...\{5AEBB4A3-6878-4CEE-AD34-0F6958A983F0}) (Version: 13.0 - HP) HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP) HP Print Projects 1.0 (HKLM\...\HP Print Projects) (Version: 1.0 - HP) HP Smart Web Printing 4.5 (HKLM\...\HP Smart Web Printing) (Version: 4.5 - HP) HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP) HP Update (HKLM\...\{7059BDA7-E1DB-442C-B7A1-6144596720A4}) (Version: 4.000.011.006 - Hewlett-Packard) HPPhotoGadget (Version: 130.0.282.000 - Hewlett-Packard) Hidden hpPrintProjects (Version: 130.0.303.000 - Hewlett-Packard) Hidden HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden hpWLPGInstaller (Version: 130.0.303.000 - Hewlett-Packard) Hidden HxD Hex Editor version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz) iCloud (HKLM\...\{F5893181-DB64-4FE1-BE8A-C843A5B24F17}) (Version: 6.1.2.13 - Apple Inc.) IDM Crack 6.25 build 20 (HKLM\...\IDM Crack 6.25 build 20) (Version: build 21 - Crackingpatching.com Team) IDM Crack 6.25 build 21 (HKLM\...\IDM Crack 6.25 build 21) (Version: build 21 - Crackingpatching.com Team) iExplorer 3.9.11.0 (HKLM\...\{7FD8B0C1-CDDA-4B4D-A577-B2E3570EA3A3}_is1) (Version: - Macroplant LLC) Internet Download Manager (HKLM\...\Internet Download Manager) (Version: - Tonec Inc.) IObit Uninstaller (HKLM\...\IObitUninstall) (Version: 6.3.0.17 - IObit) iTunes (HKLM\...\{B7C4ABF3-59A7-47AB-A72E-956BA5B4841C}) (Version: 12.5.5.5 - Apple Inc.) Java 8 Update 121 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Java SE Development Kit 8 Update 111 (HKLM\...\{32A3A4F4-B792-11D6-A78A-00B0D0180111}) (Version: 8.0.1110.14 - Oracle Corporation) Kingo ROOT version 1.5.0.2927 (HKLM\...\{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1) (Version: 1.5.0.2927 - Kingosoft Technology Ltd.) KMPlayer (remove only) (HKLM\...\The KMPlayer) (Version: 4.1.3.3 - PandoraTV) MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Motorola Mobile Drivers Installation 6.4.0 (HKLM\...\{BA562260-B4FA-4D87-ADC5-963783028C68}) (Version: 6.4.0 - Motorola Mobility LLC) Mozilla Firefox 49.0.1 (x86 fr) (HKLM\...\Mozilla Firefox 49.0.1 (x86 fr)) (Version: 49.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 49.0.1 - Mozilla) MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Natcom D-Com 3G (HKLM\...\Natcom D-Com 3G_is1) (Version: 1.0.0.1719 - Natcom) OpinionSquare (HKLM\...\{9cf77345-ac1f-46e5-83ff-79676bee4d6b}) (Version: 1.3.337.388 - TMRG, Inc.) PC-Telephone (HKLM\...\PC-Telephone) (Version: - ) Qualcomm USB Drivers For Windows (HKLM\...\{D9FB7F91-9687-4B09-894D-072903CADEA4}) (Version: 1.00.25 - QUALCOMM Incorporated) RSDLite (HKLM\...\{494CAE58-BBC3-4782-B59F-02F163E4A32B}) (Version: 6.2.4 - Motorola) SafeZone Stable 3.55.2393.590 (Version: 3.55.2393.590 - Avast Software) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.24.0 - SAMSUNG Electronics Co., Ltd.) Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden Security Task Manager 2.1i (HKLM\...\Security Task Manager) (Version: 2.1i - Neuber Software) Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP) SmartWebPrinting (Version: 130.0.373.000 - Hewlett-Packard) Hidden SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden Status (Version: 130.0.373.000 - Hewlett-Packard) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.10.51 - Synaptics Incorporated) Telerik Fiddler (HKLM\...\Fiddler2) (Version: 4.6.20171.14978 - Telerik) Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden TransMac version 11.2 (HKLM\...\TransMac_is1) (Version: 11.2 - Acute Systems) TrayApp (Version: 130.0.376.000 - Hewlett-Packard) Hidden Universal Extractor 1.6.1 (HKLM\...\Universal Extractor_is1) (Version: 1.6.1 - Jared Breland) UniversalAndroid 20014 version 20016 (HKU\S-1-5-21-1288689158-1679700385-1912068367-1000\...\UniversalAndroid 20014 version 20016) (Version: - ) USBDeviceShare-Client V1.5.10 (HKLM\...\USBDeviceShare-Client_is1) (Version: - SysNucleus) USBDeviceShare-Server V1.5.10 (HKLM\...\USBDeviceShare-Server_is1) (Version: - SysNucleus) VLC media player (HKLM\...\VLC media player) (Version: 2.2.2 - VideoLAN) WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden WinRAR 5.40 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) WinWget version 0.20 beta (HKLM\...\WinWget_is1) (Version: 0.20 - WinWget Team) Wondershare Helper Compact 2.5.2 (HKLM\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare) Wondershare TunesGo ( Version 9.0.0 ) (HKLM\...\{0B31C808-8274-460D-8846-C711D40544A0}_is1) (Version: 9.0.0 - Wondershare) XAMPP (HKLM\...\xampp) (Version: 5.6.15-1 - Bitnami) ZTE Handset USB Driver (HKLM\...\{01D42BF0-ED08-463f-8A28-99EB6FEE962B}) (Version: - ZTE Corporation) ZTE Handset USB Driver (HKLM\...\{D2D77DC2-8299-11D1-8949-444553540000}_is1) (Version: 5.2088.1.A01B04 - ZTE Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {2F007A5C-0960-4255-8F4A-CC32902E9C80} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-05-02] (Google Inc.) Task: {3F2816F7-718C-4816-BDBD-12F0BAEDBD7A} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-02-28] (AVAST Software) Task: {42DF87D4-F6E1-4B58-AC90-EB48D8984ABF} - System32\Tasks\Uninstaller_SkipUac_Gilene => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe [2017-03-21] (IObit) Task: {830388DB-5A05-4B36-8A6C-DDE487A16E74} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software) Task: {89FC5B46-EDE6-4DDF-A025-0564EF979551} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {D5626222-3B5F-41A8-A6F8-C284F76B4A62} - System32\Tasks\{33EDB38B-76CF-451B-BEB4-C8D4F83C7A67} => C:\Users\Gilene\Downloads\Impactor_0.9.38\Impactor.exe [2017-01-07] () Task: {D618A209-82C2-4D4F-80B0-6F87211BF7C8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-05-02] (Google Inc.) Task: {F559BAE5-592A-4C20-A58E-AEF2E7820101} - System32\Tasks\SafeZone scheduled Autoupdate 1462238659 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-03-03] (Avast Software) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\Gilene\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" ==================== Loaded Modules (Whitelisted) ============== 2017-02-28 08:40 - 2017-02-28 08:40 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-04-19 14:56 - 2017-04-19 14:56 - 06021752 _____ () C:\Program Files\AVAST Software\Avast\defs\17041902\algo.dll 2017-02-28 08:40 - 2017-02-28 08:40 - 00655056 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2017-04-20 08:44 - 2017-04-20 08:44 - 06021752 _____ () C:\Program Files\AVAST Software\Avast\defs\17042000\algo.dll 2017-03-28 22:45 - 2015-06-05 03:54 - 00404992 _____ () C:\xampp\apache\bin\pcre.dll 2017-03-28 22:48 - 2015-10-29 13:02 - 00129536 _____ () C:\xampp\php\libpq.dll 2017-03-28 22:45 - 2015-10-29 13:02 - 00166912 _____ () C:\xampp\apache\bin\libssh2.dll 2017-01-12 18:35 - 2016-10-08 17:48 - 01506304 _____ () C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll 2017-01-12 18:35 - 2016-07-21 11:54 - 00137728 _____ () C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll 2016-09-26 19:07 - 2016-09-26 19:08 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-02-28 08:39 - 2017-02-28 08:39 - 00290352 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2016-11-17 02:29 - 2016-11-17 02:29 - 00080184 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-01-13 14:56 - 2017-01-13 14:56 - 01041720 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2017-01-13 14:56 - 2017-01-13 14:56 - 00189752 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxslt.dll 2016-09-03 23:34 - 2017-01-06 19:29 - 00017384 _____ () C:\Users\Gilene\AppData\Local\Kingosoft\Kingo Root\update_54326\bin\KingoSoftService.exe 2017-03-28 22:47 - 2015-11-20 11:52 - 11535176 _____ () C:\xampp\mysql\bin\mysqld.exe 2014-04-22 19:58 - 2014-04-22 19:58 - 01656416 _____ () C:\Program Files\My WIFI Router\bmser.exe 2014-04-22 19:58 - 2014-04-22 19:58 - 00193392 _____ () C:\Program Files\My WIFI Router\bmupdex.dll 2017-02-28 08:39 - 2017-02-28 08:39 - 00134920 _____ () c:\Program Files\AVAST Software\Avast\vaarclient.dll 2017-03-23 19:02 - 2016-06-21 19:30 - 00442144 _____ () C:\Program Files\IObit\IObit Uninstaller\madExcept_.bpl 2017-03-23 19:02 - 2016-06-21 19:29 - 00210720 _____ () C:\Program Files\IObit\IObit Uninstaller\madBasic_.bpl 2017-03-23 19:02 - 2016-06-21 19:29 - 00059680 _____ () C:\Program Files\IObit\IObit Uninstaller\madDisAsm_.bpl 2017-03-23 19:02 - 2016-05-23 21:49 - 00899872 _____ () C:\Program Files\IObit\IObit Uninstaller\webres.dll 2017-03-23 19:02 - 2016-10-18 16:57 - 00631072 _____ () C:\Program Files\IObit\IObit Uninstaller\ProductStatistics.dll 2016-05-02 19:16 - 2012-11-10 18:21 - 01213864 _____ () C:\Program Files\Natcom\Natcom D-Com 3G\D-Com 3G.exe 2016-05-02 19:16 - 2012-09-02 15:13 - 00577621 _____ () C:\Program Files\Natcom\Natcom D-Com 3G\sqlite3.dll 2017-04-06 12:57 - 2017-03-28 19:04 - 02187096 _____ () C:\Program Files\Google\Chrome\Application\57.0.2987.133\libglesv2.dll 2017-04-06 12:57 - 2017-03-28 19:04 - 00086360 _____ () C:\Program Files\Google\Chrome\Application\57.0.2987.133\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 19:04 - 2017-04-19 22:00 - 00002513 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 adobeereg.com 127.0.0.1 www.adobeereg.com 127.0.0.1 activate.adobe.com 127.0.0.1 activate-sea.adobe.com 127.0.0.1 activate-sjc0.adobe.com 127.0.0.1 wwis-dubc1-vip60.adobe.com0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us There are 11 more lines. ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1288689158-1679700385-1912068367-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Gilene\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 186.1.192.1 - 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{D4A8BCA7-B308-4391-86CF-E463057A7BB4}] => (Allow) C:\Users\Gilene\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{3BABDC91-CEE0-4ACA-B7B9-22FF68A7E9D9}] => (Allow) C:\Users\Gilene\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{1231BF4E-1BD5-4283-935A-75C860D91682}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [TCP Query User{BDF8ECED-035C-491A-A1E8-CFA6CD173540}C:\program files\motorola\rsd lite\sdl.exe] => (Block) C:\program files\motorola\rsd lite\sdl.exe FirewallRules: [UDP Query User{E17CA8A7-599B-4238-AE80-020EAB726B86}C:\program files\motorola\rsd lite\sdl.exe] => (Block) C:\program files\motorola\rsd lite\sdl.exe FirewallRules: [{38274DE9-D956-4ED5-BEEA-C3C34C22D2F4}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{61B2967A-295D-4B03-B611-A703C9D69F55}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{C6C54A43-C075-48FA-B4CF-C8A26952A025}] => (Allow) C:\Program Files\My WIFI Router\My WIFI Router.exe FirewallRules: [{DBD7DB88-B03F-431D-A515-7C2C33690E17}] => (Allow) C:\Program Files\My WIFI Router\My WIFI Router.exe FirewallRules: [{0FA2CD39-B6C7-4711-A7DC-7DA5D94CAAC9}] => (Allow) C:\Program Files\My WIFI Router\My WIFI Router.exe FirewallRules: [{35B185FC-175F-4A56-BC20-E6FB8284A16F}] => (Allow) C:\Program Files\My WIFI Router\My WIFI Router.exe FirewallRules: [{870627A5-8B76-4372-900E-1DDCDC41388C}] => (Allow) C:\Program Files\My WIFI Router\My WIFI Router.exe FirewallRules: [{A54F7E29-ABE4-42CC-862B-3B98048C755F}] => (Allow) C:\Program Files\My WIFI Router\My WIFI Router.exe FirewallRules: [{BC4919DC-4485-42E2-AC96-C7AE596DCECB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{BF1AEB0F-A294-4115-AE7F-48AA1248B145}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{22BA2805-A13C-4E03-8E98-3911794A6CB4}] => (Allow) C:\Program Files\Moborobo\MoboRobo PC Suite.exe FirewallRules: [{3249FEBA-0FBB-4F9B-9019-AEE0A84CB6D1}] => (Allow) C:\Program Files\Moborobo\MoboRobo PC Suite.exe FirewallRules: [{C7D728DE-9DC4-46F9-BA8C-289CEDDF0D92}] => (Allow) C:\Program Files\Moborobo\MoboRobo PC Suite.exe FirewallRules: [{13ECBEDA-148E-4908-8CD0-47C3DDF9244A}] => (Allow) C:\Program Files\Moborobo\MoboRobo PC Suite.exe FirewallRules: [{0AACF53A-ADFF-4870-9289-678C4FDC4B16}] => (Allow) C:\Program Files\OpinionSquare\opnsqr.exe FirewallRules: [{E78A9979-DBB8-454D-BB3C-08C89C0C8E80}] => (Allow) C:\Program Files\OpinionSquare\opnsqr.exe FirewallRules: [{DEE9EF19-0A48-4C88-AE7D-3E69B00F4CA2}] => (Allow) C:\Program Files\OpinionSquare\opnsqr.exe FirewallRules: [{BB180610-5CD8-4FAF-84F3-533F6BCCC696}] => (Allow) C:\Program Files\OpinionSquare\opnsqr.exe FirewallRules: [{B4B1C4D0-C6F3-494A-8C9F-18D25A93565C}] => (Allow) C:\Program Files\3uTools\libXunlei\Download\MiniThunderPlatform.exe FirewallRules: [{8C7CF12C-D2C0-4415-958F-6E8E9637C70C}] => (Allow) C:\Program Files\3uTools\libXunlei\Download\MiniThunderPlatform.exe FirewallRules: [{CFE8B540-D7A4-4435-B938-B918E3DCBD80}] => (Allow) LPort=80 FirewallRules: [{E15D7BAD-4E69-4FF8-A98D-6E0A1F72FA2F}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.561_0\SZBrowser.exe FirewallRules: [{84707211-2F6F-4731-BE1B-5709192B4CC7}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.590\SZBrowser.exe FirewallRules: [{EA30B436-E6C0-4387-A5FC-8BE8E4DBF9DF}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [TCP Query User{DCC7BBD7-58E1-4B91-A6DD-EDD22E261B72}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{FB6376C4-4331-46E0-9F38-463094FD74A9}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [{3020DCD1-2ADD-480C-8EDB-F2108CE9FCE9}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= 21-03-2017 19:26:46 Windows Update 02-04-2017 07:36:07 Windows Update 07-04-2017 00:28:28 Windows Update 08-04-2017 21:41:35 Windows Update 09-04-2017 08:10:06 Windows Update 10-04-2017 12:18:22 Windows Update 11-04-2017 12:16:46 Windows Update 13-04-2017 13:33:11 Windows Update 13-04-2017 16:57:19 Windows Update 13-04-2017 16:58:45 Windows Update 13-04-2017 19:24:59 Windows Update 14-04-2017 00:15:32 Windows Update ==================== Faulty Device Manager Devices ============= Name: Viettel 3G Device Description: USB Audio Device Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: (Generic USB Audio) Service: usbaudio Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (04/20/2017 08:46:06 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "c:\program files\natcom\natcom d-com 3g\dpinst_64bit.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (04/20/2017 08:44:43 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "c:\program files\kingo root\tools\DPInst64.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (04/19/2017 02:57:52 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "c:\program files\natcom\natcom d-com 3g\dpinst_64bit.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (04/19/2017 02:56:26 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "c:\program files\kingo root\tools\DPInst64.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (04/18/2017 08:30:01 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "c:\program files\natcom\natcom d-com 3g\dpinst_64bit.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (04/18/2017 08:28:43 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "c:\program files\kingo root\tools\DPInst64.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (04/14/2017 12:01:04 AM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={37A441B7-77CB-43D7-8252-121D5FF8BE33}: The user Gilene-PC\Gilene dialed a connection named NATCOM which has failed. The error code returned on failure is 0. Error: (04/13/2017 04:40:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: WsAppService.exe, version: 2.2.3.2, time stamp: 0x576ce73d Faulting module name: KERNELBASE.dll, version: 6.1.7601.23714, time stamp: 0x58bf87a4 Exception code: 0xe053534f Fault offset: 0x0000845d Faulting process id: 0x%9 Faulting application start time: 0xWsAppService.exe0 Faulting application path: WsAppService.exe1 Faulting module path: WsAppService.exe2 Report Id: WsAppService.exe3 Error: (04/13/2017 05:35:34 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "c:\program files\natcom\natcom d-com 3g\dpinst_64bit.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (04/13/2017 05:34:01 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "c:\program files\kingo root\tools\DPInst64.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. System errors: ============= Error: (04/20/2017 08:42:14 AM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: The DNS proxy agent was unable to allocate 0 bytes of memory. This may indicate that the system is low on virtual memory, or that the memory manager has encountered an internal error. Error: (04/20/2017 08:26:20 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY) Description: WLAN Extensibility Module has failed to start. Module Path: C:\Windows\system32\Rtlihvs.dll Error Code: 126 Error: (04/20/2017 12:03:22 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: The server {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} did not register with DCOM within the required timeout. Error: (04/19/2017 11:08:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Apache2.4 service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion. Error: (04/19/2017 11:08:44 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Apache2.4 service to connect. Error: (04/19/2017 11:08:06 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY) Description: WLAN Extensibility Module has failed to start. Module Path: C:\Windows\system32\Rtlihvs.dll Error Code: 126 Error: (04/19/2017 11:07:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Windows Media Player Network Sharing Service service failed to start due to the following error: The service did not start due to a logon failure. Error: (04/19/2017 11:07:24 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: The WMPNetworkSvc service was unable to log on as NT AUTHORITY\NetworkService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC). Error: (04/19/2017 11:07:23 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error: An instance of the service is already running. Error: (04/19/2017 11:06:54 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Media Player Network Sharing Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. ==================== Memory info =========================== Processor: AMD E-300 APU with Radeon(tm) HD Graphics Percentage of memory in use: 45% Total physical RAM: 3574.87 MB Available physical RAM: 1956.63 MB Total Virtual: 7148.06 MB Available Virtual: 5208.66 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:297.99 GB) (Free:225.78 GB) NTFS Drive e: (D-Com 3G) (CDROM) (Total:0.02 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 20C94C86) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=298 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================