Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-06-2017 Ran by KITAMBALA THEOPHILE (24-06-2017 06:22:35) Running from C:\Users\KITAMBALA THEOPHILE\Desktop Windows 8 Pro (X64) (2017-06-13 19:39:24) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2488157564-1533187620-1748925571-500 - Administrator - Disabled) Guest (S-1-5-21-2488157564-1533187620-1748925571-501 - Limited - Disabled) KITAMBALA THEOPHILE (S-1-5-21-2488157564-1533187620-1748925571-1001 - Administrator - Enabled) => C:\Users\KITAMBALA THEOPHILE postgres (S-1-5-21-2488157564-1533187620-1748925571-1002 - Limited - Enabled) => C:\Users\postgres ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2488157564-1533187620-1748925571-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {101E062B-9EFD-4774-97C1-A8011E993B2F} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2017-06-13] (AVAST Software) Task: {3E8E5D57-3080-4570-961F-7CAFF8AEA44A} - System32\Tasks\UCBrowserUpdaterCore => C:\Program Files (x86)\UCBrowser\Application\update_task.exe [2017-06-13] (UCWeb Inc) <==== ATTENTION Task: {47B9C2AF-51AF-4F22-8A79-558369C9D953} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-27] (Realtek Semiconductor) Task: {5AFD11D2-9812-496C-B76B-CC2D54E26E1B} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-05-22] (Synaptics Incorporated) Task: {863B0898-B3E3-4F5D-A38B-3BC5DAC85B10} - System32\Tasks\KMSAutoNet => C:\ProgramData\KMSAutoS\KMSAuto Net.exe [2016-12-06] (MSFree Inc.) Task: {983BABC5-9AE1-43B8-BE24-615BF3EF13BE} - System32\Tasks\UCBrowserUpdater => C:\Program Files (x86)\UCBrowser\Application\update_task.exe [2017-06-13] (UCWeb Inc) <==== ATTENTION Task: {C68AB8CA-4FBB-4CF7-95A0-50D2796D55A8} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2015-07-06] (Lenovo) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\UCBrowserUpdater.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== ATTENTION Task: C:\Windows\Tasks\UCBrowserUpdaterCore.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== ATTENTION ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Software Deals.lnk -> C:\ProgramData\Ashampoo\YourDeals.exe () -> hxxp://linktarget.ashampoo.com/linktarget/?target=marketplace&edition=eid=12657&utm_medium=desktop&x-pos=Metro ShortcutWithArgument: C:\Users\Public\Desktop\Facebook.lnk -> C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe (UCWeb Inc.) -> hxxp://facebook.com ==================== Loaded Modules (Whitelisted) ============== 2017-06-13 22:20 - 2014-02-15 04:11 - 00049376 _____ () C:\Windows\system32\tbaseprovisioning.exe 2017-06-13 22:51 - 2017-06-13 23:51 - 00625552 _____ () C:\Program Files (x86)\UCBrowser\Application\UCService.exe 2017-05-26 03:18 - 2017-05-26 03:18 - 00492112 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2010-01-30 02:40 - 2010-01-30 02:40 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2017-06-14 06:08 - 2008-06-20 00:41 - 00062464 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll 2017-03-08 04:42 - 2017-03-08 04:42 - 00230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2015-09-02 13:00 - 2015-09-02 13:00 - 10566352 _____ () C:\Program Files (x86)\FileHippo.com\FileHippo.AppManager.exe 2017-06-17 07:23 - 2011-04-28 10:27 - 00192856 _____ () C:\Users\KITAMBALA THEOPHILE\AppData\Roaming\DRPSu\DrvUpdater.exe 2002-03-05 21:56 - 2002-03-05 21:56 - 00535040 _____ () C:\Program Files (x86)\Bible Verse\verse.exe 2017-06-19 06:08 - 2017-06-19 06:08 - 01159680 _____ () C:\Program Files (x86)\BK_Maravilha\Gestion Affectation des Stagiaires\Gestion_affectation_Stagiaires\obj\Debug\Gestion_affectation_Stagiaires.exe 2017-06-16 03:18 - 2017-06-14 00:02 - 02119056 _____ () C:\Program Files (x86)\UCBrowser\Application\6.1.2909.1022\UCAgent.exe 2017-06-16 01:05 - 2012-07-20 17:08 - 02056192 _____ () C:\Program Files (x86)\3G Mobile Manager\3G Mobile Manager.exe ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 07:26 - 2017-06-14 05:06 - 00000851 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2488157564-1533187620-1748925571-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\KITAMBALA THEOPHILE\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 8.8.8.8 - 4.2.2.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is disabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{5E58332B-83C2-4147-8248-4AFB90947CAC}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [{19EDE0C9-053D-45E4-89EF-A81B40AC5411}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [{9A2A7BFA-CCA2-436F-8766-8A781B7485A1}] => (Allow) C:\Users\KITAMBALA THEOPHILE\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{9AFE3221-2A35-4EC8-B40C-49F2A3D2C70F}] => (Allow) C:\Users\KITAMBALA THEOPHILE\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{967CB9E5-888E-4CB8-88B6-ACF90357520F}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe FirewallRules: [{C4321610-B18F-4813-80CE-43948EFEE45F}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe FirewallRules: [{8321D104-A7A1-4D3E-B770-9862F2A86CFC}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\Downloader\download\MiniThunderPlatform.exe FirewallRules: [{85395316-68E9-4374-94C4-EFC7BBE43CF1}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\devenv.exe FirewallRules: [{E7946F59-4438-42DA-8FA4-F08B0546FC57}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\devenv.exe FirewallRules: [{147E67B6-2896-4186-ABDE-283FEC2B061F}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\devenv.exe FirewallRules: [{B66DD5E3-9748-45B0-AAA2-9D81B24B7A0E}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\devenv.exe FirewallRules: [{B8952D87-4DAD-45BA-8DCF-993F489FA83E}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\devenv.exe FirewallRules: [{B2B52C3D-A029-48D9-BAFD-AC4C125AA480}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\devenv.exe FirewallRules: [{8262349E-53D5-4A93-8E07-938478D1056A}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\devenv.exe FirewallRules: [TCP Query User{41F0E15C-BD8E-41CA-B787-5004E4BAF182}C:\program files (x86)\cisco packet tracer 6.1sv\bin\packettracer6.exe] => (Allow) C:\program files (x86)\cisco packet tracer 6.1sv\bin\packettracer6.exe FirewallRules: [UDP Query User{54251905-DDBB-4E57-9610-716766A46A32}C:\program files (x86)\cisco packet tracer 6.1sv\bin\packettracer6.exe] => (Allow) C:\program files (x86)\cisco packet tracer 6.1sv\bin\packettracer6.exe FirewallRules: [TCP Query User{D23C7BB5-8790-4B5F-8AFF-EFA29AF2CEB1}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe FirewallRules: [UDP Query User{AC5690EF-536B-4999-8B68-607C633A2F54}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe FirewallRules: [TCP Query User{BCEB1E3C-3E1E-4C15-9084-DCA03622DB01}C:\program files (x86)\apowersoft\apowersoft phone manager\apowersoft phone manager.exe] => (Allow) C:\program files (x86)\apowersoft\apowersoft phone manager\apowersoft phone manager.exe FirewallRules: [UDP Query User{1B02445F-5EBF-4C85-987C-5F059CB9F917}C:\program files (x86)\apowersoft\apowersoft phone manager\apowersoft phone manager.exe] => (Allow) C:\program files (x86)\apowersoft\apowersoft phone manager\apowersoft phone manager.exe FirewallRules: [{D1D5C4A1-A0DF-4D98-BCD0-D173E4B59ED5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{395971BD-39CF-4B68-A537-B57F6D88E98E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{20D58131-5170-491F-B829-7F2FFE3DA2F4}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{31E61FBF-31C0-467C-8CA8-4BFE2635CC1F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{D57DD2AC-D2BE-4C61-B2F3-2E9C1F29DA0A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{20B21C54-C3B8-4EFE-AD51-1879CD3F6021}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Restore Points ========================= 13-06-2017 21:44:37 Installed Microsoft Office Professionnel Plus 2013 13-06-2017 21:45:03 PROPLUSR 16-06-2017 05:44:33 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 18-06-2017 06:10:30 Gestion d'Affectation des stagiaiares a été supprimé 19-06-2017 06:11:42 Removed Gestion Affectation des Stagiaires ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/24/2017 06:17:15 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: BlueStacks.exe, version: 2.7.320.8504, time stamp: 0x59252e79 Faulting module name: KERNELBASE.dll, version: 6.2.9200.16384, time stamp: 0x5010ac2f Exception code: 0xe0434352 Fault offset: 0x00014b32 Faulting process id: 0xed4 Faulting application start time: 0x01d2eca0764d5c26 Faulting application path: C:\Program Files (x86)\BlueStacks\BlueStacks.exe Faulting module path: C:\Windows\SYSTEM32\KERNELBASE.dll Report Id: 004d1738-5894-11e7-be6d-f0761c4a2263 Faulting package full name: Faulting package-relative application ID: Error: (06/24/2017 06:17:13 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: BlueStacks.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.InvalidOperationException Stack: at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.DispatcherOperation.Wait(System.TimeSpan) at System.Windows.Threading.Dispatcher.InvokeImpl(System.Windows.Threading.DispatcherOperation, System.Threading.CancellationToken, System.TimeSpan) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at BlueStacks.hyperDroid.GameManager.GameManagerUtilities.IsUserPro() at BlueStacks.hyperDroid.GameManager.GameManagerUtilities.UnhideGameManager() at BlueStacks.hyperDroid.GameManager.GameManagerWindow.GameManagerWindow_Loaded(System.Object, System.Windows.RoutedEventArgs) at System.Windows.RoutedEventHandlerInfo.InvokeHandler(System.Object, System.Windows.RoutedEventArgs) at System.Windows.EventRoute.InvokeHandlersImpl(System.Object, System.Windows.RoutedEventArgs, Boolean) at System.Windows.UIElement.RaiseEventImpl(System.Windows.DependencyObject, System.Windows.RoutedEventArgs) at System.Windows.UIElement.RaiseEvent(System.Windows.RoutedEventArgs) at System.Windows.BroadcastEventHelper.BroadcastEvent(System.Windows.DependencyObject, System.Windows.RoutedEvent) at System.Windows.BroadcastEventHelper.BroadcastLoadedEvent(System.Object) at MS.Internal.LoadedOrUnloadedOperation.DoWork() at System.Windows.Media.MediaContext.FireLoadedPendingCallbacks() at System.Windows.Media.MediaContext.FireInvokeOnRenderCallbacks() at System.Windows.Media.MediaContext.RenderMessageHandlerCore(System.Object) at System.Windows.Media.MediaContext.RenderMessageHandler(System.Object) at System.Windows.Media.MediaContext.Resize(System.Windows.Media.ICompositionTarget) at System.Windows.Interop.HwndTarget.OnResize() at System.Windows.Interop.HwndTarget.HandleMessage(MS.Internal.Interop.WindowMessage, IntPtr, IntPtr) at System.Windows.Interop.HwndSource.HwndTargetFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.CallWindowProc(IntPtr, IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.HwndSubclass.DefWndProcWrapper(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.CallWindowProc(IntPtr, IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Internal.Automation.UiaCoreTypesApi.RawUiaLookupId(AutomationIdType, System.Guid ByRef) at System.Windows.Automation.AutomationIdentifier.Register(AutomationIdType, System.Guid, System.String) at System.Windows.Automation.InvokePatternIdentifiers..cctor() at System.Windows.Automation.Peers.AutomationPeer.Initialize() at System.Windows.Automation.Peers.AutomationPeer..cctor() at System.Windows.Automation.Peers.AutomationPeer.RaiseFocusChangedEventHelper(System.Windows.IInputElement) at System.Windows.Input.KeyboardDevice.ChangeFocus(System.Windows.DependencyObject, Int32) at System.Windows.Input.KeyboardDevice.TryChangeFocus(System.Windows.DependencyObject, System.Windows.Input.IKeyboardInputProvider, Boolean, Boolean, Boolean) at System.Windows.Input.KeyboardDevice.Focus(System.Windows.DependencyObject, Boolean, Boolean, Boolean) at System.Windows.Input.KeyboardDevice.Focus(System.Windows.IInputElement) at System.Windows.Interop.HwndKeyboardInputProvider.OnSetFocus(IntPtr) at System.Windows.Interop.HwndKeyboardInputProvider.FilterMessage(IntPtr, MS.Internal.Interop.WindowMessage, IntPtr, IntPtr, Boolean ByRef) at System.Windows.Interop.HwndSource.InputFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.CallWindowProc(IntPtr, IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.HwndSubclass.DefWndProcWrapper(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.CallWindowProc(IntPtr, IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.HwndSubclass.SubclasError: (06/24/2017 06:17:13 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: BlueStacks.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.InvalidOperationException Stack: at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.DispatcherOperation.Wait(System.TimeSpan) at System.Windows.Threading.Dispatcher.InvokeImpl(System.Windows.Threading.DispatcherOperation, System.Threading.CancellationToken, System.TimeSpan) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at BlueStacks.hyperDroid.GameManager.GameManagerUtilities.IsUserPro() at BlueStacks.hyperDroid.GameManager.GameManagerUtilities.UnhideGameManager() at BlueStacks.hyperDroid.GameManager.GameManagerWindow.GameManagerWindow_Loaded(System.Object, System.Windows.RoutedEventArgs) at System.Windows.RoutedEventHandlerInfo.InvokeHandler(System.Object, System.Windows.RoutedEventArgs) at System.Windows.EventRoute.InvokeHandlersImpl(System.Object, System.Windows.RoutedEventArgs, Boolean) at System.Windows.UIElement.RaiseEventImpl(System.Windows.DependencyObject, System.Windows.RoutedEventArgs) at System.Windows.UIElement.RaiseEvent(System.Windows.RoutedEventArgs) at System.Windows.BroadcastEventHelper.BroadcastEvent(System.Windows.DependencyObject, System.Windows.RoutedEvent) at System.Windows.BroadcastEventHelper.BroadcastLoadedEvent(System.Object) at MS.Internal.LoadedOrUnloadedOperation.DoWork() at System.Windows.Media.MediaContext.FireLoadedPendingCallbacks() at System.Windows.Media.MediaContext.FireInvokeOnRenderCallbacks() at System.Windows.Media.MediaContext.RenderMessageHandlerCore(System.Object) at System.Windows.Media.MediaContext.RenderMessageHandler(System.Object) at System.Windows.Media.MediaContext.Resize(System.Windows.Media.ICompositionTarget) at System.Windows.Interop.HwndTarget.OnResize() at System.Windows.Interop.HwndTarget.HandleMessage(MS.Internal.Interop.WindowMessage, IntPtr, IntPtr) at System.Windows.Interop.HwndSource.HwndTargetFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.CallWindowProc(IntPtr, IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.HwndSubclass.DefWndProcWrapper(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.CallWindowProc(IntPtr, IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Internal.Automation.UiaCoreTypesApi.RawUiaLookupId(AutomationIdType, System.Guid ByRef) at System.Windows.Automation.AutomationIdentifier.Register(AutomationIdType, System.Guid, System.String) at System.Windows.Automation.InvokePatternIdentifiers..cctor() at System.Windows.Automation.Peers.AutomationPeer.Initialize() at System.Windows.Automation.Peers.AutomationPeer..cctor() at System.Windows.Automation.Peers.AutomationPeer.RaiseFocusChangedEventHelper(System.Windows.IInputElement) at System.Windows.Input.KeyboardDevice.ChangeFocus(System.Windows.DependencyObject, Int32) at System.Windows.Input.KeyboardDevice.TryChangeFocus(System.Windows.DependencyObject, System.Windows.Input.IKeyboardInputProvider, Boolean, Boolean, Boolean) at System.Windows.Input.KeyboardDevice.Focus(System.Windows.DependencyObject, Boolean, Boolean, Boolean) at System.Windows.Input.KeyboardDevice.Focus(System.Windows.IInputElement) at System.Windows.Interop.HwndKeyboardInputProvider.OnSetFocus(IntPtr) at System.Windows.Interop.HwndKeyboardInputProvider.FilterMessage(IntPtr, MS.Internal.Interop.WindowMessage, IntPtr, IntPtr, Boolean ByRef) at System.Windows.Interop.HwndSource.InputFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) Error: (06/24/2017 06:10:30 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Program Files\AVAST Software\Avast\setup\iplugins\IStats.dll". Dependent Assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (06/24/2017 06:10:27 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Program Files\AVAST Software\Avast\defs\99999999\aswEngin.dll". Dependent Assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (06/24/2017 05:21:05 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: 3G Mobile Manager.exe, version: 5.0.21.728, time stamp: 0x50092014 Faulting module name: 3G Mobile Manager.exe, version: 5.0.21.728, time stamp: 0x50092014 Exception code: 0xc0000005 Fault offset: 0x001498a6 Faulting process id: 0x9f8 Faulting application start time: 0x01d2ec98aec26232 Faulting application path: C:\Program Files (x86)\3G Mobile Manager\3G Mobile Manager.exe Faulting module path: C:\Program Files (x86)\3G Mobile Manager\3G Mobile Manager.exe Report Id: 27ca7431-588c-11e7-be6d-f0761c4a2263 Faulting package full name: Faulting package-relative application ID: Error: (06/22/2017 09:23:16 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "WmiApRpl" in DLL "C:\Windows\system32\wbem\wmiaprpl.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (06/22/2017 09:23:16 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Windows cannot load the extensible counter DLL rdyboost. The first four bytes (DWORD) of the Data section contains the Windows error code. Error: (06/22/2017 09:23:15 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "MSDTC" in DLL "C:\Windows\system32\msdtcuiu.DLL" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (06/22/2017 09:23:15 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "Lsa" in DLL "C:\Windows\System32\Secur32.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (06/22/2017 09:23:15 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "ESENT" in DLL "C:\Windows\system32\esentprf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. System errors: ============= Error: (06/24/2017 06:16:39 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The BlueStacks Plus Android Service service failed to start due to the following error: %%1053 = The service did not respond to the start or control request in a timely fashion. Error: (06/24/2017 06:16:39 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the BlueStacks Plus Android Service service to connect. Error: (06/24/2017 06:16:26 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 51. The Windows SChannel error state is 900. Error: (06/24/2017 06:16:26 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 51. The Windows SChannel error state is 900. Error: (06/24/2017 06:16:25 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 51. The Windows SChannel error state is 900. Error: (06/24/2017 06:15:31 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. Error: (06/24/2017 06:15:31 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. Error: (06/24/2017 06:15:27 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. Error: (06/24/2017 06:15:27 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. Error: (06/24/2017 06:12:57 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Program Files\AVAST Software\Avast\setup\iplugins\IStats.dll". Dependent Assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (06/24/2017 06:10:27 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Program Files\AVAST Software\Avast\defs\99999999\aswEngin.dll". Dependent Assembly Avast.VC140.CRT,processorArchitecture="x86",publicKeyToken="fcc99ee6193ebbca",type="win32",version="14.0.23918.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (06/24/2017 05:21:05 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: 3G Mobile Manager.exe, version: 5.0.21.728, time stamp: 0x50092014 Faulting module name: 3G Mobile Manager.exe, version: 5.0.21.728, time stamp: 0x50092014 Exception code: 0xc0000005 Fault offset: 0x001498a6 Faulting process id: 0x9f8 Faulting application start time: 0x01d2ec98aec26232 Faulting application path: C:\Program Files (x86)\3G Mobile Manager\3G Mobile Manager.exe Faulting module path: C:\Program Files (x86)\3G Mobile Manager\3G Mobile Manager.exe Report Id: 27ca7431-588c-11e7-be6d-f0761c4a2263 Faulting package full name: Faulting package-relative application ID: Error: (06/22/2017 09:23:16 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "WmiApRpl" in DLL "C:\Windows\system32\wbem\wmiaprpl.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (06/22/2017 09:23:16 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Windows cannot load the extensible counter DLL rdyboost. The first four bytes (DWORD) of the Data section contains the Windows error code. Error: (06/22/2017 09:23:15 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "MSDTC" in DLL "C:\Windows\system32\msdtcuiu.DLL" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (06/22/2017 09:23:15 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "Lsa" in DLL "C:\Windows\System32\Secur32.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (06/22/2017 09:23:15 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "ESENT" in DLL "C:\Windows\system32\esentprf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. System errors: ============= Error: (06/24/2017 06:16:39 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The BlueStacks Plus Android Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion. Error: (06/24/2017 06:16:39 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the BlueStacks Plus Android Service service to connect. Error: (06/24/2017 06:16:26 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 51. The Windows SChannel error state is 900. Error: (06/24/2017 06:16:26 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 51. The Windows SChannel error state is 900. Error: (06/24/2017 06:16:25 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 51. The Windows SChannel error state is 900. Error: (06/24/2017 06:15:31 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. Error: (06/24/2017 06:15:31 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. Error: (06/24/2017 06:15:27 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. Error: (06/24/2017 06:15:27 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. Error: (06/24/2017 06:12:57 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 40. ==================== Memory info =========================== Processor: AMD E1-6010 APU with AMD Radeon R2 Graphics Percentage of memory in use: 76% Total physical RAM: 3518.9 MB Available physical RAM: 839.41 MB Total Virtual: 7102.9 MB Available Virtual: 3770.09 MB ==================== Drives ================================ ==================== Memory info =========================== Processor: AMD E1-6010 APU with AMD Radeon R2 Graphics Percentage of memory in use: 77% Total physical RAM: 3518.9 MB Available physical RAM: 784.81 MB Total Virtual: 7102.9 MB Available Virtual: 3776.4 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:204.95 GB) (Free:155.16 GB) NTFS Drive d: (THEOPHILE) (Fixed) (Total:125 GB) (Free:17.71 GB) NTFS Drive e: (MARAVILHA) (Fixed) (Total:125 GB) (Free:10.68 GB) NTFS Drive i: () (Removable) (Total:3.73 GB) (Free:0.87 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 3.7 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================Drive c: () (Fixed) (Total:204.95 GB) (Free:155.16 GB) NTFS Drive d: (THEOPHILE) (Fixed) (Total:125 GB) (Free:17.71 GB) NTFS Drive e: (MARAVILHA) (Fixed) (Total:125 GB) (Free:10.68 GB) NTFS Drive i: () (Removable) (Total:3.73 GB) (Free:0.87 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 3.7 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================