Additional scan result of Farbar Recovery Scan Tool (x86) Version: 02-06-2017 Ran by Mr Amine (03-06-2017 22:59:08) Running from C:\Users\Mr Amine\Downloads Microsoft Windows 7 Professional Service Pack 1 (X86) (2016-10-09 13:39:32) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2541504113-2086445549-289826373-500 - Administrator - Disabled) Guest (S-1-5-21-2541504113-2086445549-289826373-501 - Limited - Disabled) Mr Amine (S-1-5-21-2541504113-2086445549-289826373-1000 - Administrator - Enabled) => C:\Users\Mr Amine ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2541504113-2086445549-289826373-1000\...\uTorrent) (Version: 3.5.0.43804 - BitTorrent Inc.) 4Media Video Cutter 2 (HKLM\...\4Media Video Cutter 2) (Version: 2.2.0.20170209 - 4Media) 7-Zip 16.04 (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov) Adguard (HKLM\...\{e2a82ed3-dba7-43f6-8ef3-e303140c55dd}) (Version: 6.1.331.1732 - Performix LLC) Adguard (Version: 6.1.331.1732 - Performix LLC) Hidden Adobe Acrobat Reader DC (HKLM\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe After Effects CS4 (HKLM\...\Adobe_3dcb365ab9e01871fb8c6f27b0ea079) (Version: 9 - Adobe Systems Incorporated) Adobe Flash Player 25 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 25.0.0.171 - Adobe Systems Incorporated) Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 17.4.2294 - AVAST Software) Avidemux 2.6 - 32 bits (32-bit) (HKLM\...\Avidemux 2.6 - 32 bits) (Version: 2.6.18.170105 - ) Camtasia Studio 8 (HKLM\...\{80AE23DF-71A4-4E3F-B931-F93AB5DF0BDD}) (Version: 8.4.2.1768 - TechSmith Corporation) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Driver Easy 5.1.6 (HKLM\...\DriverEasy_is1) (Version: 5.1.6 - Easeware) ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - ) ETDWare X86 11.7.13.2_WHQL (HKLM\...\Elantech) (Version: 11.7.13.2 - ELAN Microelectronic Corp.) FormatFactory 4.1.0.0 (HKLM\...\FormatFactory) (Version: 4.1.0.0 - Free Time) Free Video Cutter (HKLM\...\{94895EA7-873E-4FCB-9C7B-DD3F7019D618}_is1) (Version: - FreeVideoCutter.com) Google Chrome (HKLM\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.) Google Update Helper (Version: 1.3.33.5 - Google Inc.) Hidden Intel Security True Key (HKLM\...\TrueKey) (Version: 4.17.107.1 - Intel Security) Lexmark 2400 Series (HKLM\...\Lexmark 2400 Series) (Version: - Lexmark International, Inc.) Microsoft .NET Framework 4.6.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01590 - Microsoft Corporation) Microsoft Expression Encoder 4 (HKLM\...\Encoder_4.0.1651.0) (Version: 4.0.1651.0 - Microsoft Corporation) Microsoft Expression Encoder 4 Screen Capture Codec (HKLM\...\{952DCCD8-4039-46C8-BC8B-5C1EB6C8E130}) (Version: 4.0.1651.0 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) PDF Reader 4 (HKLM\...\PDF Reader 4) (Version: - ) Photoshop Camera Raw (Version: 5.0 - Adobe Systems Incorporated) Hidden Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.40.126.2011 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8036 - Realtek Semiconductor Corp.) Snagit 13 (HKLM\...\{4fcd74bf-76ca-4f48-bfe4-5b444eccb4a3}) (Version: 13.0.2.6653 - TechSmith Corporation) Snagit 13 (Version: 13.0.2 - TechSmith Corporation) Hidden Sticky Password 8.0.10.54 (HKLM\...\Sticky Password_is1) (Version: 8.0 - Lamantine Software) Suite Shared Configuration CS4 (Version: 1.0 - Adobe Systems Incorporated) Hidden VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN) WinRAR 5.40 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) Xilisoft Video Converter Ultimate (HKLM\...\Xilisoft Video Converter Ultimate) (Version: 7.7.2.20130217 - Xilisoft) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{094AE5CB-62E5-4845-8ED6-617D9FE893DD}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{11CD84A3-A5E0-43CB-B3DF-92C623C0E0E0}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{22756E83-8EBC-4B16-A4A4-0AA73BE497B1}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{2A235D7E-0358-40E2-B51A-DE22F8F5C50D}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{56C94D6A-7370-4885-A04E-7097FE4E0BAF}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{672CDBDB-0270-4EB9-83EC-216377522D21}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{79811B29-9C10-4FCB-A117-6030F2DC12BB}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{841BFDCA-6A9A-4EBC-BC7E-194AA5DCE428}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{94330D48-EB33-49BB-87F1-AD8C0352C010}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2541504113-2086445549-289826373-1000_Classes\CLSID\{F7CA46A9-ACA5-45A6-967E-03FF5A282D01}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {27874076-FE29-4045-9585-A43076A1FD48} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [2017-04-12] (McAfee, Inc.) Task: {399EDC34-F260-446D-A281-9EF19B99338F} - System32\Tasks\TechSmith Updater => C:\Program Files\Common Files\TechSmith Shared\Updater\TSCUpdClt.exe [2016-03-28] (TechSmith Corporation) Task: {4EA9D40E-8005-4630-83FA-4C483D487001} - System32\Tasks\{8ACF6F6C-79B9-465C-A7F1-12313667B944} => pcalua.exe -a "C:\Program Files\Xilisoft\Video Joiner 2\Uninstall.exe" Task: {6064E413-0653-4EBA-9236-E905C124BBC4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {64F8B347-57F9-4CF9-B613-BCDE8D2148C8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-10-09] (Google Inc.) Task: {6E6BBB3D-B88A-43D2-8D5C-3761BD3604F6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-10-09] (Google Inc.) Task: {8086BD4B-CCFE-4A2B-9B22-532452E40FAC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-10] (Adobe Systems Incorporated) Task: {8CD30930-FE89-443A-AF4B-73F490BBE105} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software) Task: {BF032AD2-FB23-4F4A-8740-D8A03C4E2780} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-05-09] (AVAST Software) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2017-05-09 12:42 - 2017-05-09 12:42 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-05-09 12:42 - 2017-05-09 12:42 - 00176992 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-05-09 12:42 - 2017-05-09 12:42 - 00223224 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-06-03 12:29 - 2017-06-03 12:29 - 06101296 _____ () C:\Program Files\AVAST Software\Avast\defs\17060300\algo.dll 2017-05-09 12:42 - 2017-05-09 12:42 - 00684656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2017-05-09 12:42 - 2017-05-09 12:42 - 00230632 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll 2017-01-31 21:51 - 2006-11-27 04:50 - 00117760 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxcrpp5c.dll 2017-03-27 20:41 - 2017-03-27 20:41 - 01415952 _____ () C:\Program Files\Adguard\AdguardNetApi.DLL 2017-03-27 20:41 - 2017-03-27 20:41 - 00142096 _____ () C:\Program Files\Adguard\AdguardNetLib.DLL 2017-05-09 12:42 - 2017-05-09 12:42 - 00997896 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-05-09 12:42 - 2017-05-09 12:43 - 67717632 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-05-09 12:42 - 2017-05-09 12:42 - 00291824 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2016-10-09 18:46 - 2016-09-06 13:00 - 05197312 _____ () C:\Users\Mr Amine\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1\libglesv2.dll 2016-10-09 18:46 - 2016-09-06 13:00 - 00147456 _____ () C:\Users\Mr Amine\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1\libegl.dll 2017-05-09 12:42 - 2017-05-09 12:42 - 00134920 _____ () c:\Program Files\AVAST Software\Avast\vaarclient.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2017-05-14 16:31 - 00000950 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 65.52.240.48 127.0.0.1 69.167.144.18 127.0.0.1 oscount.techsmith.com 127.0.0.1 activation.cloud.techsmith.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2541504113-2086445549-289826373-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mr Amine\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^PlutoTV.lnk => C:\Windows\pss\PlutoTV.lnk.CommonStartup MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe MSCONFIG\startupreg: EzPrint => "C:\Program Files\Lexmark 2400 Series\ezprint.exe" MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" MSCONFIG\startupreg: LXCRCATS => rundll32 C:\Windows\system32\spool\DRIVERS\W32X86\3\LXCRtime.dll,_RunDLLEntry@16 MSCONFIG\startupreg: lxcrmon.exe => "C:\Program Files\Lexmark 2400 Series\lxcrmon.exe" MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s MSCONFIG\startupreg: uTorrent => "C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{F8FE42B0-8C7D-4BAC-BEAF-EB40B09BDC36}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{A9D5042C-469A-499D-9A19-FC0C03C30D80}] => (Allow) LPort=8317 FirewallRules: [{915E180C-A79D-4A2C-AA8D-9057C4B551F0}] => (Allow) LPort=8298 FirewallRules: [{C081D6D3-6B0F-4D0D-A99A-60032A8E3D93}] => (Allow) LPort=8298 FirewallRules: [{4B769AAC-2FFF-4604-AFDC-AE5F0D3F70DD}] => (Allow) LPort=8298 FirewallRules: [{BE3C0632-8FC7-477C-8932-0FD76DB587B4}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{AC338B89-6E22-421C-A326-845AF8415603}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{FE936B2A-8FF6-49A2-9C6B-83D684FE216B}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6290302F-7610-485E-8AC3-FA81ED94726E}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{0DE0C6C7-7F19-4E88-A9BB-D216A60E360B}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C3A1E379-9259-4185-8C00-6D23F62CAC7F}] => (Allow) C:\Users\Mr Amine\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{7189EE29-8AEA-4D54-81E6-EC2EBBA30AE3}] => (Allow) C:\Windows\System32\lxcrcoms.exe FirewallRules: [{856298CC-6238-4D65-B86D-D515F8DDD947}] => (Allow) C:\Windows\System32\lxcrcoms.exe FirewallRules: [{F4D20099-5A1A-45EA-B4C4-AE064DAED19D}] => (Allow) C:\Program Files\Lexmark 2400 Series\lxcrmon.exe FirewallRules: [{D4F4100A-6754-4C6D-975F-6ED20F408F03}] => (Allow) C:\Program Files\Lexmark 2400 Series\lxcrmon.exe FirewallRules: [{A048EDC5-C19B-4E4D-90C3-FA2056A90FAB}] => (Allow) C:\Program Files\Lexmark 2400 Series\LXCRaiox.exe FirewallRules: [{4EC08BE3-F7BC-47DF-9363-D74AD40C80DF}] => (Allow) C:\Program Files\Lexmark 2400 Series\LXCRaiox.exe FirewallRules: [{8FC92E4D-F136-4E88-A3DB-44CC9546F972}] => (Allow) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe FirewallRules: [{C93FA3E1-DF6F-4E5A-8B7A-6879BE5E0258}] => (Allow) C:\Program Files\Adguard\AdguardSvc.exe FirewallRules: [{09E7B674-B813-4376-95E1-5629B533AB27}] => (Allow) C:\Program Files\Sticky Password\stpass.exe FirewallRules: [{D34D17E3-626D-443A-83EF-2AD94D315BDC}] => (Allow) C:\Program Files\Sticky Password\stpass.exe FirewallRules: [TCP Query User{3EF6FAE6-D909-4DC5-A850-982865267A02}C:\program files\sony\vegas pro 9.0\vegsrv90.exe] => (Block) C:\program files\sony\vegas pro 9.0\vegsrv90.exe FirewallRules: [UDP Query User{A7ED0051-99E4-419F-B6F0-3C4C7DEADC05}C:\program files\sony\vegas pro 9.0\vegsrv90.exe] => (Block) C:\program files\sony\vegas pro 9.0\vegsrv90.exe FirewallRules: [{F96817E7-5F90-4E4B-9A29-48E0D1BA742D}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe FirewallRules: [{0FE7BF92-E0E2-4760-80C9-97F7F762774B}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{B94A4955-D7CF-4987-8297-3049B83A287A}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{DC506AFB-4C76-47AD-959C-6CEA02E6BE2A}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe FirewallRules: [{D8749925-348F-418A-BBDB-39364785A016}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/03/2017 09:01:40 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: FRST.exe, version: 2.6.2017.0, time stamp: 0x5931774a Faulting module name: FRST.exe, version: 2.6.2017.0, time stamp: 0x5931774a Exception code: 0xc0000005 Fault offset: 0x000211de Faulting process id: 0x1298 Faulting application start time: 0x01d2dca3b40ddb05 Faulting application path: C:\Users\Mr Amine\Downloads\FRST.exe Faulting module path: C:\Users\Mr Amine\Downloads\FRST.exe Report Id: 74907733-4897-11e7-8162-e811328ef8d5 Error: (06/03/2017 06:30:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (06/03/2017 01:22:03 PM) (Source: MsiInstaller) (EventID: 11935) (User: MrAmine-PC) Description: Product: Adobe Setup -- Error 1935.An error occurred during the installation of assembly 'Microsoft.VC80.CRT,publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762",processorArchitecture="x86"'. Please refer to Help and Support for more information. HRESULT: 0x80070091. assembly interface: IAssemblyCacheItem, function: Commit, component: {98CB24AD-52FB-DB5F-A01F-C8B3B9A1E18E} Error: (06/02/2017 01:26:07 AM) (Source: Adguard) (EventID: 0) (User: ) Description: Switching logger to invalid state because of System.ObjectDisposedException: Cannot access a closed file. Source: mscorlib Stack trace: at System.IO.__Error.FileNotOpen() at System.IO.FileStream.get_Length() at Microsoft.VisualBasic.Logging.FileLogTraceListener.ResourcesAvailable(Int64 newEntrySize) at Microsoft.VisualBasic.Logging.FileLogTraceListener.WriteLine(String message) at Adguard.Commons.Utils.Logger.TraceLine(TraceLevel level, String message) Error: (05/28/2017 01:41:19 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (05/26/2017 11:02:05 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (05/26/2017 01:27:25 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program chrome.exe version 58.0.3029.110 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1250 Start Time: 01d2d5b68545c13d Termination Time: 60000 Application Path: C:\Program Files\Google\Chrome\Application\chrome.exe Report Id: eb0e612c-41a9-11e7-85a2-e811328ef8d5 Error: (05/24/2017 09:54:44 PM) (Source: System.ServiceModel 3.0.0.0) (EventID: 3) (User: IIS APPPOOL) Description: WebHost failed to process a request. Sender Information: System.ServiceModel.Activation.HostedHttpRequestAsyncResult/42194754 Exception: System.Web.HttpException: The service '/rest.svc' does not exist. ---> System.ServiceModel.EndpointNotFoundException: The service '/rest.svc' does not exist. at System.ServiceModel.ServiceHostingEnvironment.HostingManager.EnsureServiceAvailable(String normalizedVirtualPath) at System.ServiceModel.ServiceHostingEnvironment.EnsureServiceAvailableFast(String relativeVirtualPath) at System.ServiceModel.Activation.HostedHttpRequestAsyncResult.HandleRequest() at System.ServiceModel.Activation.HostedHttpRequestAsyncResult.BeginRequest() --- End of inner exception stack trace --- at System.ServiceModel.AsyncResult.End[TAsyncResult](IAsyncResult result) at System.ServiceModel.Activation.HostedHttpRequestAsyncResult.End(IAsyncResult result) Process Name: w3wp Process ID: 5856 Error: (05/24/2017 09:53:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: CamtasiaStudio.exe, version: 8.4.2.1768, time stamp: 0x53bc29b9 Faulting module name: spCapBtn.dll_unloaded, version: 0.0.0.0, time stamp: 0x58383028 Exception code: 0xc0000005 Fault offset: 0x08a6e4dc Faulting process id: 0x1878 Faulting application start time: 0x01d2d4cfc0400c9e Faulting application path: C:\Program Files\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe Faulting module path: spCapBtn.dll Report Id: 09ac3cca-40c3-11e7-85a2-e811328ef8d5 Error: (05/24/2017 09:53:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: CamtasiaStudio.exe, version: 8.4.2.1768, time stamp: 0x53bc29b9 Faulting module name: spCapBtn.dll_unloaded, version: 0.0.0.0, time stamp: 0x58383028 Exception code: 0xc0000005 Fault offset: 0x08a6e5f3 Faulting process id: 0x1878 Faulting application start time: 0x01d2d4cfc0400c9e Faulting application path: C:\Program Files\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe Faulting module path: spCapBtn.dll Report Id: 058518c9-40c3-11e7-85a2-e811328ef8d5 System errors: ============= Error: (06/03/2017 10:30:36 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: The server {995C996E-D918-4A8C-A302-45719A6F4EA7} did not register with DCOM within the required timeout. Error: (06/03/2017 08:19:17 PM) (Source: volsnap) (EventID: 36) (User: ) Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. Error: (06/03/2017 06:30:15 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The MBAMService service depends on the MBAMProtector service which failed to start because of the following error: The system cannot find the file specified. Error: (06/03/2017 06:30:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Service Installer TrueKey service failed to start due to the following error: The system cannot find the file specified. Error: (06/03/2017 06:29:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The MBAMProtector service failed to start due to the following error: The system cannot find the file specified. Error: (06/03/2017 06:28:22 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY) Description: WLAN Extensibility Module has stopped unexpectedly. Module Path: C:\Windows\system32\athihvs.dll Error: (06/03/2017 06:28:22 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY) Description: WLAN Extensibility Module has stopped unexpectedly. Module Path: C:\Windows\system32\athihvs.dll Error: (06/03/2017 06:28:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Intel Security True Key service failed to start due to the following error: The pipe has been ended. Error: (06/03/2017 06:28:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Adguard Service service failed to start due to the following error: The pipe has been ended. Error: (06/03/2017 06:27:48 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY) Description: WLAN Extensibility Module has stopped unexpectedly. Module Path: C:\Windows\system32\athihvs.dll ==================== Memory info =========================== Processor: AMD E-350 Processor Percentage of memory in use: 54% Total physical RAM: 3068.06 MB Available physical RAM: 1390.56 MB Total Virtual: 12266.38 MB Available Virtual: 10424.99 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:76.07 GB) (Free:18.8 GB) NTFS Drive d: () (Fixed) (Total:72.88 GB) (Free:67.48 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149.1 GB) (Disk ID: 021CBDED) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=76.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=72.9 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================